Kaspersky Threat Feed App for Splunk is an app for Splunk® provided by Kaspersky Lab. You can use the features of the app for the following:
You can look up either a single indicator, or indicators that are contained in log files.
Kaspersky Threat Feed App for Splunk provides macros for creating lookup requests and alerts in Splunk.