AIStorm TheartShield

Built for Speed. Designed for Defense

home > products & solutions > AIStorm TheartShield
Product Introduction
AIStorm ThreatShield is a high-performance network security solution that delivers precise protection against both known and zero-day vulnerabilities. Designed for flexibility and performance, it empowers organizations to stay resilient against sophisticated threats like ransomware. With advanced traffic analysis and rich contextual awareness, ThreatShield enables security teams to take a proactive stance to mitigate risks before they escalate.
Key Features
  • Network and File Security
    • Inline Anti-malware protection defends against file-based threats, including ransomware.
    • Provides virtual patching to shield against known vulnerabilities and block exploit attempts.
    • Supports file content analysis via WebAPI or ICAP protocol.
  • Web and DNS Security
    • Utilizes threat intelligence services to block malicious IP addresses, domains, and URLs.
    • Supports custom-defined blocklists.
  • High Availability
    • Adaptive software/hardware-integrated bypass ensures uninterrupted traffic flow during system failure.
    • Supports both active-active and active-passive HA configurations for failover.
Product Advantages
  • Advanced Threat Scanning
    • Employs aggressive heuristic scanning to detect unknown malware based on suspicious behavior rather than signature matches.
    • Identifies embedded exploit code within commonly used document formats, such as PDFs and Microsoft Office files.
  • Virtual Patching & Threat Intelligence
    • Supports the identification and analysis of more than 100 protocols including HTTP, FTP, SMTP, POP3, and SMB.
    • Over 10,000 IPS rules for detecting and mitigating vulnerabilities.
    • Provides a locally stored threat intelligence database with tens of millions of entries, enhanced by advanced threat detection and remediation capabilities.
  • Highly Efficient Scanning Engine
    • Delivers high-performance streaming inspection with microsecond-level packet monitoring.
    • Unlike conventional firewalls that degrade with deep inspection enabled, ThreatShield leverages a dedicated DPI engine to maintain low-latency processing without compromising security.
  • Highly Flexible Deployment
    • Supports deployment across different environments, including on-premises, cloud, and containerized environments.
    • Bridge mode supports both perimeter security reinforcement and internal segmentation to prevent lateral threat movement.