Splunk Enterprise Security

Splunk ES threat feeds empty

splunkreal
Motivator

Hello guys, since 08/20/2025 we have issues in ES downloading these feeds from Splunk servers. When we try with curl then it doesn't return any data. No error. We use proxy.

Thanks for your help!

 

* If this helps, please upvote or accept solution if it solved *
0 Karma

KeeganP
Engager

Did you ever get a resolution to this? I see nobody has responded, I am in the same boat over here. We recently built up our ES enviro and the threat intel isn't populating for me either. 

0 Karma

splunkreal
Motivator

Hello, we disabled sources which were not available anymore and it's ok now. Support told us provider subscriptions are now required.

* If this helps, please upvote or accept solution if it solved *
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...