- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Aside from Alerts for Admins& Meta Woot! &MC what other Splunk apps are useful for daily chores & Ransomware monitoring?
SamHTexas
Builder
07-05-2021
02:17 PM
Am looking for top 5-10 Splunk Apps / TAs to help with daily security checks & Watching for UBA behaviors, Ransomware monitoring etc. Thank u in advance
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
General_Talos
Path Finder
07-05-2021
07:59 PM
This may be subjective 🤣, anyways can be a good discussion
- Splunk Enterprise Security
- InfoSec App for Splunk
- Splunk ES Content Update
- Splunk Security Essentials for Ransomware
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
SamHTexas
Builder
07-09-2021
07:19 AM
Thank u for this list. We have ES (Enterprise Security). Is Ent. security update a different app? Let me know if you think of more apps / TAs. Thank u again
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
General_Talos
Path Finder
07-14-2021
04:42 AM
Yes, Splunk ES content update is different app
https://splunkbase.splunk.com/app/3449/
+1
SA-Investigator for Enterprise Security : https://splunkbase.splunk.com/app/3749/
