Process level tree visualization and also banning the hashes very quickly to spread the lateral movement of the attack and also we have provision to create new feeds as per the threat hunting data. Review collected by and hosted on G2.com.
I didn't find any negetive part of it so far. But It would be really great if process tree structure can be enhanced to provide more artefacts in single click. Review collected by and hosted on G2.com.
