In the Endpoint Data context menu of the Cortex XSIAM endpoints table, where will an analyst be able to determine which users accessed an endpoint via Live Terminal?
Which attributes can be used as featured fields?
With regard to Attack Surface Rules, how often are external scans updated?
Which configuration will ensure any alert involving a specific critical asset will always receive a score of 100?
Which interval is the duration of time before an analytics detector can raise an alert?