Skip to main content
DDoS Detector for Splunk app icon

DDoS Detector for Splunk

This App relies on flow data processed by NetFlow Optimizer™ (NFO) and provides alerting and visualization capabilities for distributed denial-of-service (DDoS) attacks detected and reported to Splunk® by NFO DDoS Detector Module.Built by NetFlow Logic
splunk product badge

Default Version 1.1.47

August 4, 2026

Compatibility

Splunk Enterprise, Splunk Cloud

Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4

CIM Version: 6.x, 5.x

Rating
5
(1)

Log in to rate this app

Support
Not Supported

This App relies on flow data processed by NetFlow Optimizer™ (NFO) and provides alerting and visualization capabilities for distributed denial-of-service (DDoS) attacks detected and reported to Splunk® by NFO DDoS Detector Module. The operators benefit from being able to address traffic anomalies and DDoS attacks before network devices and servers targeted by DDoS are incapacitated. Use this App to setup and receive email alerts within minutes after a DDoS attack is detected. Select the detection confidence level for notifications to reduce false positives. View details of the anomaly, and/or browse through the history of detected attacks, searching for common origins and victims. Start Your NFO Free Trial by registering at https://www.netflowlogic.com/download/