Enhancements:
- #6548 [email-intel-imap] Plain text email body not populated in Report content
- #6189 [Crowdstrike] Add "modified" indicator attribute
- #6160 [New Connector] Qualys CVE Enrichment (Internal Enrichment)
- #6159 [New Connector] CTM360 HackerView Feed (External Import)
- #6158 [New Connector] CTM360 CYNA Feed (External Import)
- #6156 Add external import for BeaconBeagle Data
- #5923 [Google TI] Ingest and model GTI "software toolkits" as Tool objects with relationship mapping
Bug Fixes:
- #6580 [sentinelone-intel] Fix URL to avoid double slash
- #6568 [Intel471_v2] Connector fails on bulletproof_hosting indicators
- #6514 [cvelistv5] CVSS v4.0 score incorrectly overwrites v3.1 score, and vector string is incomplete
- #6428 [TAXII POST] Fix incorrect Content-Type header for STIX objects
- #6427 [crowdstrike] Snort parser fails on single-line rules missing trailing newline
- #6325 [tenable-vuln-management] Connector crashes on FQDN with underscore when creating STIX DomainName object
- #2507 [import-document,import-file-stix] Support running as an arbitrary user (OpenShift Container Platform)
Pull Requests:
- [beaconbeagle] Add BeaconBeagle external-import connector by @Ch-Philou in #6155
- [email-intel-imap] use plain text body when HTML is not available by @yunono-filg in #6549
- [crowdstrike] Add "modified" indicator attribute by @NicolasSchn in #6190
- [group-ib] Support running as an arbitrary user (OpenShift) by @leitosama in #6260
- [CI] Add --pull flag to docker buildx build commands by @jabesq in #6556
- [tenable-vuln-management]: Fix crash when DomainName creation has a non-compliant value by @Ninoxe in #6545
- [TAXII POST] Fix incorrect Content-Type header by @Ninoxe in #6551
- [cvelistv5] fix mapping by @throuxel in #6550
- [crowdstrike] Snort parser fails on single-line rules missing trailing newline by @throuxel in #6553
- [Intel471_v2] Add support for bulletproof hosting indicators by @mmolenda in #6323
- [tool] chore(deps): Update dependency requests to v2.33.0 [SECURITY] by @renovate[bot] in #6543
- [tool] chore(deps): Update dependency mwdblib to v4.7.0 by @renovate[bot] in #6547
- [tool] chore(deps): Update dependency pytest from 8.4.2 to 9.0.3 by @dependabot[bot] in #6572
- [tool] chore(deps): Update dependency requests from 2.32.3 to 2.33.0 in /internal-enrichment/polyswarm-sandbox by @dependabot[bot] in #6573
- [Proofpoint-tap] Fix aiohttp lib version by @Ninoxe in #6579
- [qualys] Add Qualys CVE enrichment connector by @Khidr6G in #6164
- [ctm360] Add HackerView external-import connector by @Khidr6G in #6163
- [tool] chore(deps): Update dependency requests to v2.33.0 [SECURITY] by @renovate[bot] in #6582
- [Google TI Feeds] Add GTI software toolkit to STIX Tool conversion by @jabesq in #6378
- [sentinelone-intel] fix double slash by @throuxel in #6583
- [cisa-kev] Default create_infrastructures to false by @MrStarkEG in #6283
- [ctm360] Add CYNA news external-import connector by @Khidr6G in #6162
New Contributors:
- @yunono-filg made their first contribution in #6549
- @NicolasSchn made their first contribution in #6190
- @Khidr6G made their first contribution in #6164
Full Changelog: 7.260529.0...7.260604.0