You have a Microsoft Sentinel workspace named SW1.
In SW1, you investigate an incident that is associated with the following entities:
* Host
* IP address
* User account
* Malware name
Which entity can be labeled as an indicator of compromise (loC) directly from the incident s page?
Raelene
6 months agoMerilyn
6 months agoAlex
6 months agoIvette
5 months agoTruman
5 months agoBrynn
5 months agoGraciela
5 months agoTish
5 months agoBilly
6 months agoDorthy
6 months agoBilly
6 months agoLetha
6 months agoMargart
6 months agoCheryl
5 months agoLawanda
5 months agoHeike
5 months agoGalen
5 months agoCory
7 months agoBobbye
6 months agoCatina
7 months agoSue
7 months ago