Term | Description |
CWPP console | A cloud-native security system independently developed by Tencent Cloud,<br> which provides a one-stop cloud workload protection solution (prevention-defense-detection-response). |
Agent | Official security plugin for CWPP, which can be used for servers running in a hybrid cloud.<br> It syncs risk information to CWPP in real time and performs detection or process tasks issued by the CWPP Console. |
Tencent Cloud servers | CVM, Lighthouse, and ECM. |
Non-Tencent Cloud servers | Third-party servers and IDC servers. |
CWPP | Cloud Workload Protection Platform (CWPP) is a security information processing center that continuously checks and analyzes the information returned by different servers. It boasts six core security capabilities to check servers from various dimensions.
1. TAV Engine: Efficiently detects and removes binary Trojan viruses.
2. BinaryAI Engine: The binary search engine built on the deep learning algorithm for efficient detection and removal of malicious samples.
3. Cloud Security Engine: Efficiently detects and removes the popular Trojans and virus files both at home and aboard based on the deep self-learning algorithm and multi-engine cloud virus detection mechanism.
4. Threat Intelligence Engine: Built on a large threat intelligence library that keeps updated to help identify malicious files, IPs, and domain names.
5. Anti-Attack Engine: Detects cyber attacks in real time, including Webshell detection, Struts vulnerability exploitation, code repository pulling, code injection attacks, and brute force cracking. Provides auto defense capabilities.
6. Unusual Behavior Engine: Matches unusual behavior characteristics and detects multi-behavior threats in real time to facilitate real-time detection and alarm of malicious intrusion events. |
Was this page helpful?