The Splunk Attack Range is an open-source project maintained by the Splunk Threat Research Team. It builds instrumented cloud (AWS, Azure) and local environments (Virtualbox), simulates attacks, and forwards the data into a Splunk instance. This environment can then be used to develop and test the effectiveness of detections.

Features

  • The user is able to quickly build a small lab infrastructure as close as possible to a production environment
  • Documentation available
  • The Attack Range performs attack simulation using different engines such as Atomic Red Team or Caldera in order to generate real attack data
  • It integrates seamlessly into any Continuous Integration / Continuous Delivery (CI/CD) pipeline to automate the detection rule testing process
  • Istall directly on Windows, Linux, or MacOS
  • Examples included

Project Samples

Project Activity

See All Activity >

License

Apache License V2.0

Follow Splunk Attack Range

Splunk Attack Range Web Site

Other Useful Business Software
The Most Powerful Software Platform for EHSQ and ESG Management Icon
The Most Powerful Software Platform for EHSQ and ESG Management

Addresses the needs of small businesses and large global organizations with thousands of users in multiple locations.

Choose from a complete set of software solutions across EHSQ that address all aspects of top performing Environmental, Health and Safety, and Quality management programs.
Learn More
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of Splunk Attack Range!

Additional Project Details

Operating Systems

Linux, Mac, Windows

Programming Language

Python

Related Categories

Python Penetration Testing Tool

Registered

2024-10-10