Tag: Cortex XQL

Detecting NimScan Execution with Uncoder AI’s Decision Tree for Cortex XQL
Detecting NimScan Execution with Uncoder AI’s Decision Tree for Cortex XQL

Potentially Unwanted Applications (PUAs) like NimScan are increasingly used by adversaries during the reconnaissance phase to map open ports or identify network assets. Detecting their execution early is key—but doing so with hash-based or path-based rules in Cortex XQL can result in logic that’s functional, but hard to interpret quickly. Uncoder AI’s AI-generated Decision Tree […]

Read More