jay-johnson / spylunkingLinks
Drill down into your python logs using JSON logs stored in Splunk - supports sending over TCP or the Splunk HEC REST API handlers (using threads or multiprocessing) - includes a pre-configured Splunk sandbox in a docker container
☆12Updated 2 years ago
Alternatives and similar repositories for spylunking
Users that are interested in spylunking are comparing it to the libraries listed below
Sorting:
- Data Governance app for Splunk☆12Updated last year
- Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets☆32Updated 3 months ago
- Move frozen buckets to AWS S3 (and ultimately Glacier) for long term storage☆13Updated 8 years ago
- Python module for evaluation of AWS account best practices around incident handling readieness.☆55Updated 5 years ago
- Python scripts to download, parse, and enrich scans.io study data and load into Splunk for research, threat intelligence gathering, and s…☆19Updated 2 months ago
- Core incident handling plugins for aws_ir cli, incident pony, and more.☆22Updated 7 years ago
- Additional README's for XSOAR and XSOAR related things☆12Updated 2 years ago
- A toolset to test data classification engines that generates mock data in various file formats, sizes and data profiles.☆44Updated last year
- Python logging handler for sending logs to Splunk Enterprise☆57Updated last year
- A Workflow for Data Scientists to bring Jupyter Notebook Visualizations to Kibana Dashboards☆45Updated 2 years ago
- Python code shared by Scout2 and AWS-Recipes☆24Updated 6 years ago
- ☆30Updated 7 years ago
- Finding Valuable Needles in Global Source Code Haystacks with Automation☆17Updated 4 years ago
- Terraform stack to deploy ELK Threat Hunting on Amazon AWS.☆89Updated 6 years ago
- Materials for the BSides NoVA/Charleston 2018 Bro Workshop☆14Updated 4 months ago
- Tripod is a tool/ML model for computing latent representations for large sequences☆16Updated 4 months ago
- AWS Backup implementation in terraform☆14Updated 5 years ago
- Send events from G Suite to McAfee SIEM☆13Updated 6 years ago
- Analysis Correlation Engine☆23Updated 3 years ago
- Data Science Command Line Toolbox in a docker container☆28Updated 7 years ago
- For use in our Tenable.IO to AWS Security Hub integration☆28Updated last month
- Python tool build around GreyNoise's alpha/public API☆11Updated 6 years ago
- This repo contains a list of aws security related talks.☆12Updated 7 years ago
- This script is used to generate some basic detections of the aws security services☆71Updated 3 years ago
- ☆83Updated 5 years ago
- A terraform module for deploying Tenable.io's preauthorized Nessus Scanner in AWS☆34Updated last month
- S3 runbook☆31Updated 8 years ago
- Active Response plugin. Osquery to execute wazuh/ossec active response plugins. You can write your own plugins, easy to plug☆11Updated 5 years ago
- An example of a vulnerable slack bot that runs in AWS lambda.☆19Updated 8 years ago
- Integration for Jira ticket creation from Tenable vulnerability scans☆17Updated 6 years ago