Default Version 1.5.9
August 30, 2024
August 30, 2024
Splunk Enterprise
Platform Version: 9.4, 9.3, 9.2, 9.1, 9.0
Log in to rate this app
This app provides the ability to ingest Orange TITAN© threat intel to power searches given an api token. This can be used to determine if endpoints are infected by malware or are performing suspicious outbound communications. To install, the account must have the following capabilities: inherit user capabilities (front-end browsing) admin_all_objects (install app, write config files, delete config files) list_storage_passwords (fetch encrypted API token from disk) rest_apps_management (install app)
Log in to report this app listing.