Detecting xz-lib CVE-2024-3094 with Splunk® Enterprise

Are you using Splunk as a SIEM and concerned about NIST CVE-2024-3094? Well then this post is for you! So lets get right to how we detect CVE-2024-3094 associated with xz-lib version 5.6.0 and 5.6.1 … but first! If you are new to Splunk, then consider taking our fundamentals course. You can click the image/link (more…)