How-to build detection scenarios properly?

This page summarizes the projects mentioned and recommended in the original post on /r/blueteamsec

InfluxDB - Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com
featured
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com
featured
  • attack_range

    A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data into Splunk

  • have a look at Splunk's Attack Range project, which automates Caldera and Atomic Red Team for these kinds of purposes. i think this might help you as you gauge visibility, rulesets, etc ... https://github.com/splunk/attack_range

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts

  • Splunk core certification

    2 projects | /r/Splunk | 8 Jun 2023
  • Is there any repository for sample raw audit logs for various software platforms?

    2 projects | /r/Splunk | 22 May 2023
  • Need to setup AD lab for praticing..

    2 projects | /r/activedirectory | 25 Mar 2023
  • Introducing Splunk Attack Range v2.0

    3 projects | /r/Splunk | 12 Jul 2022
  • Terraform and Ansible

    1 project | /r/devops | 3 Nov 2021