Which two types of indicators of compromise (IOCs) are available for creation in Cortex XDR? (Choose two.)
Which two types of indicators of compromise (IOCs) are available for creation in Cortex XDR? (Choose two.)
In Cortex XDR, two of the types of indicators of compromise (IOCs) that can be created include file path and hash. The file path indicator allows monitoring and identification of specific files based on their location within the system. The hash indicator, such as MD5 or SHA256, enables verification of the integrity and authenticity of files by comparing their cryptographic hash values with known malicious files.
As XDR console, full path and Hash
B,C Configure the IOC TYPE. Options are Full Path, File Name, Domain, Destination IP, and MD5 or SHA256 Hash.
C,D Configure the IOC TYPE. Options are Full Path, File Name, Domain, Destination IP, and MD5 or SHA256 Hash.
B,C is correct in my opinion