Splunk Security Content for Threat Detection & Response: June Recap

Security Splunk Threat Research Team

In June, the Splunk Threat Research Team (STRT) had 1 release of new security content via the Enterprise Security Content Update (ESCU) app (v6.1.0). With this release, there are 5 analytic stories and 34 new analytics now available in Splunk Enterprise Security via the ESCU application update process.

Content highlights include:

For all our tools and security content, please visit research.splunk.com.

Related Articles

Reduce False Alerts – Automatically!
Security
5 Minute Read

Reduce False Alerts – Automatically!

Splunker Xiao Lin explains the 'False Positive Suppression Model,' now in the UBA tool.
Detect WS_FTP Server Exploitation with Splunk Attack Range
Security
5 Minute Read

Detect WS_FTP Server Exploitation with Splunk Attack Range

The Splunk Threat Research Team shares how they used Splunk Attack Range to develop detection content related to CVE-2023-40044.
What's New with Splunk Enterprise Security 6.6?
Security
3 Minute Read

What's New with Splunk Enterprise Security 6.6?

Learn about the latest and greatest features of Splunk Enterprise Security 6.6.