Loading...
A repository of curated datasets from various attacks to easily develop and test detections, specifically designed for validating detections in production SIEM installations using Splunk's Security Content Replay into streaming pipelines. Utilizes GitHub LFS for managing large files, with installation instructions provided for Mac users and other operating systems.
Common questions about Splunk Attack Data Repository including features, pricing, alternatives, and user reviews.
Splunk Attack Data Repository is Curated datasets for developing and testing detections in SIEM installations.. It is a Security Operations solution designed to help security teams with Splunk, Mac Os.
A lightweight bash script IOC scanner for Linux/Unix/macOS systems that detects malicious indicators through hash matching, filename analysis, string searches, and C2 server identification without requiring installation.
Get strategic cybersecurity insights in your inbox