Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Introducing VT4Splunk - The official VirusTotal App for Splunk
[Image: Logo_VT_Horizontal.png]

TL;DR: VT4Splunk, VirusTotal’s official Splunk plugin, correlates your telemetry with VirusTotal context to automate triage, expedite investigations and unearth threats dwelling undetected in your environment. This extends Splunk’s own VirusTotal plugin for their SOAR. Next March 30th we will host a webinar along with Splunk to show how to do security investigations with Splunk and VirusTotal. Register here!

One of VirusTotal’s main use cases is technology integrations where VirusTotal’s context is used for automatic security telemetry enrichment for false positive discarding, 2nd opinion detection (true positive confirmation) and incident contextualization + investigation.

VirusTotal had Splunk plugins for a while, most of theme developed by community contributors and other 3rd-parties. For instance, VirusTotal’s plugin for Splunk SOAR, which ranks #1 in the Threat Intelligence Reputation space is developed by our friends over at Splunk, and we highly recommend it.

However, we wanted to truly showcase what VirusTotal can do for your SIEM and VT4Splunk v1 is our proposed solutions. It is free and you can download it from Splunkbase. It is compatible with Splunk +8.x Enterprise and Cloud versions.
Continue Reading

Forum Jump:

Users browsing this thread: 1 Guest(s)
You have to register before you can post on our site.



Recent Posts
Windows 11: Microsoft rolls out Start Me...
Microsoft relea...harlan4096 — 15:54
Microsoft may be working on a modern ver...
Remember Window...harlan4096 — 08:21
AV1 Live Streaming Is Finally Coming To ...
Pixelation-less 14...harlan4096 — 08:19
Brave 1.49.132
Desktop​ Release N...harlan4096 — 08:14
uBlock Origin 1.48.2
uBlock Origin 1.48...harlan4096 — 08:13

Today's Birthdays
No birthdays today.
Upcoming Birthdays
No upcoming birthdays.

Online Staff
There are no staff members currently online.