Splunk Search

Reconnaissance of BOTSv3

splunkbegineer
New Member

Hello,

I have completed the BOTSv1 investigation. But when it comes to BOTSv3, it is about cloud. May I know on how to reconnaissance if no information provided?  I only found cloud source type such as aws*. Then after that I do not have any idea to continue the reconnaissance

https://www.youtube.com/watch?v=q4LmktgWsRE&t=230s

Please kindly help and advise.

 

Thank you

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Splunk at Cisco Live 2025: Learning, Innovation, and a Little Bit of Mr. Brightside

Pack your bags (and maybe your dancing shoes)—Cisco Live is heading to San Diego, June 8–12, 2025, and Splunk ...

Splunk App Dev Community Updates – What’s New and What’s Next

Welcome to your go-to roundup of everything happening in the Splunk App Dev Community! Whether you're building ...

The Latest Cisco Integrations With Splunk Platform!

Join us for an exciting tech talk where we’ll explore the latest integrations in Cisco + Splunk! We’ve ...