2026-04-13 09-03-24

15:56 2 Дисплей 4 Боби% 1 336 Сегментҳо

Боби% 1

  1. 0:07

    When you're writing queries in Splunk to perform threat hunts, you need to be familiar with the Splunk processing language. It is how those queries are going to be formatted. So let's take a look here at how these SPL queries are formatted …

  2. 5:08

    and your transforming search is more going to be using more of your filters and your commands as well. So let's go ahead and jump into our lab environment and take a look at how these queries are actually structured in some example searches…

  3. 10:12

    type. So we don't specify a source type, it's going to search across all of the source types here. So again, all of these so far have just been raw searches. Let's take a look at one of the commands we can use. So let's remove the event cod…

  4. 15:12

    are built. We're going to keep expanding on these queries. We're going to walk through some structured threat hunts here, and there's going to be plenty to kind of play with in the lab environment as well. But this was just meant to be a qu…