Stock Abbreviation : Topsec      Stock Code : 002212
7*24 hour service: 400-777-0777

Topsec APT Security Monitoring System

Comprehensive Threat Detection | Full-Traffic Retention | Multi-Scenario Application | End-to-End Closed-Loop Response

Product Overview

Topsec APT Security Monitoring System (TopAPT) is an integrated security monitoring platform focusing on detection, analysis and disposal. The system integrates nine detection engines and nine analysis engines, and combines technologies such as AI detection and dynamic sandbox to achieve rapid and accurate identification of known and unknown threats. TopAPT can work as a probe in collaboration with situational awareness products to meet industry regulatory requirements, while its standalone APT capabilities fulfill enterprise self-supervision needs to meet enterprises' self-supervision needs, comprehensively enhancing network security protection capabilities.

Activity & Announcement
Advantages
Comprehensive Detection Capabilities

TopAPT product is built with a 9-in-1 detection engine, featuring nine major detection functions: network attack detection, botnet host detection, web attack detection, DDoS attack detection, threat intelligence detection, malicious file detection, encrypted traffic detection, advanced threat detection, and unknown threat detection. It realizes comprehensive detection of threats such as scanning and probing, denial-of-service attacks, cross-site attacks, injection attacks, brute-force cracking, weak passwords, overflow attacks, Trojans, worms, mining, ransomware, covert tunnels, DGA malicious domains, crawlers, phishing emails, sensitive information leakage, malicious encrypted traffic, and APT activities. It ensures comprehensive inspection of all detectable traffic across network nodes.

Complete Traffic Capture and Retention

TopAPT product can realize 7×24-hour real-time and non-missing retention of business traffic, encrypted traffic, attack traffic, malicious program propagation traffic, and abnormal traffic, ensuring that every detail of network activity is accurately recorded and analyzed. The complete traffic retention provides a key evidence chain for attack traceability, supports rapid backtracking of attack paths and precise positioning of threat sources, significantly improves the efficiency of security incident positioning, enhances the speed of emergency response, and meets the full-scenario traceability needs from daily operation and maintenance to advanced threat response.

Multi-Scenario Adaptability

TopAPT product, relying on a deep protocol parsing engine, can be used in all scenarios such as fixed networks, mobile networks, industrial internet, internet of things, internet of vehicles, and cloud environments. It comprehensively monitors communication interactions and data transmission in each scenario, deeply parses application protocols of traffic in various scenarios, and provides early warning of potential threats in real-time. It offers security monitoring guarantees for users across all industries including energy, operators, transportation, finance, and enterprises.

End-to-End Closed-Loop Operations

TopAPT product is an integrated security monitoring device that integrates detection, analysis, and disposal. When the product detects attack events, malicious program transmission, abnormal traffic, data leakage, or other situations, it will trigger real-time alarms and automatically conduct analysis and judgment from the perspectives of events, attackers, and victims. It identifies high-value threats from massive alert volumes and can perform disposal directly or in linkage with other products. This forms an efficient full-closed-loop process from early warning to disposal, effectively improving the efficiency of users' cybersecurity operations.

Applications
Scenario Description

TopAPT is deployed in bypass mirroring mode across provincial branch data centers. It interfaces with the analysis platform through probe applications, receives monitoring directives from the platform, and utilizes reported monitoring data to establish front-end and back-end systems. This enables global threat monitoring, comprehensive threat display, and other application effects, assisting customers in meeting industry regulatory requirements.

Problems solved
  • Achieves an operational closed loop through an integrated security monitoring system that integrates detection, analysis, and response.
  • Reporting multi-dimensional threat monitoring information to fully grasp the network security situation.
  • Build front-end and back-end systems to achieve global data visualization and meet the needs of various industry regulatory scenarios.
Scenario Description

TopAPT supports standalone deployment to adapt to the characteristics of small and medium-sized enterprise (SME) network environments. The system is equipped with nine detection engines, nine intelligence engines, and nine analysis engines, achieving an application effect that integrates threat detection, analysis, and response. This enhances the enterprise's security monitoring and protection capabilities, helping customers meet the needs of SME self-regulation scenarios.

Problems solved
  • The integrated security monitoring system eliminates redundant device deployment and reduces cost investment.
  • Comprehensive threat monitoring and rich content display to meet the needs of self-regulatory scenarios.
Value to Customers
Gain Comprehensive Insight into Network Security

Assist users in comprehensively and intuitively grasping the status of network security risks and promptly responding to various security incidents.

Enhance the Capability to Respond to Advanced Threats

Empowered by multiple technologies, it accurately perceives complex and concealed advanced threats, comprehensively enhancing threat response capabilities.

Improve the Efficiency of Network Security Operations

Integrating detection, analysis, and response into a seamless loop, from early warning to resolution, enhances the efficiency of network security operations.

Specification
0 > 0 >
APT-4112A-E
Form Factor 1U
Fixed I/O Ports 8xGE,4xSFP
USB Ports 2
RAM 32GB
Storage 128G Msata , 4TB SATA
Power Specification 150W, Dual AC
Power Supply AC 100-240V,50/60 Hz
APT Throughput 1Gbps
Probe Throughput 2Gbps
Concurrent Users 200,000
New Sessions/Sec 10,000
Static Analysis Rate/day 50,000
Success Case