nccgroup / Splunking-Crime
Splunking Crime using Splunk Machine Learning Toolkit
☆11Updated 6 years ago
Alternatives and similar repositories for Splunking-Crime:
Users that are interested in Splunking-Crime are comparing it to the libraries listed below
- Splunk scripted input for opening a backconnect shell on a remote forwarder☆47Updated 4 years ago
- Data Governance app for Splunk☆12Updated last year
- Splunk custom alert action for Atlassian JIRA☆18Updated 6 years ago
- Drill down into your python logs using JSON logs stored in Splunk - supports sending over TCP or the Splunk HEC REST API handlers (using …☆12Updated 2 years ago
- Various Splunk Scripts and applets, all in one place☆32Updated 2 months ago
- ☆22Updated 2 years ago
- Data validator agains Splunk Common Information Model (CIM)☆75Updated 10 months ago
- ☆55Updated 2 years ago
- Allows for MAC address to vendor mapping in Splunk☆16Updated last year
- Allows to pull asset and identity data into Splunk app for Enterprise Security from LDAP and other sources☆27Updated 6 years ago
- Python scripts to download, parse, and enrich scans.io study data and load into Splunk for research, threat intelligence gathering, and s…☆19Updated this week
- Files and Folders for BSides Splunk 2021☆22Updated 3 years ago
- User anomaly detector based on logs generated by Osquery framework and machine learning to process those logs.☆33Updated 7 years ago
- Move frozen buckets to AWS S3 (and ultimately Glacier) for long term storage☆12Updated 7 years ago
- A Splunk app for obtaining information from web apps☆11Updated 4 years ago
- ☆23Updated 4 years ago
- Install a full Splunk Enterprise Cluster or Universal forwarder using an ansible playbook☆52Updated 4 years ago
- Config viewer and file editor for Splunk. Based on VSCode.☆29Updated 9 months ago
- Splunk csv to KVStore ES Threat Intel☆11Updated 8 years ago
- Splunk Alert Manager with advanced reporting on alerts, workflows (modify assignee, status, severity) and auto-resolve features☆81Updated 2 years ago
- A place to store sample data files for Splunk☆10Updated 6 years ago
- Splunk Tableau Web Data Connector (WDC) Example☆20Updated last year
- TrackMe - Data tracking system for Splunk admins☆50Updated 2 years ago
- Visual Studio Code Extension for Splunk☆89Updated this week
- Detecting DNS Spoofing, DNS Tunneling, DNS Exfiltration☆37Updated 9 years ago
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆105Updated last year
- ☆20Updated 4 years ago
- Bro IDS + ELK Stack to detect and block data exfiltration☆46Updated 6 years ago
- A Splunk technology add-on for osquery☆14Updated 3 years ago
- Run Splunk heavy forwarders in Docker Swarm for high availability, security, and reduced cost!☆14Updated 6 months ago