Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Resolved! Agent upgrade failure 5.0.11

Hello, 

 

I have issue to upgrade the affected version 5.0.11 to 5.0.12 on windows server 2008, when I install the msi  rollback to the last version. Is anyone has the same issue.

 

thanks 

elfayafi by L0 Member
  • 1200 Views
  • 2 replies
  • 0 Likes

Detect where a process has been killed

We have a scenario where users are able to kill a certain process to bypass security.

How can we leverage XDR to detect where the specific process name has been killed and, ideally, prevent it?

I thought maybe an IOC or BIOC but the IOC doesn't seem

...

SARowe_NZ by L3 Networker
  • 2104 Views
  • 3 replies
  • 0 Likes

Compliance Process

Hello,

What are the services/features which should be running by Cortex XDR for compliance.

Also, is XDR in high availability(HA) mode? If yes can you suggest where we can see this 

Compliance Processes for Cortex XDR

Hi Team,

 

Our internal team is going to enable the feature “Secure Compliance Check” for end users who are working from home. They have enabled feature for other AV solution. Also we want to add the service for "Cortex XDR". There are multiple servi

...

Gokul_K by L1 Bithead
  • 922 Views
  • 1 replies
  • 0 Likes

Learning Behaviour of Cortex XDR

Hello,

 

We know that cortex XDR takes atleast one month to learn behaviour and then not throw similar alerts.

1. On what basis is this behaviour learning happening upon?

2. Is it based on just the Host or initiator processes that are taking place?

3

...

Cortex XDR quarantined Chrome

Anyone else running into this today?

 

 

Prevention Information:
Prevention date: Wednesday, February 8, 2023
Prevention time: 1:36:40 PM
OS version: 10.0.22621
Component: Hash Control
Cortex XDR code: C0400055
Prevention description: Suspicious executable

...

  • 1768 Posts
  • 78 Subscriptions
Top Liked Authors