Skip to content

Commit 492e2d1

Browse files
committed
fix: Data443 support + stabilize V3 package
1 parent 20337c3 commit 492e2d1

File tree

4 files changed

+20
-5
lines changed

4 files changed

+20
-5
lines changed
-921 Bytes
Binary file not shown.

Solutions/TacitRed-IOC-CrowdStrike/Package/createUiDefinition.json

Lines changed: 2 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@
66
"config": {
77
"isWizard": false,
88
"basics": {
9-
"description": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Workbooks/Images/Logos/tacitred_logo.svg\" width=\"75px\" height=\"75px\">\n\n**Note:** Please refer to the following before installing the solution: \n\n&#8226; Review the solution [Release Notes](https://github.com/Azure/Azure-Sentinel/tree/master/Solutions/TacitRed-IOC-CrowdStrike/ReleaseNotes.md)\n\n &#8226; There may be [known issues](https://aka.ms/sentinelsolutionsknownissues) pertaining to this Solution, please refer to them before installing.\n\nThe TacitRed CrowdStrike IOC Automation solution provides example playbooks that demonstrate how to consume TacitRed threat intelligence from Microsoft Sentinel and prepare indicators for ingestion into CrowdStrike.\n\n**Playbooks:** 1\n\n[Learn more about Microsoft Sentinel](https://aka.ms/azuresentinel) | [Learn more about Solutions](https://aka.ms/azuresentinelsolutionsdoc)",
9+
"description": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Workbooks/Images/Logos/tacitred_logo.svg\" width=\"75px\" height=\"75px\">\n\n**Note:** Please refer to the following before installing the solution: \n\n Review the solution [Release Notes](https://github.com/Azure/Azure-Sentinel/tree/master/Solutions/TacitRed-IOC-CrowdStrike/ReleaseNotes.md)\n\n There may be [known issues](https://aka.ms/sentinelsolutionsknownissues) pertaining to this Solution, please refer to them before installing.\n\nThe TacitRed CrowdStrike IOC Automation solution provides example playbooks that demonstrate how to consume TacitRed threat intelligence from Microsoft Sentinel and prepare indicators for ingestion into CrowdStrike.\n\n**Playbooks:** 1\n\n[Learn more about Microsoft Sentinel](https://aka.ms/azuresentinel) | [Learn more about Solutions](https://aka.ms/azuresentinelsolutionsdoc)",
1010
"subscription": {
1111
"resourceProviders": [
1212
"Microsoft.OperationsManagement/solutions",
@@ -87,3 +87,4 @@
8787
}
8888
}
8989
}
90+

Solutions/TacitRed-IOC-CrowdStrike/Package/mainTemplate.json

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -269,7 +269,7 @@
269269
"sourceId": "[variables('_solutionId')]"
270270
},
271271
"author": {
272-
"name": "TacitRed",
272+
"name": "Data443 Risk Mitigation, Inc.",
273273
"email": "[variables('_email')]"
274274
},
275275
"support": {
@@ -305,7 +305,7 @@
305305
"contentSchemaVersion": "3.0.0",
306306
"displayName": "TacitRed-IOC-CrowdStrike",
307307
"publisherDisplayName": "Data443 Risk Mitigation, Inc.",
308-
"descriptionHtml": "<p><strong>Note:</strong> Please refer to the following before installing the solution:</p>\n<p>&#8226; Review the solution <a href=\"https://github.com/Azure/Azure-Sentinel/tree/master/Solutions/TacitRed-IOC-CrowdStrike/ReleaseNotes.md\">Release Notes</a></p>\n<p>&#8226; There may be <a href=\"https://aka.ms/sentinelsolutionsknownissues\">known issues</a> pertaining to this Solution, please refer to them before installing.</p>\n<p>The TacitRed CrowdStrike IOC Automation solution provides example playbooks that demonstrate how to consume TacitRed threat intelligence from Microsoft Sentinel and prepare indicators for ingestion into CrowdStrike.</p>\n<p><strong>Playbooks:</strong> 1</p>\n<p><a href=\"https://aka.ms/azuresentinel\">Learn more about Microsoft Sentinel</a> | <a href=\"https://aka.ms/azuresentinelsolutionsdoc\">Learn more about Solutions</a></p>\n",
308+
"descriptionHtml": "<p><strong>Note:</strong> Please refer to the following before installing the solution:</p>\n<p> Review the solution <a href=\"https://github.com/Azure/Azure-Sentinel/tree/master/Solutions/TacitRed-IOC-CrowdStrike/ReleaseNotes.md\">Release Notes</a></p>\n<p> There may be <a href=\"https://aka.ms/sentinelsolutionsknownissues\">known issues</a> pertaining to this Solution, please refer to them before installing.</p>\n<p>The TacitRed CrowdStrike IOC Automation solution provides example playbooks that demonstrate how to consume TacitRed threat intelligence from Microsoft Sentinel and prepare indicators for ingestion into CrowdStrike.</p>\n<p><strong>Playbooks:</strong> 1</p>\n<p><a href=\"https://aka.ms/azuresentinel\">Learn more about Microsoft Sentinel</a> | <a href=\"https://aka.ms/azuresentinelsolutionsdoc\">Learn more about Solutions</a></p>\n",
309309
"contentKind": "Solution",
310310
"contentProductId": "[variables('_solutioncontentProductId')]",
311311
"id": "[variables('_solutioncontentProductId')]",
@@ -318,7 +318,7 @@
318318
"sourceId": "[variables('_solutionId')]"
319319
},
320320
"author": {
321-
"name": "TacitRed",
321+
"name": "Data443 Risk Mitigation, Inc.",
322322
"email": "[variables('_email')]"
323323
},
324324
"support": {

Solutions/TacitRed-IOC-CrowdStrike/Package/packageMetadata.json

Lines changed: 15 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,5 +9,19 @@
99
"descriptionHtml": "<p><strong>TacitRed CrowdStrike IOC Automation</strong> provides a Logic App playbook that automatically syncs compromised credential indicators from TacitRed to CrowdStrike Falcon.</p><p>This solution includes:</p><ul><li><strong>Playbook:</strong> TacitRedToCrowdStrike - Fetches TacitRed findings and creates IOCs in CrowdStrike</li></ul><p><strong>Key Features:</strong></p><ul><li>Automated IOC synchronization every 6 hours</li><li>Domain and URL IOC creation from compromised credentials</li><li>Enriched IOC descriptions with stealer, credential, and machine details</li><li>CrowdStrike OAuth2 authentication</li></ul>",
1010
"contentProductId": "tacitred-crowdstrike-ioc-automation",
1111
"id": "tacitred-crowdstrike-ioc-automation",
12-
"icon": "<svg xmlns=\"http://www.w3.org/2000/svg\" width=\"64\" height=\"64\" viewBox=\"0 0 64 64\"><rect width=\"64\" height=\"64\" fill=\"#0078D4\"/><path d=\"M32 16 L48 32 L32 48 L16 32 Z\" fill=\"#FFFFFF\"/><circle cx=\"32\" cy=\"32\" r=\"8\" fill=\"#0078D4\"/></svg>"
12+
"icon": "<svg xmlns=\"http://www.w3.org/2000/svg\" width=\"64\" height=\"64\" viewBox=\"0 0 64 64\"><rect width=\"64\" height=\"64\" fill=\"#0078D4\"/><path d=\"M32 16 L48 32 L32 48 L16 32 Z\" fill=\"#FFFFFF\"/><circle cx=\"32\" cy=\"32\" r=\"8\" fill=\"#0078D4\"/></svg>",
13+
"support": {
14+
"tier": "Partner",
15+
"name": "Data443 Risk Mitigation, Inc.",
16+
"email": "support@data443.com",
17+
"link": "https://www.data443.com"
18+
},
19+
"author": {
20+
"name": "Data443 Risk Mitigation, Inc."
21+
},
22+
"providers": [
23+
"Data443 Risk Mitigation, Inc."
24+
],
25+
"firstPublishDate": "2025-11-25",
26+
"lastPublishDate": "2025-11-25"
1327
}

0 commit comments

Comments
 (0)