- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
02-01-2023 07:25 AM
Hello,
when an attack occurs, where can I find the entire history of groups that where involved in that attack? Can I see that in Wildifre maybe or is it AutoFocus that is needed for that?
Thanks.
02-08-2023 12:34 AM - edited 02-08-2023 02:55 AM
Hi @jermomiu ,
You can manually go through all the logs but that's quite troublesome and time consuming.
Autofocus can help you with that. It enables you to easily identify critical attacks, so that you can triage effectively and take action without requiring additional IT resources. It correlates data from WildFire, the PAN-DB URL Filtering database, Unit 42, and from third-party feeds.
However, Autofocus is end-of-sale as of September 2022 (but still supported until 2025).
For alternatives to Autofocus you might want to look into Cortex XSOAR TIM or AIOps for NGFW
Autofocus end-of-sale FAQ and Alternatives
Kind regards,
-Kiwi
02-08-2023 12:34 AM - edited 02-08-2023 02:55 AM
Hi @jermomiu ,
You can manually go through all the logs but that's quite troublesome and time consuming.
Autofocus can help you with that. It enables you to easily identify critical attacks, so that you can triage effectively and take action without requiring additional IT resources. It correlates data from WildFire, the PAN-DB URL Filtering database, Unit 42, and from third-party feeds.
However, Autofocus is end-of-sale as of September 2022 (but still supported until 2025).
For alternatives to Autofocus you might want to look into Cortex XSOAR TIM or AIOps for NGFW
Autofocus end-of-sale FAQ and Alternatives
Kind regards,
-Kiwi
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!