Does EDR have BPFDoor Malware Detection?
book
Article ID: 400688
calendar_today
Updated On:
Products
Carbon Black EDR
Issue/Introduction
Does EDR have a feed that covers BPFDoor malware?
Environment
- Carbon Black EDR: All Versions
Resolution
CBKnownIOC feed has a "BPFDoor IOCs" report that can be utilized to alert on this malware variant.
- Log into the EDR console.
- Click the Threat Intel page.
- Enable the CBKnownIOC feed.
Feedback
thumb_up
Yes
thumb_down
No