Construct powerful query strings to pinpoint the data or objects in your environment that you want to examine.
The Search app provides different search methods, filters, and a Kibana-like query
language to
identify, categorize, and retrieve your search results. You can automate the search
process by
saving search queries, configuring the
Watchlist, and configuring email notifications when new data is found.
The following table outlines the actions available in the Search app (
).
Action
|
Description
|
||||
Enable the new Search
|
Turn on the toggle to use the new Search to query a variety of data sources for expanded
search results.
|
||||
Search for predefined threat hunting queries
|
Click Threat Hunting Queries to search for predefined threat
hunting queries from Trend Micro and Cyborg Security based on known threats
to aid you in constructing powerful search queries in your own environment.
|
||||
View search history
|
Click Query History to display a list of previous search queries.
You can load criteria from a previous search
and perform a new search by clicking the search icon ().
|
||||
Perform a search
|
Select a search method, specify criteria, and click Search to search for data.
|
||||
Chat with Trend Companion
|
Click to start a conversation with Trend Companion.
Begin your prompts with
Search foror Search into have Trend Companion create search queries.
|
||||
Save search query
|
After performing a search, click Save
Query, specify a name, and click Save to save
the current search query.
|
||||
View saved search queries
|
Click Saved Queries to view saved queries.
|
||||
View queries in the Watchlist
|
Click to see
all saved queries included in the Watchlist.
|
||||
Select or modify search result views
|
Click the View drop-down menu to select how the search
results are displayed.
For more information, see Creating a custom view for search
results.
|
||||
Import search views
|
Click the View drop-down menu and select Import
Views to import one or more JSON files containing search views.
|
||||
Export search views
|
Click to export the search view to a JSON file.
|