> cat /dev/github | grep security-tools
discovered 03 Aug 2026

ioc2splunk

via awesome-list
→ View on GitHub
ioc2splunk.py is a Python tool designed to process CSV results from ioc-parser and convert them into a Splunk-compatible lookup table by appending de-duplicated entries. Its primary use case is to facilitate the integration of Indicator of Compromise (IOC) data into Splunk for enhanced threat intelligence management. Notable features include automatic backup management, data enrichment with additional columns, and routine clean-up of outdated entries in both backup and current Splunk tables.