Athena Releases PathFinder With Predictive Network Path Analysis

Athena Security, makers of the advanced network security analytics solution, Athena FirePAC, recently announced a new product that extends the core analysis from a device-centric view to a network-based view. The Athena PathFinder product is a comprehensive and powerful tool that maps the relationships between firewall configurations, critical assets and the network infrastructure. It shows what services are available across the network and what paths they will traverse across multiple devices. Using the PathFinder, network security engineers can perform predictive topology path analysis to conduct more effective firewall troubleshooting and to find the optimal places to make rule changes.

The PathFinder imports configurations from network security devices such as firewalls, routers and switches to create an offline model of access policy across the network. PathFinder automatically determines the connections between devices, and the resulting topology diagram allows users to initiate queries from any source to any destination. The model constructed by PathFinder predicts what is reachable and how configuration settings will control traffic.

"Firewall configurations cause extremely complex rule and device interactions that are not easy to troubleshoot by simply injecting data packets in the network,” said David Hurst, CTO of Athena Security. “The beauty of an offline model is that a single query can determine all possible paths and devices where data can travel. It will also identify precisely which firewalls and which rules should be changed to impact traffic behavior."

PathFinder is based on patented technology developed by Athena Security and was evolved to offer security operations groups a focused, clean and highly interactive user experience. It is a handy tool that can be downloaded and installed in minutes.

Additional new features include:

  • Quick creation of topology diagram by one-step connections to adjacent nodes in the diagram. This includes an ability to find adjacent nodes in the inventory that are not in the diagram and place and connect them in the diagram.
  • Ability to specify the source, destination and service parameters for a node to node query.
  • Ability to save topology diagram in different image formats like GIF, BMP, JPEG, JPG and SVG etc. This allows users to repurpose, print and share the diagrams with team members.
  • A new Packet Tracer option provides the ability to inject a virtual packet, specified as source, destination, and service, into a selected subnet in the topology. PathFinder analyzes the routes from the selected subnet to determine where the packet should end up and then identifies how ACLs and NATs along the path would affect the packet. The specific devices allowing or denying the packet along the path are identified and highlighted on the diagram. You can drill down into the device configurations to see precisely the effect of each rule acting on the packet.

Athena’s PathFinder is available immediately. Licensing is based on the number of devices selected for topology modeling. The product currently supports the following:

  • Cisco Security Appliances: PIX, ASA(up to version 8.3), FWSM.
  • Cisco IOS routers: Version 12.0 to 12.14, excluding X* Series.
  • Juniper firewalls: Netscreen, SSG, ISG.
  • Check Point products: SmartCenter NG/NGX, Security Management R70
  • Check Point platforms: SecurePlatform, Check Point IPSO (formerly Nokia), Crossbeam, Linux, Solaris.

Support for additional device types and vendor platforms are released on a frequently updated basis.

Featured

  • Security Today Announces 2025 CyberSecured Award Winners

    Security Today is pleased to announce the 2025 CyberSecured Awards winners. Sixteen companies are being recognized this year for their network products and other cybersecurity initiatives that secure our world today. Read Now

  • Empowering and Securing a Mobile Workforce

    What happens when technology lets you work anywhere – but exposes you to security threats everywhere? This is the reality of modern work. No longer tethered to desks, work happens everywhere – in the office, from home, on the road, and in countless locations in between. Read Now

  • TSA Introduces New $45 Fee Option for Travelers Without REAL ID Starting February 1

    The Transportation Security Administration (TSA) announced today that it will refer all passengers who do not present an acceptable form of ID and still want to fly an option to pay a $45 fee to use a modernized alternative identity verification system, TSA Confirm.ID, to establish identity at security checkpoints beginning on February 1, 2026. Read Now

  • The Evolution of IP Camera Intelligence

    As the 30th anniversary of the IP camera approaches in 2026, it is worth reflecting on how far we have come. The first network camera, launched in 1996, delivered one frame every 17 seconds—not impressive by today’s standards, but groundbreaking at the time. It did something that no analog system could: transmit video over a standard IP network. Read Now

  • From Surveillance to Intelligence

    Years ago, it would have been significantly more expensive to run an analytic like that — requiring a custom-built solution with burdensome infrastructure demands — but modern edge devices have made it accessible to everyone. It also saves time, which is a critical factor if a missing child is involved. Video compression technology has played a critical role as well. Over the years, significant advancements have been made in video coding standards — including H.263, MPEG formats, and H.264—alongside compression optimization technologies developed by IP video manufacturers to improve efficiency without sacrificing quality. The open-source AV1 codec developed by the Alliance for Open Media—a consortium including Google, Netflix, Microsoft, Amazon and others — is already the preferred decoder for cloud-based applications, and is quickly becoming the standard for video compression of all types. Read Now

New Products

  • HD2055 Modular Barricade

    Delta Scientific’s electric HD2055 modular shallow foundation barricade is tested to ASTM M50/P1 with negative penetration from the vehicle upon impact. With a shallow foundation of only 24 inches, the HD2055 can be installed without worrying about buried power lines and other below grade obstructions. The modular make-up of the barrier also allows you to cover wider roadways by adding additional modules to the system. The HD2055 boasts an Emergency Fast Operation of 1.5 seconds giving the guard ample time to deploy under a high threat situation.

  • Camden CV-7600 High Security Card Readers

    Camden CV-7600 High Security Card Readers

    Camden Door Controls has relaunched its CV-7600 card readers in response to growing market demand for a more secure alternative to standard proximity credentials that can be easily cloned. CV-7600 readers support MIFARE DESFire EV1 & EV2 encryption technology credentials, making them virtually clone-proof and highly secure.

  • FEP GameChanger

    FEP GameChanger

    Paige Datacom Solutions Introduces Important and Innovative Cabling Products GameChanger Cable, a proven and patented solution that significantly exceeds the reach of traditional category cable will now have a FEP/FEP construction.