The Trellix DTI cloud interconnects Trellix platforms deployed within customer networks, technology partner networks, and service provider networks around the world. The Trellix DTI cloud serves as a global distribution hub to efficiently share automatically generated threat intelligence such as new malware profiles, vulnerability exploits, and obfuscation tactics, as well as new threat findings from the Trellix APT Discovery Center and verified third-party security feeds. By leveraging the Trellix DTI cloud, the Trellix Threat Prevention Platform is more efficient at detecting unknown zero-day, highly targeted attacks used in cybercrime, cyber espionage, and cyber reconnaissance as well as known malware.
Note
A subscription to the Trellix DTI cloud service is required before you can use the features described in this section.
When the DTI cloud receives threat intelligence from customers and partners from around the world, this information is analyzed and distributed to all customers with a DTI cloud subscription. The information includes:
New malware profiles
Vulnerability exploits
Obfuscation tactics
New threat findings from the Trellix Labs and verified third-party security feeds
Each customer controls what information is shared with and received from the DTI cloud.
.png)