The McAfee Global Threat Intelligence cloud-based service combines IP addresses, network ports, and communications protocols to determine granular reputation intelligence, protecting our products against both known and emerging network based attacks and adversarial activity.
We collect data from billions of IP addresses and network ports, providing hundreds of trillions of unique views, and calculate a reputation score based on network traffic, including port, destination, protocol, and inbound and outbound connection requests. The score reflects the likelihood that a network connection poses a threat, such as a connection associated with botnet control. The score is based not only on the collective intelligence from sensors querying our cloud and the analysis performed by McAfee Labs researchers and automated tools, but also on the correlation of cross-vector intelligence from file, web, and network threat data. Our products, including McAfee Network Security Platform, use the score to determine action based on local policy.
- Protects endpoints from botnets, distributed denial-of-service (DDoS) attacks, command and control activity, advanced persistent threats, and risky web connections
- Reduces system and network burden by blocking threats at the network edge
- Decreases downtime and remediation costs associated with network-based attacks