Repository navigation
Releases: idiljot-singh/Stenwatch
Releases · idiljot-singh/Stenwatch
Release list
Stenwatch 0.1.0 beta
First installable Windows beta of Stenwatch: threat-informed CVE prioritisation that runs entirely on your own machine.
Install
- Download Stenwatch-Setup-0.1.0-beta.exe below and run it. No admin rights needed.
- Windows shows a blue "unknown publisher" screen because the beta is not code-signed. Choose More info → Run anyway, or ask IT to allow-list the file by its SHA-256.
- Stenwatch opens in its own window and a short tour walks you through the first run. Your files live in
%APPDATA%\Stenwatchand survive updates; uninstalling asks whether to delete them.
To update, run the newer Setup over the old one. Closing the window quits Stenwatch.
SHA-256 c9ea8df6fc8705d569a4244f2cf5767d6c615f22dc106bcd51a5a2303cfe9dcd (also in SHA256SUMS.txt)
What is in the beta
- Setup wizard (per user), windowed console, first-run tour
- Record decisions (patched, mitigated, accepted, false positive, not affected) from the console, no CSV editing
- Intelligence report and management brief as styled HTML and PDF (PDF needs Microsoft Edge or Chrome)
- Dashboard, STIX 2.1 bundle and CSV as before
Also attached
stenwatch-management-video.mp4: a one-minute walkthrough for management (sample data only). Watch online: https://idiljot-singh.github.io/Stenwatch/video.html
Evidence and docs
- Backtest report: on 257 later-exploited CVEs the Attend tier (6% of CVEs) caught 40% against 36% for a "CVSS 9 and above" list (13% of CVEs). The difference is not statistically significant; the ranking is clearly better at equal list size and worse in the long tail. An earlier 70% figure was wrong (incomplete data) and is withdrawn.
- Architecture diagrams generated from the code:
docs/diagrams/
Known limits
- Unsigned installer (SmartScreen warning)
- Microsoft Defender import and automatic updates are not in the beta
- Updating over a running Stenwatch needs it closed first
Feedback: Help → Send feedback inside the app.