224k views
3 votes
Cortex XDR supports two types of rules:

a) Static and Dynamic
b) Behavioral and Signature-based
c) Advanced and Basic
d) Network and Endpoint

User Jackyesind
by
6.7k points

1 Answer

3 votes

Final answer:

Cortex XDR supports Behavioral and Signature-based rules for threat detection; behavioral rules focus on anomalies, while signature rules rely on known threat patterns.

Step-by-step explanation:

The question you're asking about pertains to Cortex XDR, which is a security platform that helps organizations to detect and respond to threats. Cortex XDR supports two types of rules, and the correct types are b) Behavioral and Signature-based. Behavioral rules are designed to detect and flag activities that deviate from normal patterns or that match certain behavioral profiles, indicating a potential threat. On the other hand, signature-based rules are based on known threat signatures - identifiable patterns of data that signify malicious activity.

User Bearzyj
by
8.1k points