Skip to content

Latest commit

 

History

History
9 lines (6 loc) · 534 Bytes

File metadata and controls

9 lines (6 loc) · 534 Bytes

Splunk-Sunburst

Sunburst IOCs for Splunk Ingest

Instructions on how to add IOCs into Splunk Enterprise Security- https://www.splunk.com/en_us/blog/security/how-do-i-add-covid-threat-intelligence-from-the-internet-to-enterprise-security.html

https://www.splunk.com/en_us/blog/security/smoothing-the-bumps-of-onboarding-threat-indicators-into-splunk-enterprise-security.html

IPv6 IOCs are there for reference, will not load into Enterprise Security Threat Intel. But they can be used in a lookup table for use in Splunk searches.