Getting Data In

Query that lists systems that are using default passwords.

waJesu
Path Finder

I am looking for a query that can help me list or audit systems that are using default passwords or any other method you think I can use to audit my environment for default passwords.

Labels (1)
0 Karma

PickleRick
SplunkTrust
SplunkTrust

As soon as you can into splunk the data about passwords we can help you search it.

But you need to have that data. Splunk as such is "just" a data processing tool.

EDIT: Typically querying for default credentials is part of what vulnerability scanners do.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...