Every second, we acquire and learn from over 1 million malicious and non-malicious internet events
We’re often asked, “What makes your cloud security service, Cisco Umbrella, so unique?” While being ultra-reliable, fast, and easy to set up is critical, it’s really the volume, velocity, and variety of data we analyze that sets us apart from other security players. It’s what helped rank us #1 in security efficacy in a recent AV-Test comparison. Unlike others, our intelligence stays ahead of the accelerated pace of technological change and new threats.
Unrivaled cyber situational awareness
Just as nations maintain surveillance over their adversaries, Cisco Umbrella continuously monitors cyber-space for the DNS infrastructures, IP networks, and malware used in current and former attacks. Our 100% proprietary security analytics provide the spatial and temporal relationships between every domain name, IP address, malware files, and networks — ultimately, uncovering when and where on the internet new cyber attacks are being staged.
In 2006, we started building the world’s largest internet security network to acquire global intelligence. And today, over 100 million active users daily across 190 countries point their DNS traffic to Umbrella. While many others claim to use “Big Data,” only an elite few in the world have such breadth of internet coverage and visibility.
No knob tuning or waiting on new samples
Similar to Pandora learning from music listening patterns to play songs, Umbrella is always learning from new internet events to prevent cyber attacks. Unlike static reputation, our security analytics are always adapting due to live activity. And unlike reactive sandboxes, we do not need to collect a sample of an attack.
To achieve this feat, we have a team of world-class engineers, mathematicians, and security researchers who take an innovative and proactive approach to security research. They build statistical models and machine learning models to automatically score and classify all of our data, so we can detect anomalies, and uncover known and emergent threats.
Unmatched threat intelligence
Leveraging the internal visibility into 200 billion web requests a day, Umbrella runs over 30 different machine learning algorithms to detect emerging attacks. Umbrella gives the most complete view of the relationships and evolution of internet domains, IPs, and malware — helping to pinpoint attackers’ infrastructures and predict future threats.
3M
New domains discovered daily
60K
New malicious destinations (domains, IPs, and URLs) identified daily
7M
Malicious domains and IPs enforced, while at the same time delivering fast internet access

