Which two types of indicators of compromise (IOCs) are available for creation in Cortex XDR? (Choose two.)
cd
What does the Cortex XSOAR Saved by Dbot widget calculate?
a
Which two filter operators are available in Cortex XDR? (Choose two.)
cd
Which command-line interface (CLI) query would retrieve the last three Splunk events?
d
Which process in the causality chain does the Cortex XDR agent identify as triggering an event sequence?
a
What does DBot use to score an indicator that has multiple reputation scores?
a
How do sub-playbooks affect the Incident Context Data?
a
Cortex XSOAR has extracted a malicious Internet Protocol (IP) address involved in command-and-control (C2) traffic.
What is the best method to block this IP from communicating with endpoints without requiring a configuration change on the firewall?
c
How can Cortex XSOAR save time when a phishing incident occurs?
c
What allows the use of predetermined Palo Alto Networks roles to assign access rights to Cortex XDR users?
a