Splunk Boss of the SOC version 3 dataset.
☆474Jun 18, 2020Updated 6 years ago
Alternatives and similar repositories for botsv3
Users that are interested in botsv3 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Splunk Boss of the SOC version 2 dataset.☆439Nov 1, 2022Updated 3 years ago
- ☆475Aug 8, 2024Updated 2 years ago
- ☆127Jan 27, 2022Updated 4 years ago
- Home for Splunk security datasets.☆137Mar 18, 2020Updated 6 years ago
- This repository is dedicated to hosting personal comprehensive walkthrough solutions for Splunk's Boss of the SOC (BOTS) CTF-style labs. …☆16Dec 30, 2023Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A repository of curated datasets from various attacks☆799Updated this week
- Splunk Security Content☆1,672Updated this week
- A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data int…☆2,537Updated this week
- Splunk code (SPL) for serious threat hunters and detection engineers.☆294Jan 15, 2024Updated 2 years ago
- A repository for generalized splunk code, dashboards, resources and suggestions/recommendations.☆32Dec 13, 2022Updated 3 years ago
- A Splunk app mapped to MITRE ATT&CK to guide your threat hunts☆1,191Jul 26, 2023Updated 3 years ago
- Windows Events Attack Samples☆2,602Jan 24, 2023Updated 3 years ago
- Small and highly portable detection tests based on MITRE's ATT&CK.☆12,367Updated this week
- Automate the creation of a lab environment complete with security tooling and logging best practices☆5,010Jul 6, 2024Updated 2 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Main Sigma Rule Repository☆10,864Updated this week
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,627Jan 12, 2026Updated 6 months ago
- A repository of sysmon configuration modules☆3,109Jul 13, 2026Updated 3 weeks ago
- Splunk Remote Work Insights - Executive Dashboard☆42Aug 20, 2020Updated 5 years ago
- Splunk Event Generator: Eventgen☆396Aug 1, 2023Updated 3 years ago
- Re-play Security Events☆1,796Mar 20, 2024Updated 2 years ago
- DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.☆575Dec 12, 2021Updated 4 years ago
- Sysmon configuration file template with default high-quality event tracing☆5,613Jul 3, 2024Updated 2 years ago
- ☆2,427Oct 14, 2023Updated 2 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Splunk Boss of the SOC v1 data set.☆113Jun 13, 2018Updated 8 years ago
- Splunk new dashboard framework examples .conf 2019☆34Oct 28, 2023Updated 2 years ago
- Ansible playbooks for configuring and managing Splunk Enterprise and Universal Forwarder deployments☆402Updated this week
- A Powershell incident response framework☆1,660Nov 22, 2022Updated 3 years ago
- Data validator agains Splunk Common Information Model (CIM)☆80Jun 21, 2026Updated last month
- unix_collector is a Live Response collection script for Incident Response on UNIX-like systems using native binaries. Supports AIX, Andro…☆43Jun 18, 2026Updated last month
- Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).☆822Jul 28, 2026Updated last week
- A set of Zeek scripts to detect ATT&CK techniques.☆622Jun 26, 2024Updated 2 years ago
- Learn Splunk by creating a lab instance in seconds. Includes Eventgen and Splunk's Machine Learning app!☆111Jun 10, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Basic c2-matrix analysis enviroment using Suricata + Wazuh + Elastic stack☆13Apr 18, 2020Updated 6 years ago
- Risk Based Alerting Supporting Add-On (SA) for Splunk☆44Oct 28, 2021Updated 4 years ago
- Digging Deeper....☆4,160Updated this week
- A collection of Splunk dashboard templates.☆16Apr 18, 2019Updated 7 years ago
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,621Updated this week
- Detect Tactics, Techniques & Combat Threats☆2,323Updated this week
- Splunk Docker GitHub Repository☆545Updated this week