π Plugin & API Poller Updates
New Integration
Zammad Response Integration
- Added support for Zammad.
Microsoft Entra ID Response Integration
- Added integration support for Microsoft Entra ID.
Webex Response Integration
- Added support for Webex.
F Secure WithSecure Poller Integration
- Added integration support for F Secure WithSecure.
Group IB XDR Poller Integration
- Added integration support for Group IB XDR.
Updated Plugins
Citrix NetScaler ADC Logs
- Added Citrix NetScaler ADC log plugin.
- Introduced rule support for Citrix NetScaler ADC logs.
Veeam Backup Integration
- Implemented Veeam Backup Key Value Log plugin.
API Plugin Updates
IBM QRadar EDR Enhancements
- Management link added as a comment for IBM QRadar EDR incidents.
- Hunting query method added to IBM QRadar EDR integration.
- IBM QRadar EDR incident synchronization with Cyfusion.
Symantec Endpoint Security Updates
-
Updated package for Symantec Endpoint Security.
-
New version released for Symantec Endpoint plugin.
-
Symantec Endpoint Security API event mapping updated.
Trend Micro Vision One
- Integrated Trend Micro Vision One API events.
Cynet360 Form Update
- Updated labels for access key and secret key in the Cynet360 form.
π Predefined Report
FortiAnalyzer
- Added FortiAnalyzer predefined reports for improved reporting and analysis.
π UI & Functionality Enhancements
Domain Name Support
- Incident links on the USO platform now support domain names.
Enhanced API Support
- $GET method support added for log columns and incident columns.
Action Rules Enhancement
- Mention column support added to action rules.
Incident Query Expansion
- Introduced a new incident query list for more efficient data retrieval.
Block Lists UI Enhancement
- Additional information added to the Block Lists UI for better visibility.
Alert Rules Update
- Mitre filter added and search functionality improved.
Incident Management Improvement
- Alert tags can now be linked to incidents.
Company Information Update
- Updated Company Information title and removed unused fields.
Cyfusion Integration
- Response list sync option added for Cyfusion.
Asset Management
- Cyfusion sync option introduced in asset forms.
User Edit Form Fix
- Admin and analyst switch states now correctly handled.
Search Optimization
- Fixed bucket filter bug and improved search text capabilities.
Logging State Filtering
- Resolved filtering bug in the source list.
UI Optimization
- Removed unused comment options from the Comments component.
Match Count Update
- Renamed match count label to Completed Match Count.
Export Jobs
- Implemented old export job status check for better tracking.
Data Recovery Fix
- Permanent item block now correctly marked as canceled.
Action Cards Update
- Fixed word break issue in action cards.
Key-Value Views
- Improved key-value views in search and incident pages.