[[["容易理解","easyToUnderstand","thumb-up"],["確實解決了我的問題","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["難以理解","hardToUnderstand","thumb-down"],["資訊或程式碼範例有誤","incorrectInformationOrSampleCode","thumb-down"],["缺少我需要的資訊/範例","missingTheInformationSamplesINeed","thumb-down"],["翻譯問題","translationIssue","thumb-down"],["其他","otherDown","thumb-down"]],["上次更新時間:2025-07-16 (世界標準時間)。"],[[["This guide details how to investigate security alerts within Google Security Operations, which are indicators of potential security breaches identified through various external security sources and custom YARA-L rules."],["To begin, access Google Security Operations via Chrome or Firefox using your enterprise credentials, and then navigate to the \"Detection \u003e Alerts and IOCs\" section to view alerts and IOC matches."],["From the IOC Matches tab, you can pivot to Asset view to investigate specific assets by selecting an event's time and using the Time and Prevalence sliders to filter for suspicious events."],["The Asset view's Timeline tab offers details about events surrounding an alert, with the triggering event highlighted in green, and more information available by hovering over \"Rule Alert\" events and expanding them."],["An alert from Google security operations can be investigated to determine what specifically triggered it, by using the middle panel's orange dialog box, or the left panel's Timeline tab description."]]],[]]