What does the Full Detection Details option provide?
According to the CrowdStrike Falcon Devices Add-on for Splunk Installation and Configuration Guide v3.1.5+, the Full Detection Details option allows you to view detailed information about a detection, such as detection ID, severity, tactic, technique, description, etc1.You can also view the events generated by the processes involved in the detection in different ways, such as process tree, process timeline, or process activity1.The process tree view provides a visualization of program ancestry, which shows the parent-child and sibling relationships among the processes1.You can also see the event types and timestamps for each process1.
Novella
21 hours agoPansy
6 days agoArminda
11 days agoNu
16 days agoDewitt
22 days agoDominque
27 days agoMitzie
1 month agoDominga
1 month agoSabra
1 month agoLanie
2 months agoVernell
2 months agoKeneth
2 months ago