Cortex Cloud Runtime
View generating BIOC or IOC rule
View the BIOC or IOC rule that generated an issue.
You can easily view and edit the BIOC and IOC rules that generated issues directly from the Issues table:
From the Issues page, locate issues with Detection methods: XDR BIOC and XDR IOC.
Right-click the row, and select Manage Issue → View generating rule.
Cortex Cloud opens the BIOC rule that generated the issue in the BIOC Rules page. If the rule has been deleted, an empty table is displayed.
Review the rule, if necessary, right-click to perform available actions.
Last updated
Was this helpful?
