Question 66

You are responding to a cybersecurity incident and observe several outbound network connections from host Bob-Desktop. Upon review, you determine this to be a result of a Threat Actor ' s attempt to exfiltrate data.
What action should you take to stop the exfiltration using the Falcon Platform?
  • Question 67

    Which of the following is NOT a filter available on the Detections page?
  • Question 68

    What action is needed to ensure Falcon does not block or generate a detection for a process by using the file hash?
  • Question 69

    You are pre-staging a Custom IOC for later use and want to save a file hash for later use after approval.
    Which action should you use?
  • Question 70

    You can jump to a Process Timeline from many views, like a Hash Search, by clicking which of the following?