Skip to content

Giant Flying Squirrel

Compare
Choose a tag to compare
@regit regit released this 14 Mar 08:59
· 2956 commits to master since this release

This is the first release of the 2.0 branch that feature a brand new user interface and new features such as lateral movement and target transformations. Both modify signatures to improve them. Lateral movement uses an algorithm to enlarge the signature IP address filter to detect attacks in the internal networks. Target transformation implement an other algorithm to add target keyword to signatures thus helping to find and visualize attack paths.

Main changes:

  • Rule transformation with lateral movement and target
  • Support of OISF public sources for easier setup
  • Convert documentation to sphinx and integrate it in interface
  • Rework of interface with Patternfly components
  • Link to Onyphe to get IP informations
  • Rules parsing optimization
  • More dashboards including pktcity webGL visuaiization
  • Initial REST API to interact with Scirius from outside