The Cyware Threat Intel eXchange (CTIX) Add-on for Splunk is used to assist the user in the integration of CTIX with Splunk Enterprise. This application allows the user to perform the following tasks:
1. Pull the threat intel data from CTIX to Splunk.
2. It adds a index and source type in Splunk with the threat intel data
3. This data can be used to create analytics on top of Splunk on the data.