Qortora · Search · Indexed page

research.splunk.comFetched 2026-08-15T03:43:10Z

Splunk Security Content

Welcome to Splunk Security Content See What Is New! - Latest Update: v6.4.0 Download Latest Version 2144 Splunk Detections built to find evil. Detections 363 Analytic Stories to address use cases. Analytic Stories 86 Automated playbook responses. Playbooks What's New Enable your SOC with Proven detections This project gives you access to our repository of Analytic Stories that are security guides which provide background on TTPs, mapped to the MITRE framework, the Lockheed Martin Kill Chain, and CIS controls.

Open original source · Full cached text

Splunk Security Content Home Analytic Stories Detections Playbooks Data Sources Attack Data Projects Blog About Welcome to Splunk Security Content See What Is New! - Latest Update: v6.4.0 Download Latest Version 2144 Splunk Detections built to find evil. Detections 363 Analytic Stories to address use cases. Analytic Stories 86 Automated playbook responses. Playbooks What's New Enable your SOC with Proven detections This project gives you access to our repository of Analytic Stories that are security guides which provide background on TTPs, mapped to the MITRE framework, the Lockheed Martin Kill Chain, and CIS controls. They include Splunk searches, machine-learning algorithms, and Splunk SOAR playbooks (where available)—all designed to work together to detect, investigate, and respond to threats. Sources of Data Detections by Platforms Detection Coverage MITRE ATT&CK A snapshot in time of what technique we currently have some detection coverage for. The visualization below shows our current coverage across all MITRE ATT&CK tactics. MITRE ATT&CK Coverage Overview Detection counts per tactic with MITRE technique breakdown - MITRE ID Coverage Percentage of all MITRE techniques & subtechniques detected Techniques: - Subtechniques: - - Tactical Coverage Percentage of tactics with at least one detection - MITRE IDs Covered Unique techniques & subtechniques vs total (697) - Coverage Depth Average detections per active tactic High Coverage (10+ Detections) Medium Coverage (5-9 Detections) Low Coverage (1-4 Detections) No Coverage 🗺️ View Detailed Coverage Map We Value Your Feedback! Help us improve! Please take a moment to share your thoughts on our website. Give Feedback Questions? Please use the GitHub issue tracker to submit bugs or request features. If you have questions or need support, you can: Join the #security-research room in the Splunk Community Slack. Post a question to Splunk Answers If you are a Splunk Enterprise customer with a valid support entitlement contract and have a Splunk-related question, you can also open a support case on the https://www.splunk.com/ support portal Contribute Content If you want to help the rest of the security community by sharing your own detections, see our contributor guide for more information on how to get involved! © 2005 - 2026 Splunk LLC All rights reserved.