You have a Microsoft Sentinel workspace named SW1.
In SW1, you investigate an incident that is associated with the following entities:
* Host
* IP address
* User account
* Malware name
Which entity can be labeled as an indicator of compromise (loC) directly from the incident s page?
Raelene
5 months agoMerilyn
5 months agoAlex
5 months agoIvette
4 months agoTruman
4 months agoBrynn
4 months agoGraciela
4 months agoTish
4 months agoBilly
5 months agoDorthy
5 months agoBilly
5 months agoLetha
5 months agoMargart
5 months agoCheryl
4 months agoLawanda
4 months agoHeike
4 months agoGalen
4 months agoCory
6 months agoBobbye
5 months agoCatina
5 months agoSue
5 months ago