A community-built SPL + dashboard repository
GoSplunk
Discover field-tested SPL searches and full dashboard XML you can copy straight into Splunk.
Sample SPL
index=security EventCode=4625
| stats count by Account_Name, ComputerName
| sort - count 128
SPL searches
Hand-picked SPL searches from across the library.
Multiple Malware Detections on a Single Host
Splunk Objects With Permissions Granted to Non-existent Roles
Listing Data models
User Logon / Session Duration
Timestamps from the future.
Top exploitable vulnerabilities (tenable)
List All Hosts Associated with All Indexes
Find where actual hostnames don't match the host from the Universal Forwarder
License Usage Prediction
Dashboards
Full XML dashboards with panels, inputs, and drilldowns. Copy once, ship instantly.