ethansilvas / splunk-logs-and-investigations

Investigating attacks using Splunk Enterprise logs and creating SPL intrusion detection searches based on known attacker TTPs and anomaly behavior derived from statistical baselines
16Updated last year

Alternatives and similar repositories for splunk-logs-and-investigations:

Users that are interested in splunk-logs-and-investigations are comparing it to the libraries listed below