Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
HI All, Do we have a facility to define/correlate the process by rand in endpoint and generate an event.simple Example:i Want to get a custom event throw if below process run with 1 min.1)netuser2)tasklist3) systeminfo
HI @Troja007,the reply you provided was good for Cloud IOC Events. Is there definitions/information(Cisco KB link) available like you have provided(Cloud IOC) for other types of events and subdivisions of events? Detected threats>>Malicious Activity ...