Security Blogs

Latest Articles

RCE à La Follina (CVE-2022-30190)
Security
7 Minute Read

RCE à La Follina (CVE-2022-30190)

The Splunk SURGe team offers a closer look into the Follina MS Office RCE, including a breakdown of what happened, how to detect it, and MITRE ATT&CK mappings.
Publish Your Splunk SOAR Apps Faster
Security
2 Minute Read

Publish Your Splunk SOAR Apps Faster

The process for our technology partners to publish their SOAR Apps to Splunkbase just got faster and simpler.
Staff Picks for Splunk Security Reading May 2022
Security
3 Minute Read

Staff Picks for Splunk Security Reading May 2022

Hello, everyone! Welcome to the Splunk staff picks blog. Each month, Splunk security experts curate a list of presentations, whitepapers, and customer case studies that we feel are worth a read. We hope you enjoy.
Threat Update: AcidRain Wiper
Security
10 Minute Read

Threat Update: AcidRain Wiper

The Splunk Threat Research Team shares the details on the new malicious payload named AcidRain, designed to wipe modem or router devices (CPEs).
How Playbook Packs Drive Scalable Automation
Security
5 Minute Read

How Playbook Packs Drive Scalable Automation

See how pre-built Playbook Packs from Splunk can help augment your security analysts with automation that scales with your organization’s maturity.
Springing 4 Shells: The Tale of Two Spring CVEs
Security
10 Minute Read

Springing 4 Shells: The Tale of Two Spring CVEs

The Splunk Threat Research Team (STRT) shares detection opportunities in different stages of successful Spring4Shell exploitation.
Detecting Active Directory Kerberos Attacks: Threat Research Release, March 2022
Security
14 Minute Read

Detecting Active Directory Kerberos Attacks: Threat Research Release, March 2022

Learn more about the Splunk Threat Research Team's new analytic story to help SOC analysts detect adversaries abusing the Kerberos protocol to attack Windows Active Directory environments
Splunk SOAR Recognized in Forrester Now Tech: SOAR, Q2 2022 Report
Security
3 Minute Read

Splunk SOAR Recognized in Forrester Now Tech: SOAR, Q2 2022 Report

Splunk SOAR recognized within Forrester’s report Now Tech: Security Orchestration, Automation, And Response (SOAR), Q2 2022.
Bringing Data-Centric Security to RSAC 2022
Security
3 Minute Read

Bringing Data-Centric Security to RSAC 2022

Check out what Splunk has in store at RSA Conference 2022, including theater sessions, demos and a keynote presentation from Splunk CEO Gary Steele.