Endpoint Security

cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Cisco CyberSecurity

Forum Posts

We are currently looking to replace our current anti-virus solution (AVG) with a new product.  I have been looking into the new Advance AV products, actually have CrowdStrike Falcon running on some test devices, but wanted to look into AMP since we a...

dvitko by Level 1
  • 5183 Views
  • 3 replies
  • 0 Helpful votes

We have Cisco Firepower with and AMP Malware licence, we also have a SIEM box from a company called LogRythm, we have discovered that we can have access to the Cisco AMP threat grid directly from the SIEM box as long as we have a current AMP license ...

Hi Teamis it possible to integrate CISCO AMP (all modules, i.e Endpoint, network, ESA,WSA and Threatgrid) to IBM QRadar SIEM solution.In other words, is it possible for me to view from QRadar all the malicious file or flow activities that has been de...

Hi Team, We have been provided a list of features that can be supported by endpoint AMP, can anyone point to a reference link for the supported features. These are as mentioned below: Is the product capable of automatically collect and store forens...

ymadheka by Level 4
  • 1943 Views
  • 1 replies
  • 0 Helpful votes

We have a developer who uses a custom app that AMP triggers on. At first we whitelisted the app. That didn't work however as the exe is constantly morphing (probably why amp hates it). So eventually we added his system to the Audit group. This works ...

lee.ross by Level 1
  • 3668 Views
  • 4 replies
  • 0 Helpful votes

Hi! I configure file policy in firepower managment center to store Office documents. In Captured Files have .docx file. The file is downloaded, but .docx named NEW_OFFICE_22752c812513cf545a366a0fbba2463fa889df1cd9ba65ded202861f0d8ac1bd.zip and unpack...

A customer of mine claims that the IP address of 184.168.221.28 (which is associated with the ipadr.co domain) has made it into the Source Fire black list. I'm wondering if anyone here knows how IP addresses are added to this black list and what I mi...

delynn by Level 1
  • 2503 Views
  • 3 replies
  • 0 Helpful votes
Top Solution Authors