Splunk Security Content for Threat Detection & Response: July Recap

Security Splunk Threat Research Team

In July, the Splunk Threat Research Team (STRT) had 2 releases of new security content via the Enterprise Security Content Update (ESCU) app (v6.2.0 and v6.3.0.) With this release, there are 3 analytic stories and 14 new analytics now available in Splunk Enterprise Security via the ESCU application update process.

Related Articles

Staff Picks for Splunk Security Reading April 2022
Security
2 Minute Read

Staff Picks for Splunk Security Reading April 2022

Check out our Splunk security experts' curated list of presentations, white papers, and customer case studies that we feel are worth a read in the month of April.
World Economic Forum In Davos - Growth in Global Technology Risk
Security
2 Minute Read

World Economic Forum In Davos - Growth in Global Technology Risk

Taking a look at the World Economic Forum (WEF) in Davos 2020 from a cybersecurity angle. What technology risks should we be prepared for according to the WEF?
TOTAL-REPLAY: The Bridge to Replay Attacks Using the Security Content Metadata
Security
5 Minute Read

TOTAL-REPLAY: The Bridge to Replay Attacks Using the Security Content Metadata

Learn how to use TOTAL-REPLAY to replay Splunk Attack Data logs. Validate detections, tune analytics, and map to MITRE ATT&CK without a full attack lab.