dstaulcu's repositories
TA-Sigma-Searches
A Splunk app with saved reports derived from Sigma rules
SplunkTools
A collection of scripts useful in management of Splunk deployment
SplunkKOHelper
Job aide to help transition splunk reports and dashboards to support splunk app for windows v5
ScrapeSplunkDocs
Powershell script to automate download, categorization, and compression of Splunk Enterprise documentation
WinEventsToSplunkObjects
Explore windows event log providers and export selected event ids to CSV, Splunk inputs, or Splunk SPL
EventsToSpeech
Powershell script to monitor application crash or hang incidents and to audibly notify users via windows speech synthesizer.
splunkutils
powershell module for interacting with splunk resources via rest
aws
scripts to interact with various aws services
EtwExplorer
View ETW Provider manifest
Splunk-Modal-Window
Code for HL blog posts: https://www.hurricanelabs.com/splunk-tutorials/splunk-custom-modal-view-creation-part-1-revealing-a-path-toward-enhanced-visibility-and-functionality -
Splunk_TA_Windows
Revision history for Splunk_TA_Windows
sysmon-modular
A repository of sysmon configuration modules
TA-AppCrashGather
Script-based Splunk input to extract, transform, and forward firefox crash reporting logs
ThreatHunting
A Splunk app mapped to MITRE ATT&CK to guide your threat hunts