github thalesgroup-cert/Watcher v3.2.2

5 hours ago

v3.2.2

This release introduces a new threat intelligence source and focuses on improving the Threats Watcher module to better track emerging cybersecurity threats and industry buzz. Minor updates were made to support this new source type, improve data collection reliability, and refine source classification.

Update Procedure

No breaking change or configuration is required for this release. However, contributors must ensure they follow the updated test commands and conventions detailed in the updated documentation.

Since this release adds new sources and updates existing ones, you should repopulate your database to include the latest blocklist and RSS sources:

docker compose down
docker compose run watcher bash
python manage.py populate_db

What’s Changed

Threats Watcher Improvements

  • Added Bluesky as a new source for monitoring cybersecurity threats and discussions.
  • Enhanced the fetch_last_posts logic to support Bluesky-specific data formats and behaviors.
  • Added a custom User-Agent to improve reliability when fetching external sources.
  • Cleaned and normalized existing sources to improve consistency and relevance.

Source Management Updates

  • Updated sources.csv with new Bluesky RSS feeds focused on cybersecurity threats and trends.
  • Introduced and refined source confidence classification to better reflect reliability and trust levels.
  • Removed outdated or redundant sources to improve signal-to-noise ratio.

Full Changelog: v3.2.0...v3.2.2

Don't miss a new Watcher release

NewReleases is sending notifications on new releases.