github OpenCTI-Platform/opencti 5.10.0
Version 5.10.0

latest releases: 6.1.2, 6.1.1, 6.1.0...
8 months ago

🌟 OpenCTI v5.10.0 Release Notes 🌟

🚀 Enhancements: The Filigran team is proud to bring you another packed release! For organizations, v5.10.0 introduces a host of features designed to streamline your experience:

  • Account Security - We're bolstering your defenses with account status and lockout functionality based on expiration dates (#4165).
  • Improved UI - We’ve revamped several views, including a quick filter in the indicators view (#4007) and the ability to select objects directly in the Report's Correlation View (#4065).
  • Integration & Customization - To enhance integration capabilities, we've added a built-in RSS client (#2864) and webhooks in the notification manager (#2850). Plus, we've made it easier than ever to customize your emails (#1871) and confidence scales (#2362).
  • And many more...

🐛 Key Bug Fixes: Our developers have also been hard at work squashing those pesky bugs:

  • A series of errors have been addressed, such as the alias field mishaps (#4162) and certain issues with the malware global kill chain (#4155).
  • For the techie ones, we've fixed the dashboard widgets, especially those counting Sightings (#4088) and several export-related bugs (#4098, #3935).
  • Moreover, you’ll find enhanced stability with corrections on system crashes (#4153, #4079) and improved handling during upgrades (#4038).

💬 Wrap-up: This release is a culmination of feedback, dedication, and the persistent effort by the Filigran team. Every enhancement and fix is geared towards making OpenCTI a more powerful and user-friendly platform. Remember, while we've highlighted only a few, many more fixes and tweaks are included in this version to optimize your experience.

🙌 A massive thank you to our user community for your continued support and feedback. Keep those suggestions coming, and let's together make OpenCTI even better!

Enhancements:

  • #4165 Adds account status and lockout functionality by expire date
  • #4089 SAML debug - Add "SkipRequestCompression" option
  • #4065 Ability to select objects in the Report's Correlation View
  • #4007 In the new indicators view, pattern type should be a "quick filter" (remove "detection")
  • #3642 Be able to fully hide "Observations" (missing: Observables / Artifacts) and "Events" (missing: Sightings)
  • #3544 Move hidden entities from roles to groups and implement hidden entities at organization level
  • #3506 Enable notifications mass deletion for all roles
  • #2955 Be able to turn a report to an investigation or an analyst workbench
  • #2864 Built-in RSS client to consume data
  • #2850 Implement webhooks in the notification manager
  • #2559 Display all indicators/observables contained in reports which contain a specific entity
  • #2540 Be able to add images in overview of some entity types
  • #2362 Consider adding a custom confidence scale for sources and contents
  • #1871 Possibility to customize email sent by the subscription functionality

Bug Fixes:

  • #4162 'alias' field not working well for System, Sector and Individual
  • #4157 Can't create some relationships from Narrative Knowledge
  • #4155 Malware global kill chain doesn't display correct info
  • #4153 Creating a note on observed data crashes the website
  • #4133 Can't update relationship stop_time
  • #4099 Missing icon for Threat Actors in Workbench
  • #4098 Can't export Threat Actors list
  • #4095 Error when accessing Intrusion sets on a specific platform (missing data)
  • #4092 No relationship type available when creating a relationship from an Area
  • #4088 [Dashboards] Widget for counting Sightings not showing the correct count
  • #4087 Removing Sharing Organization removes relationships
  • #4086 Sighting details are empty in investigation graphs
  • #4085 PDF viewer broken
  • #4079 Background task crash
  • #4078 The "deleteConnector" API runs into an unexpected exception when the connector doesn't exist
  • #4071 Background task for negative filter is not correctly computed
  • #4063 Author's field being deleted after organizations merge
  • #4041 Dashboard widgets do not display Narrative names properly
  • #4038 Error during upgrade from 5.8.7 to 5.9.x
  • #4035 Error at external reference creation with a file
  • #4020 Ingestion page is broken
  • #4018 Grouping > Knowledge > Correlation view is broken
  • #4012 In the history of a sector, the relationship historic is not correct
  • #4009 In knowledge > indicators, select n things, try to export
  • #4008 Top menu in cases is loading while other menus are not
  • #4006 Victimology button "relationship view" is broken
  • #4005 Toolbar in new indicators view does not have the correct padding
  • #4004 SAML Organizations not mapped to OpenCTI organizations
  • #3992 Error upon creation of "media-content" or "network-traffic" type observable
  • #3986 In investigation graph, when selecting a marking or label, displaying a not found error
  • #3938 SAML Groups not mapped to OpenCTI Groups
  • #3935 Error when trying to export attack patterns filtered by Kill Chain phase
  • #3934 Bug when trying to add Observables in content mapping
  • #3930 Massive search broken since containersNumber
  • #3929 Important issue when udating an open vocab with alias
  • #3928 Not possible to update primary motivation of a threat actor
  • #3925 Dashboard widgets do not display Narrative names properly
  • #3924 Border style table doesn't work.
  • #3922 Possible to lockout workspaces (dashboards / investigation) in a case
  • #3921 Regression on default values when creating entities in the context of a container
  • #3919 Users without "bypass all capabilities" are unable to remove TLP markings from reports
  • #3917 Editing SHA512 of File
  • #3915 Export of Knowledge in Relationship view generates an error
  • #3909 Updater store bug on stix cyber observable
  • #3898 Is not possible to add a status for a Threat Actor Individual
  • #3897 Status filter is not scoped by entity
  • #3896 Sometime, the customization tab under settings takes a long time to appear
  • #3887 Observable data field copied to wrong Indicator field (concerning Email message)
  • #3884 Sync Ingestion Error
  • #3882 If the number of search results is large, they are not displayed on the screen.
  • #3866 Problem with an enrichment connector
  • #3865 Crash during creation of links between an Infrastructure and IPv4 addresses
  • #3854 Entering / exiting home dashboard is triggering a full render of the top bar
  • #3848 Elasticsearch ApiKey authentication not working
  • #3845 When adding a malware analysis via Analysis or Cases/Entities, name is not displayed in the search result
  • #3844 Dashboard crashes
  • #3533 Activity graph takes some time to fit the paper in overview of user

Pull Requests:

Full Changelog: 5.9.6...5.10.0

Don't miss a new opencti release

NewReleases is sending notifications on new releases.