Reviewing and searching for alerts generated by the Behavioral Detection Engine
You can use the Alerts view in the Endpoint Defense console to review and investigate the alerts generated by the Behavioral Detection Engine, and you can use the advanced query to search for specific detections.
|
Feature |
Details |
|---|---|
|
Alerts |
You can use the Alerts view to conduct detailed investigations into the alerts generated by the Behavioural Detection Engine:
|
|
Focus > Advanced Query |
You can use the advanced query to build and run EQL queries to hunt for specific detections:
|