Default Version 1.2.1
October 24, 2022
October 24, 2022
Splunk Enterprise
Platform Version: 9.4, 9.3, 9.2, 9.1, 9.0
Log in to rate this app
The Dragos Threat Intelligence App for Splunk enables users to automatically correlate and visualize Indicators of Compromise (IOCs) from Dragos Threat Intelligence (WorldView) subscriptions with your log data in Splunk to detect early warning of malicious activities in incoming and outgoing traffic, domains, and applications in IT networks targeting ICS/OT environments. A set of customizable dashboards provide search results for log data compliant with the Splunk Common Information Model (CIM). This app requires the Dragos Add-on for Splunk.
Log in to report this app listing.