Cortex XDR
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all Palo Alto Networks products in one place.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Cortex XDR

Welcome to the Cortex XDR resource page. Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all Palo Alto Networks products in one place. On this page you can engage in Cortex XDR discussions and review helpful resources dedicated to Cortex XDR.

Discussions

Need answers? Register or Sign-in to Engage, Share, and Learn.
Author Topic Views Replies
11-22-2024

Vuln drivers - scan

Hi, Anyone know if is possible to retrieve the devices with drivers with vulnerabilities?I've a lot devices with Cortex XDR and my objective is forc... — Read more

posted in Cortex XDR Discussions

52 0
11-21-2024

XDR Policy Baseline/Comparison Tool

Is there a method/tool available that anyone is aware of to better manage multiple policies or quickly/easily identify those policies which may have/n... — Read more

posted in Cortex XDR Discussions

74 1
11-19-2024

Cortex XDR on Citrix non-persistent multi-user server

Hi community Quite often we have issues with cortex xdr on citrix infrastructure. Currently meinly with windows server 2022 we are in the situation wh... — Read more

posted in Cortex XDR Discussions

195 4
11-19-2024

XDR AGENT ALL DEVICES

Hi everyone, Does anyone know of or have an automation to periodically check if all devices in the company have the Cortex XDR Agent installed I cu... — Read more

posted in Cortex XDR Discussions

199 2
11-19-2024

BIOC that will close web browser while opening certain websites

I want to create a BIOC rule that will close web browser (ex. chrome) when I open certain websites (ex. facebook.com and instagram.com). I'm using Net... — Read more

posted in Cortex XDR Discussions

145 1

Articles

Cortex XDR CS Newsletter June 2024

06-13-2024 — Don't miss our monthly announcements, How-to Videos, and latest blogs in the Customer Success What's New Newsletter! — Read more

Labels: Cortex XDR XDR Newsletter
1376 published by in Cortex XDR Articles
06-13-2024 edited by

Cortex XDR CS Newsletter May 2024

05-09-2024 — Read all the latest and greatest from Cortex XDR Customer Success! — Read more

Labels: Cortex XDR XDR Newsletter
1434 published by in Cortex XDR Articles
05-09-2024 edited by

Cortex XDR CS Newsletter April 2024

04-10-2024 — April 2024 UPCOMING EVENTS Alert Tuning Webinar Series Join us for a Customer Success webinar series, Alert Tuning, starting on April 24! You may register below for the series in advance. Register here: Part 1 | Part 2 Symphony 2024: AI and Automation Come see where security operations are heade... — Read more

Labels: Cortex XDR XDR Newsletter
1552 published by in Cortex XDR Articles
04-10-2024 edited by

Cortex XDR CS Newsletter March 2024

03-18-2024 — March 2024 UPCOMING EVENTS Parsing and Correlation Rules Webinar Series Register now for the last part of the webinar series: Parsing & Correlation Rules - Improving Application Security with Correlations. Register here: Part 3 Investigation and Threat Hunting Virtual Workshop Calling all custome... — Read more

Labels: Cortex XDR
1732 published by in Cortex XDR Articles
03-18-2024 edited by

Cortex XDR CS Newsletter Feb 2024

02-16-2024 — February 2024 UPCOMING EVENTS Parsing and Correlation Rules Webinar Series Register now for Part 2 of the webinar series: Correlation Rules - the core of detection. You may review the recording for Part 1 in the On-Demand section below Register here: Part 2 | Part 3 Investigation and Threat Hunti... — Read more

Labels: Cortex XDR
1813 published by in Cortex XDR Articles
02-16-2024 edited by

Blogs

Threat Brief: CVE-2024-6387 OpenSSH RegreSSHion Vulnerability

07-15-2024 — On July 1, 2024, a critical signal handler race condition vulnerability was disclosed in OpenSSH servers (sshd) on glibc-based Linux systems. This vulnerability, called RegreSSHion and tracked as CVE-2024-6387, can result in unauthenticated remote... — Read more

Labels: Cortex XDR Cortex Xpanse Cortex XSIAM Cortex XSOAR CVE-2024-6387 OpenSSH RegreSSHion Remote Code Execution SSH threat brief
8696 by in Community Blogs

Introducing the New Cortex Shellcode AI Protection: A Precision AI-Driven Module

07-15-2024 — In this write-up, we will dive into the realm of shellcode and examine how our AI-driven approach is once again raising the bar when it comes to threat detection and prevention. — Read more

Labels: Cortex Cortex XDR Precision AI shellcode
2138 1 by in Community Blogs

What’s Next in Cortex - New Wave of Innovations in Cortex (June 2024 Release)

07-03-2024 — ith the ever evolving threat landscape, security operations teams require a new level of efficiency to protect their organizations. The latest release across Cortex products aims to solve a diverse set of challenges in security operations, all whi... — Read more

Labels: Cortex XDR Cortex Xpanse Cortex XSIAM Cortex XSOAR XDR Xpanse XSIAM XSOAR
3373 by in Community Blogs

Palo Alto Networks Excels in MITRE Managed Services Evaluation

06-25-2024 — Palo Alto Networks Unit 42 is a leader in MDR, delivering MTTD twice as fast as the average participant and leveraging the industry’s best XDR technology. — Read more

Labels: Cortex XDR XDR
1161 by in Community Blogs

Forrester Names Palo Alto Networks a Leader in XDR

06-11-2024 — Today, we are excited to announce that Cortex XDR has been recognized as a Leader in The Forrester Wave™: Extended Detection and Response (XDR) Platforms, Q2 2024. — Read more

Labels: Cortex XDR XDR
1878 2 by in Community Blogs

cortex-xdr-release-notes

Videos

Digital Learning Courses

Visit Palo Alto Networks' learning platform, Beacon, for free technical knowledge and educational resources related to all of our products.

Please note: You need to be logged into SSO in order to view this content.