Carbon Black Cloud: Which categories of data is collected by a sensor?
search cancel

Carbon Black Cloud: Which categories of data is collected by a sensor?

book

Article ID: 284898

calendar_today

Updated On:

Products

Carbon Black Cloud Endpoint Standard (formerly Cb Defense) Carbon Black Cloud Enterprise EDR (formerly Cb Threathunter)

Issue/Introduction

Which data categories are collected by a sensor?

Environment

  • Carbon Black Cloud (formerly PSC) Sensor: All Versions
    • Audit & Remediation (was CB LiveOps)
    • Endpoint Standard (was CB Defense)
    • Enterprise EDR (was CB ThreatHunter)
    • Managed Detection (was CB ThreatSight)

Resolution

A sensor collects relevant data attributes falling under the following categories:
  • Process Creations (selected data)
  • File Modifications (selected data)
  • Registry Modifications (selected data)
  • Cross-process¬†events (selected data)
  • Network connections (all)
  • Binary meta-data (all)