Whenever known malicious activity such as new types of malware, phishing attacks, APT relay stations, etc. are detected, traditional preventative solutions primarily rely on the exchange of static blacklists, making it difficult to detect and block malicious activity in real-time and severely lacking the intelligence needed to prevent sophisticated targeted attacks.
CyCraft ThreatWall fully integrates with our CyberTotal global threat intelligence platform, routinely self-updates with the latest in global intelligence, provides enterprises with effective solutions to prevent new types of threats, and leverages contextual threat information to enrich indicators of compromise (IoC).
ThreatWall can display multiple records in real-time, including all blocked traffic, recognize relevant evidence of malicious behavior, block outbound traffic to known C2 servers, provide reputation and confidence ratings of multiple intelligence companies for blocked targets from numerous international threat intel sources, and display the geographic address and country of origin of IP addresses. ThreatWall should be the first and last line of defense for any network seeking resilience against modern threats.
- Full Integration with CyberTotal Threat Intelligence Platform
- Dynamic Automated Updates on Global Threat Intel
- Compatible with DNS RPZ
- API and CSV Download Functionality
- Inline Blocking and Mirror Mode
- No SSL Decryption Keys Required
Your CyCraft representative is standing by to help you with an incident or answer any question regarding our incident response, compromise assessment, or managed detection and response products and services.