Update to include Cisco Secure Endpoint (credit @logdumpster). Also, removed CrowdStrike from the supporting list as blocking its service process is insufficient. Require further testing

This commit is contained in:
netero1010
2024-01-02 18:03:47 +08:00
parent 7988dae6bf
commit 2c3a1c5e09
+1
View File
@@ -21,6 +21,7 @@ The tool currently supports the following EDRs:
- Tanium
- Palo Alto Networks Traps/Cortex XDR
- FortiEDR
- Cisco Secure Endpoint (Formerly Cisco AMP)
**As I do not have access to all these EDRs for testing, please do not hesitate to correct me if the listed processes (edrProcess in `EDRSilencer.c`) prove insufficient in blocking all alert, detection, or event forward traffic.**