Tag: SPL

Instant Domain Matching Logic for Splunk via Uncoder AI
Instant Domain Matching Logic for Splunk via Uncoder AI

How It Works This feature in Uncoder AI ingests structured IOCs from threat reports — in this case, dozens of malicious domains tied to credential phishing (e.g., fake Google, Microsoft, and Telegram login portals). The tool processes and structures the data to automatically output a Splunk-compatible detection query. Domain-Based Filtering with dest_host The output query […]

Read More
Let AI Catch the Bugs: Uncoder AI Validates Detection Rule Syntax and Logic
Let AI Catch the Bugs: Uncoder AI Validates Detection Rule Syntax and Logic

How It Works In fast-paced detection engineering, syntax mistakes and structural oversights happen — especially when working across multiple platforms or under tight response deadlines. Catching and fixing these issues manually is tedious, time-consuming, and often overlooked. With Uncoder AI’s Syntax and Structure Validation, detection authors can now validate their rules — both syntactically and […]

Read More