<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://stage-community-sophos-comv11.telligenthosting.net/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Sophos Community</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m</link><description>Endpoint EAP</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><lastBuildDate>Mon, 11 Oct 2021 13:09:18 GMT</lastBuildDate><atom:link rel="self" type="application/rss+xml" href="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m" /><item><title>XDR - Detection and Investigation EAP Known Issues</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9518</link><pubDate>Mon, 11 Oct 2021 13:09:18 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:c7f0d675-45a7-48c4-81bc-744514f8c023</guid><dc:creator>Kevin Kingston</dc:creator><slash:comments>6</slash:comments><description>&lt;p&gt;This document lists known issues for the XDR - Detection and Investigation Early Access Program&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9518/download" length="98759" type="application/pdf" /></item><item><title>SS Polyfilms Private Limited</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9494</link><pubDate>Sat, 20 Jun 2020 07:07:11 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:11c70f28-ce69-471e-ac1c-df05597cf37b</guid><dc:creator>Sophos User1819</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Dear Sir,&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;We are facing some erros from your sophos software. problems detail Attached .&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9494/download" length="29000" type="image/png" /></item><item><title>Live Session Beta it is not responding</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9493</link><pubDate>Wed, 27 May 2020 16:27:16 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:81f4ac25-0ac1-434c-ba62-5061ecfcc503</guid><dc:creator>Alex Paredes</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Im trying to connect a device through Live Session Beta and i had a following error The session has expired. I trying several times since yesterday but i had the same error. My central sophos it is working well and fine just this issue with Live Session Beta&lt;/p&gt;
&lt;p&gt;Regards&lt;/p&gt;
&lt;p&gt;Alex Paredes S&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9493/download" length="254304" type="image/jpeg" /></item><item><title>Live Discover Schema</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9491</link><pubDate>Wed, 08 Apr 2020 18:11:47 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:0a6b835e-e68b-4463-8eb7-50e97fb97a56</guid><dc:creator>Karl_Ackerman</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;UPDATED May 26 2020&lt;/p&gt;
&lt;p&gt;The schema for Live Discover will vary by operating systems.&lt;/p&gt;
&lt;p&gt;See the online osquery schema &lt;a href="https://osquery.io/schema/4.2.0"&gt;https://osquery.io/schema/4.2.0&lt;/a&gt;&amp;nbsp;for more information on the default schema.&lt;/p&gt;
&lt;p&gt;On Windows and Windows Server Sophos has extended the base OSQuery schema to provide access to the 90 days of information in the Sophos Data Recorder. This document covers the detailed Sophos Extension schema.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9491/download" length="165930" type="application/pdf" /></item><item><title>4min video on query building</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9488</link><pubDate>Mon, 06 Apr 2020 10:27:45 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:e9f6f19b-41a3-4528-9323-7f6b80bc8b7f</guid><dc:creator>Karl_Ackerman</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Accelerated video on the Iranian IOC Threat Hunt query creatioin&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9488/download" length="-1" type="application/octet-stream" /></item><item><title>Building an advanced query 20 min</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9487</link><pubDate>Mon, 06 Apr 2020 10:25:58 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:4cb1b5e6-1b2b-45c2-ab18-544f8e4129a1</guid><dc:creator>Karl_Ackerman</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;In this video we build a threat hunting query to search for Indicators of Compromise for Iranian threat actors.&amp;nbsp; The query creates a table then search across IP, Name, Domain, Port and Hash tables to find the threats.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9487/download" length="-1" type="application/octet-stream" /></item><item><title>Live Response</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9486</link><pubDate>Tue, 31 Mar 2020 13:29:38 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:9022ca63-1fe6-455f-950b-b762f5505b2a</guid><dc:creator>Karl_Ackerman</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Using Live Response and Live Discover to identify devices with RDP ports open and perform remediation them directly from Sophos Central&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9486/download" length="-1" type="application/octet-stream" /></item><item><title>Live Discover Tested with Caldera</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9485</link><pubDate>Tue, 31 Mar 2020 13:28:42 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:3eff9ea3-7300-4593-8650-8ff138fb75b2</guid><dc:creator>Karl_Ackerman</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Using Caldera to determine if Live Discover can successfully observer activity and be used to craft a detection query to detect this type of activity and map it to the MITRE ATT&amp;amp;CK framework.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9485/download" length="-1" type="application/octet-stream" /></item><item><title>Forensics Investigation with Live Discover</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9484</link><pubDate>Tue, 31 Mar 2020 13:27:25 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:deffef9c-1636-4f8b-af75-f0201d75669e</guid><dc:creator>Karl_Ackerman</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;How to investigate the activity observed for deeper forensics using Live Discover&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9484/download" length="-1" type="application/octet-stream" /></item><item><title>Threat Hunting with Live Discover</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9483</link><pubDate>Tue, 31 Mar 2020 13:26:44 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:41068282-be02-4727-a739-9a6ad71e61e7</guid><dc:creator>Karl_Ackerman</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;How to perform hunting operations with Live Discover&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9483/download" length="-1" type="application/octet-stream" /></item><item><title>Live Discover IT operations</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9482</link><pubDate>Tue, 31 Mar 2020 13:26:02 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:71b6af62-2479-4da0-8bd1-41771c14dc3d</guid><dc:creator>Karl_Ackerman</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Watch a brief video on how to use Live Discover for IT Operations&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9482/download" length="-1" type="application/octet-stream" /></item><item><title>Device Selection for Live Discover</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9481</link><pubDate>Tue, 31 Mar 2020 13:25:10 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:1dc6d7be-a7b0-47f0-ae25-a1284167e82e</guid><dc:creator>Karl_Ackerman</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;See a brief demo on device selection and filtering for Live Discover&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9481/download" length="-1" type="application/octet-stream" /></item><item><title>Joining the Early Access Program</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9480</link><pubDate>Tue, 31 Mar 2020 13:24:14 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:20791006-b5e1-4ed7-84de-18c8aa8b85f1</guid><dc:creator>Karl_Ackerman</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Instructions on how to Join the Early Access Program for EDR 3.0 with Live Discover and Live Response&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9480/download" length="-1" type="application/octet-stream" /></item><item><title>Overview of Live Discover and Live Response</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9479</link><pubDate>Tue, 31 Mar 2020 13:23:14 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:caf7f7f3-71c6-4cbe-a015-0b4eebc196a3</guid><dc:creator>Karl_Ackerman</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Watch a 5 min presentation on the new Live Discover and Live Response features&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9479/download" length="-1" type="application/octet-stream" /></item><item><title>Enhanced Protection - Known Issues List 20 January 2020</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9478</link><pubDate>Mon, 20 Jan 2020 10:15:13 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:288c8034-60b3-4dcb-96f4-f51d679bdd46</guid><dc:creator>Vincent Vanbiervliet</dc:creator><slash:comments>0</slash:comments><description>&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9478/download" length="449156" type="application/pdf" /></item><item><title>Known Issues List for AMSI and IPS EAP - 2019-12-03.pdf</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9477</link><pubDate>Tue, 03 Dec 2019 15:01:55 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:7024e5bf-b249-49d5-bb63-b221ff92af8b</guid><dc:creator>Vincent Vanbiervliet</dc:creator><slash:comments>0</slash:comments><description>&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9477/download" length="445724" type="application/pdf" /></item><item><title>How to Join the Early Access Program</title><link>https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9474</link><pubDate>Wed, 09 Oct 2019 10:28:39 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:28ebdabb-b134-44f5-9c75-fd4afd7927fe</guid><dc:creator>Vincent Vanbiervliet</dc:creator><slash:comments>1</slash:comments><description>&lt;p&gt;This slide deck provides details on the &amp;#39;New Endpoint/Server Protection and EDR Features&amp;#39; early access programs and describes how to enroll into the early access programs.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description><enclosure url="https://stage-community-sophos-comv11.telligenthosting.net/intercept-x-endpoint/early-access-program/m/files/9474/download" length="1149374" type="application/vnd.openxmlformats-officedocument.presentationml.presentation" /></item></channel></rss>