Trellix

Trellix

Targeted email countermeasure "Trellix (former FireEye) Server Edition"

Trellix (formerly FireEye) Email Security - Server Edition is a solution to the recent surge in targeted email attacks. Targeted e-mail attacks in recent years use clever spoofing e-mails, making it difficult for users to determine whether they are spoofed e-mails. In addition, the malware included is not distributed and tends to be customized for each attack, which can be bypassed by signature products. Trellix (formerly FireEye) Email Security - Server Edition executes, analyzes suspicious attachments and embedded URLs, and blocks any that are determined to be malicious, helping organizations prevent targeted email-driven cyberattacks You can

Email traffic (SMTP) entrance countermeasures

Attached files are analyzed by Trellix (formerly FireEye)'s proprietary virtual execution engine (MVX) to detect unknown vulnerabilities and malware. In addition, the URL in the text is also detected by matching it with the intelligence of Trellix (formerly FireEye). After detecting that it is malware, MVX swims the malware, identifies the C&C server with which it communicates, and creates a signature. In addition, depending on the deployment mode, it is also possible to block targeted emails.

Deployment options

  • SPAN/TAP mode
    1. Receive SMTP mirror packet
    2. Send alerts to administrators when detected
    3. No impact on mail traffic (delays/failures)
SPAN/TAP mode
  • BCC mode
    1. Receiving BCC forwarded mail from previous MTA
    2. Send alerts to administrators when detected
    3. No impact on mail traffic (delays/failures)
BCC mode
  • MTA mode
    1. Act as MTA
    2. Block and monitor can be selected as post-detection actions
    3. Impact on mail traffic (delay/failure)
MTA mode

Inquiry/Document request

In charge of Macnica Trellix Co., Ltd.

  • TEL:045-476-2010

Mon-Fri 8:45-17:30