jay-johnson / spylunking
Drill down into your python logs using JSON logs stored in Splunk - supports sending over TCP or the Splunk HEC REST API handlers (using threads or multiprocessing) - includes a pre-configured Splunk sandbox in a docker container
☆12Updated 2 years ago
Alternatives and similar repositories for spylunking:
Users that are interested in spylunking are comparing it to the libraries listed below
- Data Governance app for Splunk☆12Updated last year
- A set of AWS resources for testing the Log4Shell vulnerability, deployable with terraform☆12Updated 3 years ago
- Python logging handler for sending logs to Splunk Enterprise☆55Updated 8 months ago
- S3Insights is a platform for efficiently deriving security insights about S3 data through metadata analysis☆11Updated last month
- The official Prelude-Correlator GitHub mirror of https://www.prelude-siem.org/projects/prelude-correlator/repository☆10Updated 3 years ago
- For use in our Tenable.IO to AWS Security Hub integration☆28Updated last month
- Move frozen buckets to AWS S3 (and ultimately Glacier) for long term storage☆12Updated 7 years ago
- Data Science Command Line Toolbox in a docker container☆28Updated 6 years ago
- ☆10Updated 2 years ago
- Serverless function to automate enforcement of Multi-Factor Authentication (MFA) to all AWS IAM users with access to AWS Management Conso…☆13Updated 6 years ago
- Repository for lab materials for the Advanced Cloud Security and Applied DevSecOps training class.☆11Updated 5 years ago
- Following repository contains source codes used in my two Books.☆11Updated 9 years ago
- A Zeek package that detects Zoom logins and meeting joins☆12Updated 4 years ago
- Python tool build around GreyNoise's alpha/public API☆10Updated 6 years ago
- A few quick recipes for those that do not have much time during the day☆22Updated 2 months ago
- A modern code-injection framework for Python. Like Pyrasite but Kubernetes-aware.☆59Updated 2 months ago
- Notebook collection☆10Updated 5 years ago
- A walkthrough of security controls for a serverless architecture via a demo application☆11Updated 2 years ago
- ☆14Updated last year
- Core incident handling plugins for aws_ir cli, incident pony, and more.☆21Updated 6 years ago
- Simple tool to identify and remediate the use of the AWS EC2 IMDSv1.☆16Updated 3 years ago
- Fun tools around the EBS Direct API☆18Updated 3 years ago
- A developer-friendly framework for exhaustive analysis of (PCAP and PE) files.☆15Updated 7 years ago
- ☆24Updated 6 years ago
- ☆30Updated 6 years ago