Qi An Xin
SkyEye: New Generation Threat Perception System Through attack and defense penetration…
Description
SkyEye: New Generation Threat Perception System
Through attack and defense penetration and data analysis, SkyEye uses threat intelligence, rule engine, file virtual execution, machine learning and other technologies based on network traffic and terminal EDR logs to accurately discover known advanced network attacks and unknown new types of hosts and servers in the network. The intrusion behavior of network attacks analyzes, judges and traces the incident, and blocks the threat in time.
Features included:
– Leading APT Detection and Tracking Capabilities
QI-ANXIN Threat Intelligence Center is monitoring more than 40 domestic and foreign hacker organizations that launched APT attacks, dating back to 2007.
– Leading Threat Intelligence Capabilities in China
Based on multi-dimensional and global data collection capabilities, it uses cloud big data technology to automate processing and the manual operation of top security research teams to provide users with accurate threat intelligence.
– Powerful Coordinated Response
Through terminal EDR linkage, firewall NDR linkage, and automated scheduling and disposal, it helps users quickly locate infected hosts and malware, and block threats in a timely manner, improving the response and handling capabilities of network attacks.
– Computing and Retrieving Massive Data
SkyEye provides enterprises with TB-level rapid data search capabilities, which can provide solid technical support for large-scale local data storage, attack evidence retention and query, and real-time correlation analysis.
– Rich Business Cases
SkyEye System serves more than 1000 domestic and foreign customers, covering almost all industries.