Monitor where your data is going

Sometimes Malware security alerts are not enough, and many security platforms lack any kind of flow analysis. Observing network communication patterns is essential for better security because potentially disastrous uses of your network (like intellectual property loss or outbound scanning) cannot be detected by Malware detection software.

The MSS embeds security event information within the context of real time flow data and analysis and allows the user to gain far greater visibility into their network. The MSS also allows users to record historical flow data with Ntop.

Below are some screen shot examples of the flow analysis tools. Click on the pictures to enlarge.

The MSS easily finds dangerous flow patterns

flows scan2 Flow Analysis

You can easily find out how your network is used (Got P2P?)

flows normal2 Flow Analysis

Visualize particular hosts communication patterns

flows map2 Flow Analysis

Analyze cumulative historical flow information with Ntop

flows ntop2 Flow Analysis

The MSS flow aggregation algorithm simplifies flow analysis by automatically choosing the most efficient invariant of a set of flows. This automatically highlights patterns that show scans or anomalous uses of network bandwidth. Maps are useful for a very quick visualization of where significant data flows from the Enterprise are going. This simple technique has been known to catch dangerous data exfiltration that could not be detected otherwise.
flowanalysis thumb Flow Analysis worldmap small Flow Analysis

The MSS integrates Ntop to give historical flow and protocol usage data. Bandwidth anomalies and unusual communication patterns can be cross-correlated with network security events using a simple integrated interface.

ntopscreen small Flow Analysis