Splunk Security Content for Threat Detection & Response: September Recap

Security Splunk Threat Research Team

In September, the Splunk Threat Research Team (STRT) had 2 releases of new security content via the Enterprise Security Content Update (ESCU) app (v6.6.0 and v6.7.0) With these releases, there are 19 new analytics, and 48 updated analytics, now available in Splunk Enterprise Security via the ESCU application update process.

Content highlights include:

Related Articles

The Agentic SOC Workforce: Defending at Machine Speed in the AI Era
Security
8 Minute Read

The Agentic SOC Workforce: Defending at Machine Speed in the AI Era

Why trusted autonomy is becoming the operating model for modern security operations.
New Keyword App
Security
1 Minute Read

New Keyword App

Detecting Copy Fail (CVE-2026-31431)– Phenomenal Power, Ity Bity Script
Security
15 Minute Read

Detecting Copy Fail (CVE-2026-31431)– Phenomenal Power, Ity Bity Script

The Splunk Threat Research Team analyzes the VIP Keylogger malware to help improve your detection and threat-hunting strategies.