{
  "Name": "Microsoft Defender Threat Intelligence",
  "Author": "Microsoft - support@microsoft.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/Azure_Sentinel.svg\" width=\"75px\" height=\"75px\">",
  "Description": "Microsoft centralizes numerous data sets into a single platform, Microsoft Defender Threat Intelligence [(MDTI)](https://learn.microsoft.com/defender/threat-intelligence/what-is-microsoft-defender-threat-intelligence-defender-ti), making it easier for Microsoft’s community and customers to conduct infrastructure analysis. Microsoft’s primary focus is to provide as much data as possible about Internet infrastructure to support a variety of security use cases and enabling automation for Incident management in Microsoft Sentinel.",
  "Playbooks": [
    "Playbooks/MDTI-Automated-Triage/azuredeploy.json",
    "Playbooks/MDTI-Data-Cookies/azuredeploy.json",
    "Playbooks/MDTI-Data-WebComponents/azuredeploy.json",
    "Playbooks/MDTI-Intel-Reputation/azuredeploy.json",
    "Playbooks/MDTI-PassiveDns/azuredeploy.json",
    "Playbooks/MDTI-PassiveDnsReverse/azuredeploy.json",
    "Playbooks/MDTI-Trackers/azuredeploy.json"
  ],
  "Workbooks": [
  "Workbooks/MicrosoftThreatIntelligence.json"
  ],
  "BasePath": "C:\\GitHub\\Azure-Sentinel\\Solutions\\Microsoft Defender Threat Intelligence",
  "Version": "3.0.2",
  "Metadata": "SolutionMetadata.json",
  "TemplateSpec": true
}
