The Splunk Attack Range is an open-source project maintained by the Splunk Threat Research Team. It builds instrumented cloud (AWS, Azure) and local environments (Virtualbox), simulates attacks, and forwards the data into a Splunk instance. This environment can then be used to develop and test the effectiveness of detections.

Features

  • The user is able to quickly build a small lab infrastructure as close as possible to a production environment
  • Documentation available
  • The Attack Range performs attack simulation using different engines such as Atomic Red Team or Caldera in order to generate real attack data
  • It integrates seamlessly into any Continuous Integration / Continuous Delivery (CI/CD) pipeline to automate the detection rule testing process
  • Istall directly on Windows, Linux, or MacOS
  • Examples included

Project Samples

Project Activity

See All Activity >

License

Apache License V2.0

Follow Splunk Attack Range

Splunk Attack Range Web Site

Other Useful Business Software
Stop Cyber Threats with VM-Series Next-Gen Firewall on Azure Icon
Stop Cyber Threats with VM-Series Next-Gen Firewall on Azure

Native application identity and user-based security for your Azure cloud

Gain integrated visibility across all traffic in a single pass. Deploy Palo Alto Networks VM-Series to determine application identity and content while automating security policy updates via rich APIs.
Get a free trial
Rate This Project
Login To Rate This Project

User Reviews

Be the first to post a review of Splunk Attack Range!

Additional Project Details

Operating Systems

Linux, Mac, Windows

Programming Language

Python

Related Categories

Python Penetration Testing Tool

Registered

2024-10-10