The gospel of SPLUNK

Hi everyone,

Hope your past week wasn't as crazy as mine...I had some good time with a great tool for reviewing logs. Ladies and gentlemen, I bring to you the gospel of SPLUNK..:) I had to review some logs during the week, in each log, I had about 200,000 events and had five logs to go through. I actually didn't know what I should be looking out for, but I was meant to spot suspicious behaviours. I didn't have to search the internet for long before i came across a myriad of log reviewing tools, but the one that caught my attention was SPLUNK.
Great tool, easy to use, and great user interface.

Manager Interface

The search interface





I didn't have to watch any tutorials before i got the hang of it. Anyways, for those that want to give it a try, there is free download at http://www.splunk.com/download?ac=get_splunk_download

Comments

Popular posts from this blog

Red Teaming with Covenant and Donut

Pentesting Android applications

Covenant Task 101 - PPID Spoof Example