Cortex XDR

Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all Palo Alto Networks products in one place.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Cortex XDR

Welcome to the Cortex XDR LIVEcommunity! Explore how-to guides, best practices, and on-demand videos to help you get the most out of Cortex XDR. Have questions or insights to share? Join the conversation in our Discussions forums and connect with our Product Experts.

Stay in the loop—subscribe now to get the latest product updates delivered to you.

Articles

Cortex XDR CS Newsletter June 2024 Contains an image Contains a hyperlink

06-13-2024 — Don't miss our monthly announcements, How-to Videos, and latest blogs in the Customer Success What's New Newsletter! — Read more

Labels: Cortex XDR XDR Newsletter
2215 published by in Cortex XDR Articles
06-13-2024 edited by

Cortex XDR CS Newsletter May 2024 Contains an image Contains a hyperlink

05-09-2024 — Read all the latest and greatest from Cortex XDR Customer Success! — Read more

Labels: Cortex XDR XDR Newsletter
2116 published by in Cortex XDR Articles
05-09-2024 edited by

Cortex XDR CS Newsletter April 2024 Contains an image Contains a hyperlink

04-10-2024 — April 2024 UPCOMING EVENTS Alert Tuning Webinar Series Join us for a Customer Success webinar series, Alert Tuning, starting on April 24! You may register below for the series in advance. Register here: Part 1 | Part 2 Symphony 2024: AI and Automation Come see where security operations are heade... — Read more

Labels: Cortex XDR XDR Newsletter
2125 published by in Cortex XDR Articles
04-10-2024 edited by

Cortex XDR CS Newsletter March 2024 Contains an image Contains a hyperlink

03-18-2024 — March 2024 UPCOMING EVENTS Parsing and Correlation Rules Webinar Series Register now for the last part of the webinar series: Parsing & Correlation Rules - Improving Application Security with Correlations. Register here: Part 3 Investigation and Threat Hunting Virtual Workshop Calling all custome... — Read more

Labels: Cortex XDR
2347 published by in Cortex XDR Articles
03-18-2024 edited by

Cortex XDR CS Newsletter Feb 2024 Contains an image Contains a hyperlink

02-16-2024 — February 2024 UPCOMING EVENTS Parsing and Correlation Rules Webinar Series Register now for Part 2 of the webinar series: Correlation Rules - the core of detection. You may review the recording for Part 1 in the On-Demand section below Register here: Part 2 | Part 3 Investigation and Threat Hunti... — Read more

Labels: Cortex XDR
2448 published by in Cortex XDR Articles
02-16-2024 edited by

Blogs

SecOps Insider-April Edition Contains an image Contains a hyperlink

04-30-2025 — Discover key insights from Sam Rubin, SVP of Consulting and Threat Intelligence at Unit 42, on the critical importance of cyber resilience highlighted in the 2025 Global Incident Response Report. Get recommendations for enhancing incident response... — Read more

Labels: Cortex Cortex XDR Cortex Xpanse Cortex XSIAM Cortex XSOAR Cybersecurity Prisma Cloud SecOps Security Operations Unit 42 XDR Xpanse
682 by in Community Blogs

Threat Brief: CVE-2024-6387 OpenSSH RegreSSHion Vulnerability Contains an image Contains a hyperlink

07-15-2024 — On July 1, 2024, a critical signal handler race condition vulnerability was disclosed in OpenSSH servers (sshd) on glibc-based Linux systems. This vulnerability, called RegreSSHion and tracked as CVE-2024-6387, can result in unauthenticated remote... — Read more

Labels: Cortex XDR Cortex Xpanse Cortex XSIAM Cortex XSOAR CVE-2024-6387 incident response OpenSSH OpenSSH. RegreSSHion RegreSSHion Remote Code Execution security intelligence SOC SSH threat brief Threat Detection Vulnerability
17400 by in Community Blogs

Introducing the New Cortex Shellcode AI Protection: A Precision AI-Driven Module Contains an image Contains a hyperlink

07-15-2024 — In this write-up, we will dive into the realm of shellcode and examine how our AI-driven approach is once again raising the bar when it comes to threat detection and prevention. — Read more

Labels: Cortex Cortex XDR Precision AI shellcode
4681 1 by in Community Blogs

What’s Next in Cortex - New Wave of Innovations in Cortex (June 2024 Release) Contains an image Contains a hyperlink

07-03-2024 — ith the ever evolving threat landscape, security operations teams require a new level of efficiency to protect their organizations. The latest release across Cortex products aims to solve a diverse set of challenges in security operations, all whi... — Read more

Labels: Cortex Cortex XDR Cortex Xpanse Cortex XSIAM Cortex XSOAR Release Notes XDR Xpanse XSIAM XSOAR
5883 by in Community Blogs

Palo Alto Networks Excels in MITRE Managed Services Evaluation Contains an image Contains a hyperlink

06-25-2024 — Palo Alto Networks Unit 42 is a leader in MDR, delivering MTTD twice as fast as the average participant and leveraging the industry’s best XDR technology. — Read more

Labels: Cortex XDR XDR
2277 by in Community Blogs

Digital Learning Courses

Access Palo Alto Networks learning platform to gain technical insights and educational materials across our full suite of products.

Please note: SSO login is necessary to access the content.

Videos

06-26-2024 Cortex XDR Customer Success Webinar: Threat Hunting Methodologies Contains an image Contains a video Contains a hyperlink

05-30-2024 Cortex XDR Customer Success Webinar Series Part 2: Alert Tuning Use Cases Contains an image Contains a video Contains a hyperlink

04-24-2024 Cortex XDR Customer Success Webinar Series Part 1: Alert Tuning Fundamental Contains an image Contains a video Contains a hyperlink

Discussions

Need answers? Register or Sign-in to Engage, Share, and Learn.
Author Topic Views Replies
07-24-2025

Alert Not Stitching (Custom Correlation Rule)

Hello everyone, I have a question about alert stitching in Cortex XSIAM/XDR. I created two correlation rules: Policy - Violation Root Detection (Med... — Read more

posted in Cortex XDR Discussions

90 2
07-24-2025

Cortex XDR Role permissions Contains a hyperlink

What role permissions are needed to view CIE and Access Management section in XDR? I set all permissions to view mostly but the user assigned to the r... — Read more

posted in Cortex XDR Discussions

80 1
07-24-2025

Solved! XDR Blocked me from accessing Server? Contains an image

I was trying to disable Cryptsvc on a Windows Server 2019 VM to try and fix some windows update issues and when I set the service to Disable Cortex XD... — Read more

posted in Cortex XDR Discussions

122 1
07-23-2025

Reminder: Stopping attacks with AI-Powered Endpoint security starts in an hour Contains an attachment Contains a hyperlink

Hi, I registered for an event Stopping attacks with AI-Powered Endpoint security starts in an hour from Palo Alto Networks Events - Palo Alto Networ... — Read more

posted in Cortex XDR Discussions

160 1
07-23-2025

Solved! XQL Query Help

Hi Live Community, I'm working on a query in XQL that can determine which applications in our Windows environment require Java to run. My thought p... — Read more

posted in Cortex XDR Discussions

167 2