Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 15 Next »

This group includes tags that start with the level edr. These tags identify data generated by Endpoint Detection and Response (EDR) systems.

Company Product / service Valid tags

Carbon Black Endpoint Detection and Response

  • edr.carbonblack.alert +info
  • edr.carbonblack.binary +info
  • edr.carbonblack.feed +info
  • edr.carbonblack.ingress +info
  • edr.carbonblack.watchlist +info

Crowdstrike Endpoint Detection & Response

  • edr.crowdstrike.cannon +info

  • edr.crowdstrike.cannon.asepvalueupdate +info

  • edr.crowdstrike.cannon.channelversionrequired +info

  • edr.crowdstrike.cannon.dnsrequest +info

  • edr.crowdstrike.cannon.endofprocess +info

  • edr.crowdstrike.cannon.neighborlistip4 +info

  • edr.crowdstrike.cannon.networkconnectip4 +info

  • edr.crowdstrike.cannon.other +info

  • edr.crowdstrike.cannon.processrollup2 +info

  • edr.crowdstrike.cannon.processrollup2stats +info

  • edr.crowdstrike.cannon.sensorheartbeat +info

  • edr.crowdstrike.cannon.syntheticprocessrollup2 +info

Cylance PROTECT 

Fireeye Endpoint Detection & Response

Minerva Labs

Minerva Labs anti-evasion platform

ObserveIT Insider Threat Detection

  • edr.observeit.events

Palo Alto Cortex XDR

  • edr.paloalto.cortex_xdr +info
  • edr.paloalto.cortex_xdr_agent +info

image2021-6-15_11-33-45.png

Symantec Endpoint Detection & Response

  • edr.symantec.events
  • No labels