Collection of Dashboards for Threat Hunting and more!
-
Updated
Oct 17, 2020
Collection of Dashboards for Threat Hunting and more!
A Splunk Technology Add-on to forward filtered ETW events.
Databricks Add-on for Splunk
Splunk TA for sending completion requests to ChatGPT
Splunk Add-on for PowerShell provides field extraction for PowerShell event logs.
Splunk technical add-on (TA) for ingesting BigFix client, relay, and server logs. Includes REST inputs for ingesting assets, relevant fixlets, action summaries, and analysis results.
This TA takes Suricata5 data from your port mirrored Suricata server and makes it readable within Splunk. See Cheatsheets on how to setup a Suricata Port Mirrored Server
Postfix Add-on for Splunk (Compliant with the Mail CIM model)
An add-on for splunk to collect data from Cisco Intersight.
Splunk add-on providing a custom search command to query Troy Hunt's haveibeenpwned API (https://haveibeenpwned.com/api/v3/) for known breaches of your domains or mail addresses.
This technical addon includes a collection of visualization tools for Splunk.
An add-on that adds an Alert Action for creating alerts in TheHive.
Splunk topics with detailed explanation
KV Store Tools Redux app for Splunk
Splunk Add-On App for Cisco DNA Center
DCSO Threat Intelligence Engine (TIE) Add-On for Splunk v8
Add a description, image, and links to the splunk-addon topic page so that developers can more easily learn about it.
To associate your repository with the splunk-addon topic, visit your repo's landing page and select "manage topics."