Bundled operational threat feeds for AWS Network Firewall, blocking inbound traffic from noisy scanner sources that flood workloads with probe traffic and outbound traffic to Tor exit nodes. Add this to cut SIEM ingestion and SOC alert volume at packet 1, and to enforce policy around anonymized network infrastructure.
Scanners and Tor Networks Protection for Network Firewall bundles operational threat feeds for AWS Network Firewall, including currently-active Tor exit nodes and IP sources generating high-volume noise traffic against public-facing workloads.
The Tor exit node feed reflects the live state of the Tor network. Every IP currently capable of routing exit traffic from Tor is included, with entries removed as nodes leave the network. Block these to enforce policy against anonymized network access and to remove a common source of attribution-resistant attack traffic.
The noisy scanner feed identifies IP sources currently generating opportunistic scan traffic against the public internet, looking for exposed services, vulnerabilities, and credential-stuffing targets. These IPs are responsible for the bulk of unsolicited probe traffic against AWS workloads. Block them at the network firewall to dramatically reduce SOC alert volume and downstream SIEM ingestion costs, without losing visibility into targeted reconnaissance from sophisticated actors.
Both feeds refresh daily, with entries added and removed based on VisionHeight's live telemetry of global attack infrastructure. Delivered as Network Firewall rule groups, the feeds attach directly to your firewall policy.
Highlights
Live Tor exit node coverage: every IP currently capable of routing Tor exit traffic is included, with entries removed as nodes leave the network. Block these to satisfy compliance requirements for anonymizing network traffic and to cut a common source of attribution-resistant attacks.
Noisy scanner suppression: blocks IP sources generating high-volume opportunistic scan traffic. Cuts SOC alert volume and SIEM ingestion costs at packet 1, while preserving visibility into targeted reconnaissance.
One subscription, bundled coverage: includes Tor exit nodes and active scanner sources at a flat per-GB rate. Add the rule group to your Network Firewall policy and all protections are active immediately.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay per gigabyte of network traffic inspected by this managed rule group inside AWS Network Firewall. Pricing is usage-based, so your cost tracks how much traffic flows through the rules. The dimensions differ only by AWS Region, covering 17 locations across North America, South America, Europe, and Asia Pacific. Each Region carries its own per-gigabyte rate. You are billed only for the Region where traffic is processed. As you add new Regions or accounts, they draw from that Region's rate, and no upfront commitment applies.
Top-of-mind questions for buyers
What counts as one gigabyte of traffic for billing?
You are billed per gigabyte of network traffic that AWS Network Firewall inspects against this rule group. The meter tracks inspected traffic volume, not the number of connections blocked or allowed. Mass scanning and Tor traffic that the rules drop still count as inspected traffic flowing through the firewall.
Do I pay when no malicious traffic is detected?
Yes. Charges track the volume of traffic inspected, not the number of threats found. Even during quiet periods with no blocks, inspected traffic still meters per gigabyte. Your cost rises and falls with total traffic flowing through the rule group, regardless of how much gets blocked.
How does my cost change when I add new accounts or Regions?
New Regions, accounts, and traffic pick up the same protection on their own. Each Region bills at its own per-gigabyte rate, so traffic in a newly added Region charges under that Region's dimension. There is no upfront commitment, so cost scales with actual inspected traffic in each location.
visionheight.com
Helpful?
Vendor refund policy
Non-refundable.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Combine the power of Gen AI with the best of human voice recognition. SoftServe Speech Recognition Platform, accelerated by NVIDIA AI Blueprints and NVIDIA® Riva, converts speech to text with high precision. Unlike other systems, it grasps the nuances of children's voices, making it easier for teachers and other professionals to help kids improve their speech and treatment outcomes. The solution captures even the subtlest vocal nuances, down to the phoneme level. Giving you the ability to gain consistently accurate transcriptions — even in challenging, noisy environments.
The 2020 Census Demographic and Housing Characteristics Noisy Measurement File is an intermediate output of the 2020 Census Disclosure Avoidance System (DAS) TopDown Algorithm (TDA) (as described in Abowd, J. et al [2022], and implemented in primitives.py). The 2020 Census Demographic and Housing Characteristics Noisy Measurement File includes zero-Concentrated Differentially Private (zCDP) (Bun, M. and Steinke, T [2016]) noisy measurements, implemented via the discrete Gaussian mechanism (Cannone C., et al., [2023] ), which added positive or negative integer-valued noise to each of the resulting counts. These are estimated counts of individuals and housing units included in the 2020 Census Edited File (CEF), which includes confidential data collected in the 2020 Census of Population and Housing.
The noisy measurements included in this file were subse[...]
Powered by automation and MITRE ATT&CK, the CardinalOps platform continuously assesses and strengthens the detection coverage of your existing detection tools (SIEM, EDR, etc.). Automatically identify and remediate missing, broken, and noisy detection rules to accelerate detection engineering and continuously increase your coverage. Operationalize threat intelligence reports to quickly convert adversary TTPs into proactive detection rules. Detect the threats that matter most. Always.
The 2020 Census Redistricting Data (P.L. 94-171) Noisy Measurement File (NMF) is an intermediate output of the 2020 Census Disclosure Avoidance System (DAS) TopDown Algorithm (TDA) (as described in Abowd, J. et al [2022] https://doi.org/10.1162/99608f92.529e3cb9, and implemented in the DAS 2020 Redistricting Production Code). The NMF was generated using the Census Bureau's implementation of the Discrete Gaussian Mechanism, calibrated to satisfy zero-Concentrated Differential Privacy with bounded neighbors.
The NMF values, called noisy measurements are the output of applying the Discrete Gaussian Mechanism to[...]
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.