Predictive feed of malicious IPs, identified before they appear on public IOC lists. Sourced from VisionHeight's Pulse Telemetry and refreshed continuously. Add this to block tomorrow's attacks at the firewall today.
Zero-Day Threat Protection for Network Firewall delivers a continuously refreshed feed of malicious IPs, sourced from VisionHeight's Pulse Telemetry. The feed identifies attacker infrastructure being actively used by verified malicious actors before that infrastructure appears on public IOC blocklists.
Delivered as Network Firewall rule groups, the feed attaches directly to your firewall policy. No agents to deploy, no integrations to maintain. Updates are pushed continuously, so your firewall reflects the current state of the threat landscape without manual intervention.
VisionHeight's Pulse Telemetry fingerprints attacker behavior across the global data-center attack surface (VPNs, VPS providers, proxies, hosting infrastructure). When known malicious actors rotate to new infrastructure after their previous tools are burned, that new infrastructure is identified and added to this feed, giving defenders a meaningful window to block attack campaigns at the network edge.
Highlights
Predictive threat coverage: block malicious IPs before it surfaces on public IOC lists. Designed for defenders who want to stop attack campaigns at the network edge, not chase IOCs after the fact.
Always-fresh feed: continuous refresh from VisionHeight's Pulse Telemetry. No manual updates, no stale rule groups. The underlying infrastructure inventory updates daily as new malicious infrastructure is identified.
AWS-native deployment: subscribe via Marketplace, attach the rule group to your Network Firewall policy. No agents, no proxies, no integrations to maintain. Drop-in protection for AWS workloads.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay per gigabyte of network traffic inspected by this rule group. Billing is usage-based, so your cost tracks how much traffic flows through the firewall. There are no tiers or fixed commitments. Each dimension covers one AWS region, from us-east-1 and us-east-2 through European and Asia-Pacific regions. The per-gigabyte rate can differ by region, so you are charged separately for traffic processed in each region where you enable the rules. As you add regions or traffic grows, charges follow automatically without any change on your part.
Top-of-mind questions for buyers
What counts as one gigabyte of traffic processed for billing?
You are billed per gigabyte of network traffic that this rule group inspects inside AWS Network Firewall. The meter counts traffic flowing through the firewall policies where you reference the rule group. Inspected volume drives the charge, not the number of rules or destinations blocked.
How does my cost change when I add new regions or accounts?
Each region is billed separately at its own per-gigabyte rate. When you enable the rule group in a new region, that region's inspected traffic starts accruing charges automatically. New accounts and traffic pick up the same protection without manual setup, and the underlying lists refresh daily on their own.
Do I pay extra for the software running inside the firewall or for rule updates?
No. You pay only per gigabyte of inspected traffic. There is no separate software to run and no charge for rule updates. The vendor maintains the feeds and rule content, and the lists refresh daily. Deploying and running the rules stays within AWS Network Firewall itself.
visionheight.com
Helpful?
Vendor refund policy
Non-refundable.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Expand your coverage against command and control, web-based, file-based, DNS protocol, and other threats with industries most advanced cloud delivered security services that protect your AWS workloads, VDIs and user traffic with AI/ML-powered VM-Series virtual firewalls from Palo Alto Networks. This listing includes 24x7 Premium Support.
Protect AWS workloads, VDIs, and user traffic with AI/ML-powered virtual firewall from Palo Alto Networks. This listing includes VM-Series virtual firewall, Palo Alto Networks flagship - Advanced Threat Prevention security service and 24x7 premium technical support
The FortiWeb web application firewall (WAF) defends web-based applications from known and zero-day threats. Its AI-based machine learning identifies threats with virtually no false positive detections.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.