The Cb Response 6.2.0 User Guide is written for both the cloud and on-premises editions of Cb Response. It provides information for administrators and for members of Security Operations Center (SOC) and Incident Response (IR) teams who are responsible for setting up and maintaining security for endpoints and networks, as well as assessing potential vulnerabilities and detecting advanced threats. This document includes information about the following topics:
Console user accounts and using the console
Sensors and sensor groups
Process and binary search and analysis
Threat intelligence feeds
Watchlists and alerts
Document Date: November 2017
Updated 12/15/17: In Chapter 2, restored a note regarding browser support in this release.
Updated 1/25/18:In Chapter 5, corrected a command path in the procedure to uninstall sensors on macOS.
Updated 3/16/18: In Chapter 1, restored missing images. In Chapter 2, fixed broken cross-references.