Threat center

The Threat center is a component dedicated to giving an overview of threats detected by DC Netscope. Basically, DC Netscope combines several public databases of threats (mainly from URLhause), and checks if the collected network flows appear in one of the database.

It presents detected threats in the form of a datagrid, which give details about resources that are related to threats, details about the threats and a link to a detailed description of the threat, as in the following screenshot :

Datagrid of flows

Identification of threats is based on a community based list of malicious IPs hosted provided by Firehol.