Accessible Threat Intelligence with the Splunk app- Optiv Threat Intel

No ratings

Presented at BSidesMSP 2016 by

Optiv Threat Intel is a Splunk App that automatically correlates your data with several popular open threat lists. After a few mouse clicks we can start hunting for log sources that are reaching out to, or being attacked from, known attackers. The app can provide increased visibility to potentially malicious activity going on in the organization.