<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: correlation searches in Security</title>
    <link>https://community.splunk.com/t5/Security/correlation-searches/m-p/695911#M18066</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/267230"&gt;@tuts&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;are you speaking of Enterprise Security?&lt;/P&gt;&lt;P&gt;Anyway, if you install the Splunk Security Essentials App (&lt;A href="https://splunkbase.splunk.com/app/3435" target="_blank"&gt;https://splunkbase.splunk.com/app/3435&lt;/A&gt;) you have all the available Correlation Searches and for each one there's s test data set that you can use.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
    <pubDate>Sun, 11 Aug 2024 09:16:11 GMT</pubDate>
    <dc:creator>gcusello</dc:creator>
    <dc:date>2024-08-11T09:16:11Z</dc:date>
    <item>
      <title>correlation searches</title>
      <link>https://community.splunk.com/t5/Security/correlation-searches/m-p/695902#M18065</link>
      <description>&lt;P&gt;Peace be upon you. I am now running correlation searches and I do not have data to fully test them. I want to activate them in order to protect the company from any attack. I have MITRE ATT&amp;amp;CK Compliance&lt;BR /&gt;Security Content&lt;BR /&gt;But I do not know where to start and how to arrange myself&lt;BR /&gt;I hope for advice&lt;/P&gt;</description>
      <pubDate>Sat, 10 Aug 2024 19:29:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/correlation-searches/m-p/695902#M18065</guid>
      <dc:creator>tuts</dc:creator>
      <dc:date>2024-08-10T19:29:14Z</dc:date>
    </item>
    <item>
      <title>Re: correlation searches</title>
      <link>https://community.splunk.com/t5/Security/correlation-searches/m-p/695911#M18066</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/267230"&gt;@tuts&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;are you speaking of Enterprise Security?&lt;/P&gt;&lt;P&gt;Anyway, if you install the Splunk Security Essentials App (&lt;A href="https://splunkbase.splunk.com/app/3435" target="_blank"&gt;https://splunkbase.splunk.com/app/3435&lt;/A&gt;) you have all the available Correlation Searches and for each one there's s test data set that you can use.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Sun, 11 Aug 2024 09:16:11 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Security/correlation-searches/m-p/695911#M18066</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2024-08-11T09:16:11Z</dc:date>
    </item>
  </channel>
</rss>

