ThreatSTOP products work together to deny access to known malicious command-and-control infrastructure. By blocking the outbound communications channel that attackers depend on, organizations can disrupt malware operations and reduce the impact of successful compromises.
ThreatSTOP provides sanctions compliance by converting sanctions intelligence into network enforcement policies that automatically block communications with sanctioned countries, entities, subsidiaries, and associated infrastructure at both the DNS and IP layers. This allows organizations to enforce compliance before a connection or transaction occurs.
Coverage by sanctions regime:
OFAC (United States)
Monitors OFAC sanctions programs, including the Specially Designated Nationals (SDN) list.
Uses additional research (with FiveBy) to identify sanctioned entities, subsidiaries, and related infrastructure that may not be obvious from official lists alone.
Blocks communications with sanctioned countries, entities, and their infrastructure through DNS, firewalls, routers, WAFs, and other enforcement points.
European Union (EU)
Uses the EU's consolidated financial sanctions datasets and related regulatory sources.
Maps sanctioned persons, groups, and entities to their digital infrastructure so network controls can prevent communication with them.
Helps organizations operating in or with EU-regulated partners enforce sanctions requirements automatically.
India (UN)
Builds coverage from multiple Indian regulatory sources, including:
UN sanctions lists
SCOMET export-control restrictions
UAPA terrorist designations
UAPA banned organizations
Converts those designations into DNS and IP protections that prevent interactions with sanctioned infrastructure.
Japan
Uses authoritative Japanese government sources, including:
Ministry of Foreign Affairs sanctions programs
Ministry of Economy, Trade and Industry (METI) export-control and restricted end-user lists
Translates those restrictions into network-layer enforcement policies.
Register with ThreatSTOP on the fulfillment page (no cost) and receive a 1 year subscription for ThreatSTOP's CheckIOC product for free!
Highlights
Blocks communications to known malicious IPs, including ransomware and exfiltration infrastructure.
Rapidly updated to maintain security in a dynamic threat landscape.
Extensive IOC research tools are included by registering at admin.threatstop.com/register.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay based on usage, measured in units of network firewall traffic processed. Pricing is billed per unit and scales with how much traffic the service inspects. The dimensions differ only by AWS Region, from us-east-1 to eu-west-3 and beyond. You are charged in the Region where your traffic is processed. There are no tiers or fixed plans here — each Region carries its own per-unit rate. This lets you deploy protection close to your workloads and pay only for the traffic filtered in that location.
Top-of-mind questions for buyers
What counts as one unit of traffic processed for billing?
A unit measures the volume of network traffic the service inspects and filters. Billing tracks how much traffic passes through the protection in your chosen Region. The more traffic the service processes, the more units accrue. Traffic that is not inspected does not add to your unit count.
How does my cost change if traffic volume rises or falls?
Cost moves directly with the amount of traffic processed. There are no fixed tiers or included allowances. When traffic increases, more units accrue at the per-unit rate for that Region. When traffic drops, fewer units accrue. Charges scale up or down automatically with actual processed volume.
What does the service filter, and does that affect which traffic is billed?
The service blocks connection attempts to attacker infrastructure across ports and protocols, using continuously updated threat intelligence feeds. Billing meters the traffic the service inspects in your Region, not only blocked traffic. Deploying protection close to your workloads keeps processing in the Region where that traffic runs.
www.threatstop.com
Helpful?
Vendor refund policy
Non-refundable
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.