Skip to content

v0.15.21

Choose a tag to compare

@github-actions github-actions released this 21 Jun 04:18
· 40 commits to main since this release
35a25a0

What's Changed

  • feat(live-feed): specific sanitized titles for the genericized detectors by @maiconburn in #1080
  • feat(allowlist): config-driven self_infra_ips to keep own boxes out of the feeds by @maiconburn in #1081
  • fix(guardrail): close the FP and miss found by the guardrail benchmark by @maiconburn in #1082
  • fix(sensor): catch crontab reinstall + world-writable chmod (atomic-bench findings) by @maiconburn in #1083
  • security(sensor-ebpf): surface credential reads dropped by the openat allowlist (atomic-bench) by @maiconburn in #1084
  • security(sensor): close io_uring comm-spoof + SUID fixed-scope evasions (audit E5/E6) by @maiconburn in #1085
  • security(sensor-ebpf): close credential-read + IMDS forgeable-comm evasions (audit E1/P1) by @maiconburn in #1086
  • release: 0.15.21 by @maiconburn in #1087

Full Changelog: v0.15.20...v0.15.21