Lately I'm confused about threat hunting vs SIEM Use case creation.
The threat hunting resources I have read can be created as a SIEM use case. Then why should I perform it manually in the name of hunting?
How exactly does hunting differ from SIEM use case?
http://dlvr.it/S0RLQV
No comments:
Post a Comment