Skip to content

Version 3.260817.0

Choose a tag to compare

@Filigran-Automation Filigran-Automation released this 17 Aug 13:23
· 10 commits to main since this release
36a6d26

Enhancements:

  • #7481 feat(autonomous): allow authoring an attack-path step onto an existing event
  • #7461 feat(targets): open team and person overviews from inject target results
  • #7376 feat(chaining): remove ff for chaining feature
  • #7339 fix(chaining): attack path: a payload not executed is tagged as detected with 30 alerts (EDR Microsoft defender)
  • #7304 feat: phishing custom domains, benign URLs and findings overhaul enhancement wave
  • #7275 fix(attack-path): the finding drawer never shows a producing action's run status, and renders a whole command output unclamped
  • #7262 feat(scenarios): rework autonomous attack path as a launch mode of chained scenarios
  • #7255 feat(frontend): compact the autonomous 'convert to manual' action and gate it on a stopped run
  • #7241 fix(attack-path): the focused finding's path is never visibly highlighted (highlight equals scope)
  • #7240 fix(chaining): MITRE tactic bands overlap each other on the logic map
  • #7236 fix(chaining): saving an action gated by an event fails with ObjectDeletedException
  • #7233 fix(chaining): stopping a simulation wipes its execution record and borrows the reset wording
  • #7231 fix(attack-path): payloads attach to a shared 'localhost' node, and NetworkTraffic payloads never appear
  • #7229 fix(chaining): logic map repeats the MITRE tactic on every action card
  • #7223 feat(fds): replace the left navigation with the design-system Navbar
  • #7203 feat(autonomous): OpenAEV-controlled run timeout with winddown steering and guaranteed termination
  • #7175 fix(attack-path): selecting a collapsed finding (e.g. one port among 16) empties the causal-chain graph
  • #7146 feat(injectors): built-in native phishing capability (landing pages, email templates, credential capture)
  • #7109 feat(platform): implement safe-mode configuration and visual banner
  • #7077 feat(output-types): add a new output processor type: ActionOutput, and check filter in conditions related to contains.
  • #7075 feat(chaining): add new output type "output"
  • #7073 feat(chaining): Create action from event
  • #6965 feat(chaining): attack path - collectors results
  • #6963 feat(chaining): attack path - remediation
  • #6936 feat(chaining): add documentation for atack path
  • #6935 feat(chaining): add documentation for basic chaining
  • #6934 feat(chaining): add documentation for logic creation
  • #6933 feat(chaining): add documentation for scope in chaining
  • #6926 feat(chaining): allow linking inputs to many primitive types
  • #6921 feat(chaining): Highlight the dataflow
  • #6895 feat(audit-logging): Phase 2 - US1 - Chunk 4 - Inject queued for integration agent
  • #6894 feat(audit-logging): Phase 2 - US1 - Chunk 3 - Scheduled execution + target resolution
  • #6893 feat(audit-logging): Phase 2 - US1 - Chunk 2 - Agent trace steps
  • #6892 feat(audit-logging): Phase 2 - US1 - Chunk 1 - Event logging inject status transitions
  • #6862 feat(debug): make debug mode usable on high-traffic and centrally-logged instances
  • #6856 feat(scope): feat(segregation-of-duties): Phase 1 - US.1 - Standalone Tag Management capability
  • #6855 feat(chaining): attack path - part 1
  • #6680 feat(chaining): Visualize Complete Dependency Chain
  • #6600 feat(chaining): be able to execute injectors with chaining engine
  • #6580 feat(chaining): refactor engine to manage correlated data
  • #6536 feat(chaining): refactor chaining engine to include complex and primitives types
  • #6409 feat(multitenancy): API isolation v2 executor GCatalog
  • #6368 feat(audit-logging): Phase 2 - US.4 - Warning Enterprise Edition Gating
  • #6357 feat(chaining): make chaining tenant compatible
  • #6298 feat(chaining): event on Logic Flow
  • #6297 feat(chaining): event creation drawer
  • #6288 refactor(chaining): document current state storage solution
  • #6198 feat(chaining): update the chaining engine to use the primitive and complex type
  • #5992 feat(ask-ariane): support agent-generated file downloads from XTM One (#810)
  • #5970 feat(chaining): add safety policy tooltip and information to the UI
  • #5969 feat(chaining): add safety policy usage telemetry
  • #5968 feat(chaining): implement safety policy simulation rate limit
  • #5966 [Chaining] Safety policy - Implement default simulation timeout
  • #5774 feat(chaining): scenario/simulation import/export
  • #5560 Lost Connectivity Notification – OpenAEV Multi-Tenant
  • #5511 docs(chaining): documentation
  • #5049 feat(chaining): event creation
  • #5048 feat(chaining): attack path view
  • #5045 feat(chaining): logic creation
  • #5043 feat(chaining): action selection
  • #5042 feat(chaining): safety policy definition
  • #4824 feat(chaining): basic Chaining Engine
  • #4435 feat(chaining): add an EE lock on the chaining feature
  • #3594 feat: add phishing injector with typosquatting ability
  • #3478 feat: move create/update button on top, as in OpenCTI
  • #1650 feat: add env variables handling for cookies
  • #1387 feat: ability to simulate phishing campaigns
  • #1192 feat: payloads can be used for phishing emails
  • #227 feat: validate the regex directly when editing/creating the challenge
  • #190 feat: free text field in the lessons learned
  • #183 feat: launch a challenge when a previous one was validated

Bug Fixes:

  • #7408 fix(chaining): simulation scope displays team/player IDs instead of names
  • #7321 fix: tenant role update fails when role holds stale platform-scoped capabilities
  • #7218 fix(chaining): logic view lost its per-MITRE-tactic column layout (regressed in #7099)
  • #7214 fix: attack path map is unreadable when a simulation produces many finding types
  • #7212 fix(chaining): logic page allows manual action→event links, and event nodes are labeled like triggers
  • #7210 fix(chaining): defined value is dropped when an output type is linked on the same field
  • #7209 fix(attack-path): table row click no longer focuses the graph, a focus can silently no-op, oversized picker date
  • #7205 fix(attack-path): live graph stops re-framing during a run — the initial load consumes the whole camera budget
  • #7204 fix(attack-path): long finding values render as a wall of text in the category panel
  • #7201 fix(role): role form broken
  • #7188 fix(connectors): migrating an existing collector/injector/executor reports it as "not visible in the current tenant"
  • #7082 fix(scope): Non-admin user with custom role cannot delete injects from a scenario - "Element not found: Inject not found with id:" error
  • #6825 fix(integrations): deleting a collector does not remove its connector instance and shows "migrate" button
  • #6516 fix(import-payload): 404 when trying to use an imported payload in atomic testing

Pull Requests:

New Contributors:

Full Changelog: 3.260805.0...3.260817.0