Skip to content

v4.6.0

Compare
Choose a tag to compare
@Zalgo2462 Zalgo2462 released this 23 Aug 21:16
· 38 commits to master since this release
ef9373d

Changes:

  • Add support for Ubuntu 20.04 to the installer (#732, #734)
  • Write DB Updates in Bulk; Summarize Internal Hosts After Analysis; Documentation Updates (#737)
  • Implement FQDN Beaconing using TLS SNI and HTTP Host (#739)
  • Change host summarizer to record max total duration instead of max individual duration found in the uconn collection (#741)
  • Implement new IP beacon scoring algorithm (#742, #743, #745)
  • Store all connection timestamps. Do not de-duplicate connections happening in the same second (#744, #749)
  • Remove MalwareDomains as a threat intel source (#746)
  • Filter external to internal traffic by default (#753)