Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Announcement: Try the Ask AI chatbot for answers to your technical questions about Juniper products and solutions.

close
header-navigation
keyboard_arrow_up
close
keyboard_arrow_left
Juniper ATP Cloud User Guide
Table of Contents Expand all
list Table of Contents
file_download PDF
{ "lLangCode": "en", "lName": "English", "lCountryCode": "us", "transcode": "en_US" }
English
keyboard_arrow_right

Juniper Threat Feeds Overview

date_range 27-Sep-24

SecIntel feeds include threat feeds provided by Juniper Networks, 3rd party threat feeds, or Dynamic Address Group (DAG) feeds. The SecIntel threat feeds provided by Juniper Networks is shown in Table 1.

Note:

The Infected Host feed is enabled by default for all license tiers. For licensing information about all other Juniper Threat feeds, see Software Licenses for ATP Cloud.

Table 1: Juniper Threat Feeds

Field

Guidelines

Command and Control Feed

C&C feeds are essentially a list of servers that are known command and control for botnets. The list also includes servers that are known sources for malware downloads.

Malicious Domains (DNS)

List of domains that are known to be connected to malicious activity.

Infected Host Feed

Infected hosts indicate local devices that are potentially compromised because they appear to be part of a C&C network or exhibit other symptoms.

footer-navigation