HI All, Do we have a facility to define/correlate the process by rand in endpoint and generate an event.simple Example:i Want to get a custom event throw if below process run with 1 min.1)netuser2)tasklist3) systeminfo
HI @Troja007,the reply you provided was good for Cloud IOC Events. Is there definitions/information(Cisco KB link) available like you have provided(Cloud IOC) for other types of events and subdivisions of events? Detected threats>>Malicious Activity ...