Splunk Cloud Platform

Splunk Security Essentials Datasets

mperinoHBK
Engager

Are the datasets that are included with Splunk Security Essentials updated dynamically or are they static? For example the ransomware_extensions_lookup.csv datasets.

Labels (2)
0 Karma

fmcgheeSplunk
Splunk Employee
Splunk Employee

Current release - 3.2.1 

  • Automatic updates for Security Research Content Security Content from the Splunk Research team (i.e. ESCU) is now automatically downloaded into SSE using the Splunk Security Content API

https://docs.splunksecurityessentials.com/release-notes/changelog/

 

https://docs.splunksecurityessentials.com/

 

Tags (1)

richgalloway
SplunkTrust
SplunkTrust

They're static.

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Index This | I’m short for "configuration file.” What am I?

May 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with a Special ...

New Articles from Academic Learning Partners, Help Expand Lantern’s Use Case Library, ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Your Guide to SPL2 at .conf24!

So, you’re headed to .conf24? You’re in for a good time. Las Vegas weather is just *chef’s kiss* beautiful in ...