This add on is designed to be a new installation and will replace the CrowdStrike Falcon Intelligence Add-on (https://splunkbase.splunk.com/app/3945/).
Splunk v8+ with Python 3
CrowdStrike OAuth2 Authentication
CrowdStrike US based, EU and GovCloud environments
CrowdStrike Resource Center: CrowdStrike Falcon Intel Indicator Add-On Guide
CrowdStrike App
CrowdStrike Falcon Event Streams Technical Add-On
CrowdStrike Falcon Devices Technical Add-On
CrowdStrike Intel Indicator Technical Add-On
CrowdStrike Falcon Data Replicator (FDR) Technical Add-On
This release is a full upgrade to the TA coding, functionality and logging. This add-on now leverages threading to increase the processing of large data sets
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.