What is the main difference between hypothesis-driven and data-driven Threat Hunting?
A.
Data-driven hunts always require more data to search through than hypothesis-driven hunts.
B.
Data-driven hunting tries to uncover activity within an existing data set, hypothesis-driven hunting begins with a potential activity that the hunter thinks may be happening.
C.
Hypothesis-driven hunts are typically executed on newly ingested data sources, while data-driven hunts are not.
D.
Hypothesis-driven hunting tries to uncover activity within an existing data set, data-driven hunting begins with an activity that the hunter thinks may be happening.
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
nosavotor
8 months, 1 week ago