A community-built SPL + dashboard repository
GoSplunk
Discover field-tested SPL searches and full dashboard XML you can copy straight into Splunk.
Sample SPL
index=security EventCode=4625
| stats count by Account_Name, ComputerName
| sort - count 128
SPL searches
Hand-picked SPL searches from across the library.
Detect ShellShock Attempts in Apache Logs
Monitor for Service Changes in Windows
Failed Attempt to Initiate Remote Desktop Session
Search to show what apps are ready to be updated
Evaluate Fahrenheit to Celsius
Searches to check search concurrency for historical or real time
Overall CVSS score (tenable)
Search for duplicate events in Splunk
Find passwords in User_Name field
Dashboards
Full XML dashboards with panels, inputs, and drilldowns. Copy once, ship instantly.