Hi All, After a bit of googling I've come up empty with regards to being able to identify security issues that have been addressed as part of each Splunk Enterprise version update. Just wondering i...
Splunk Enterprise 9.14 Security Essentials 3.80 Security Content updates at 4.32. After updating the Security Essentials to 3.80 I can't load the security content page. error: Cannot r...
I have some doubts about Updating Splunk Apps. 1. The Splunk Apps that comes pre-built/packed with Enterprise Security such as Extreme Search, RapidDiag, Splunk AddOn for UEBA etc.... Do they a...
Hello all, I have a Splunk server update. We have an update to our Splunk server and I am trying to figure out the workflow. Current version 8.2. The new server is 9.0.
I want to restore the b...
Hi all, Was wondering if there was a way to manually grab the threat intelligence updates for Splunk ES (we are on 7.3.1.) Specifically: Intelligence download of "mitre_attack" - threatlist d...
...mproved and fully compliant deployment. Following up from the works we reviewed what sensible security hardening could be implemented across the deployment and we agreed that the pass4SymmKey for t...
Hi All, Hoping someone out there can help me unravel the mystery I'm currently facing. We have a KV Store that we use to hold MISP values which is checked against when running various security a...