Verizon Data Breach Investigations Report (DBIR) app for Splunk
Verizon Data Breach Investigations Report (DBIR) app for Splunk
Archived
The Verizon DBIR app for Splunk has a number of recommendations for organizations to prevent and detect breaches. This app contains dashboards and views for the recommendations encompassing credential use, phishing and malware.
Use the dashboards and views in this app to:
- Track authentications
- Credential based lateral movement
- Impossible journey vpn connection
- Flag potential exfiltration through email
- Identify vulnerable systems
This is a community supported. Please post questions to http://answers.splunk.com and tag questions with 'DBIR'