Hello dear Splunk community! We have a Splunk Cloud instance (version 10.1.2507.13). We were able to get Cortex incidents using the "Splunk Add-On for Palo Alto Networks".Unfortunately, this app does not include Cortex Alerts. There is an app called "Palo Alto Cortex XDR Alert Retriever" but it doesn't seem to be working on new version of CORTEX XDR ( Cortex XDR V3.16 ). The APP seems to have no more updates from 2024. I have tried both normal and Advanced API keys. Do you have any idea how to pull Cortex alerts using this app or another free method? Much thanks!
... View more