Network Detection and Response Service
FortiNDR and FortiNDR Cloud empower security practitioners to quickly detect suspicious activity and gain a comprehensive understanding of their network. FortiGuard updates both the on-prem and cloud solutions to identify attacks. FortiNDR (on-prem) updates includes weak cipher and vulnerable protocols detection, malicious web campaign lookups, encrypted attacks based on JA3 hashes, network intrusions, IP & DNS based botnet attacks, combined with ML traffic profiling.
For FortNDR Cloud, FortiGuard ATR (Applied Threat Research team) continuously updates detection signatures, providing high-confidence identification of security vulnerabilities and other suspicious activity. By analyzing historical data and applying advanced machine learning models, the backend analysis engines produce rich observations that can be used for hunting or can be promoted into detections using our flexible detection authoring capabilities. As a cloud service, FortiNDR Cloud is continuously updated with the latest threat intelligence data, providing real-time awareness of potential security risks.
Version Updates
FortiNDR Update | 7.6.0 | 2 weeks ago |
FortiNDR Scenario AI DB Update | 1.126 | 12 hours ago |
FortiNDR Text AI Feature DB Update | 1.126 | 12 hours ago |
FortiNDR Text AI Group DB Update | 1.126 | 12 hours ago |
FortiNDR Text AI Learning Feature DB Update | 1.126 | 12 hours ago |
FortiNDR Binary AI Feature DB Update | 1.131 | 3 weeks ago |
FortiNDR Binary AI Group DB Update | 1.131 | 3 weeks ago |
FortiNDR Binary AI Learning Feature DB Update | 1.131 | 3 weeks ago |