jay-johnson / spylunking
Drill down into your python logs using JSON logs stored in Splunk - supports sending over TCP or the Splunk HEC REST API handlers (using threads or multiprocessing) - includes a pre-configured Splunk sandbox in a docker container
☆12Updated 2 years ago
Alternatives and similar repositories for spylunking:
Users that are interested in spylunking are comparing it to the libraries listed below
- Data Governance app for Splunk☆12Updated last year
- Python scripts to download, parse, and enrich scans.io study data and load into Splunk for research, threat intelligence gathering, and s…☆19Updated 2 months ago
- Repository for lab materials for the Advanced Cloud Security and Applied DevSecOps training class.☆11Updated 5 years ago
- Python module for evaluation of AWS account best practices around incident handling readieness.☆55Updated 4 years ago
- Splunk scripted input for opening a backconnect shell on a remote forwarder☆45Updated 4 years ago
- Materials for the BSides NoVA/Charleston 2018 Bro Workshop☆14Updated 2 months ago
- Move frozen buckets to AWS S3 (and ultimately Glacier) for long term storage☆12Updated 7 years ago
- Python bindings for Yeti's API☆18Updated last year
- Notebook collection☆10Updated 6 years ago
- Integration for Jira ticket creation from Tenable vulnerability scans☆17Updated 6 years ago
- A developer-friendly framework for exhaustive analysis of (PCAP and PE) files.☆15Updated 7 years ago
- ☆25Updated 6 years ago
- A walkthrough of security controls for a serverless architecture via a demo application☆11Updated 2 years ago
- S3Insights is a platform for efficiently deriving security insights about S3 data through metadata analysis☆12Updated last month
- An example of a vulnerable slack bot that runs in AWS lambda.☆19Updated 7 years ago
- Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets☆31Updated 11 months ago
- Bluehat 2018 Graphs for Security Workshop☆42Updated 6 years ago
- Python code shared by Scout2 and AWS-Recipes☆24Updated 6 years ago
- This repo contains workshop material delivered at #nullcon2020☆15Updated 5 years ago
- Serverless function to automate enforcement of Multi-Factor Authentication (MFA) to all AWS IAM users with access to AWS Management Conso…☆13Updated 6 years ago
- ☆19Updated 6 years ago
- ☆83Updated 5 years ago
- For use in our Tenable.IO to AWS Security Hub integration☆28Updated last month
- Looks for GitHub org users without 2FA turned on☆9Updated 8 years ago
- Python logging handler for sending logs to Splunk Enterprise☆57Updated 11 months ago
- Application Security Workflow Automation using Docker and Kubernetes☆22Updated 2 years ago
- Python tool build around GreyNoise's alpha/public API☆11Updated 6 years ago
- A set of AWS resources for testing the Log4Shell vulnerability, deployable with terraform☆12Updated 3 years ago
- Tripod is a tool/ML model for computing latent representations for large sequences☆16Updated last year
- Splunk csv to KVStore ES Threat Intel☆11Updated 8 years ago