Release Notes Live Response (Version 1.0.1.0001)
Thank you for choosing Tanium. These notes are intended to document changes between releases of the Tanium Incident Response module.
Tanium Live Response 1.0.1
Release Date September 19, 2017
Live Response Official Version 1.0.1.0001
Overview
Live Response (version 1.0.1) is released to limited availability to provide a more extensible and customizable method for retrieving forensically relevant data and files. By default it collects correlated process, module, handle and hash information as well as the $MFT and Windows event logs. Collected files can be customized using the JSON-formatted configuration file. Custom triage or data collection scripts can also be added to the package and configuration file. Live Response is available to any customers holding a license for Tanium Threat Response or the Tanium Incident Response module.
Packages
- Live Response - Windows
- Live Response currently only supports versions of Windows running PowerShell 2.0 or greater.