No more typing reviews! Try our Samantha, our new voice AI agent.

Hillstone Cloud Sandbox vs Palo Alto Networks WildFire vs Trellix Network Detection and Response comparison

 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Mindshare comparison

As of April 2026, in the Advanced Threat Protection (ATP) category, the mindshare of Hillstone Cloud Sandbox is 0.9%, up from 0.3% compared to the previous year. The mindshare of Palo Alto Networks WildFire is 7.5%, down from 11.6% compared to the previous year. The mindshare of Trellix Network Detection and Response is 3.5%, down from 3.6% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Advanced Threat Protection (ATP) Mindshare Distribution
ProductMindshare (%)
Palo Alto Networks WildFire7.5%
Trellix Network Detection and Response3.5%
Hillstone Cloud Sandbox0.9%
Other88.1%
Advanced Threat Protection (ATP)
 

Featured Reviews

Albert-Wang - PeerSpot reviewer
Technical Consultant at SiS Technologies
Dynamic file analysis enhances threat detection capabilities
Cloud sandbox allows customers to analyze email and text documents without purchasing any hardware. The system analyzes files dynamically and provides feedback on the impact of the file. Cloud sandbox manages the analysis using Hillstone on the cloud, offering a service to detect unknown threats. It's easy to integrate and offers dynamic analysis supporting many types of files.
RK
Engineer at Taalumgroup
Achieve effective threat prevention and seamless integration with powerful technical support
Integration with third-party products is possible. For example, connecting a mail gateway with Palo Alto Networks WildFire allows them to handle prevention. Palo Alto Networks WildFire is a cloud-based sandboxing solution. The firewall is connected to WildFire, and XDR performs sandboxing from the cloud. WildFire conducts malware scanning and emulation, then informs the firewall to block threats based on the response. It also generates reports regarding malware and other issues. The sandboxing process involves sending sample files to the cloud for scanning, checking file authenticity, certificates, and detecting malicious code. WildFire performs multiple checks and informs the XDR agent about file status. This automatic process occurs within minutes or seconds. For unknown or suspicious files, immediate blocking occurs while samples are sent to WildFire for identification. I rate Palo Alto Networks WildFire a 9 out of 10.
Jose Vargas - PeerSpot reviewer
Agente De Servicios Técnicos at a computer software company with 11-50 employees
Has improved threat detection workflows and supports seamless customer monitoring
The best features Trellix Network Detection and Response offers include very good threat detection, and I believe that it is one of the best XDR tools. For example, ePO and XDR components are very comfortable and similar to many other tools for this type of monitoring, and I have received very good feedback for this tool. What makes Trellix Network Detection and Response stand out for me compared to other tools is the way you can detect threats. It is very easy and comfortable to use, and the detection shows clearly on the screen, which is very easy to understand. Regarding the features, I think that the integration with other platforms is very comfortable with the customer because we can integrate it with any switch or firewall, and it is comfortable to add this tool. Trellix Network Detection and Response has positively impacted my organization as I have improved my knowledge about detection and response. I have already used some other tools such as CrowdStrike and Umbrella, but Trellix is one of the best that I have tested. I believe that for my organization, Trellix has helped a lot with detection and supported our customers effectively. Trellix Network Detection and Response is a great tool that integrates with a lot of security tools such as Palo Alto, which is a good firewall. If you have these types of tools, your organization would benefit greatly.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Cloud sandbox allows customers to analyze email and text documents without purchasing any hardware."
"It helps us when segmenting and securing the network and all sort of technologies, all sort of next generation needs, with next generation phases of firewall like anti-virus, sandboxing, wifi, and VPN."
"The primary use case for this solution is the attention to detail, and it is also easy to manage and easy to use."
"The most valuable features are all of the security features in terms of protection and SSL and VPN."
"The analysis is very fast."
"I value the massive usage of artificial intelligence and machine learning technologies."
"It is a stable solution...It is a scalable solution."
"The most valuable features of this solution are sandbox capabilities."
"I give the initial setup an eight out of ten."
"It allows us to be more hands off in checking on emails and networking traffic. We can set up a bunch of different alerts and have it alert us."
"The most valuable feature is the network security module."
"The most valuable feature is the network security module."
"The product has helped improve our organization by being easy to use and integrate. This saves time, trouble and money."
"I also like its logging method. Its logging is very powerful and useful for forensic purposes. You can see the traffic or a specific activity or how something entered your network and where it went."
"The features that I find most valuable are the MIR (Mandiant Incident Response) for checks on our inbound security."
"After all of our testing was conducted we felt confident that this was the right approach to safeguard the bank from advanced malware, zero-day and targeted attacks."
"Application categorization is the most valuable feature for us. Application filtering is very interesting because other products don't give you full application filtering capabilities."
 

Cons

"For implementation, if the system can improve or provide more training, it would be better."
"We also found that several websites do not function well with the SSL Decryption feature."
"The customer service and support I received was extremely disappointing. There is a lack of SLA adherence, and third-party partners do not provide prompt responses."
"The automation and responsiveness need improvement."
"I would like to see them continue on their developmental roadmap for the product."
"Our main concern is that everything has to be synced with the WildFire Cloud and has to be checked through the subscription."
"Management and web filtering can be improved. There should also be better reporting, particularly around web filtering."
"In my opinion, it could be developed to be dependent not only on signatures, but also on patterns and behavior of malware."
"In the future, I would like to see more automation in the reporting."
"Management of the appliance could be greatly improved."
"A better depth of view, being able to see deeper into the management process, is what I'd like to see."
"Technical support could be improved."
"Technical packaging could be improved."
"Customer service and technical support could use some enhancement. On a scale from 1 to 10, it is between six and seven."
"Cybersecurity posture has room for improvement."
"The support from FireEye Network Security is not very good."
"Its documentation can be improved. The main problem that I see with FireEye is the documentation. We are an official distributor and partner of FireEye, and we have access to complete documentation about how to configure or implement this technology, but for customers, very limited documentation is available openly. This is the area in which FireEye should evolve. All documents should be easily available for everyone."
 

Pricing and Cost Advice

Information not available
"It is expensive, a feature more accessible to enterprise class customers, but provides an enhanced possibility that Zero- or near-Zero-day threats may be identified and mitigated. The cost of the product weighed against the potential impact of even one successful crypto malware-type exploit may justify the expense."
"It's not particularly cheap, but it is absolutely worth it."
"For the last three years, the price of Palo Alto in Vietnam has been very high."
"This is an expensive product and the market for Palo Alto in Poland could be much bigger if the pricing was comparable to Fortinet."
"Palo Alto Networks WildFire is quite expensive, and this is what puts people off."
"There are different types of licenses."
"I use Palo Alto Networks WildFire's free version."
"I rate the pricing an eight out of ten since it can be pretty expensive."
"When you purchase FireEye Network Security NX, will need to purchase a megabit per second package. You must know your needs from day one."
"Pricing and licensing are reasonable compared to competitors."
"Its price is a bit high. A small customer cannot buy it. Its licensing is on a yearly basis."
"It's an expensive solution."
"FireEye is comparable to other products, such as HX, but seems expensive. It may cause us to look at other products in the market."
"The user fee is not as high but the maintenance fee is expensive."
"The pricing is a little high."
"Because of what the FireEye product does, it has significantly decreased our mean time in being able to identify and detect malicious threats. The company that I work with is a very mature organization, and we have seen the meantime to analysis decrease by at least tenfold."
report
Use our free recommendation engine to learn which Advanced Threat Protection (ATP) solutions are best for your needs.
885,789 professionals have used our research since 2012.
 

Comparison Review

it_user206346 - PeerSpot reviewer
Security Consultant at Webernetz.net - Network Security Consulting
Mar 11, 2015
Cisco ASA vs. Palo Alto Networks
Cisco ASA vs. Palo Alto: Management Goodies You often have comparisons of both firewalls concerning security components. Of course, a firewall must block attacks, scan for viruses, build VPNs, etc. However, in this post I am discussing the advantages and disadvantages from both vendors concerning…
 

Top Industries

By visitors reading reviews
No data available
Computer Software Company
10%
Financial Services Firm
9%
Manufacturing Company
8%
Comms Service Provider
8%
Financial Services Firm
13%
Comms Service Provider
13%
Manufacturing Company
10%
Government
8%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business37
Midsize Enterprise16
Large Enterprise29
By reviewers
Company SizeCount
Small Business20
Midsize Enterprise8
Large Enterprise19
 

Questions from the Community

What needs improvement with Hillstone Cloud Sandbox?
For implementation, if the system can improve or provide more training, it would be better. Additionally, for scalabi...
What is your primary use case for Hillstone Cloud Sandbox?
Cloud them both is a very feature and it is used to detect unknown threats by analyzing files. Customers typically us...
How does Cisco Firepower NGFW Firewall compare with Palo Alto Networks Wildfire?
The Cisco Firepower NGFW Firewall is a very powerful and very complex piece of anti-viral software. When one conside...
Which is better - Wildfire or FortiGate?
FortiGate has a lot going for it and I consider it to be the best, most user-friendly firewall out there. What I like...
How does Cisco ASA Firewall compare with Palo Alto's WildFire?
When looking to change our ASA Firewall, we looked into Palo Alto’s WildFire. It works especially in preventing advan...
What do you like most about FireEye Network Security?
We wanted to cross-reference that activity with the network traffic just to be sure there was no lateral movement. Wi...
What is your experience regarding pricing and costs for FireEye Network Security?
My experience with pricing, setup cost, and licensing for Trellix Network Detection and Response is very great.
What needs improvement with FireEye Network Security?
I would like to see in Trellix Network Detection and Response more explanation about some details of the threat, and ...
 

Also Known As

No data available
No data available
FireEye Network Security, FireEye
 

Overview

 

Sample Customers

Information Not Available
Novamedia, Nexon Asia Pacific, Lenovo, Samsonite, IOOF, Sinogrid, SanDisk Corporation
FFRDC, Finansbank, Japan Advanced Institute of Science and Technology, Investis, Kelsey-Seybold Clinic, Bank of Thailand, City of Miramar, Citizens National Bank, D-Wave Systems
Find out what your peers are saying about Palo Alto Networks, Microsoft, Proofpoint and others in Advanced Threat Protection (ATP). Updated: April 2026.
885,789 professionals have used our research since 2012.