{
  "Name": "Egress Defend",
  "Author": "Egress - support@egress.com",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/Egress-logo.svg\" width=\"75px\" height=\"75px\">",
  "Description": "Egress Defend for Microsoft Sentinel provides details of processed emails, including the type of phishing attack, payload type and information to show if the user interacted with the email in a positive (clicking on banners or submitting the phish sample) or negative (clicking on an unsafe URL) manner.",
  "WorkbookDescription": "Egress Defend Workbooks provides insight into Egress Defend audit logs",
  "Workbooks": [
    "Workbooks/DefendMetrics.json"
  ],
  "Analytic Rules": [
    "Analytic Rules/DangerousAttachmentReceived.yaml",
    "Analytic Rules/DangerousLinksClicked.yaml"
  ],
  "Parsers": [
    "Parsers/DefendAuditData.txt",
    "Parsers/DefendAuditData_v4.yaml"
  ],
  "Hunting Queries": [
    "Hunting Queries/DangerousLinksClicked.yaml"
  ],
  "Data Connectors": [
    "Data Connectors/DefendAPIConnector.json",
    "Data Connectors/EgressDefendAuditLogs_ccp/EgressDefendAudit_ConnectorDefinition.json"
  ],
  "BasePath": "C:\\GitHub\\Azure-Sentinel\\Solutions\\Egress Defend",
  "Version": "3.1.0",
  "Metadata": "SolutionMetadata.json",
  "TemplateSpec": true
}
