Blogs

MISP 2.4.108 released (aka copy-paste-and-sync feature)

A new version of MISP (2.4.108) has been released with a host of new features, improvements and bugs fixed. We strongly advise all users to update their MISP installations to this latest version.

Continue reading

MISP 2.4.107 released (aka similar objects review, yara native export)

A new version of MISP (2.4.107) has been released with a host of new features, improvements and security fixes. We strongly advise all users to update their MISP installation to this latest version.

Continue reading

MISP 2.4.106 released (aka Too many improvements)

A new version of MISP (2.4.106) has been released with a host of improvements, including new features such as a feed cache search, CLI tools to manage your MISP instance along with improved diagnostics.

Continue reading

MISP 2.4.105 released (aka security fix for CVE-2019-10254)

A new version of MISP (2.4.105) has been released to fix a security vulnerability (CVE-2019-10254) in addition to some minor improvements and a fix for the STIX 1.1 import, enabling the import of files with additional namespaces (such as CISCP).

Continue reading

MISP 2.4.104 released (aka too many new features)

A new version of MISP (2.4.104) has been released with a host of new features such as new overlap feed comparator, a new graph visualisation of event and attribute distributions, a history/bookmark system for the REST client and many others.

Continue reading

MISP 2.4.103 released (aka UI improvements)

A new version of MISP (2.4.103) has been released with significant UI improvements (including a new flexible attribute filtering tool at the event level), many bug fixes and a fix to a security vulnerability (CVE-2019-9482) which was affecting sighting visibility.

Continue reading

MISP 2.4.102 released (aka bug fixes and FOSDEM release)

A new version of MISP (2.4.102) has been released with several fixes, various UI improvements, new types and a praise to the open source community.

Continue reading

MISP 2.4.101 released (aka 3 features for free)

A new version of MISP (2.4.101) has been released with 3 main new features (tag collections, improved tag/galaxy selector and MISP instance caching), along with a host of improvements and bug fixes.

Continue reading

MISP 2.4.100 released (aka happy new year release)

Happy new year! We are so proud of our community which has supported us for the past year and we hope to do even better for 2019. Thanks a lot.

Continue reading

MISP 2.4.99 released (aka API/UI fixes and critical security vulnerability fixed)

A new version of MISP (2.4.99) has been released with improvements in the UI, API, STIX import and a fixed critical security vulnerability.

Continue reading

MISP 2.4.98 released (aka usability improvements and SleuthKit mactime import)

A new version of MISP (2.4.98) has been released with new features such as improved UI consistency (such as attributes search output), improved validation error messages, a new built-in experimental SleuthKit mactime import, new small features and many bugs fixed.

Continue reading

MISP 2.4.97 released (aka so many new features)

A new version of MISP (2.4.97) has been released with new features such as related tags, the sighting restSearch API, a new French localisation along with many improvements to the API and he import/export capabilities, such as improved support for DHS AIS STIX 1 files.

Continue reading

MISP 2.4.96 released (aka API everywhere release)

A new version of MISP (2.4.96) has been released with a complete rework, refactoring and simplification of the restSearch API, allowing for more flexibility, improved search capabilities, performance and extendability.

Continue reading

MISP 2.4.95 released (aka API search improvement)

A new version of MISP (2.4.95) has been released with the first stage of a complete rework and refactoring of the API exports, allowing for more flexibility, improved search capabilities, performance and extendability.

Continue reading

MISP 2.4.94 released (aka summer improvements)

A new version of MISP 2.4.94 has been released including an improved event graph interface, a new Elasticsearch plugin, various extensions and enhancements to the API, clean-ups and many improvements. Even though it’s summertime, we continuously work on the MISP project and a lot of changes were introduced.

Continue reading

MISP 2.4.93 released (aka ATT&CK integration)

A new version of MISP 2.4.93 has been released including a much improved and tightly integrated MITRE ATT&CK interface, a new event locking functionality, initial support for a multilingual interface, various fixes including a security fix (CVE-2018-12649).

Continue reading

MISP 2.4.92 released (aka performance improvement)

A new version of MISP 2.4.92 has been released including aggressive performance boosts, various improvements and bug fixes.

We received feedback from various users about the negative impact on performance when the MISP warning-lists are enabled (a feature allowing the detection and filtering of false positive attributes in MISP). The performance hit incurred by enabling warning-lists has been reduced to such an extend that enabling them will barely have any impact on performance when viewing or browsing events. We hope this performance gain will increase the overall adoption of the warning-lists.

Continue reading

MISP 2.4.91 released (aka distribution visualisation, galaxy at attribute level and privacy notice list)

A new version of MISP 2.4.91 has been released including new major features, improvements and bug fixes.

Distribution and sharing visualisation

MISP 2.4.91 has a new visual aid in order to simply view the distribution and sharing model of all the attributes within an event. As events can become quite larger, with long lists of objects and attributes, analysts need to verify whether the proper distributions are applied. The new visualisation allows them to view the items per distribution level including the associated sharing groups. The visualisation is dynamic and can be used to filter the given attributes matching a specific distribution setting within the event.

Continue reading

MISP 2.4.90 released (aka Extended Events release)

A new version of MISP 2.4.90 has been released including the new extended events feature along with many updates in improvements in the API, user-interface (including many improvement in the graph editor) and many bug fixes.

Continue reading

Introducing The New Extended Events Feature in MISP

Introducing Extended Events

We have just released a new feature for MISP that allows users to build full blown events that extend an existing event, giving way to a combined event view that includes a sum total of the event along with all extending events.

Continue reading