
VSS Backup Protection
Protection of backups against damage
VSS Backup Protection protects Windows Volume Shadow Copies from deletion by ransomware - a technique used by 95% of variants. The system intercepts vssadmin.exe, wmic shadowcopy, and PowerShell command calls, blocking unauthorized delete operations. Immutable shadow copy mode ensures that even an administrator cannot delete copies without authorization from a separate console.
Enterprise-grade protection compliant with regulatory requirements and security standards
Fast deployment with minimal resource overhead
Dedicated support from a certified partner
Easy integration with your existing infrastructure
Key features
- Blocking of vssadmin delete, wmic shadowcopy, and PowerShell Remove-WmiObject
- Immutable mode requiring authorization from a dedicated console
- Monitoring of VSS operations with alerting on suspicious patterns
- Protection of System State and ASR (Automated System Recovery) backups
- Integration with Windows Backup, Veeam Agent, and Acronis
Business benefits
- Preservation of 100% recovery capability thanks to local shadow copies
- Reduction of RTO (Recovery Time Objective) from days to hours
- Protection of investment in backup infrastructure worth more than $100K
- Faster recovery after an attack without the need to restore from offsite
- Meeting NIST CSF PR.IP-4 requirements for backup protection

Why Halcyon?
The world's first platform dedicated exclusively to ransomware protection. Halcyon uses advanced behavioral detection techniques to block encryption in real time, and in the event of an attack, enables automatic recovery of encrypted files without paying a ransom.
Need VSS Backup Protection in your organization?
As a certified Halcyon partner, we'll help you deploy and configure the solution.