Trellix

Trellix

Targeted cyberattack countermeasures "Trellix (former FireEye) Network Security"

Network Security uses a unique virtual execution engine (MVX) that does not rely on signature matching and intelligence-driven detection technology to deal with unknown and advanced attacks. By implementing Network Security, you can achieve faster detection, more accurate alerts, and noise reduction than ever before. By detecting threats that cannot be dealt with by conventional security solutions, customers can focus on responding to alerts about critical threats while reducing the operational management burden associated with frequent false positives.

Web traffic (HTTP) entrance countermeasures

Network Securityanalyzes and detects attacks from web traffic with its proprietary Virtual Execution Engine (MVX). Attacks from web traffic mainly include attacks that exploit vulnerabilities that occur while users are browsing the Internet, malware downloads, drive-by downloads, and watering hole attacks.

Trellix (formerly FireEye) Network Security analyzes traffic using its unique flow analysis technology, making it possible to accurately detect advanced malware that is difficult to detect through individual file inspection, such as malware that uses drive-by downloads. is.
By linking with alliance partner products, SSL (encrypted) communication inspection is also supported.

Exit measures for all communications (regardless of port number)

The primary purpose of Network Security is to prevent information leaks by detecting and blocking infected terminals from communicating with C&C servers. Network Security can detect and block infection based on new C&C server information found in the MVX inside the appliance and signatures from the cloud DTI of Trellix (formerly FireEye).

Deployment options

Inline (L2 transparent, Fail-Open compatible)
Monitoring (SPAN/TAP/Mirror)

Inquiry/Document request

In charge of Macnica Trellix Co., Ltd.

  • TEL:045-476-2010

Mon-Fri 8:45-17:30