Import File STIX
Automatic deploy
Supported by Filigran
Other
Overview
The Import File STIX connector parses STIX 2.1 JSON and STIX 1.2 XML files and imports them into OpenCTI, with optional bundle validation and contextual import into containers such as Reports and Cases.
The Import File STIX connector is an internal import connector that parses STIX (Structured Threat Information Expression) files and imports them into OpenCTI.
It supports:
- STIX 2.1 JSON: native import of STIX 2.1 bundles
- STIX 1.2 XML: automatic conversion to STIX 2.1 using the stix2-elevator library
- Contextual import: import STIX content directly into containers (Reports, Cases, etc.)
- Validation: optional bundle validation before import
This connector is essential for ingesting threat intelligence from external sources that provide STIX-formatted data.
Basic information
Connectors
6.8.13
6.8.13
1