Advanced table filters

To be able to easily group data is one of the most powerful features of the Explore view as this allows you to e.g. quickly find users, devices or IPs involved in an attack. Today, we're launching two new filters that will make this view even more powerful

  • The ability to only see authenticated events. This enables you to only view data based on the truly authenticated user activity, and not from e.g. failed login attempts which are matched to users by default.
  • The ability to display table contents based on the full data history. By default, the table cell content is based on the same filters as you've configured in the main filter area at the top. With this option you can e.g. instead see the number of events, devices, IPs etc. across unfiltered data, which is useful to get a sense of the overall activity for each entry.