I would chose BCEF.
New UI must've be updated so unable to find the right answer.
Policy, Effective Reputation and Alert Severity must be true as those are fundamental. watchlist is belong to type and security alert list don't konw what that is. Thus leave us Target value.
The available type of filters: Type, Process, Effective Reputation, Process Hash, Device, Username, Policy, Parent, Parent Effective Reputation, TTP, Location, Netconn IPv4, Port.
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
dyadin
3 years, 5 months agomynameismy
3 years, 6 months ago