CrowdStrike Certified Falcon Hunter (CCFH) — Question 40
Which pre-defined reports offer information surrounding activities that typically indicate suspicious activity occurring on a system?
Answer options
- A. Scheduled searches
- B. Hunt reports
- C. Sensor reports
- D. Timeline reports
Correct answer: B
Explanation
Hunt reports are designed to identify and analyze potential indicators of compromise in a system, making them the correct choice. Scheduled searches, sensor reports, and timeline reports do not specifically focus on identifying suspicious activities, which is why they are not the right answers.