Quantifying the specific protective value of Palo Alto Networks Advanced Security
subscriptions, including Advanced Threat Prevention, Advanced URL Filtering,
Advanced WildFire, and Advanced DNS Security, often requires manual correlation
across fragmented views. This lack of clear attribution makes it difficult to
understand how specialized services protect against unique, emerging threats
compared to standard signatures.
You can now utilize the
Activity Insights: Threats dashboard in
Strata Cloud Manager to visualize the precise impact of your security
subscriptions. This interface introduces platform effects metrics, demonstrating
how shared intelligence from the global customer base and cross-service
correlations automatically block patient-zero attacks in your environment.
Detailed visualizations allow you to track trends in advanced threats,
distinguishing between known signature-based blocks and novel attacks detected by
cloud-based machine learning features.
The dashboard now provides a Threat | CVE toggle, giving you
visibility into CVE exploits detected by Advanced Threat Prevention alongside
your existing threat activity views. The CVE view helps you identify which
real-world CVE exploits are targeting your environment, whether they are being
blocked or alerted, and how to prioritize remediation using severity and
exploitability metrics such as CVSS scores, EPSS scores, and exploit status.
Additionally, the
Threat Search page now supports both
Threat ID and CVE search, allowing you to investigate specific threat signatures
or CVE exploits directly from the dashboard workflow. You can search by Threat ID
to examine detection patterns for a specific signature, or search by CVE
identifier to view all related threat activity, CVSS and EPSS metrics, and
firewall coverage for that vulnerability.
By differentiating these protection sources and correlating CVE exploit data with
your network activity, you can validate the specific return on investment of your
subscriptions and gain deeper visibility into the sophisticated threat vectors
targeting your network.