The WildFire global cloud (U.S.) and
regional clouds can analyze URLs, and by extension, email links,
to provide standardized verdicts and reports through the
WildFire API. By aggregating
threat analysis details from all Palo Alto Networks services, including
PAN-DB, WildFire is able to generate a more accurate verdict and
provide consistent URL analysis data.
The URL analyzers operating in the WildFire global
cloud (U.S.) processes URL feeds, correlated URL sources (such as
email links), NRD (newly registered domain) lists, PAN-DB content,
and manually uploaded URLs, to provide all WildFire clouds with
the improved capabilities, without affecting GDPR compliance. After
a URL has been processed, you can retrieve the WildFire URL analysis
report, which includes the verdict, detection reasons with evidence,
screenshots, and analysis data generated for the web request. You
can also retrieve web page artifacts (downloaded files and screenshots)
seen during URL analysis to further investigate anomalous activity.