THREAT-WATCH logo

THREAT‑WATCH

Glossary

Extended Detection and Response (XDR)

An approach that correlates detection data across endpoints, network, cloud, and email into a single view, rather than siloed tools.

XDR extends the idea behind EDR beyond just endpoints, pulling in signals from network traffic, cloud workloads, identity systems, and email to build a fuller picture of an attack. The goal is to catch multi-stage attacks that wouldn't be obvious from any single data source alone, and to reduce the number of disconnected alerts an analyst has to manually piece together.