Skip to main content

Rapid Breach Response

Download With Dependencies

This content Pack helps you collect, investigate, and remediate incidents related to major breaches.

Header Image

This pack has a collection of playbooks to rapidly respond to high profile breaches with existing deployed tools in your enterprise.
The playbooks in this pack can also be used as a template to hunt and block these indicators using additional tools in your environment.
This pack contains the response playbooks for the following breaches:

More playbooks are available in the following packs:

How to enable it?
  • Install the pack.
  • Check if the pack has the steps that are relevant to the tools used in your environment.
  • Create a job that will run this playbook on a periodic basis.

HAFNIUM - Exchange 0-day exploits

Header Image

This pack has a collection of playbooks to rapidly respond to high profile breaches with existing deployed tools in your enterprise.
The playbooks in this pack can also be used as a template to hunt and block these indicators using additional tools in your environment.
This pack contains the response playbooks for the following breaches:

More playbooks are available in the following packs:

How to enable it?
  • Install the pack.
  • Check if the pack has the steps that are relevant to the tools used in your environment.
  • Create a job that will run this playbook on a periodic basis.

HAFNIUM - Exchange 0-day exploits

PUBLISHER

PLATFORMS

Cortex XSOARCortex XSIAM

INFO

CertificationRead more
Supported ByCortex
CreatedDecember 17, 2020
Last ReleaseMarch 22, 2026
Malware
WORKS WITH THE FOLLOWING INTEGRATIONS:

DISCLAIMER
By downloading or using Marketplace content, you agree to the applicable Terms of Use and End User License Agreement. Third-party content is provided by its publisher, and Palo Alto Networks does not warrant, endorse, support, or assume responsibility for content not expressly identified as owned by Palo Alto Networks.