Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

initial profiling?

when you first install the Cortex XDR agent on a new server (and reboot if on Windows), is it immediately 'active' and blocking suspicious processes? I was told that it ran in 'passive' mode for 30-days as it built a profile of "normal" activity for

...

Signature Weak hash

Good day! community,

 

I have a question, what treatment is given to executables that are signed as weak hash?

I understand that cortex XDR will block its execution.

Can it be excepted considering that it is a utility software?

The hash is unaltered and W

...

Resolved! Vulnerability Assessment

Hi experts, 

 

Cortex now has the ability to report vulnerabilities on endpoints, currently limited to Linux endpoints. 

 

Does anyone know if this is going to be extended to Windows and other endpoint types? 

 

Thanks

 

Darren 

BizBo by L2 Linker
  • 3105 Views
  • 1 replies
  • 0 Likes

Resolved! Cortex error message

I keep getting a popup message from Cortex saying "Cortex needs to access your entire harddrive."
Why is this message coming up and how do I get rid of it?
I've tried reinstalling Cortex, updating the Mac OS, restarting my computer, and yet it keeps co

...

Cortex XDR Incidents new field

Hi all,

 

This is my first post here.

I had this idea/suggestion that a new field should be added on incidents page.

 

When we deal with multiple incidents, a necessary field will be needed for quicker decision making for an analyst.

So I wanted to suggest

...

What is an agent protection password?

I use MacOs and Cortex XDR, and I wanna uninstall the Cortex XDR.

Cortex XDR Uninstaller.app said a following sentence:

[ Enter agent protection password ( set by the administrator ) ]

 

I didn't set the agent protection password.

How can I uninstall the

...

nnEiji by L0 Member
  • 3561 Views
  • 2 replies
  • 0 Likes

Host Firewall Logs

Hi Team,

 

We have Host firewall profile enabled to block access to some of the IP address.How can we check these logs, if any users tried to access these blocked ip addresses and at what time they tried so. please advise.

 

 

  • 1986 Posts
  • 78 Subscriptions
Top Liked Authors