Endpoint (Traps) Discussions
Traps Advanced Endpoint Protection prevents cyber breaches by protecting and enabling users to conduct their daily activities, and automating prevention by autonomously reprogramming itself using threat intelligence gained from WildFire.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Endpoint (Traps) Discussions
Traps Advanced Endpoint Protection prevents cyber breaches by protecting and enabling users to conduct their daily activities, and automating prevention by autonomously reprogramming itself using threat intelligence gained from WildFire.
About Endpoint (Traps) Discussions

Welcome to the Endpoint discussion forum! We encourage you to ask questions, propose solutions, and collaborate on ideas to better secure your endpoints with Traps.

Discussions

Changes on an Endpoint and Duplicates

In Cortex XDR, what changes on an endpoint could cause duplicate endpoint instances to appear? 

Example: Host A appears twice, but one instance is connected, the other instance has a connection lost status and is using a different IP address.

 

Under

...

XQL Query for disconnect CIE server

Hi,

we have used Cloud Identity Engine, which goes under disconnected so that time logs are missed. so we are checking every 10 minutes reporting status. We need to create any rule by XQL query. when the systems are going in disconnected they trigger

...

Traps Version 6.1.3 uninstall problem

Hey Hi

we froget our traps admin pass and traps changed the cortex . Now we dont do neither upgrade nor delete . More A bad news we dont see cortex web dashboard this server 

 

How we can do  upgrade  Traps version 6.1.3 from Cortex 8.1.0

 

can you

...

Integrate Cortex XDR Broker VM with SIEM

Hi All,

 

Client wants to integrate Broker VM server with SIEM and hence configuration to be added to the file "/etc/rsyslog.conf". However, unable to modify this file. Could you all please help me with the solution to the following queries:

1. Is it

...

Rahul9 by L1 Bithead
  • 538 Views
  • 1 replies
  • 0 Likes

Resolved! Hoaxshell not detected by XDR 8.0.1

I'm still a noob, I tried this Hoaxshell on fully updated Windows 10 with Cortex XDR 8.0.1 and I got a shell successfully pop the calc.exe with no alert from XDR. If anybody else tried this I would like to see if you get the same result.

 

https://gi

...

Top Solution Authors
Top Liked Authors