<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Tactics Technique and Procedure (TTP) for Noob Threat Hunting in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/tactics-technique-and-procedure-ttp-for-noob-threat-hunting/m-p/349562#M86871</link>
    <description>&lt;P&gt;Welcome to PANW!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So I think the best place, is to have you look/configure your FW for some best practices.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/threat-prevention/best-practices-for-securing-your-network-from-layer-4-and-layer-7-evasions.html" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/threat-prevention/best-practices-for-securing-your-network-from-layer-4-and-layer-7-evasions.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This is a good place to start.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This is another&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/threat-prevention.html" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/threat-prevention.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 15 Sep 2020 23:45:20 GMT</pubDate>
    <dc:creator>S.Cantwell</dc:creator>
    <dc:date>2020-09-15T23:45:20Z</dc:date>
    <item>
      <title>Tactics Technique and Procedure (TTP) for Noob Threat Hunting</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tactics-technique-and-procedure-ttp-for-noob-threat-hunting/m-p/349520#M86867</link>
      <description>&lt;P&gt;I am new to Palo Alto NGFW and Cortex, does anybody have&amp;nbsp; any special TTP they want to share to noobs like me?&lt;/P&gt;</description>
      <pubDate>Tue, 15 Sep 2020 21:44:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tactics-technique-and-procedure-ttp-for-noob-threat-hunting/m-p/349520#M86867</guid>
      <dc:creator>Retired Member</dc:creator>
      <dc:date>2020-09-15T21:44:03Z</dc:date>
    </item>
    <item>
      <title>Re: Tactics Technique and Procedure (TTP) for Noob Threat Hunting</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tactics-technique-and-procedure-ttp-for-noob-threat-hunting/m-p/349562#M86871</link>
      <description>&lt;P&gt;Welcome to PANW!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;So I think the best place, is to have you look/configure your FW for some best practices.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/threat-prevention/best-practices-for-securing-your-network-from-layer-4-and-layer-7-evasions.html" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/threat-prevention/best-practices-for-securing-your-network-from-layer-4-and-layer-7-evasions.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This is a good place to start.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This is another&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/threat-prevention.html" target="_blank"&gt;https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/threat-prevention.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Sep 2020 23:45:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tactics-technique-and-procedure-ttp-for-noob-threat-hunting/m-p/349562#M86871</guid>
      <dc:creator>S.Cantwell</dc:creator>
      <dc:date>2020-09-15T23:45:20Z</dc:date>
    </item>
    <item>
      <title>Re: Tactics Technique and Procedure (TTP) for Noob Threat Hunting</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tactics-technique-and-procedure-ttp-for-noob-threat-hunting/m-p/350259#M86948</link>
      <description>&lt;P&gt;I a spare PA220 that I can use to test this configuration before putting on Panorama.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you!&lt;/P&gt;</description>
      <pubDate>Fri, 18 Sep 2020 00:35:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tactics-technique-and-procedure-ttp-for-noob-threat-hunting/m-p/350259#M86948</guid>
      <dc:creator>Retired Member</dc:creator>
      <dc:date>2020-09-18T00:35:38Z</dc:date>
    </item>
    <item>
      <title>Re: Tactics Technique and Procedure (TTP) for Noob Threat Hunting</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/tactics-technique-and-procedure-ttp-for-noob-threat-hunting/m-p/350260#M86949</link>
      <description>&lt;P&gt;Here is a very good video on how Cortex XDR is used as TTP.&lt;/P&gt;&lt;P&gt;Optimize SecOps Investigation and Response to Stop Sophisticated Attacks with Cortex XDR and XSOAR&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.youtube.com/watch?v=3ZAeF2MiSwY" target="_blank" rel="noopener"&gt;https://www.youtube.com/watch?v=3ZAeF2MiSwY&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 18 Sep 2020 00:48:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/tactics-technique-and-procedure-ttp-for-noob-threat-hunting/m-p/350260#M86949</guid>
      <dc:creator>Retired Member</dc:creator>
      <dc:date>2020-09-18T00:48:29Z</dc:date>
    </item>
  </channel>
</rss>

