Coro Endpoint Detection and Response (EDR)

Coro Endpoint Detection and Response (EDR) monitors endpoint devices for abnormal or malicious behavior beyond known malware signatures. It uses behavior-based detection and continuous monitoring to identify potential threats such as fileless malware or multi-stage attacks that might bypass traditional antivirus protection.

Coro EDR collects telemetry data from protected devices to detect suspicious activities, process anomalies, and indicators of compromise. Continuous monitoring provides real-time visibility into endpoint activity and enables you to investigate and respond to detected threats efficiently.

Use Coro EDR to:

  • Monitor device activity in real time : Detect and analyze potential threats as they occur.
  • Identify suspicious behavior : Use behavior-based analysis to recognize anomalies and evolving attack techniques.
  • Respond to incidents quickly : Automatically isolate or terminate malicious processes to reduce response time.
  • Protect devices : Prevent malware, ransomware, and other malicious activities from compromising devices.
  • Support investigations : Access detailed telemetry and event logs for threat analysis and reporting.

Accessing Coro EDR

To access Coro EDR:

  1. Sign in to the Coro console .
  2. From the Actionboard , select Control Panel from the top of the EDR dashboard panel:

    EDR Actionboard

  3. Alternatively, from the sidebar, select Control Panel > EDR :

    EDR