You have a Microsoft Sentinel workspace named SW1.
In SW1, you investigate an incident that is associated with the following entities:
* Host
* IP address
* User account
* Malware name
Which entity can be labeled as an indicator of compromise (loC) directly from the incident s page?
Raelene
3 months agoMerilyn
3 months agoAlex
3 months agoIvette
2 months agoTruman
2 months agoBrynn
2 months agoGraciela
2 months agoTish
2 months agoBilly
3 months agoDorthy
3 months agoBilly
3 months agoLetha
3 months agoMargart
3 months agoCheryl
2 months agoLawanda
2 months agoHeike
2 months agoGalen
2 months agoCory
4 months agoBobbye
3 months agoCatina
3 months agoSue
3 months ago