Default Version 3.5.1
May 19, 2026
May 19, 2026
Splunk Enterprise, Splunk Cloud
Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3
CIM Version: 8.x, 6.x
Log in to rate this app
#7 in Threat Intel
The technical add-on allows CrowdStrike Intelligence customers to periodically retrieve Intelligence Indicator data from the CrowdStrike Intel Indicator API and ingest that data into their Splunk Environment. This enables organizations to leverage CrowdStrike's industry leading intelligence to provide proper security context to the rest of their machine data. This add-on also is used to support the CrowdStrike Falcon App (https://splunkbase.splunk.com/app/5094/).
Log in to report this app listing.