Peak Threat Hunting V2

Conduct threat hunts in Splunk using the PEAK framework (Prepare, Execute, Act with Knowledge) and create Notable Events for findings. Supports hypothesis-driven, baseline, and model-assisted hunts. Automatically generates Notable Events in Splunk Enterprise Security via sendalert. Use when the user wants to threat hunt, investigate security anomalies, baseline data sources, detect adversary techniques, map findings to MITRE ATT&CK, create notable events, or generate correlation search results.

mayeack Updated

File contents

mayeack/MCP_skills/tree/main/codex/peak-threat-hunting-v2 commit abb412333c

Frequently asked questions

npx skillmds@latest add mayeack/peak-threat-hunting-v2