Cortex XDR
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all Palo Alto Networks products in one place.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Cortex XDR

Welcome to the Cortex XDR resource page. Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all Palo Alto Networks products in one place. On this page you can engage in Cortex XDR discussions and review helpful resources dedicated to Cortex XDR.

Discussions

Need answers? Register or Sign-in to Engage, Share, and Learn.
Author Topic Views Replies
04-24-2024

Best practice for installing agents on Windows "multi-session" Azure AVD?

Which method should be used to install the Cortex XDR agents for the Azure-only Windows 11 multi-session VDI? Since it's both a terminal server, and a... — Read more

posted in Cortex XDR Discussions

39 0
04-24-2024

Cortex XDR agent does not send alerts if an event happen when computer is disconnected from network

Hi everyone, If an event is triggered in a computer without connection, nothing is sent to the console when the computer recovers the connection. ... — Read more

posted in Cortex XDR Discussions

42 0
04-23-2024

Unit 42 Palo Alto integration with SIEM particularly ?

How can we integrate Unit 42 Palo Alto with SIEM particularly Microsoft Sentinel? Regards, Shashank

posted in Cortex XDR Discussions

71 0
04-23-2024

Detect and Restrict Powershell cmdlets

Hello everyone, I would like to know if any of you have struggled with support and technical cases with the need I show below. I would like to know wh... — Read more

posted in Cortex XDR Discussions

132 4
04-23-2024

Automation rule to add IP address to EDL

Is it possible to create an automation script or rule to add a remote IP address to an EDL in Cortex XDR? I'm exploring the best way to handle this. ... — Read more

posted in Cortex XDR Discussions

138 2

Articles

Cortex XDR CS Newsletter April 2024

04-10-2024 — April 2024 UPCOMING EVENTS Alert Tuning Webinar Series Join us for a Customer Success webinar series, Alert Tuning, starting on April 24! You may register below for the series in advance. Register here: Part 1 | Part 2 Symphony 2024: AI and Automation Come see where security operations are heade... — Read more

Labels: Cortex XDR XDR Newsletter
240 published by in Cortex XDR Articles
04-10-2024 edited by

Cortex XDR CS Newsletter March 2024

03-18-2024 — March 2024 UPCOMING EVENTS Parsing and Correlation Rules Webinar Series Register now for the last part of the webinar series: Parsing & Correlation Rules - Improving Application Security with Correlations. Register here: Part 3 Investigation and Threat Hunting Virtual Workshop Calling all custome... — Read more

Labels: Cortex XDR
392 published by in Cortex XDR Articles
03-18-2024 edited by

Cortex XDR CS Newsletter Feb 2024

02-16-2024 — February 2024 UPCOMING EVENTS Parsing and Correlation Rules Webinar Series Register now for Part 2 of the webinar series: Correlation Rules - the core of detection. You may review the recording for Part 1 in the On-Demand section below Register here: Part 2 | Part 3 Investigation and Threat Hunti... — Read more

Labels: Cortex XDR
471 published by in Cortex XDR Articles
02-16-2024 edited by

Cortex XDR Newsletter Jan 2024

01-10-2024 — January 2024 UPCOMING EVENTS Parsing and Correlation Rules Webinar Series Register now for our upcoming webinar series: Parsing and Correlation Rules - from Fundamentals to Practical Applications, starting on Jan 31st. Register below: Part 1 | Part 2 | Part 3 Investigation and Threat Hunting Virt... — Read more

Labels: Cortex XDR
1011 published by in Cortex XDR Articles
01-10-2024 edited by

Cortex XDR CS Newsletter Dec 2023

12-14-2023 — Check out the latest updates, upcoming events, and the newest educational videos! — Read more

Labels: Cortex XDR
739 1 published by in Cortex XDR Articles
12-14-2023 edited by

Blogs

On Credible and Cyber-Contextual Labeling

04-11-2024 — Machine learning (ML) powered methods are rapidly taking over the cybersecurity medium, performing a variety of complex tasks, including detection, prevention, and prioritization. — Read more

Labels: Cortex XDR Incidents labels ML Threat Detection XDR
331 by in Community Blogs

5 Unique Challenges for AI in Cybersecurity

03-25-2024 — AI tends to be understood as one coherent field of study and application where similar solutions apply for all the use cases. The reality is that applying AI in real-world environments with high precision requires specialization in the specific fi... — Read more

Labels: Cortex XDR Cortex XSIAM XDR XSIAM
1707 1 1 by in Community Blogs

Playbook of the Week: Automating Management of XDR Identity Analytics Alerts

03-18-2024 — Identity analytics is a critical cybersecurity tool in combating the challenges posed by compromised user accounts and malicious insiders. Identity threats are pervasive across organizations of all sizes and industries, potentially exposing sensit... — Read more

Labels: Cortex Cortex XDR Cortex XSOAR
1334 1 by in Community Blogs

Playbook of the Week: Streamlining the Management of XDR Incidents

11-17-2023 — The new Cortex XDR Lite - Incident Handling playbook is a new addition to the Palo Alto Networks Cortex XDR - Investigation and Response content pack. Used as the default playbook in this content pack, it streamlines incident response workflows fo... — Read more

Labels: Cortex XDR playbook of the week. Cortex XSOAR
2584 1 by in Community Blogs

See the Future with Cortex XSIAM 2.0 - Watch the On Demand Webinar

11-16-2023 — The AI-Driven SOC is Here! Click to watch the on-demand webinar — Read more

Labels: Cortex XDR Cortex XSIAM Cortex XSOAR Event calendar events
2504 by in Community Blogs

cortex-xdr-release-notes

Videos

Digital Learning Courses

Visit Palo Alto Networks' learning platform, Beacon, for free technical knowledge and educational resources related to all of our products.

Please note: You need to be logged into SSO in order to view this content.