Just Published! Threat Report: Exposing Malware in Linux-Based Multi-Cloud Environments | Download Now

Carbon Black Cloud: What is the difference between Threat Alerts and Observed Alerts?

Carbon Black Cloud: What is the difference between Threat Alerts and Observed Alerts?

Environment

  • Carbon Black Cloud Console: Alerts page

Question

What is the difference between Threat and Observed Alerts?

Answer

  • Threat Alerts are highly likely to be malicious based on our Analytics
  • Observed Alerts are behaviors which may be useful for conducting investigations but not clearly malicious from gathered data

Related Content


Was this article helpful? Yes No
No ratings
Article Information
Author:
Creation Date:
‎09-28-2022
Views:
114
Contributors