This website uses Cookies. By clicking Accept, you agree to the storing of cookies on your device to enhance your community experience. Read our Privacy Policy. Click Preferences to customize your cookie settings.
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all Palo Alto Networks products in one place.
Welcome to the Cortex XDR resource page. Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all Palo Alto Networks products in one place. On this page you can engage in Cortex XDR discussions and review helpful resources dedicated to Cortex XDR.
Hello,
We want to prepare a template with all the installed applications including cortex, to use it in the new installations. How would it be done ... —
Read more
I have an application that needs whitelisting.
Actions Done:
Add to Allow List
Add to Malware Profile, under specific module that triggered alert/in... —
Read more
Hi,
how frequently XDR will push logs to Cortex? We have application it will write logs 400k per sec and log rotation setup like if file size is 50 M... —
Read more
This question was asked during our Customer Success Webinar: Alert Tuning Part 2
Can you provide a quick example of creating a scoping profile and a... —
Read more
04-10-2024
—
April 2024
UPCOMING EVENTS
Alert Tuning Webinar Series
Join us for a Customer Success webinar series, Alert Tuning, starting on
April 24! You may register below for the series in advance.
Register here: Part 1 | Part 2 Symphony 2024: AI and Automation Come see
where security operations are heade... —
Read more
03-18-2024
—
March 2024
UPCOMING EVENTS
Parsing and Correlation Rules Webinar Series
Register now for the last part of the webinar series: Parsing &
Correlation Rules - Improving Application Security with Correlations.
Register here: Part 3 Investigation and Threat Hunting Virtual Workshop
Calling all custome... —
Read more
02-16-2024
—
February 2024
UPCOMING EVENTS
Parsing and Correlation Rules Webinar Series
Register now for Part 2 of the webinar series: Correlation Rules - the
core of detection. You may review the recording for Part 1 in the
On-Demand section below Register here: Part 2 | Part 3 Investigation and
Threat Hunti... —
Read more
01-10-2024
—
January 2024
UPCOMING EVENTS
Parsing and Correlation Rules Webinar Series
Register now for our upcoming webinar series: Parsing and Correlation
Rules - from Fundamentals to Practical Applications, starting on Jan
31st. Register below: Part 1 | Part 2 | Part 3 Investigation and Threat
Hunting Virt... —
Read more
06-05-2024
—
SmartGrouping is a crucial aspect of security operations, allowing to
connect disparate alerts and paint a comprehensive picture of an attack.
It's like piecing together a puzzle, where each alert represents a
piece, and the complete picture revea... —
Read more
05-16-2024
—
Kubernetes has revolutionized the way we deploy and manage applications,
but its complexity and dynamic nature also introduce a new set of
security challenges. Attackers are constantly looking for ways to
exploit vulnerabilities in Kubernetes clus... —
Read more
05-15-2024
—
The Cortex XDR - Remote PsExec with LOLBin command execution alert
playbook enables organizations to automate and expedite alert handling. —
Read more
04-25-2024
—
As cloud computing continues to evolve and becomes the ad-hoc standard
for many of the world’s largest enterprises, we also see attack surfaces
growing and the escalation of cyberthreats targeting the cloud and
traditional enterprise assets. These... —
Read more
Labels:
CDR CloudCortex XDRCortex XSIAMdetection and responseXDRXSIAM 1506
by
emgarciain Community Blogs
04-24-2024
—
This threat brief is frequently updated as new threat intelligence is
available for us to share. The full update log is at the end of this
post and offers the fullest account of all changes made. —
Read more
Labels:
CortexCortex XDRCortex XpanseCortex XSIAMthreat briefThreat Briefs and Assessmentsunit 42unit42 2204
by
emgarciain Community Blogs