Pinned Repositories
SA-AwsAssets
This supporting add-on comes with prebuilt content for AWS data to be easily used with Splunk Enterprise Security's asset database.
SA-CrowdstrikeDevices
Allows Crowdstrike device information to be used with Splunk Enterprise Security.
SA-Rapid7Assets
This supporting add-on comes with prebuilt content for Rapid7 InsightVM data to be easily used with Splunk Enterprise Security's Asset database.
SA-SentinelOneDevices
Allows SentinelOne device information to be used with Splunk Enterprise Security.
app-wfa
GitHub workflow actions
attack_range_zts
A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data into Splunk
deploy-zpots
Uses Hashicorp Terraform and ansible to deploy TPOT sensors and send logs back to a Splunk instance.
mission-control-demo
Useful playbooks to be used with Mission Control
ZachTheSplunker's Repositories
ZachTheSplunker/app-wfa
GitHub workflow actions
ZachTheSplunker/deploy-zpots
Uses Hashicorp Terraform and ansible to deploy TPOT sensors and send logs back to a Splunk instance.
ZachTheSplunker/mission-control-demo
Useful playbooks to be used with Mission Control
ZachTheSplunker/rba-community
Website for the RBA Community
ZachTheSplunker/SA-zTsAutobahn
Bootstrap configurations for a Splunk ES Autobahn.
ZachTheSplunker/tpotce
🍯 T-Pot - The All In One Honeypot Platform 🐝
ZachTheSplunker/ZachTheSplunker