Network Detection & Response (NDR)
Sophos NDR detects suspicious network traffic patterns that goes unseen by your managed endpoints and firewalls, including:
Detection Engines:
Data Detection Engines - Extensible query engine uses a deep learning prediction model to analyze encrypted traffic and identify patterns across unrelated network flows.
Domain Generation Algorithm - Identifies dynamic domain generation technology used by malware to avoid detection.
Deep Packet Inspection - Uses known indicators of compromise to identify threat actors and malicious tactics, techniques, and procedures across encrypted and unencrypted network traffic.
Session Risk Analytics - Powerful logic engine utilizes rules that send alerts based on session-based risk factors.
Encrypted Payload Analysis - Detects zero-day C2 servers and new variants of malware families based on patterns found in the session size, direction, and interarrival times.
Other Highlights
Copyright © 2024 ITProPrime - All Rights Reserved.
We use cookies to analyze website traffic and optimize your website experience. By accepting our use of cookies, your data will be aggregated with all other user data.