Comments on: Splunk Threat Intel IOC Integration via Lookups https://www.nextron-systems.com/2015/09/06/splunk-threat-intel-ioc-integration-via-lookups/ We Detect Hackers Tue, 04 Oct 2022 13:27:36 +0000 hourly 1 By: Florian Roth https://www.nextron-systems.com/2015/09/06/splunk-threat-intel-ioc-integration-via-lookups/#comment-34 Thu, 01 Oct 2015 17:28:50 +0000 https://www.bsk-consulting.de/?p=1299#comment-34 In reply to Dave Cotts.

I reported the UTF-8 issue to AlienVault and Jaime provided a fix.
The current OTX SDK version fixes that issue.

]]>
By: Dave Cotts https://www.nextron-systems.com/2015/09/06/splunk-threat-intel-ioc-integration-via-lookups/#comment-33 Thu, 01 Oct 2015 04:33:52 +0000 https://www.bsk-consulting.de/?p=1299#comment-33 Hi Florian!
Great write up and script! I just thought I would let you know that it doesn’t seem to work with the new OTX-Python-SDX (it was updated about 10 days after you posted this script).
I pulled one of the old versions off their github and it works great again.
When using the new OTX script there is an error downloading the feed.
Cheers 🙂
Dave

]]>