PSE-Cortex Exam QuestionsBrowse all questions from this exam

PSE-Cortex Exam - Question 6


Which two types of indicators of compromise (IOCs) are available for creation in Cortex XDR? (Choose two.)

Show Answer
Correct Answer: BCD

In Cortex XDR, two of the types of indicators of compromise (IOCs) that can be created include file path and hash. The file path indicator allows monitoring and identification of specific files based on their location within the system. The hash indicator, such as MD5 or SHA256, enables verification of the integrity and authenticity of files by comparing their cryptographic hash values with known malicious files.

Discussion

4 comments
Sign in to comment
NometOptions: BC
Jun 10, 2024

As XDR console, full path and Hash

TeachTrooperOptions: BC
Jun 5, 2024

B,C is correct in my opinion

5688ac9Options: CD
Jul 11, 2024

C,D Configure the IOC TYPE. Options are Full Path, File Name, Domain, Destination IP, and MD5 or SHA256 Hash.

5688ac9Options: BC
Jul 11, 2024

B,C Configure the IOC TYPE. Options are Full Path, File Name, Domain, Destination IP, and MD5 or SHA256 Hash.