SA-CrowdstrikeIntelIndicators for Enterprise Security
SA-CrowdstrikeIntelIndicators for Enterprise Security
This supporting add-on Adds CrowdStrike's intelligence indicators to Splunk Enterprise Security's threat framework.
Supports the following IOC types OOB:
* IP
* Domain
* URL
* Hash
See documentation - including important prerequisites - at https://cs-intel.rba.community
** This supporting add-on is only intended to work with Splunk Enterprise Security deployments **