• Stars
    star
    261
  • Rank 156,072 (Top 4 %)
  • Language
  • Created over 7 years ago
  • Updated 9 months ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

Splunk code (SPL) for serious threat hunters and detection engineers.

threathunting-spl

This is a repository to store Splunk code (SPL) and prototypes useful for building rules (correlation searches) and queries to find and hunt for malicious activity.

About

Feel free to contribute and share your feedbak in case you find it useful. For more Splunk (and Security) related stuff also check the following :