A community-built SPL + dashboard repository
GoSplunk
Discover field-tested SPL searches and full dashboard XML you can copy straight into Splunk.
Sample SPL
index=security EventCode=4625
| stats count by Account_Name, ComputerName
| sort - count 128
SPL searches
Hand-picked SPL searches from across the library.
Indexes in Splunk
File Accesses in a Windows Environment by user
Detect Scheduler Running Twice a Search
Find duplicate events
Search for disabled AD accounts that have been re-enabled
Top 10 most vulnerable systems (Tenable)
Linux Memory Usage
Failed Attempt to Login to a Disabled Account
Memory Usage (MB) per Splunk Process Class
Dashboards
Full XML dashboards with panels, inputs, and drilldowns. Copy once, ship instantly.