Sunburst IOCs for Splunk Ingest
Instructions on how to add IOCs into Splunk Enterprise Security- https://www.splunk.com/en_us/blog/security/how-do-i-add-covid-threat-intelligence-from-the-internet-to-enterprise-security.html
IPv6 IOCs are there for reference, will not load into Enterprise Security Threat Intel. But they can be used in a lookup table for use in Splunk searches.