{
  "Name": "TacitRedThreatIntelligence",
  "Author": "Data443 Risk Mitigation, Inc. - support@data443.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/tacitred_logo.svg\"width=\"75px\"height=\"75px\">",
  "Description": "The [TacitRed Compromised Credentials](https://data443.com/tacitred-attack-surface-intelligence/) solution integrates TacitRed's compromised credential and identity threat intelligence into Microsoft Sentinel using the Codeless Connector Framework (CCF). The solution deploys a REST API poller connector, a custom log table (TacitRed_Findings_CL), analytics rule, and visualization workbook to help security teams detect and investigate credential compromise.",
  "Data Connectors": [
    "Data Connectors/TacitRed_CCF/TacitRed_ConnectorDefinition.json"
  ],
  "Analytic Rules": [
    "Analytic Rules/TacitRed - High Confidence Compromise.yaml",
    "Analytic Rules/TacitRed - Repeat Compromise Detection.yaml"
  ],
  "Workbooks": [
    "Workbooks/TacitRedSecOpsWorkbook.json"
  ],
  "WorkbookDescription": "This workbook provides SecOps visibility into TacitRed compromised credential findings, including breach trends, domain analysis, and credential exposure metrics.",
  "Metadata": "SolutionMetadata.json",
  "BasePath": "C:\\GitHub\\Azure-Sentinel\\Solutions\\TacitRedThreatIntelligence",
  "Version": "3.0.0",
  "TemplateSpec": true,
  "Is1Pconnector": false
}
