Accept License Agreements

This app is provided by a third party and your right to use the app is in accordance with the license provided by that third-party licensor. Splunk is not responsible for any third-party apps and does not provide any warranty or support. If you have any questions, complaints or claims with respect to this app, please contact the licensor directly.

Thank You

Downloading Anomali ThreatStream Community App
MD5 checksum (anomali-threatstream-community-app_503.tgz) d2d42b255bc898c91df94bf3186ee48e MD5 checksum (anomali-threatstream-community-app_502.tgz) 91eb662e4e8eb7ef3ec301133deb0e91 MD5 checksum (anomali-threatstream-community-app_3312.tgz) 198002b15df18016870b8039a110250e MD5 checksum (anomali-threatstream-community-app_3310.tgz) 587c5a8336a0fabee9035dd14331f513
To install your download
For instructions specific to your download, click the Details tab after closing this window.

Flag As Inappropriate

Anomali ThreatStream Community App

Splunk Certified
The Anomali Community App for Splunk combines the quality of Anomali’s threat intelligence with the depth of Splunk’s analytics to help organizations identify and respond to external security threats. The application provides subscribers with the capability to instantly check their exposure against published threats and to automate a health check against subscribers’ own live Splunk event data. Once threat matches are identified, Anomali provides security teams with the tools needed to research and investigate IOCs further.

The Anomali Community App for Splunk provides the following functionality:

  • Download and view Weekly Threat Briefings and Breaking News reports, published by Anomali Labs.

  • Scan logs against Anomali content to identify threats in your environment.

  • Optionally upload log summaries to cloud scanning against millions of Indicators of Compromise.

  • Investigate and Respond to threats identified within your environment.



Quick Start Guide:

System Requirements:

  • Splunk version 6.4, 6.3
  • Linux (x64) or Windows (x64 or x86)


We value your feedback and will continue to update this app on a regular basis. Please send comments, requests, or feedback to <>.

Release Notes

Version 5.0.3
March 28, 2017

- User Experience improvements
- Bug Fixes

Version 5.0.2
Nov. 29, 2016

Addressed feedback from Splunk certification team

Version 3.3.12
June 23, 2016

Updated the product logos

Version 3.3.10
May 2, 2016


Subscribe Share

Splunk Certification Program

Splunk's App Certification program uses a specific set of criteria to evaluate the level of quality, usability and security your app offers to its users. In addition, we evaluate the documentation and support you offer to your app's users.

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 50GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
© 2005-2017 Splunk Inc. All rights reserved.
Splunk®, Splunk>®, Listen to Your Data®, The Engine for Machine Data®, Hunk®, Splunk Cloud™, Splunk Light™, SPL™ and Splunk MINT™ are trademarks and registered trademarks of Splunk Inc. in the United States and other countries. All other brand names, product names, or trademarks belong to their respective owners.