SavitarX
Ctrlk
LinkedinTryHackme
  • README
  • CERTIFICATIONS & notes
    • My Roadmap to Becoming a Penetration Tester & Red Team
    • Comp Network
    • Red Team
    • Blue Team
      • Defensive Security Analyst
        • Security Monitoring & SIEM Fundamentals
        • Windows Event Logs & Finding Evil
        • Introduction to Threat Hunting & Hunting With Elastic
        • Understanding Log Sources & Investigating with Splunk
          • Core SPL Commands
          • Using Splunk Applications
          • Intrusion Detection With Splunk
          • Sysmon EventCode
          • Detecting Attacker Behavior With TTPs
          • Detecting Attacker Behavior With Analytics
          • Skills Assessment
        • Windows Attacks & Defense
        • Intro to Network Traffic Analysis
        • Intermediate Network Traffic Analysis
        • Working with IDS/IPS
        • Introduction to Malware Analysis
        • YARA & Sigma for SOC Analysts
        • Introduction to Linux Forensics
      • Digital Forensics and Incident Response
    • Web Pentesting
  • Writeups
    • Tryhackme
  • Machines to pratice for
    • CPTS Preparation
    • OSEP
  • The Computer Science and Engineering program
    • Read this
    • Computer Science
    • Security
Powered by GitBook
On this page
  1. CERTIFICATIONS & notes
  2. Blue Team
  3. Defensive Security Analyst

Understanding Log Sources & Investigating with Splunk

Core SPL CommandsUsing Splunk ApplicationsIntrusion Detection With SplunkSysmon EventCodeDetecting Attacker Behavior With TTPsDetecting Attacker Behavior With AnalyticsSkills Assessment
PreviousSkills AssessmentNextCore SPL Commands