A community-built SPL + dashboard repository
GoSplunk
Discover field-tested SPL searches and full dashboard XML you can copy straight into Splunk.
Sample SPL
index=security EventCode=4625
| stats count by Account_Name, ComputerName
| sort - count 128
SPL searches
Hand-picked SPL searches from across the library.
Sysmon - Outbound Connections by Process
Remediation Tracking Trend - Qualys
Sysmon - Find Processes with Renamed Executables
Count of Host added to Splunk by Month
Percentage of skipped searches
1st time connection between servers (FTD CISCO)
Detect Dying Sourcetypes
Fishies! Fun Query and Easter Egg
Total Number of Hosts reporting in.
Dashboards
Full XML dashboards with panels, inputs, and drilldowns. Copy once, ship instantly.