<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: A question from the Malware Pack v2 webinar: EDR alerts in Cortex XSOAR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/a-question-from-the-malware-pack-v2-webinar-edr-alerts/m-p/523507#M1504</link>
    <description>&lt;P&gt;A reply by @ssokolovich &amp;amp;&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/163552"&gt;@bkatzir&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Currently, We are providing and displaying this information through the investigation tab. We are looking to enhance the layout to show more sections and support that from the first tab, but for now, you can go ahead and check the investigation to see more information. From the playbook perspective, we are supporting multiple files (also for the file retrieval path and file detonation).&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 07 Dec 2022 16:04:36 GMT</pubDate>
    <dc:creator>rtsedaka</dc:creator>
    <dc:date>2022-12-07T16:04:36Z</dc:date>
    <item>
      <title>A question from the Malware Pack v2 webinar: EDR alerts</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/a-question-from-the-malware-pack-v2-webinar-edr-alerts/m-p/523506#M1503</link>
      <description>&lt;P&gt;&lt;SPAN&gt;How would you handle an EDR alert that involves more than one file? How does this playbook present this to the user?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Note: This question was asked as part of&lt;/SPAN&gt;&lt;A href="https://live.paloaltonetworks.com/t5/customer-success-webinars/cortex-xsoar-customer-success-webinar-malware-investigation-amp/ta-p/523004" target="_blank"&gt; &lt;SPAN&gt;Cortex XSOAR Customer Success Webinar: Malware Investigation &amp;amp; Response V2&amp;nbsp;&lt;/SPAN&gt;&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Dec 2022 16:03:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/a-question-from-the-malware-pack-v2-webinar-edr-alerts/m-p/523506#M1503</guid>
      <dc:creator>rtsedaka</dc:creator>
      <dc:date>2022-12-07T16:03:14Z</dc:date>
    </item>
    <item>
      <title>Re: A question from the Malware Pack v2 webinar: EDR alerts</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/a-question-from-the-malware-pack-v2-webinar-edr-alerts/m-p/523507#M1504</link>
      <description>&lt;P&gt;A reply by @ssokolovich &amp;amp;&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/163552"&gt;@bkatzir&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Currently, We are providing and displaying this information through the investigation tab. We are looking to enhance the layout to show more sections and support that from the first tab, but for now, you can go ahead and check the investigation to see more information. From the playbook perspective, we are supporting multiple files (also for the file retrieval path and file detonation).&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Dec 2022 16:04:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xsoar-discussions/a-question-from-the-malware-pack-v2-webinar-edr-alerts/m-p/523507#M1504</guid>
      <dc:creator>rtsedaka</dc:creator>
      <dc:date>2022-12-07T16:04:36Z</dc:date>
    </item>
  </channel>
</rss>

