Support a variety of network security devices (WAF, IPS, SIP, Tianyan, Tianqing, etc.) data fusion analysis, with a wide range of applicable and compatible capabilities.
Based on the original REE theory and combined with industry prior knowledge, it can realize the automatic discovery of rules and field standards, thus replacing a large number of manual handwritten rules and improving efficiency. Graph association analysis embedded in machine learning solves the problems of low automation rate, difficult association, unexplainable, and low accuracy.
Based on the self-developed distributed graph storage and distributed graph computing framework, it can automatically map and efficiently mine rules at billion-level points and edges, and realize fast log text retrieval and association.
The graph algorithm based on time sequence finds the time sequence characteristics of high-risk events and gives early warning.