Skip to content
#

spl-query

Here is 1 public repository matching this topic...

This project demonstrates SSH authentication log analysis using Splunk SIEM to detect malicious activity such as brute-force attacks, unauthorized access attempts, and suspicious SSH behavior. It simulates real-world SOC analyst workflows, including log ingestion, SPL queries, dashboards, and alerting.

  • Updated Dec 29, 2025

Improve this page

Add a description, image, and links to the spl-query topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the spl-query topic, visit your repo's landing page and select "manage topics."

Learn more