Splunk Enterprise

Detect Golden ticket attack using SPL?

BenzSann
Splunk Employee
Splunk Employee

Has anyone had experience to detect Golden ticket attack using SPL?

Labels (1)
0 Karma

to4kawa
Ultra Champion

ref:https://jpcertcc.github.io/ToolAnalysisResultSheet/

Why not check event details and search these?

0 Karma
Get Updates on the Splunk Community!

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk + Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...