You are viewing an old version of this page. View the current version.
Compare with Current
View Page History
« Previous
Version 15
Next »
This group includes tags that start with the level edr
. These tags identify data generated by Endpoint Detection and Response (EDR) systems.
Company | Product / service | Valid tags |
---|
| Carbon Black Endpoint Detection and Response | edr.carbonblack.alert +infoedr.carbonblack.binary +infoedr.carbonblack.feed +infoedr.carbonblack.ingress +infoedr.carbonblack.watchlist +info
|
| Crowdstrike Endpoint Detection & Response | edr.crowdstrike.cannon +info
edr.crowdstrike.cannon.asepvalueupdate +info
edr.crowdstrike.cannon.channelversionrequired +info
edr.crowdstrike.cannon.dnsrequest +info
edr.crowdstrike.cannon.endofprocess +info
edr.crowdstrike.cannon.neighborlistip4 +info
edr.crowdstrike.cannon.networkconnectip4 +info
edr.crowdstrike.cannon.other +info
edr.crowdstrike.cannon.processrollup2 +info
edr.crowdstrike.cannon.processrollup2stats +info
edr.crowdstrike.cannon.sensorheartbeat +info
edr.crowdstrike.cannon.syntheticprocessrollup2 +info
|
| Cylance PROTECT | |
| Fireeye Endpoint Detection & Response | |
| Minerva Labs anti-evasion platform | |
| ObserveIT Insider Threat Detection | |
| Palo Alto Cortex XDR | edr.paloalto.cortex_xdr +infoedr.paloalto.cortex_xdr_agent +info
|
| Symantec Endpoint Detection & Response | |