Dear community, OpenCTI version 5.3.16 has been released 🥳! This version fixes all known bugs of the platform and introduces minor enhancements in different views of the user interface 🎁. Also, a new type of observable is available to modelize media content (Twitter, Facebook, Telegram, Website article, etc.) 📰.
🚨 This release contains important security fixes, we strongly advise all organizations to upgrade as soon as possible their instance. 🚨
Big thanks to @sandeshkumart for the security report/analysis
Enhancements:
- #2402 Add media content SCO
- #2400 Cannot create Indicator Sighting for Sectors
- #1905 Add "Rust" to Malware programming languages + allow Admins to add custom languages
- #1903 From a Report, view what other Reports have IOCs in common
- #1831 Inferred targeting of sectors or regions are called "Direct targeting"
- #1813 Bug of display when moving in the chronology (date not correctly taken into account
- #1794 Trying to import STIX2 with a
resolves-to
relationship between two observables results in an error - #1783 When viewing the targetting of a sector by a threat actor, the intrusion sets used should be more visible
- #1766 MITRE implemented non-standard STIX relationship
detects
- #1756 Export observables (and other objects) from and SDO's Knowledge page
Bug Fixes:
- #2403 Not possible to view export when report's title contains some special characters
- #2396 Target type filter not working in the observable section of threats
- #2391 Not possible to empty the author field
- #2395 Subscriptions & digests error
- #2381 The "Subscriptions & digests" email returns "{defaultValue(entry)}"
Pull Requests:
- Expand list of Event types by @mattreduce in #2393
New Contributors:
- @mattreduce made their first contribution in #2393
Full Changelog: 5.3.15...5.3.16