AhnLab MDS is a sandbox solution that provides advanced threat detection, analysis, and response capabilities without compromising end-user systems.
Why AhnLab MDS
• Advanced Threat Detection
The multi-engine of AhnLab MDS is the backbone of its unrivaled file analysis technology, applying the most suitable analysis technique aligned with the characteristics of each file. It runs files in an isolated environment (sandbox) and performs a comprehensive analysis of behavior, file/process creation, network traffic, and URL access to determine the maliciousness of files.
• No Execution Until Proven Safe
AhnLab MDS never lets suspicious files executed in the end-user system. Once unanalyzed files are detected, it instantly holds execution, triggers analysis, and performs response measures, including file removal and system quarantine if a file is convicted of being malicious.
• AI-Powered Email Security
AhnLab MDS determines the maliciousness of email by extracting the email data and implementing AI-assisted analysis. This results in laser-accurate detection of phishing emails that might evade policy-based detection.
Key Features
• Cutting-Edge Sandbox Analysis
In the sandbox constructed within the high-performance appliance, AhnLab MDS analyzes every executable and non-executable files as well as covert techniques hidden behind files. It accelerates users to outpace modern cyber threats without compromising end-user systems.
• Reversing Anti-VM
Some modern malware is equipped with anti-VM features, which freezes its operation once sandbox environments are detected. AhnLab MDS, always a few steps ahead of the latest cyber threats, reverses the anti-VM feature by disabling malware to scan the sandbox and evade detection.
• Network Scanning
When analyzing files, AhnLab MDS granularly detects and blocks malicious network traffic based on extensive signatures and YARA rules to tackle techniques of advanced persistent threats (APTs) such as C2 server connections.
• Extensive Third-Party Integration
AhnLab MDS is compatible with a variety of third-party products spanning SSL/TLS decryption and spam filtering solutions. This extends its range of file aggregation, detection, and analysis to deliver reinforced threat response capabilities.
• Intelligence-Driven Defense
AhnLab MDS actualizes “intelligence-driven defense” by deeply integrating with our native products and services. Our threat intelligence platform, AhnLab TIP, feeds additional insights on files, URLs, and Ips to AhnLab MDS, and industry-leading experts of ASEC step in to deliver the full-scale file analysis service.
• Central Monitoring & Log Management
The intuitive AhnLab MDS dashboard offers exceptional visibility into the threat detection and analysis status and central management of logs and events generated by products deployed across the organization.
Seller
AhnLabDiscussions
AhnLab MDS CommunityOverview by
Jeanette Lee