Splunk Tech Talks
Deep-dives for technical practitioners.

Super Speed with Phantom Slash Commands

melissap
Splunk Employee
Splunk Employee

View our Tech Talk: Security Edition,  Super Speed with Phantom Slash Commands 

 

Want to accelerate your Phantom investigations and response, without leaving your Command Line Interface (CLI)? Phantom Slash Commands let you do just that. Slash Commands are instructions written into Phantom’s activity pane text box that begin with a forward slash ( / ) followed by a command. These allow you to run playbooks and actions by simply typing into your CLI, saving you time and effort by removing the need for excess mouse clicks. Paired with keyboard navigation from Phantom’s 508 compliance, Slash Commands are a powerful tool for every Phantom user.

With Slash Commands, you can quickly pivot in an investigation to:

  • Run an action
  • Run a playbook
  • Add a note to a container
  • Update or edit a container
  • Get datapath information for use with other actions

...all without ever leaving your CLI.

Tune in to learn:

  • How Slash Commands speed up investigations
  • How to quickly pivot and execute actions, all within the CLI
  • See how Slash Commands and Phantom save you time and effort
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...