Splunk Security Content for Threat Detection & Response: May Recap

Security Splunk Threat Research Team

In May, the Splunk Threat Research Team had 2 releases of new security content via the Enterprise Security Content Update (ESCU) app (v5.5.0 and v5.6.0). With these releases, there are 13 new analytics and 4 new analytic stories now available in Splunk Enterprise Security via the ESCU application update process.

Content highlights include:

For all our tools and security content, please visit research.splunk.com.

Related Articles

A Case Study in Vulnerability Prioritization: Lessons Learned from Large-Scale Incidents
Security
11 Minute Read

A Case Study in Vulnerability Prioritization: Lessons Learned from Large-Scale Incidents

Splunker Audra Streetman provides an overview of the lessons learned from previous large-scale security incidents to help inform vulnerability prioritization.
Ransomware Encrypts Nearly 100,000 Files in Under 45 Minutes
Security
3 Minute Read

Ransomware Encrypts Nearly 100,000 Files in Under 45 Minutes

Splunk SURGe Report reveals the need for ransomware prevention over response and mitigation.
Splunk Enterprise Security: Built to Empower Every SOC Analyst
Security
5 Minute Read

Splunk Enterprise Security: Built to Empower Every SOC Analyst

Announcing a transformative update to Splunk Enterprise Security (ES) with 8.2: An AI-powered SecOps platform designed to unify and accelerate threat detection, investigation, and response (TDIR) in one seamless experience.