CSIS

Document

Release Notes, October 2022

2022.10 Release Notes

From: 21 September 2022 

To: 20 October 2022 

 

Threat Intelligence Portal

  • Release of the “Investigations” tab. Visible to Threat Intelligence customers, it allows for searches through the CSIS Cyber Threat Intelligence database. Lookups for IPs, domains, URLs, file-hashes, and Autonomous System Numbers (ASNs) are possible. Entries are interconnected to allow for easy pivoting from one IoC to another with one click.

  • Release of the “Remote Forensics” tab. CIRK customers can see their remote forensics cases including CSIS’ conclusions and download the CIRK client for Windows and Android.

  • Easier onboarding for Microsoft Defender for Endpoint customers through a new onboarding experience.
  • Faster change of status for compromised data entries through a bulk-action button. (TIP-544)

Anti-Phishing 

  • The Anti-Phishing system can now crawl potential phishing websites from different locations and with different browser user-agents, to circumvent device- or geolocation based counter measures.
  • Improved URL-detection in the Phishing/Smishing message parsing service.

Cyber Threat Intelligence 

  • Improved Possible Remote Proxy detection by expanding the detection algorithm.
  • Improved tracking of Threat Actors and their aliases.

Newsletter

Sign up

Stay informed.
Get our Cyber Bytes!