Getting Data In

Splunk and TheHive integration

bil151515
Engager

Hey!
My team is interested in integration of Splunk (especially ES) and TheHive Project products.

The goal is to provide automated sending  Splunk Alerts (Notable Events in case of ES) to TheHive platform for further automatic analysis by Cortex and returning results back to Splunk.

I don't have any experience in stuff like that so I would like to get any ideas of solving this problem.

Maybe anyone have done that before on their project and would like to share any solutions?

Labels (2)

splunkreal
Influencer

Hello @bil151515  we have done it successfully if needed.

* If this helps, please upvote or accept solution if it solved *
0 Karma

Bubbleob
New Member

Can you expand on how your team did it? Ideally with step-by-step methods.

0 Karma

splunkreal
Influencer

Hello @Bubbleob sorry for late response, using https://splunkbase.splunk.com/app/5329

* If this helps, please upvote or accept solution if it solved *
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Agent Mode Engaged! Enchaining Agentic Operations with Splunk AI Assistant 2.0

    Are you ready to transform how your team handles complex data requests? We invite you to our upcoming ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...