Splunk Security Content for Threat Detection & Response: July Recap

Security Splunk Threat Research Team

In July, the Splunk Threat Research Team had 2 releases of new security content via the Enterprise Security Content Update (ESCU) app (v5.9.0 and v5.10). With these releases, there are 64 new analytics and 7 new analytic stories now available in Splunk Enterprise Security via the ESCU application update process.

Content highlights include:

For all our tools and security content, please visit research.splunk.com.

Related Articles

Top In-Demand Cybersecurity Skills in the Upcoming Years
Security
2 Minute Read

Top In-Demand Cybersecurity Skills in the Upcoming Years

Automation is optimizing SOC workflows but also shaking up the cybersecurity workspace. Skills that were once in high demand are decreasing in value. Splunker Matthias Maier took a closer look into cybersecurity developments and shares which cybersecurity skills professionals should be focussing on in the upcoming years.
Staff Picks for Splunk Security Reading February 2021
Security
3 Minute Read

Staff Picks for Splunk Security Reading February 2021

These monthly postings will feature the favorite security-centric presentations, white papers and customer case studies from various peeps in the Splunk (or not) security world that WE think everyone should read. If you would like to read other months, please take a peek at previous posts in the "Staff Picks" series!
Playbook: Triage Reconnaissance Alerts
Security
1 Minute Read

Playbook: Triage Reconnaissance Alerts