MSTICPy v2.17.0 released
- new RRCF outlier detection
- AWS extension for Prisma Cloud AWS
- Update Defender Auth to OAuth v2 and fix bugs
- Python 3.12 support
More details here https://t.co/k3iajwq8gu
@msticpy
MSTICPy 2.11.0 released
This minor release includes:
- Better handling of large/split queries for MS Sentinel
- Updated support for installing MSTICPy in a Conda environment
- Updates for future pandas support
https://t.co/zLO8aoOiHC
MSTICPY 2.9.0 released
Includes new Threat Intel provider IPQualityScore and updated M365D to use MS Graph API for hunting queries.
Fixes to startup, Synapse compat issues, Entities and more. See the release notes for a full rundown
https://t.co/s4nJozQS75
MSTICPy v2.8.0 released.
Stability release - with several important fixes:
- MS Sentinel failure when connecting using a connection string
- Using supported method for multi-cloud Azure endpoints
- Using msticpy in isolated environments.
MSTICPy 2.7.0 release
- 2 new threat intel providers for CrowdSec and AbuseIPDB
- New MS Sentinel and Kusto drivers now the defaults
- Query file editor for MSTICPy template queries
- Azure auth fixes for MicrosoftSentinel
More details https://t.co/M8Tn0QuC8f
MSTICPy 2.6.0 released
- Parallel queries for multiple instances of MS Sentinel workspaces and Kusto clusters
- Parallel split queries (large time-range queries divided by smaller time periods)
- Velociraptor data provider for querying exported data sets
https://t.co/tL511uP82x
... continued
* Panel tabulator now supported as default data viewer
(see https://t.co/YwvJyAzdiT)
These are described more fully in the release notes and (mostly) in the updated docs https://t.co/1oy5Ngm9h9
MSTICPy 2.5.0 released
* New Sentinel and Kusto drivers with parallel queries, proxy and user-defined timeouts.
* Plugin framework for MSTICPy data/TI/context providers
* Import Sentinel hunting and detection queries
* OSQuery data provider ...
https://t.co/LBaT0JLqt3
Had a report that the search in MSTICPy ReadtheDocs was broken (apparently broken for a while due to a bug in the ReadTheDocs template.
Happy to report that this is now fixed.
https://t.co/3968jFgEGk
🚨 #MSTICPy has just merged a new PR to main!
ashwin-patil added the PR - Read the docs update for Managed spark installation
https://t.co/PSHzUYb2yI
#python#MSTIC#infosec
🚨 #MSTICPy has just merged a new PR to main!
petebryan added the PR - Updated Sentinel incident docs to reflect filtering options
https://t.co/YZJDwrxekI
#python#MSTIC#infosec
MSTICPy v2.4.0 released
- New Pulsedrive TI module
- Process tree updates (inc FireEye HX compat)
- Bokeh 3.0 support
- Improved diagnostics/logging
- Fixes to Azure auth, Sentinel APIs and more.
https://t.co/adgS3yHBDL
🚨 #MSTICPy has just merged a new PR to main!
ianhelle added the PR - Reverting to bokeh version 2.4.3 for default install
https://t.co/5HyFdrudgn
#python#MSTIC#infosec
🚨 #MSTICPy has just merged a new PR to main!
ianhelle added the PR - Adding data query paths test for DEX support
https://t.co/lRILFa8E3q
#python#MSTIC#infosec
🚨 #MSTICPy has just merged a new PR to main!
ianhelle added the PR - Adding logging and updating settings access
https://t.co/QmekHjGz6l
#python#MSTIC#infosec