<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Does Cortex XDR prevents SolarWinds Orion backdoor attack. in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/does-cortex-xdr-prevents-solarwinds-orion-backdoor-attack/m-p/377684#M455</link>
    <description>&lt;P&gt;I find that as of 17 Dec, there was at least two different BIOC Rules that were added. &amp;nbsp;Are you seeing those in your instances?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;SunBurst domain access&lt;/P&gt;&lt;P&gt;SunBurst Module loaded&lt;/P&gt;</description>
    <pubDate>Mon, 04 Jan 2021 16:49:03 GMT</pubDate>
    <dc:creator>KRisselada</dc:creator>
    <dc:date>2021-01-04T16:49:03Z</dc:date>
    <item>
      <title>Does Cortex XDR prevents SolarWinds Orion backdoor attack.</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/does-cortex-xdr-prevents-solarwinds-orion-backdoor-attack/m-p/377671#M454</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Does Traps Cortex XDR, has prevention for&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;SolarWinds Orion Backdoor Supply Chain Attack (Sunburst/ Solorigate)?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Jan 2021 16:33:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/does-cortex-xdr-prevents-solarwinds-orion-backdoor-attack/m-p/377671#M454</guid>
      <dc:creator>OsamaKhan</dc:creator>
      <dc:date>2021-01-04T16:33:16Z</dc:date>
    </item>
    <item>
      <title>Re: Does Cortex XDR prevents SolarWinds Orion backdoor attack.</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/does-cortex-xdr-prevents-solarwinds-orion-backdoor-attack/m-p/377684#M455</link>
      <description>&lt;P&gt;I find that as of 17 Dec, there was at least two different BIOC Rules that were added. &amp;nbsp;Are you seeing those in your instances?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;SunBurst domain access&lt;/P&gt;&lt;P&gt;SunBurst Module loaded&lt;/P&gt;</description>
      <pubDate>Mon, 04 Jan 2021 16:49:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/does-cortex-xdr-prevents-solarwinds-orion-backdoor-attack/m-p/377684#M455</guid>
      <dc:creator>KRisselada</dc:creator>
      <dc:date>2021-01-04T16:49:03Z</dc:date>
    </item>
    <item>
      <title>Re: Does Cortex XDR prevents SolarWinds Orion backdoor attack.</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/does-cortex-xdr-prevents-solarwinds-orion-backdoor-attack/m-p/377722#M457</link>
      <description>&lt;P&gt;HI&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/116059"&gt;@OsamaKhan&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Palo Alto Networks' Unit 42 published a blog about this recently where it was stated that the Cortex XDR agent offers protection using several modules. From Unit42:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P class="lia-indent-padding-left-30px"&gt;"Cortex XDR customers are protected using the product’s WildFire integration, as well as through the Local Analysis, the Password Theft Protection module, and the Behavioral Threat Protection (BTP) engine. Protections are continually being evaluated, developed, and deployed for Cortex XDR."&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Read more here: &lt;A href="https://unit42.paloaltonetworks.com/fireeye-solarstorm-sunburst/?utm_source=bambu&amp;amp;medium=social&amp;amp;campaign=advocacy&amp;amp;blaid=1043288" target="_self"&gt;https://unit42.paloaltonetworks.com/fireeye-solarstorm-sunburst/?utm_source=bambu&amp;amp;medium=social&amp;amp;campaign=advocacy&amp;amp;blaid=1043288&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Jan 2021 19:03:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/does-cortex-xdr-prevents-solarwinds-orion-backdoor-attack/m-p/377722#M457</guid>
      <dc:creator>gjenkins</dc:creator>
      <dc:date>2021-01-04T19:03:47Z</dc:date>
    </item>
    <item>
      <title>Re: Does Cortex XDR prevents SolarWinds Orion backdoor attack.</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/does-cortex-xdr-prevents-solarwinds-orion-backdoor-attack/m-p/377754#M459</link>
      <description>&lt;P&gt;In addition to the Unit 42 blog, please see the latest information about new agent protection mechanisms, new XQL queries and detection rules at:&amp;nbsp;&lt;A href="https://blog.paloaltonetworks.com/2020/12/cortex-solarstorm-variants-imitators/" target="_blank"&gt;https://blog.paloaltonetworks.com/2020/12/cortex-solarstorm-variants-imitators/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Jan 2021 20:38:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/does-cortex-xdr-prevents-solarwinds-orion-backdoor-attack/m-p/377754#M459</guid>
      <dc:creator>kcross</dc:creator>
      <dc:date>2021-01-04T20:38:54Z</dc:date>
    </item>
  </channel>
</rss>

