v4.2.0.stable118
Service tasking
- Watch for changes to service heuristics to dynamically reload them on change.
- Emit events to notify on heuristic changes
UI
- Emit events to notify on heuristic changes
v4.2.0.stable117
Service Base
- Updater: Don't let `shutil` infer the type of the downloaded archive based on the extension. Use identify to provide the format.
v4.2.0.stable116
Service Base
- Updater: Use identify to determine if downloaded file from URL is an archive or not.
v4.2.0.stable115
- Across all components add support for configurable post-processing actions to per server. This allows customization in the conditions for alerting, reanalysis, or custom behaviours with webhooks.
v4.2.0.stable114
Core
- Changes to improve expiry throughput
v4.2.0.stable113
Service Base
- Add VirusTotal report parsing library to service base for VirusTotal-based services
v4.2.0.stable112
Base
- bugfix for azure filestore
v4.2.0.stable111
Base
- Make ODM_VERSION an accessible constant
Service Base
- Fill in `odm_version` and `odm_type` since we're not validating the entire model
v4.2.0.stable110
Base
- Fix a bug in our azure filestore
v4.2.0.stable109
Service Base
- Updater: Handle unpacking files based on the Content-Type in the HTTP response
v4.2.0.stable108
Base
- Add utility command for garbage collecting the filestore
Core
- Fix bugs in expiry
v4.2.0.stable107
Service Base
- Allow HTTP-based downloads to support using `private_key` for client certificates
Core
- Replay Loader: Terminate container on cross-device link exceptions
v4.2.0.stable106
UI - Frontend
- Fix crash when alerts have no detailed section
v4.2.0.stable105
Core
- Bugfix in dispatcher related to replay
v4.2.0.stable104
Service Base
- When extracting IOCs from a text blob, provide the ability to enforce a character minimum for IOCs extracted. This is to assist with false positives from different text blob sources
v4.2.0.stable103
Service Base
- You can now pass the heuristic ID to be used when handling artifacts
v4.2.0.stable102
Base
- Add support for sha256 sources
Core
- bugfix around apm call
- enable redis keepalive
UI API/Frontend
- Add support for sha256 sources