Releases: ezekiellabs/opseclint
Release list
v1.3.0
What's Changed
- Housekeeping: packaging drift, doc drift, and the release race by @Gerrrt in #59
- Never run the release pipeline for the moving major tag by @Gerrrt in #60
- Report why an entry is indeterminate (#56 stage 0) by @Gerrrt in #61
- winget: migrate to schema 1.12.0 and stop the version bump corrupting it by @Gerrrt in #62
- Substitute the version only where it is declared to live by @Gerrrt in #63
- Stop counting rules that were never addressed to a command by @Gerrrt in #64
- Draw verify and coverage verdicts from every candidate rule by @Gerrrt in #66
- Extract the knowledge base and evaluator into opseclint-core by @Gerrrt in #67
- Serve the knowledge base over MCP by @Gerrrt in #68
- release: 1.3.0 by @Gerrrt in #69
Full Changelog: v1.2.0...v1.3.0
v1.2.0
What's Changed
- Bump docker/setup-qemu-action from 3 to 4 by @dependabot[bot] in #24
- Bump docker/build-push-action from 6 to 7 by @dependabot[bot] in #25
- Bump docker/metadata-action from 5 to 6 by @dependabot[bot] in #26
- Bump docker/login-action from 3 to 4 by @dependabot[bot] in #27
- Bump docker/setup-buildx-action from 3 to 4 by @dependabot[bot] in #28
- build packaging manifests by @Gerrrt in #30
- New: added benign corpus test by @Gerrrt in #31
- New: navigator feature by @Gerrrt in #32
- New: gap -> rule scaffolding by @Gerrrt in #33
- New: verified detections in CI by @Gerrrt in #34
- Audit: EDR classifier by @Gerrrt in #35
- New: Structured Matcher Engine by @Gerrrt in #36
- New: Structured Matcher Engine. Migrate Linux KB by @Gerrrt in #37
- New: Structured Matcher Engine. Migrate Windows KB by @Gerrrt in #38
- New: Structured Matcher Engine. Migrate MacOS KB by @Gerrrt in #39
- author docs + optional regex + drop legacy fields + precision pass by @Gerrrt in #40
- author docs + optional regex + drop legacy fields + precision pass nu… by @Gerrrt in #41
- author docs + optional regex + drop legacy fields + precision pass nu… by @Gerrrt in #42
- New: regex leaf by @Gerrrt in #43
- scaffold represents any-alternations as Sigma OR-lists by @Gerrrt in #44
- net localgroup stuff by @Gerrrt in #45
- New: telemetry ingest - sysmon by @Gerrrt in #46
- New: Observed event sigma eval by @Gerrrt in #47
- New: auditd telemetry ingest by @Gerrrt in #48
- New: esf telemetry ingest by @Gerrrt in #49
- feat: richer fields by @Gerrrt in #50
- feat: correlation by @Gerrrt in #51
- feat: C users by @Gerrrt in #52
- feat: stand alone events by @Gerrrt in #53
- release v1.2.0 by @Gerrrt in #54
Full Changelog: v1.1.0...v1.2.0
What's Changed
- Bump docker/setup-qemu-action from 3 to 4 by @dependabot[bot] in #24
- Bump docker/build-push-action from 6 to 7 by @dependabot[bot] in #25
- Bump docker/metadata-action from 5 to 6 by @dependabot[bot] in #26
- Bump docker/login-action from 3 to 4 by @dependabot[bot] in #27
- Bump docker/setup-buildx-action from 3 to 4 by @dependabot[bot] in #28
- build packaging manifests by @Gerrrt in #30
- New: added benign corpus test by @Gerrrt in #31
- New: navigator feature by @Gerrrt in #32
- New: gap -> rule scaffolding by @Gerrrt in #33
- New: verified detections in CI by @Gerrrt in #34
- Audit: EDR classifier by @Gerrrt in #35
- New: Structured Matcher Engine by @Gerrrt in #36
- New: Structured Matcher Engine. Migrate Linux KB by @Gerrrt in #37
- New: Structured Matcher Engine. Migrate Windows KB by @Gerrrt in #38
- New: Structured Matcher Engine. Migrate MacOS KB by @Gerrrt in #39
- author docs + optional regex + drop legacy fields + precision pass by @Gerrrt in #40
- author docs + optional regex + drop legacy fields + precision pass nu… by @Gerrrt in #41
- author docs + optional regex + drop legacy fields + precision pass nu… by @Gerrrt in #42
- New: regex leaf by @Gerrrt in #43
- scaffold represents any-alternations as Sigma OR-lists by @Gerrrt in #44
- net localgroup stuff by @Gerrrt in #45
- New: telemetry ingest - sysmon by @Gerrrt in #46
- New: Observed event sigma eval by @Gerrrt in #47
- New: auditd telemetry ingest by @Gerrrt in #48
- New: esf telemetry ingest by @Gerrrt in #49
- feat: richer fields by @Gerrrt in #50
- feat: correlation by @Gerrrt in #51
- feat: C users by @Gerrrt in #52
- feat: stand alone events by @Gerrrt in #53
- release v1.2.0 by @Gerrrt in #54
Full Changelog: v1.1.0...v1.2.0
What's Changed
- Bump docker/setup-qemu-action from 3 to 4 by @dependabot[bot] in #24
- Bump docker/build-push-action from 6 to 7 by @dependabot[bot] in #25
- Bump docker/metadata-action from 5 to 6 by @dependabot[bot] in #26
- Bump docker/login-action from 3 to 4 by @dependabot[bot] in #27
- Bump docker/setup-buildx-action from 3 to 4 by @dependabot[bot] in #28
- build packaging manifests by @Gerrrt in #30
- New: added benign corpus test by @Gerrrt in #31
- New: navigator feature by @Gerrrt in #32
- New: gap -> rule scaffolding by @Gerrrt in #33
- New: verified detections in CI by @Gerrrt in #34
- Audit: EDR classifier by @Gerrrt in #35
- New: Structured Matcher Engine by @Gerrrt in #36
- New: Structured Matcher Engine. Migrate Linux KB by @Gerrrt in #37
- New: Structured Matcher Engine. Migrate Windows KB by @Gerrrt in #38
- New: Structured Matcher Engine. Migrate MacOS KB by @Gerrrt in #39
- author docs + optional regex + drop legacy fields + precision pass by @Gerrrt in #40
- author docs + optional regex + drop legacy fields + precision pass nu… by @Gerrrt in #41
- author docs + optional regex + drop legacy fields + precision pass nu… by @Gerrrt in #42
- New: regex leaf by @Gerrrt in #43
- scaffold represents any-alternations as Sigma OR-lists by @Gerrrt in #44
- net localgroup stuff by @Gerrrt in #45
- New: telemetry ingest - sysmon by @Gerrrt in #46
- New: Observed event sigma eval by @Gerrrt in #47
- New: auditd telemetry ingest by @Gerrrt in #48
- New: esf telemetry ingest by @Gerrrt in #49
- feat: richer fields by @Gerrrt in #50
- feat: correlation by @Gerrrt in #51
- feat: C users by @Gerrrt in #52
- feat: stand alone events by @Gerrrt in #53
- release v1.2.0 by @Gerrrt in #54
Full Changelog: v1.1.0...v1.2.0
v1.1.0
What's Changed
- Expand the macOS KB (28 → 66 entries) by @Gerrrt in #20
- New feature: EDR Telemetry by @Gerrrt in #21
- Linux 62 → 81, Windows 62 → 82 by @Gerrrt in #22
- New: added --coverage-gaps and --diff features by @Gerrrt in #23
- Rebrand to Ezekiel Labs, add assets, startup banner, release v1.1.0 by @Gerrrt in #29
Full Changelog: v1.0.0...v1.1.0
What's Changed
- Expand the macOS KB (28 → 66 entries) by @Gerrrt in #20
- New feature: EDR Telemetry by @Gerrrt in #21
- Linux 62 → 81, Windows 62 → 82 by @Gerrrt in #22
- New: added --coverage-gaps and --diff features by @Gerrrt in #23
- Rebrand to Ezekiel Labs, add assets, startup banner, release v1.1.0 by @Gerrrt in #29
Full Changelog: v1.0.0...v1.1.0
What's Changed
- Expand the macOS KB (28 → 66 entries) by @Gerrrt in #20
- New feature: EDR Telemetry by @Gerrrt in #21
- Linux 62 → 81, Windows 62 → 82 by @Gerrrt in #22
- New: added --coverage-gaps and --diff features by @Gerrrt in #23
- Rebrand to Ezekiel Labs, add assets, startup banner, release v1.1.0 by @Gerrrt in #29
Full Changelog: v1.0.0...v1.1.0
What's Changed
- Expand the macOS KB (28 → 66 entries) by @Gerrrt in #20
- New feature: EDR Telemetry by @Gerrrt in #21
- Linux 62 → 81, Windows 62 → 82 by @Gerrrt in #22
- New: added --coverage-gaps and --diff features by @Gerrrt in #23
- Rebrand to Ezekiel Labs, add assets, startup banner, release v1.1.0 by @Gerrrt in #29
Full Changelog: v1.0.0...v1.1.0
v1.0.0
What's Changed
- Add Sigma rule-logic evaluator + --check-rule by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/13
- Add --coverage-gaps (rule-logic blind-spot report) by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/14
- Repaint terminal output in a Tokyo Night theme by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/15
- Surface rule verdicts inline in --sigma (+ unify the Sigma index) by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/16
- Stabilize CLI and docs for v1.0 by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/17
- Reword docs and comments in the maintainer's voice by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/18
- Release 1.0.0 by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/19
Full Changelog: https://github.com/Gerrrt/opseclint/compare/v0.1.2...v1.0.0
What's Changed
- Add Sigma rule-logic evaluator + --check-rule by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/13
- Add --coverage-gaps (rule-logic blind-spot report) by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/14
- Repaint terminal output in a Tokyo Night theme by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/15
- Surface rule verdicts inline in --sigma (+ unify the Sigma index) by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/16
- Stabilize CLI and docs for v1.0 by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/17
- Reword docs and comments in the maintainer's voice by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/18
- Release 1.0.0 by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/19
Full Changelog: https://github.com/Gerrrt/opseclint/compare/v0.1.2...v1.0.0
v0.1.2
What's Changed
- Add Dockerfile + GHCR container image by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/10
- Revamp README (Best-README-Template format + shields) by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/11
- Bump version to 0.1.2 by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/12
Full Changelog: https://github.com/Gerrrt/opseclint/compare/v0.1.1...v0.1.2
What's Changed
- Add Dockerfile + GHCR container image by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/10
- Revamp README (Best-README-Template format + shields) by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/11
- Bump version to 0.1.2 by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/12
Full Changelog: https://github.com/Gerrrt/opseclint/compare/v0.1.1...v0.1.2
What's Changed
- Add Dockerfile + GHCR container image by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/10
- Revamp README (Best-README-Template format + shields) by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/11
- Bump version to 0.1.2 by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/12
Full Changelog: https://github.com/Gerrrt/opseclint/compare/v0.1.1...v0.1.2
What's Changed
- Add Dockerfile + GHCR container image by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/10
- Revamp README (Best-README-Template format + shields) by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/11
- Bump version to 0.1.2 by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/12
Full Changelog: https://github.com/Gerrrt/opseclint/compare/v0.1.1...v0.1.2
v0.1.1
What's Changed
- Add community health files by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/1
- Bump github/codeql-action from 3 to 4 by @dependabot[bot] in https://github.com/Gerrrt/opseclint/pull/2
- Bump softprops/action-gh-release from 2 to 3 by @dependabot[bot] in https://github.com/Gerrrt/opseclint/pull/3
- Bump actions/checkout from 5 to 7 by @dependabot[bot] in https://github.com/Gerrrt/opseclint/pull/4
- Design doc: Sigma rule-logic evaluator by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/6
- Add crates.io metadata + publish workflow by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/7
- Add a Marketplace-ready GitHub Action by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/8
- Sync Cargo.lock to 0.1.1 by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/9
New Contributors
- @Gerrrt made their first contribution in https://github.com/Gerrrt/opseclint/pull/1
- @dependabot[bot] made their first contribution in https://github.com/Gerrrt/opseclint/pull/2
Full Changelog: https://github.com/Gerrrt/opseclint/compare/v0.1.0...v0.1.1
What's Changed
- Add community health files by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/1
- Bump github/codeql-action from 3 to 4 by @dependabot[bot] in https://github.com/Gerrrt/opseclint/pull/2
- Bump softprops/action-gh-release from 2 to 3 by @dependabot[bot] in https://github.com/Gerrrt/opseclint/pull/3
- Bump actions/checkout from 5 to 7 by @dependabot[bot] in https://github.com/Gerrrt/opseclint/pull/4
- Design doc: Sigma rule-logic evaluator by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/6
- Add crates.io metadata + publish workflow by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/7
- Add a Marketplace-ready GitHub Action by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/8
- Sync Cargo.lock to 0.1.1 by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/9
New Contributors
- @Gerrrt made their first contribution in https://github.com/Gerrrt/opseclint/pull/1
- @dependabot[bot] made their first contribution in https://github.com/Gerrrt/opseclint/pull/2
Full Changelog: https://github.com/Gerrrt/opseclint/compare/v0.1.0...v0.1.1
What's Changed
- Add community health files by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/1
- Bump github/codeql-action from 3 to 4 by @dependabot[bot] in https://github.com/Gerrrt/opseclint/pull/2
- Bump softprops/action-gh-release from 2 to 3 by @dependabot[bot] in https://github.com/Gerrrt/opseclint/pull/3
- Bump actions/checkout from 5 to 7 by @dependabot[bot] in https://github.com/Gerrrt/opseclint/pull/4
- Design doc: Sigma rule-logic evaluator by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/6
- Add crates.io metadata + publish workflow by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/7
- Add a Marketplace-ready GitHub Action by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/8
- Sync Cargo.lock to 0.1.1 by @Gerrrt in https://github.com/Gerrrt/opseclint/pull/9
New Contributors
- @Gerrrt made their first contribution in https://github.com/Gerrrt/opseclint/pull/1
- @dependabot[bot] made their first contribution in https://github.com/Gerrrt/opseclint/pull/2
Full Changelog: https://github.com/Gerrrt/opseclint/compare/v0.1.0...v0.1.1
v0.1.0
Full Changelog: https://github.com/Gerrrt/opseclint/commits/v0.1.0
Full Changelog: https://github.com/Gerrrt/opseclint/commits/v0.1.0
Full Changelog: https://github.com/Gerrrt/opseclint/commits/v0.1.0