<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Hunting for Keywords - How to do that in Cortex xdr Pro? in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/hunting-for-keywords-how-to-do-that-in-cortex-xdr-pro/m-p/546917#M4629</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/190671"&gt;@RFeyertag&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you're wanting to set up detection rules these keywords there are a few ways you could do it.&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You could use a custom script and interface with the API.&amp;nbsp; Although a simpler method might just be to add these as appropriate BIOCs.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Let me know if you like either of these ideas.&lt;/P&gt;</description>
    <pubDate>Thu, 22 Jun 2023 19:51:42 GMT</pubDate>
    <dc:creator>anlynch</dc:creator>
    <dc:date>2023-06-22T19:51:42Z</dc:date>
    <item>
      <title>Hunting for Keywords - How to do that in Cortex xdr Pro?</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/hunting-for-keywords-how-to-do-that-in-cortex-xdr-pro/m-p/546775#M4622</link>
      <description>&lt;P&gt;Hello dear community,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;how could this keywords be integrated into cortex xdr pro?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://mthcht.github.io/ThreatHunting-Keywords/" target="_blank"&gt;https://mthcht.github.io/ThreatHunting-Keywords/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;happy hunting!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BR&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rob&lt;/P&gt;</description>
      <pubDate>Wed, 21 Jun 2023 21:40:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/hunting-for-keywords-how-to-do-that-in-cortex-xdr-pro/m-p/546775#M4622</guid>
      <dc:creator>RFeyertag</dc:creator>
      <dc:date>2023-06-21T21:40:33Z</dc:date>
    </item>
    <item>
      <title>Re: Hunting for Keywords - How to do that in Cortex xdr Pro?</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/hunting-for-keywords-how-to-do-that-in-cortex-xdr-pro/m-p/546917#M4629</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/190671"&gt;@RFeyertag&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you're wanting to set up detection rules these keywords there are a few ways you could do it.&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You could use a custom script and interface with the API.&amp;nbsp; Although a simpler method might just be to add these as appropriate BIOCs.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Let me know if you like either of these ideas.&lt;/P&gt;</description>
      <pubDate>Thu, 22 Jun 2023 19:51:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/hunting-for-keywords-how-to-do-that-in-cortex-xdr-pro/m-p/546917#M4629</guid>
      <dc:creator>anlynch</dc:creator>
      <dc:date>2023-06-22T19:51:42Z</dc:date>
    </item>
    <item>
      <title>Re: Hunting for Keywords - How to do that in Cortex xdr Pro?</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/hunting-for-keywords-how-to-do-that-in-cortex-xdr-pro/m-p/546922#M4632</link>
      <description>&lt;P&gt;Do you think this BIOC creation could be done by the experts from PA/Cortex XDR team?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BR&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Rob&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Jun 2023 21:34:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/hunting-for-keywords-how-to-do-that-in-cortex-xdr-pro/m-p/546922#M4632</guid>
      <dc:creator>RFeyertag</dc:creator>
      <dc:date>2023-06-22T21:34:24Z</dc:date>
    </item>
    <item>
      <title>Re: Hunting for Keywords - How to do that in Cortex xdr Pro?</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/hunting-for-keywords-how-to-do-that-in-cortex-xdr-pro/m-p/546994#M4634</link>
      <description>&lt;P&gt;I believe some of these are currently protected out of the box with Cortex XDR and it's always possible more will be added in future content updates.&amp;nbsp; Unless you've tested and confirmed I'd suggest adding them as BIOC's as each organization has different needs.&lt;/P&gt;</description>
      <pubDate>Fri, 23 Jun 2023 12:19:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/hunting-for-keywords-how-to-do-that-in-cortex-xdr-pro/m-p/546994#M4634</guid>
      <dc:creator>anlynch</dc:creator>
      <dc:date>2023-06-23T12:19:40Z</dc:date>
    </item>
  </channel>
</rss>

