threathunting-spl
TA-UserWatchlist
threathunting-spl | TA-UserWatchlist | |
---|---|---|
2 | 1 | |
255 | 5 | |
- | - | |
4.1 | 10.0 | |
4 months ago | almost 2 years ago | |
- | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
threathunting-spl
TA-UserWatchlist
-
Searching for IP's in a watchlist
You should probably read the apps documentation: https://github.com/doksu/TA-UserWatchlist/wiki
What are some alternatives?
Spring4Shell-Detection - Lazy SPL to detect Spring4Shell exploitation
ansible-role-splunkbase - Ansible role for downloading and installing apps from splunkbase.com
awesome-detection-engineering - Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying malicious or unauthorized activity before it negatively impacts an individual or an organization.
threathunting - A Splunk app mapped to MITRE ATT&CK to guide your threat hunts
SplunkDashboards - Collection of Dashboards for Threat Hunting and more!
security_content - Splunk Security Content
soar-notable-automation-tracker - 📈 track & quantify the value gained through Splunk ES Notable automation
sigma - Main Sigma Rule Repository
SIEM - SIEM Tactics, Techiques, and Procedures