In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security Content Update (ESCU) app (v4.44.0). With this release, there are 8 new analytics, 3 new analytic stories, and 261 updated analytics now available in Splunk Enterprise Security via the ESCU application update process.
Content highlights include:
New Analytics (8)
New Analytic Stories (3)
Updated Analytics (261)
A number of analytics have been updated to address minor typos in the description field, make use of macros, or capture equivalent variants of commands.
For all our tools and security content, please visit research.splunk.com.
— The Splunk Threat Research Team
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.