Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Use Case and Purpose of xdrhealth.exe

Recently i have noticed that there is another folder which has been created under PA Cortex folder as below:

 

"C:\Program Files\Palo Alto Networks\Cortex XDR Health Helper"

 

Inside the Folder there is PE which is xdrhealth.exe, what is the purpose of t

...

Uninstalling Cortex XDR

Hi All,

 

The customer is trying to uninstall the old agent version as they are not reporting to the console and installing the latest version. 

There are 1000+ machines in the infra and they are planning to do this via a centralized tool. 

Please su

...

Please share your useful XQL queries!

Hello!

 

as a beginner with Cortex XDR I asked me, what are interests of others in the query section. 

If you have some interesting and useful queries, please share and describe them in a short way. 

 

Thank you!

 

BR

 

Rob

Cyber1985 by L3 Networker
  • 9193 Views
  • 4 replies
  • 2 Likes

Resolved! Support File Password

We used to be able to access endpoint files and now the zip is asking for a password. Is this the 'admin password' setup under agent settings? 

 

 

eumbach_0-1677098454680.png
eumbach by L3 Networker
  • 3149 Views
  • 1 replies
  • 0 Likes

Resolved! Reboot Date & Time through python script

Hello dear community, 

 

I wan't to check the boot time of server OS, because of windows updates. When they got installed and the system is not booted, it will get to an unstable status. 

 

 

This is a small script, which is reading the fqdn, hostnam

...

RFeyertag by L4 Transporter
  • 1923 Views
  • 3 replies
  • 0 Likes
  • 2078 Posts
  • 82 Subscriptions
Top Solution Authors
Top Liked Authors