Farsight Security Announces Farsight DNSDB App for Splunk(R)
/EINPresswire.com/ -- SAN MATEO, CA--(Marketwired - February 18, 2016) - In a significant industry milestone, today Farsight Security, Inc. announced the release of Farsight DNSDB℠ App for Splunk® to enable security analysts to improve the speed, accuracy and global view of their digital investigations for faster risk mitigation and prevention.
The Farsight DNSDB App for Splunk gives organizations of all sizes broader analysis and investigation capabilities. The primary goal of the application is to add contextual information and situational awareness from DNSDB to organization's internal event data. DNSDB is the most comprehensive historical database of passive DNS data about how IPs, domains, and Internet infrastructure are interconnected and have evolved. By augmenting organization's internal information with real-time Internet infrastructure information, security teams will have better visibility for the detection, identification and analysis of threats and adversary infrastructure and capabilities.
With a simple click in Splunk, users can learn the history and associated infrastructure of a suspicious domain name or IP to gain critical contextual and situational awareness information for their existing event data. Users can also add this capability to their existing workflow to auto generate the query and populate the contextual information for all IPs and domain names that all of their hosts have visited.
"Enterprises, small and large, have requested Farsight to integrate DNSDB with SIEM solutions to accelerate their investigations. Splunk is a leading SIEM vendor so it was natural that we work together to provide DNSDB's contextual threat intelligence information within their platform. Security analysts use DNSDB to get the facts about IP addresses, domain names, and related infrastructure to improve detection and incident response of tomorrow's threats," said Paul Vixie, CEO of Farsight Security.
With its global sensor array, Farsight Security currently receives more than 200,000 observations per second illuminating the changing global DNS. Farsight DNSDB App for Splunk users can get these real-time changes the same minute that they are first observed. With more than 13 billion domains and hostnames collected since 2010 -- all indexed for easy searches -- DNSDB enables threat intelligence teams, security analysts and incident responders to search for specific hosts or subdomains within a domain and gain immediate insight into subordinate names living under the base domain.
Splunk provides a leading platform for real-time Operational Intelligence. It's an easy, fast and secure way to search, analyze and visualize the massive streams of machine data generated by organizations' IT systems and technology infrastructure -- physical, virtual and in the cloud.
"Farsight DNSDB is a significant repository of DNS intelligence and its real-time data provides security analysts with valuable context and new information about fast-moving attacker activity. With its strong DNS pedigree, Farsight Security has developed credibility among service providers and enterprises that value insight from the most direct sources. Organizations can now access Farsight's premium DNS intelligence with the readily-available Splunk integration," said Scott Crawford, Research Director for 451 Research.
System Requirements
Splunk Enterprise system requirements apply.
Pricing and Availability
The Farsight DNSDB App for Splunk is available now in Splunkbase at https://splunkbase.splunk.com/app/3050.
Farsight Security customers should be able to download the app and use their current DNSDB API key to integrate the information. New customers can request a trial DNSDB API key to assess the information.
The Farsight DNSDB App for Splunk is available as a subscription service. To learn more about services, pricing and other information, please contact Farsight Security at sales@farsightsecurity.com or call +1-650-489-7919. As always, Farsight remains committed to improving the safety of the Internet and will continue supporting law enforcement agents, academic researchers, and non-profit organizations with full or partial grants of our services.
About Farsight Security, Inc.
Farsight Security provides the world's largest real-time actionable threat intelligence information on how the Internet is changing, seeing more than 200,000 DNS-related observations per second. Leveraging proprietary technology that was purpose-built to manage the volume of data and real-time analyses, Farsight provides security teams with the Internet's view of an organization's web presence and how it is changing, whether those changes were made purposely, inadvertently, or maliciously. The world's most security conscious organizations use Farsight for their real-time threat intelligence information. For more information, please contact us through our website at https://www.farsightsecurity.com/ or follow us on LinkedIn, Twitter, and Facebook.
Splunk is a trademark or registered trademark of Splunk Inc. in the United States and other countries.
Image Available: http://www.marketwire.com/library/MwGo/2016/2/18/11G083394/Images/Splunk_Image_1-7933670b1aa0a12db2124398817fa915.jpg
Image Available: http://www.marketwire.com/library/MwGo/2016/2/18/11G083394/Images/Splunk_Image_2-c09d4ce7cdc6af5c82d1e6252fc4d0dc.jpg
Karen Burke
650-814-3764
kburke@fsi.io

Using Farsight DNSDB App for Splunk, organizations can get contextual awareness of domains and related IP addresses.

Using Farsight DNSDB App for Splunk, organizations can get contextual awareness of IP addresses and related domains.
Legal Disclaimer:
EIN Presswire provides this news content "as is" without warranty of any kind. We do not accept any responsibility or liability for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this article. If you have any complaints or copyright issues related to this article, kindly contact the author above.
