Repository navigation
Version 0.1.1
Many improvements and enhancements, including but not limited to:
- Introduction of uni-directional connectionRules for the Application assets, using two new associations.
- A new "ClientAccess" association for Applications and Networks.
- Two new defenses were added: Credentials.notDisclosed (describes the situation where a password is leaked out in the wild) and User.noPasswordReuse (describes the situation where the user is reusing passwords among identities).
- Added some defenses on multiple assets: Identity.disable, Application.disable, ConnectionRule.filtered. Added also a new asset, called Privileges, that groups privileges between Identities.
- A lot of bugfixes!
- Code rework in a lot of parts and updated documentation.
Note: The .jar file attached on this release is ready to be used in securiCAD.
This is the last release before the next "breaking changes" version that will be released soon.