Skip to content

1. Home

Nasreddine Bencherchali edited this page Aug 14, 2026 · 6 revisions

Welcome to the Splunk Security Research Team's Security Content Project!

This project gives you access to our repository of Detections and Analytic Stories that are security groupings which provide background on TTPs, mapped to the MITRE framework, the Lockheed Martin Kill Chain, and CIS controls.

They include Splunk searches, machine-learning algorithms, and Splunk SOAR playbooks (where available)—all designed to work together to detect, investigate, and respond to threats.

This content is available via Splunk Enterprise Security, Splunkbase, and can be explored on research.splunk.com.

The security-content project was designed to bring all Splunk detections, and the community together to improve our collective defenses.

ESCU

ESCU Documentation

Clone this wiki locally