jay-johnson / spylunkingLinks
Drill down into your python logs using JSON logs stored in Splunk - supports sending over TCP or the Splunk HEC REST API handlers (using threads or multiprocessing) - includes a pre-configured Splunk sandbox in a docker container
☆13Updated 3 years ago
Alternatives and similar repositories for spylunking
Users that are interested in spylunking are comparing it to the libraries listed below
Sorting:
- Analysis Correlation Engine☆23Updated 3 years ago
- Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets☆33Updated 2 weeks ago
- Core incident handling plugins for aws_ir cli, incident pony, and more.☆21Updated 7 years ago
- Materials for the BSides NoVA/Charleston 2018 Bro Workshop☆14Updated 7 months ago
- Python scripts to download, parse, and enrich scans.io study data and load into Splunk for research, threat intelligence gathering, and s…☆19Updated 3 weeks ago
- ☆30Updated 7 years ago
- Python module for evaluation of AWS account best practices around incident handling readieness.☆55Updated 5 years ago
- An example of a vulnerable slack bot that runs in AWS lambda.☆19Updated 8 years ago
- Machine readable cybersecurity compliance standards library for Python, starting with FISMA and NIST Risk Management Framework☆63Updated 5 years ago
- Move frozen buckets to AWS S3 (and ultimately Glacier) for long term storage☆13Updated 8 years ago
- A toolset to test data classification engines that generates mock data in various file formats, sizes and data profiles.☆43Updated 2 years ago
- Application Security Workflow Automation using Docker and Kubernetes☆23Updated 3 years ago
- ☆15Updated 7 years ago
- Finding Valuable Needles in Global Source Code Haystacks with Automation☆17Updated 4 years ago
- List of Sanctions and Most wanted☆28Updated 8 years ago
- Parser for Splunk's Search Processing Language (SPL) syntax highlighting☆20Updated 6 years ago
- Tools to automate AWS Cloud security assessments☆24Updated 5 years ago
- Terraform stack to deploy ELK Threat Hunting on Amazon AWS.☆88Updated 6 years ago
- Documentation used for Shuffle☆21Updated last week
- Hosted analyzers built for Grapl☆14Updated 3 years ago
- Data Science Command Line Toolbox in a docker container☆29Updated 7 years ago
- Python bindings for Yeti's API☆19Updated 2 years ago
- 🎯 Vulnerability Pryer - Prying context into your vulnerability data☆21Updated 4 years ago
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆55Updated last month
- Python code shared by Scout2 and AWS-Recipes☆24Updated 6 years ago
- A Zeek package that detects Zoom logins and meeting joins☆12Updated 5 years ago
- Send events from G Suite to McAfee SIEM☆13Updated 6 years ago
- Streaming web crawler with WebSocket API☆45Updated last week
- Additional README's for XSOAR and XSOAR related things☆13Updated 2 years ago
- Python logging handler for sending logs to Splunk Enterprise☆57Updated last year