https://github.com/vysec/CobaltSplunk
Blog Post: https://vincentyiu.co.uk/cobaltsplunk/
TDLR; use Splunk as a central log database and analysis system for offensive infrastructure logs. In many engagements, you will want accurate logging across multiple RAT systems, phishing web servers, mail systems, and more. Currently only supports Cobalt Strike, but will be looking at supporting Empire, Pupy, Metasploit, Apache, Nginx, and more!
Resources
Log in to report this app listing