Zeroska
Ctrlk
  • 🐱Zeroska - The Bold
  • Computer/Cyber Security
    • ⭐Fresh off the boat - for new Blue Teamer/ SOC Analyst
    • 💀Necromancer (DFIR)
    • 🧙‍♂️Defense Witchcraft
    • 💙My Current Blue Team Operation
    • 🏭ICS/OT
    • 🥷Threat Intelligence
  • 😒Computer and Technology
    • My Home Lab Setup
    • 🐴ELK Stack
    • 🐧Linux
    • 📦Containers
    • 🪠Splunk Learning Experience
      • Splunk Test Lab
      • Data Collection Tier (How to get the data)
      • SC4S Custom Filter For Windows Event Log in Syslog Format (NXLog)
      • Useful Resources
  • Threat Hunting
    • Hunting for Implant
    • Using STRIDE and DREAD
    • 🐳Predators and Preys (Computing)
    • 📦Network Packet Analysis
    • Grep | Powershell Search | Regex
    • Hunting Resources
  • 🎵In my remains
    • Choices
    • The Art of Facing Unknown Problems
    • Build the best DFIR team
    • Reverse Engineering - Đồ án hướng ngành A "Hụt" của tôi
Powered by GitBook
On this page
  1. 😒Computer and Technology
  2. 🪠Splunk Learning Experience

Useful Resources

  • https://medium.com/splunkuserdeveloperadministrator/splunk-configuration-files-precedence-explained-1b5c20b7b41c (Explain important configuration files in Splunk)

  • https://blog.soclib.net/splunk-configuration-file-precedence/

  • https://blogs.gosplunk.com/ (Provide some good dashboards and queries)

  • https://www.splunk.com/en_us/pdfs/tech-brief/splunk-validated-architectures.pdf (Splunk validated architectures)

  • https://www.aplura.com/splunk-best-practices/ (Really good blog about Splunk stuff)

  • https://www.aptosolutions.co.uk/wp-content/uploads/2022/01/Apto-Splunk-Cloud-Quickstart-Deployment.pdf

PreviousSC4S Custom Filter For Windows Event Log in Syslog Format (NXLog)NextHunting for Implant

Last updated 2 years ago

Was this helpful?

Was this helpful?