How to Detect Sunburst Backdoor with Splunk Enterprise Security
Check out this article to learn how Splunk Core and Splunk Enterprise Security can be leveraged to detect SUNBURST IOC’s.
https://www.splunk.com/en_us/blog/security/sunburst-backdoor-detections-in-splunk.html