You have a Microsoft Sentinel workspace named SW1.
In SW1, you investigate an incident that is associated with the following entities:
* Host
* IP address
* User account
* Malware name
Which entity can be labeled as an indicator of compromise (loC) directly from the incident s page?
Raelene
8 months agoMerilyn
8 months agoAlex
8 months agoIvette
6 months agoTruman
6 months agoBrynn
7 months agoGraciela
7 months agoTish
7 months agoBilly
8 months agoDorthy
8 months agoBilly
8 months agoLetha
8 months agoMargart
8 months agoCheryl
7 months agoLawanda
7 months agoHeike
7 months agoGalen
7 months agoCory
8 months agoBobbye
8 months agoCatina
8 months agoSue
8 months ago