Default Version 1.0.3+422aa45
November 14, 2024
November 14, 2024
Splunk Enterprise, Splunk Cloud
Platform Version: 10.5, 10.4, 10.3, 10.2, 10.1, 10.0, 9.4, 9.3, 9.2, 9.1, 9.0
Log in to rate this app
The main purpose of this Splunk App is the import of attributes/IOCs from MISP into a Splunk index. In order to use these IOCs for detection either as lookup or in Splunk Enterprise Security, the App provides some reports to generate IOC lookup-tables. These lookup-tables are compatible with the Threat Intelligence Framework of Splunk Enterprise Security.
Log in to report this app listing.