Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Cortex XDR Discussions
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
About Cortex XDR Discussions

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.

Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.

Discussions

Securing old web server IIS6

Hello,

 

We are solving a case of an IIS6.1 vulnerability on an old Windows 2008 R2 SP1 system. Microsoft no longer has support for Windows update. The customer cannot migrate to the newer system yet.
Would Cortex XDR be able to secure IIS v6.1 web serv

...

Fido by L0 Member
  • 2465 Views
  • 4 replies
  • 0 Likes

Resolved! Correct resolve types for XDR Incidents

Hi All,

 

I tried to find this on PA Knowledge base but unsuccessful. Our team tries not to make exceptions/whitelisting unless absolutely needed. Therefore, I believe teaching Cortex XDR correctly on what is safe and what is not is crucial. 

 

For examp

...

Java Deserialization Protection

Hello,

I am looking to enable the "Java Deserialization Protection" in my exploit profile.

 

I see the default is to leave it disabled.

 

anyone else have this enabled?

any advise or experience working with this?  

Cortex XDR - Whitelist services in properway

Hi All 
I'm new to Cortex XDR Hub and i'm trying to manage somes clients in the right way.

I got this situation:
There are some clients who had used IoBit - DriverBooster for the drivers installation on the machine.
A lot of services about this applicat

...

mgussoni by L0 Member
  • 2625 Views
  • 2 replies
  • 0 Likes

Resolved! Query Network

Hello XDR Community!

 

when the network (see screenshot) will be depprecated, will it be possible to get all the informations under network connections? 

I don't get the same results and not dst_host which would be very usefull. 

 

Here is my Query:

Networ

...

RFeyertag_0-1649460837699.png
RFeyertag by L4 Transporter
  • 2849 Views
  • 4 replies
  • 0 Likes
  • 1876 Posts
  • 78 Subscriptions
This widget could not be displayed.
Top Liked Authors