Threat Intelligence

MISP 2.4.200 and 2.5.2 released - Post Hack.lu/CTI-Summit release with many new features

The Hack.lu/CTI-Summit once again allowed us to get in touch with the community and sit down to talk about new features and issues to be implemented.

Continue reading

MISP 2.4.197 released with many bugs fixed, a security fix and improvements.

Release Notes - v2.4.197 (2024-09-02) New Features Config Option: Added a new configuration option user_org_uuid_in_response_header to include a response header with the requesting user’s organization UUID.

Continue reading

MISP 2.4.196 released with many bugs fixed and improvements.

MISP 2.4.196 released with many bugs fixed and improvements. New Features Decaying Model: Introduced a new DecayingModel that leverages true positive and false positive sightings for better decision-making.

Continue reading

MISP 2.4.195 - hot summer olympic release

MISP 2.4.195 - hot summer olympic release We are pleased to announce the immediate availability of MISP v2.4.195, a summer release aiming to introduce new features, fix a long list of reported bugs and deficiencies as well as give your servers a breather in the scorching summer heat by taking a load off your CPUs thanks to a set of impactful performance fixes.

Continue reading

MISP 2.4.194 released with new functionalities and various bugs fixed

MISP 2.4.194 released with new functionalities and various bugs fixed. Sorry, cannot display the video as the video tag is not supported by your browser.

Continue reading

MISP 2.4.193 released with many bugs fixed, API improvements and security fixes

MISP 2.4.193 released with many bugs fixed, API improvements and security fixes New [attributes/enrich] endpoint added. Simply post a list of modules you wish to enrich the attribute by.

Continue reading

MISP 2.4.192 released with many performance improvement, fixes and updates.

New Features Security Enhancements: Ability to disable TOTP/HTOTP when linked to an identity provider with strong authentication. Introduced Fast API Authentication with temporary storage of hashed API keys in Redis to enhance endpoint performance.

Continue reading

MISP 2.4.190 (and 2.4.191) released with new feed improvement, workflows and a new benchmarking suite.

We are excited to announce the release of MISP v2.4.190. This latest version introduces a slew of new features, improvements, and fixes designed to streamline operations and enhance security measures for our users.

Continue reading

MISP 2.4.189 released with bug fixes, performance improvements and a new blocklist feature.

We are pleased to announce the immediate release of MISP 2.4.189, released with bug fixes, performance improvements and a new blocklist feature.

Continue reading

MISP - Elastic Stack - Docker Lab

MISP - Elastic Stack - Docker This lab explains how to connect MISP to the Elastic Stack in order to leverage IOCs from MISP and trigger alerts based on user defined rules.

Continue reading

MISP 2.4.188 released major performance improvements and many bugs fixed.

We are pleased to announce the immediate release of MISP 2.4.188, with major performance improvements and many bugs fixed. New Features Datasource Improvements: Updates to some datasources with the ignoreIndexHint parameter (mysqlExtended, mysqlObserverExtended).

Continue reading

MISP 2.4.187 released with security fixes, new features and bugs fixes.

We are pleased to announce the immediate release of MISP 2.4.187, including security fixes, new features and bugs fixes. New Features CLI Enhancements: Added org list to shell commands.

Continue reading

Introducing Standalone Functionality to MISP Modules - A New Era of Flexibility and Efficiency

Introducing Standalone Functionality to MISP Modules: A New Era of Flexibility and Efficiency In the ever-evolving landscape of information security, the need for adaptable and efficient tools has never been greater.

Continue reading

MISP 2.4.186 released with analyst data feature including analyst notes, opinions and relationships.

We are pleased to announce the immediate release of MISP 2.4.186, which includes two major new feature called “Analyst Data” and “Collections” along with an extension to the MISP standard format.

Continue reading

MISP 2.4.185 released with sighting performance improvements, security and bugs fixes

We are happy to announce the immediate availability of MISP 2.4.185. This is mainly a bug fix release resolving several issues as well as tightening the security posture of the org image handling.

Continue reading

MISP 2.4.184 released with performance improvements, security and bugs fixes.

MISP 2.4.184 released with performance improvements, security and bugs fixes. Improvements Speed up improvements in ssdeep correlation and many other parts of MISP.

Continue reading

MISP 2.4.183 released with new ECS log feature, improvements and bugs fixed

MISP 2.4.183 released with a new ECS log feature, improvements and bugs fixed. MISP now supports Elastic Common Schema (ECS) security logging.

Continue reading

MISP 2.4.182 released with new features, improvements bugs fixed and an important security fix.

MISP 2.4.182 released with new features, improvements bugs fixed and an important security fix. MISP Core New Features [event:view] Added new option show_server_correlations_for_all_users allowing non-privileged users to view server correlations.

Continue reading

MISP 2.4.181 hot fix release to disable by default the alert on suspicious login plus some minor fixes.

MISP 2.4.181 hot fix release to disable by default the alert on suspicious login plus some minor fixes. Changes [tools:misp-delegation] Do not use self-documented expression in f-string anymore.

Continue reading

MISP 2.4.180 released with a new security user login profile feature, bugs fixed and many improvements.

MISP 2.4.180 released with a new security user login profile feature, bugs fixed and many improvements. New [api] added X-MISP-AUTH as an alternative header to Authorization, fixes #9418.

Continue reading