Skip to content

Commit 64e3a78

Browse files
JV0812kimsauce
andauthored
Update docs/integrations/security-threat-detection/threat-intel-quick-analysis.md
Co-authored-by: Kim (Sumo Logic) <[email protected]>
1 parent 3fa5617 commit 64e3a78

File tree

1 file changed

+5
-6
lines changed

1 file changed

+5
-6
lines changed

docs/integrations/security-threat-detection/threat-intel-quick-analysis.md

Lines changed: 5 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -345,12 +345,11 @@ You can further investigate bad IP triggers by updating your query to check the
345345
**Description:** Indicates a confidence level by which an indicator is considered to be malicious. For example, a malicious file hash may always have a value of high while domains and IP addresses will very likely change over time. The malicious confidence level is also represented under the labels list in the JSON data structure.<br/>
346346
Once an indicator has been marked with a malicious confidence level, it continues to have that confidence level value until updated by CrowdStrike. If you think there is a false positive, please file a Support ticket, and we'll work with CrowdStrike to investigate the IOC in question and update the threat details.<br/>
347347
**Values:**
348-
349-
* high
350-
* medium
351-
* low
352-
* unverified—This indicator has not been verified by a CrowdStrike Intelligence analyst or an automated system.
353-
* null—Indicates that Sumo Logic has no information about the threat record.
348+
* high
349+
* medium
350+
* low
351+
* unverified—This indicator has not been verified by a CrowdStrike Intelligence analyst or an automated system.
352+
* null—Indicates that Sumo Logic has no information about the threat record.
354353
355354
---
356355
#### `published_date`

0 commit comments

Comments
 (0)