Community Blog
Get the latest updates on the Splunk Community, including member experiences, product education, events, and more!

Get Ready for BOTS10: The Legendary Challenge Returns to .conf25!

iamryan
Community Manager
Community Manager

Heelllllloooooo Splunkers,

The countdown is on: Splunk .conf25 is happening in Boston from September 8–11, and with it comes one of the most anticipated events for security practitioners — Boss of the SOC (BOTS)!

Whether you’re a first-timer or a seasoned BOTS veteran, this year is going to be something special. We’re celebrating 10 years of BOTS with BOTS10 — and trust us, it’s going to be one for the books.

What Is BOTS?

If you’re new here, BOTS is a blue-team, jeopardy-style, capture-the-flag-esque (CTF) competition. You and your team will step into the role of Alice Bluebird, a security analyst protecting Frothly — your fictional brewery-slash-hot-dog-food-truck company — from the notorious APT group Angry Alpaca.

You’ll investigate real-world security incidents using Splunk Enterprise, Splunk Enterprise Security, SOAR, Attack Analyzer, and maybe even a few surprises. You’ll need speed, accuracy, and a good sense of humor (yes, there are easter egg questions, and yes, they’re wild).

Who Should Play?

If you’re wondering if this is for you — it is.
Whether you’re a Splunk security pro or still learning the ropes, BOTS is built to challenge and excite participants at every level. There are hints, onsite coaches, and tons of support to help you succeed.

The best part? BOTS is a team game, so bring your crew — or join forces with new friends. You’ll come out of it with stronger skills, new connections, and maybe even some serious bragging rights.

How to Join BOTS10

  1. Register for .conf25

  2. Look for the BOTS registration link in your confirmation email

  3. Sign up early — this event fills up fast!

BOTS10 happens on Sunday, September 8 at 7:00 PM (doors open at 6:30 PM)

 Pro Tips for First-Time BOTS Players

Let’s Talk About It in Slack

Whether you're recruiting teammates, hyping yourself up, or sharing memories from past years, join the conversation in the Splunk Community Slack channel #conf25. New players can ask questions, returning champs can drop tips, and we’ll all count down to BOTS10 together.

Register for .conf25 today

Additional Reasons to Attend .Conf25

 

 

Contributors
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...