December 2024

Prev Next

New Features

  • An email validator is added to the Do not/ Only Call lists.

  • A custom ingest scanner is added to process Zeek logs with line-by-line batching.

  • A Do not contact list is added to BeeKeeper's configuration, allowing certain individuals to be excluded from contact.

Feature Enhancements

  • A new conversation status, 'Closed' is added to BeeKeeper to indicate when the service closes all active conversations after receiving ownership confirmation from a user.

  • The speedbump for confirming affirmative responses to device ownership inquiries is removed from BeeKeeper.

  • Suggested owners are now shown along with the potential owners on the device entity page.

  • Event type management is improved to allow the re-adding of previously deselected event types.

  • Input validation is enhanced to prevent the entry of random keywords that do not correspond to valid event types.

  • The CDP logic for determining the active device and user is updated.

  • A toggle button is added in the DataHub UI to control the visibility of customer-specific feeds in the data catalog, ensuring they are not displayed to all tenants.

  • The logs from the DataBee API, interface, and cluster interface entry points are standardized.

  • The user details page is updated to list the applications that the user owns.

  • Console queries are updated to handle JSON Null values.

  • The SSO functionality is updated to be read-only.

  • The related entities node graph is updated to display the full name and email ID of the user node.

  • The Event Timeline is updated with entity merge details.

  • The order of the top navigation buttons is rearranged for improved usability.

  • Changes are made to the Tableau layout and access patterns.

  • The term data sources is renamed to data feeds across the DataBee UI.

  • A configuration item is added to Entity Management, enabling device management for IP-only devices.

  • A data lake configuration watcher is added to Entity Management to monitor changes in data lake credentials.

  • An IP-only association configuration is added to the ingest watcher.

  • The following suppression filters are added:

    • Description field​: for the user to describe what they are suppressing and why

    • Comments field: for users to add notes when they modifying an existing Suppression

    • Filtering Options

    • Severity ID​

    • Mitre ATT&CK​

    • Rule UID​

    • CVE​

    • Tags​

  • The following suppression filters are removed from the existing user experience:

    • Vendors​

    • Products​

    • Descriptions​

    • Finding Title​

    • Messages

Bug Fixes

  • The issue where the Entity Management API server was inaccessible is fixed.

  • The issue where Beekeeper crashes on Microsoft Teams token expiration is fixed.

  • The issue where sharing a contact card as the initial response to the bot was incorrectly categorized as ownership confirmation is fixed.

  • The issue where the hostname and HTTP path provided threw an invalid error in the v2 wizard while configuring Databricks is fixed.

  • The issue causing CDP to crash when retrieving device owner information is fixed.

  • The issue where saved or historic searches could not be executed from entity pages is fixed.

  • A potential server-side request forgery vulnerability is addressed to enhance system security.

  • The manifest key to show the ingest time window now correctly controls only the API ingest time window.

  • The issue where the user with the most device count didn't match the detail view, is fixed.

  • The logic for calculating the Sankey diagram metric counts on the data quality summary page is fixed.

  • The issue where an empty card was created on the same page when the user submits an entity resolution configuration is fixed.

  • The issue where the widget type and preview did not match when adding a console widget, is fixed.

  • The Entity Management record creation timestamp is now correctly set when adding to the buffer.

  • The issue where the CyberArk API ingest was not properly handling special characters in API secrets is fixed.

  • The issue causing errors in production for ServiceNow policy exception and vulnerability feeds is fixed.

  • The issue where ingested files were not being deleted, leading to continuous data accumulation in the data lake, is fixed.

  • The issue where the Qualys basic authentication API ingest configuration reported an invalid username and password config, is fixed.

  • The issue where data collector feeds were missing Snowflake PUT batching via SQS is fixed.

  • The issue where the CSV scanner failed to properly process empty CSV files, is fixed.