Peak Threat Hunting

Conduct threat hunts in Splunk using the PEAK framework (Prepare, Execute, Act with Knowledge). Supports hypothesis-driven, baseline, and model-assisted hunts. Use when the user wants to threat hunt, investigate security anomalies, baseline data sources, detect adversary techniques, or map findings to MITRE ATT&CK.

shanemullens Updated

File contents

shanemullens/shane-cursor-skills/tree/main/skills/peak-threat-hunting commit 3a2e585bfd

Frequently asked questions

npx skillmds@latest add shanemullens/peak-threat-hunting