Splunk Enterprise Security

What is "Malware Domains threatlist" in Splunk Enterprise Security?

Ananta
New Member

Hi All,

We are planning to upgrade Splunk ES from 6.2 to 7.0.1. In Release Notes of 7.0.1 deprecated features, its mentioned like below.

No support for Malware Domains threatlist The Malware Domains threatlist is not supported in Enterprise security version 6.5.0 or higher.

 

 Is it any kind of lookup definition as mentioned in below link?

https://community.splunk.com/t5/Security/Add-domains-to-threat-lists/td-p/116392

Or its related to below dashboard in Enterprise Security Suit?

SplunkEnterpriseSecuritySuite/Security Intelligence/Threat Intelligence/Threat Activity/Threat Group/Threat Group (malwaretriage)

Basically, I am not able to find out which feature is going to deprecate or remove. Please su

 

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...