Site Search

Trellix

Trellix

Targeted email security product "Trellix Server Edition"

Trellix Email Security - Server Edition is a solution to the recent surge in targeted email attacks. In recent targeted email attacks, sophisticated spoofing emails are used, making it difficult for users to determine whether an email is spoofed or not. In addition, the malware contained in them is not a spam type, but tends to be customized for each attack, which makes it difficult to detect with signature products. Trellix Email Security - Server Edition executes and analyzes suspicious attachments and embedded URLs in a Box, and blocks all those that are determined to be fraudulent, allowing organizations to prevent targeted cyber attacks that are triggered by email.

Email traffic (SMTP) entrance countermeasures

Trellix's proprietary virtual execution engine (IVX) analyzes attachments to detect unknown vulnerabilities and malware. It also checks URLs in the text against Trellix's intelligence to detect them. After detecting malware, it lets the malware run in IVX, locates the C&C server it is communicating with, and creates a signature for it. Depending on the implementation mode, it can also block targeted emails.

Deployment options

  • SPAN/TAP mode
    1. Receive SMTP mirror packet
    2. Send alerts to administrators when detected
    3. No impact on mail traffic (delays/failures)
SPAN/TAP mode
  • BCC mode
    1. Receiving BCC forwarded mail from previous MTA
    2. Send alerts to administrators when detected
    3. No impact on mail traffic (delays/failures)
BCC mode
  • MTA mode
    1. Act as MTA
    2. Block and monitor can be selected as post-detection actions
    3. Impact on mail traffic (delay/failure)
MTA mode

Inquiry/Document request

In charge of Macnica Trellix Co., Ltd.

  • TEL:045-476-2010

Weekdays: 9:00-17:00