v0.15.21
What's Changed
- feat(live-feed): specific sanitized titles for the genericized detectors by @maiconburn in #1080
- feat(allowlist): config-driven self_infra_ips to keep own boxes out of the feeds by @maiconburn in #1081
- fix(guardrail): close the FP and miss found by the guardrail benchmark by @maiconburn in #1082
- fix(sensor): catch crontab reinstall + world-writable chmod (atomic-bench findings) by @maiconburn in #1083
- security(sensor-ebpf): surface credential reads dropped by the openat allowlist (atomic-bench) by @maiconburn in #1084
- security(sensor): close io_uring comm-spoof + SUID fixed-scope evasions (audit E5/E6) by @maiconburn in #1085
- security(sensor-ebpf): close credential-read + IMDS forgeable-comm evasions (audit E1/P1) by @maiconburn in #1086
- release: 0.15.21 by @maiconburn in #1087
Full Changelog: v0.15.20...v0.15.21