<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~files/feed-premium.xsl"?>
                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                             
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedpress="https://feed.press/xmlns" xmlns:media="http://search.yahoo.com/mrss/" xmlns:podcast="https://podcastindex.org/namespace/1.0" version="2.0">
  <channel>
    <feedpress:locale>en</feedpress:locale>
    <feedpress:newsletterId>CiscoBlogs</feedpress:newsletterId>
    <atom:link rel="via" href="https://blogs.cisco.com/feed"/>
    <atom:link rel="hub" href="https://feedpress.superfeedr.com/"/>
    <title>Cisco Blogs</title>
    <atom:link href="https://feedpress.me/CiscoBlogs" rel="self" type="application/rss+xml"/>
    <link>https://blogs.cisco.com</link>
    <description>Latest articles published on Cisco Blogs</description>
    <lastBuildDate>Fri, 09 Oct 2026 19:51:44 +0000</lastBuildDate>
    <language>en-US</language>
    <sy:updatePeriod>
hourly</sy:updatePeriod>
    <sy:updateFrequency>
1</sy:updateFrequency>
    <generator>https://wordpress.org/?v=6.7.9</generator>
    <image>
      <url>https://blogs.cisco.com/gcs/ciscoblogs/1/2024/09/cropped-Cisco-logo-thumb-sky-blue-150x150.jpg</url>
      <title>Cisco Blogs</title>
      <link>https://blogs.cisco.com/</link>
      <width>32</width>
      <height>32</height>
    </image>
    <item>
      <title>Chasing AMMYY at Splunk .conf</title>
      <link>https://feedpress.me/link/23532/17492160/conf26-agentic-soc-chasing-ammyy</link>
      <comments>https://blogs.cisco.com/security/conf26-agentic-soc-chasing-ammyy#respond</comments>
      <dc:creator><![CDATA[Adam Kilgore]]></dc:creator>
      <pubDate>Thu, 08 Oct 2026 15:00:59 +0000</pubDate>
      <category><![CDATA[Security]]></category>
      <category><![CDATA[.conf]]></category>
      <category><![CDATA[AI]]></category>
      <category><![CDATA[Cisco Secure Access]]></category>
      <category><![CDATA[Cisco Secure Firewall]]></category>
      <category><![CDATA[Cisco Talos]]></category>
      <category><![CDATA[Cybersecurity]]></category>
      <category><![CDATA[MCP]]></category>
      <category><![CDATA[Security Operations Center]]></category>
      <category><![CDATA[SOC]]></category>
      <category><![CDATA[Splunk]]></category>
      <category><![CDATA[Splunk Cloud]]></category>
      <category><![CDATA[Splunk Enterprise Security]]></category>
      <category><![CDATA[ThousandEyes]]></category>
      <guid isPermaLink="false">https://blogs.cisco.com/?p=498349</guid>
      <description><![CDATA[Discover how Cisco's Encrypted Visibility Engine (EVE) and Endace PCAP uncovered Flawed AMMYY RAT traffic at Splunk .conf without breaking TLS encryption. <img src="https://feedpress.me/link/23532/17492160.gif" height="1" width="1"/>]]></description>
      <wfw:commentRss>https://blogs.cisco.com/security/conf26-agentic-soc-chasing-ammyy/feed</wfw:commentRss>
      <slash:comments>0</slash:comments>
    </item>
    <item>
      <title>Admin in the Loop: Firewalls and the Agentic SOC</title>
      <link>https://feedpress.me/link/23532/17492161/conf26-agentic-soc-firewalls</link>
      <comments>https://blogs.cisco.com/security/conf26-agentic-soc-firewalls#respond</comments>
      <dc:creator><![CDATA[Andrew Merica]]></dc:creator>
      <pubDate>Thu, 08 Oct 2026 15:00:58 +0000</pubDate>
      <category><![CDATA[Security]]></category>
      <category><![CDATA[.conf]]></category>
      <category><![CDATA[AI Canvas]]></category>
      <category><![CDATA[Cisco Secure Firewall]]></category>
      <category><![CDATA[Cisco Talos]]></category>
      <category><![CDATA[Cybersecurity]]></category>
      <category><![CDATA[encrypted visibility engine]]></category>
      <category><![CDATA[Security Operations Center]]></category>
      <category><![CDATA[SOC]]></category>
      <category><![CDATA[Splunk]]></category>
      <category><![CDATA[Splunk Cloud]]></category>
      <category><![CDATA[Splunk Enterprise Security]]></category>
      <guid isPermaLink="false">https://blogs.cisco.com/?p=498328</guid>
      <description><![CDATA[Discover how Cisco Secure Firewall and Cloud Control stream structured Snort 3 and EVE telemetry into Splunk ES to power the .conf26 Agentic SOC pipeline.<img src="https://feedpress.me/link/23532/17492161.gif" height="1" width="1"/>]]></description>
      <wfw:commentRss>https://blogs.cisco.com/security/conf26-agentic-soc-firewalls/feed</wfw:commentRss>
      <slash:comments>0</slash:comments>
    </item>
    <item>
      <title>The Zero-Day Blind Spot: Why Your Agentic SOC needs Retrospective Packet Replay</title>
      <link>https://feedpress.me/link/23532/17492162/conf26-agentic-soc-packet-replay</link>
      <comments>https://blogs.cisco.com/security/conf26-agentic-soc-packet-replay#respond</comments>
      <dc:creator><![CDATA[Adam Kilgore]]></dc:creator>
      <pubDate>Thu, 08 Oct 2026 15:00:53 +0000</pubDate>
      <category><![CDATA[Security]]></category>
      <category><![CDATA[.conf]]></category>
      <category><![CDATA[AI]]></category>
      <category><![CDATA[Cisco Secure Access]]></category>
      <category><![CDATA[Cisco Secure Firewall]]></category>
      <category><![CDATA[Cisco Talos]]></category>
      <category><![CDATA[Cybersecurity]]></category>
      <category><![CDATA[MCP]]></category>
      <category><![CDATA[Security Operations Center]]></category>
      <category><![CDATA[SOC]]></category>
      <category><![CDATA[Splunk]]></category>
      <category><![CDATA[Splunk Cloud]]></category>
      <category><![CDATA[Splunk Enterprise Security]]></category>
      <category><![CDATA[ThousandEyes]]></category>
      <guid isPermaLink="false">https://blogs.cisco.com/?p=498335</guid>
      <description><![CDATA[Learn how the .conf26 Agentic SOC paired Endace full PCAP with Cisco Secure Firewall and Talos rules to retrospectively replay wire data against zero-days.<img src="https://feedpress.me/link/23532/17492162.gif" height="1" width="1"/>]]></description>
      <wfw:commentRss>https://blogs.cisco.com/security/conf26-agentic-soc-packet-replay/feed</wfw:commentRss>
      <slash:comments>0</slash:comments>
    </item>
    <item>
      <title>One Cisco in Action: Inside the Agentic SOC at .conf26</title>
      <link>https://feedpress.me/link/23532/17492163/conf26-agentic-soc</link>
      <comments>https://blogs.cisco.com/security/conf26-agentic-soc#respond</comments>
      <dc:creator><![CDATA[Jessica (Bair) Oppenheimer]]></dc:creator>
      <pubDate>Thu, 08 Oct 2026 15:00:39 +0000</pubDate>
      <category><![CDATA[Security]]></category>
      <category><![CDATA[.conf]]></category>
      <category><![CDATA[Cisco Talos]]></category>
      <category><![CDATA[Cybersecurity]]></category>
      <category><![CDATA[Security Operations Center]]></category>
      <category><![CDATA[SOC]]></category>
      <category><![CDATA[Splunk]]></category>
      <category><![CDATA[Splunk Cloud]]></category>
      <category><![CDATA[Splunk Enterprise Security]]></category>
      <guid isPermaLink="false">https://blogs.cisco.com/?p=498277</guid>
      <description><![CDATA[Read how Cisco Cloud Control and Splunk Enterprise Security powered the live Agentic SOC at .conf26 to deliver unified TDIR across live event traffic. <img src="https://feedpress.me/link/23532/17492163.gif" height="1" width="1"/>]]></description>
      <wfw:commentRss>https://blogs.cisco.com/security/conf26-agentic-soc/feed</wfw:commentRss>
      <slash:comments>0</slash:comments>
    </item>
    <item>
      <title>Splunk .conf26: Tracking the Triage Agent in the Agentic SOC</title>
      <link>https://feedpress.me/link/23532/17492164/conf26-agentic-soc-triage-agent</link>
      <comments>https://blogs.cisco.com/security/conf26-agentic-soc-triage-agent#respond</comments>
      <dc:creator><![CDATA[Christian Cloutier]]></dc:creator>
      <pubDate>Thu, 08 Oct 2026 15:00:29 +0000</pubDate>
      <category><![CDATA[Security]]></category>
      <category><![CDATA[Cisco Duo]]></category>
      <category><![CDATA[Cisco Secure Access]]></category>
      <category><![CDATA[Cisco Secure Endpoint]]></category>
      <category><![CDATA[Cisco Secure Firewall]]></category>
      <category><![CDATA[Cybersecurity]]></category>
      <category><![CDATA[Security Operations Center]]></category>
      <category><![CDATA[SOC]]></category>
      <category><![CDATA[Splunk]]></category>
      <category><![CDATA[Splunk Enterprise Security]]></category>
      <category><![CDATA[Zeek]]></category>
      <guid isPermaLink="false">https://blogs.cisco.com/?p=498268</guid>
      <description><![CDATA[How Cisco used Splunk as the SOC data platform at .conf26 to unify security telemetry and track the Splunk AI Triage Agent with human-validated workflows. <img src="https://feedpress.me/link/23532/17492164.gif" height="1" width="1"/>]]></description>
      <wfw:commentRss>https://blogs.cisco.com/security/conf26-agentic-soc-triage-agent/feed</wfw:commentRss>
      <slash:comments>0</slash:comments>
    </item>
  </channel>
</rss>
