- Print
- DarkLight
New Features
An email validator is added to the Do not/ Only Call lists.
A custom ingest scanner is added to process Zeek logs with line-by-line batching.
A Do not contact list is added to BeeKeeper's configuration, allowing certain individuals to be excluded from contact.
Feature Enhancements
A new conversation status, 'Closed' is added to BeeKeeper to indicate when the service closes all active conversations after receiving ownership confirmation from a user.
The speedbump for confirming affirmative responses to device ownership inquiries is removed from BeeKeeper.
Suggested owners are now shown along with the potential owners on the device entity page.
Event type management is improved to allow the re-adding of previously deselected event types.
Input validation is enhanced to prevent the entry of random keywords that do not correspond to valid event types.
The CDP logic for determining the active device and user is updated.
A toggle button is added in the DataHub UI to control the visibility of customer-specific feeds in the data catalog, ensuring they are not displayed to all tenants.
The logs from the DataBee API, interface, and cluster interface entry points are standardized.
The user details page is updated to list the applications that the user owns.
Console queries are updated to handle JSON Null values.
The SSO functionality is updated to be read-only.
The related entities node graph is updated to display the full name and email ID of the user node.
The Event Timeline is updated with entity merge details.
The order of the top navigation buttons is rearranged for improved usability.
Changes are made to the Tableau layout and access patterns.
The term data sources is renamed to data feeds across the DataBee UI.
A configuration item is added to Entity Management, enabling device management for IP-only devices.
A data lake configuration watcher is added to Entity Management to monitor changes in data lake credentials.
An IP-only association configuration is added to the ingest watcher.
The following suppression filters are added:
Description field: for the user to describe what they are suppressing and why
Comments field: for users to add notes when they modifying an existing Suppression
Filtering Options
Severity ID
Mitre ATT&CK
Rule UID
CVE
Tags
The following suppression filters are removed from the existing user experience:
Vendors
Products
Descriptions
Finding Title
Messages
Bug Fixes
The issue where the Entity Management API server was inaccessible is fixed.
The issue where Beekeeper crashes on Microsoft Teams token expiration is fixed.
The issue where sharing a contact card as the initial response to the bot was incorrectly categorized as ownership confirmation is fixed.
The issue where the hostname and HTTP path provided threw an invalid error in the v2 wizard while configuring Databricks is fixed.
The issue causing CDP to crash when retrieving device owner information is fixed.
The issue where saved or historic searches could not be executed from entity pages is fixed.
A potential server-side request forgery vulnerability is addressed to enhance system security.
The manifest key to show the ingest time window now correctly controls only the API ingest time window.
The issue where the user with the most device count didn't match the detail view, is fixed.
The logic for calculating the Sankey diagram metric counts on the data quality summary page is fixed.
The issue where an empty card was created on the same page when the user submits an entity resolution configuration is fixed.
The issue where the widget type and preview did not match when adding a console widget, is fixed.
The Entity Management record creation timestamp is now correctly set when adding to the buffer.
The issue where the CyberArk API ingest was not properly handling special characters in API secrets is fixed.
The issue causing errors in production for ServiceNow policy exception and vulnerability feeds is fixed.
The issue where ingested files were not being deleted, leading to continuous data accumulation in the data lake, is fixed.
The issue where the Qualys basic authentication API ingest configuration reported an invalid username and password config, is fixed.
The issue where data collector feeds were missing Snowflake PUT batching via SQS is fixed.
The issue where the CSV scanner failed to properly process empty CSV files, is fixed.