TitaniumCloud

File Reputation Service

Threat Intelligence Cloud

Key Features

  • 1

    Industry’s most comprehensive, curated and private source of threat intelligence and reputation data on files: both goodware and malware: approaching 3 billion unique samples

  • 2

    Powerful REST query functions enable triage and on-going analysis and remediation by SOC/CIRTs as well as deep enrichment of results identified via other deployed security solutions

  • 3

    Available as a cloud-based solution and/or an on-premises appliance for highly-secured or air-gapped environments

  • 4

    Provides both identification of new threats as well as continual re-scanning of all samples to expose historical perspective and threat family provenance

Overview

The ReversingLabs TitaniumCloud File Reputation service provides the industry’s most comprehensive source for threat intelligence and reputation data on files. It contains up-to-date reputation and internal analysis information on over 2.5 billion goodware and malware files. It identifies files and provides rich information about their internals and contents. Every sample is processed using the ReversingLabs engine to extract all contained objects and their internal Proactive Threat Indicators (PTI)s. The samples are recursively unpacked, decompressed, decrypted and de-obfuscated. The PTIs extracted from the resulting components include format, format validation, strings, sections and certificate chains. Malware samples are continually reanalyzed for the most up-to-date file reputation status. Their detection history is stored in the TitaniumCloud database.

Powerful query functions are accessed over the Internet or locally on a T1000 File Reputation Appliance through a high performance REST Interface or a GUI. The TitaniumCloud service uses a proprietary NoSQL database optimized to support advanced search and record updates across billions of file records in milliseconds.

Ask for a Demo today

All Products