Documentation for this add-on is posted at Splunk Docs
granted_access_description field added for EventID 10
fixed:
- Hashes value assigned to file_hash instead of process_hash for EventIDs 24, 27 and 28
- registry_key_name and registry_value_name extractions for EventIDs 12, 13 and 14
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.