Derek Arnold (ransomvik)

ransomvik

Geek Repo

Company:Obelisk Security

Location:MN

Github PK Tool:Github PK Tool

Derek Arnold's repositories

obelisk-threat-intel

Obelisk Threat Intel is a Splunk App that automatically correlates your data with several popular open threat lists. After a few mouse clicks we can start hunting for log sources that are reaching out to, or being attacked from, known attackers. The app can provide increased visibility to potentially malicious activity going on in the organization.

Language:JavaScriptLicense:GPL-3.0Stargazers:3Issues:2Issues:0
Language:PythonStargazers:2Issues:2Issues:0

ansible_playbooks

Ansible playbooks for Elasticsearch and Splunk

TA_obelisk-threat

Obelisk Threat Intel is a Splunk App that automatically correlates your data with several popular open threat lists. After a few mouse clicks we can start hunting for log sources that are reaching out to, or being attacked from, known attackers. The app can provide increased visibility to potentially malicious activity going on in the organization.

Language:PythonLicense:GPL-3.0Stargazers:1Issues:1Issues:0

snippets

Useful snippets

Language:PythonLicense:MITStargazers:0Issues:1Issues:0