We are pleased to announce the latest version of the DomainTools App for Splunk (version 4.3). This release for Splunk, Splunk Enterprise, and Splunk Cloud includes performance and usability enhancements, but perhaps most importantly, it addsnew capabilities around passive DNS datafromFarsight Security’s DNSDBandnew domain triage and monitoring fromIris Detect.
Many DomainTools and Farsight Security users are also Splunk users, and from them we have learned how important it is to have good context around domains that are surfaced in Notable Events. Both Farsight DNSDB and Iris Detect can play important roles in those workflows:
In addition to these new features, we also made some other changes and fixes in version 4.3. Specifically, we:
We are always on the lookout for ways to improve your experience and capabilities when working within key security tools such as Splunk. We hope that if you are a Splunk user who has never tried our App, perhaps you’ll give it a look. Or, if you use Splunk, but not Iris Detect or Farsight DNSDB, you might consider those tools as well.
Subscribe to DomainTools monthly newsletter to receive innovative, practical advice for improving their security posture. Our goal is to help enable organizations to be more efficient, knowledgeable, and proactive in the day-to-day defense of their organization.