Popular Articles

  1. Upgrade Security Validation Virtual Appliances to Rocky Linux 8

    Starting with release 4.14.0.0, uses Rocky Linux 8 as the underlying operating system for virtual appliances. The previous virtual appliance operating system was CentOS 7. As of June 30, 2024, CentOS 7 will be End of Life (EOL) and therefore no...
  2. Update Security Validation Components

    releases software patches, upgrades for Validation Platform system components, and hotfixes. Updates to the Director and Actors are installed by using the System Settings page on the Director. Avoid upgrading a Director or Actor wh...
  3. Attack Surface Management

    Discovery Context Visualizer - November 16, 2022 Why does this asset belong to me? Attack Surface Management (ASM) collection engines perform unique discovery tasks for each type of discoverable asset. These tasks gather information and hel...
  4. Understanding Attack Surface Management Seeds

    What are Seeds? Seeds are entities that uses to start a data collection run. takes each Seed as a starting point and recursively analyzes all other Entities that are related to that Seed, adding each Entity that is encountered to the ...
  5. Administration

    Security Validation Admins use the Director Settings pages to configure the platform. These setting pages include: Actor Settings : Manage Actor Communications Advanced Settings Audit Log Settings Authentication Settings : Manage how us...
  6. Network Communication Requirements

    The platform's management plane is a web service that is fully encrypted using TLS 1.2. No other management communications or ports are required for the management plane to communicate between the Director and Actors. While it is recommended th...
  7. Create a Collection

    Collection configuration is available for paid Attack Surface Management customers. If you would like to upgrade to a more feature-rich account, send a message using our contact form, https://www.mandiant.com/contact-us . A Scan...
  8. Threat Intelligence API v3

    Introduction The Intel APIv3 provides machine-to-machine integration with Mandiant's contextually rich threat intelligence. The Intel APIv3 offers the following: Access to indicators of compromise (IOCs) such as IP addresses, domain names, and ha...
  9. Getting Started with Managed Defense

    As a new customer, there are several recommended steps as you get started.  Start with the basics Review the Mandiant Managed Defense Service Description for more detail on MD alert handling, reporting processes, and definition of terms. ...
  10. Protected Theater Overview

    The Mandiant Security Validation (MSV) and Mandiant Advantage Security Validation (MA-SV) Protected Theater (PT) is an isolated virtual environment that lets you safely test the efficacy of endpoint security controls against destructive behaviors. E...