Paloalto Traps
Paloalto Traps
Paloalto Traps
Malware Prevention
Exploit Prevention
1. Wild Fire – Threat Intelligence on Cloud : a cloud-based malware analysis and threat
intelligence repository which analyses threat intelligence from Palo Alto customer networks.
This is used to prevent KNOWN (& previously seen) malware from compromising an endpoint.
2. Local Analysis : examines a file structure on the local machine itself to determine if it is
malicious or good, by using Machine Learning technology.
Unrecognized files or those not known to Wild Fire Intelligence network are submitted to Wild
Fire for Full Analysis. This includes Static Analysis and Dynamic Analysis.
Helps to identify if a typically risky application is being launched by another application. This
gives fine-grain control over what applications can run which processes as child processes.
e.g.: MS Word and Internet Explorer can launch additional processes to run scripts.
All these capabilities are also used to prevent Malicious Macros from executing in MS Word or
MS Excel and thereby run child processes.
3. Post-Exploitation:
Blocks attacks that escalate system privileges as well as compromise of Operating system itself.