I'm seeing this errors on our installation of the Sophos Add-on for Splunk
2020-03-20 13:44:07,936 ERROR pid=7703 tid=MainThread file=base_modinput.py:log_error:307 |***event data in json format***
It seems that some events are getting indexed but other's are erroring this way.
Does anyone know what's going on and how to fix it?