Deployment May 31, 2023
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for "Azure Subscription Policy" in compliance engine and protected assets.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Unable to use Unified Onboarding in AWS China Case ID: DFT-2409
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: New GCP rules; DFT fix. A complete list can be found here. Case ID: IN-7774, DFT-7498
|
Deployment May 29, 2023
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Including "Data Sensitivity" information as part of the risk score calculation for AWS S3 Buckets.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Added Network Exposure support for Azure Virtual Machines via Load Balancer.
|
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added a new flag for filtering findings based on customer policies that allows filter findings based on policy types
|
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Initializations for the “createdTime” and “updatedTime” properties were fixed for the AWS' Application Load Balancer entity.
|
Deployment May 28, 2023
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added a new flag for filtering findings based on customer policies that allows filter findings based on policy types
|
Deployment May 25, 2023
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for "Azure Application Insights" in compliance engine and protected assets.
|
Deployment May 24, 2023
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added a new flag for filtering findings based on customer policies that allows filter findings based on policy types
|
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: New integration with AWS Macie for S3 Buckets sensitive data discovery. Added "Data Sensitivity" information in Risk Management protected assets page.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: AWS New EKS Rules, AWS Rules Removal, and 2 DFTs were fixed. A complete list can be found here. D9.AWS.IAM.42 - deprecated due to redundancy D9.AWS.IAM.70 - can’t be triggered anymore (AWS fix)
|
Deployment May 23, 2023
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for "Azure Defender Server Vulnerability Assessment" in compliance engine and protected assets.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for new region in AWS - UAE (me-central-1) in compliance engine and protected assets.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added new property "replication.rules.destination.accountId" for AWS S3Bucket in compliance engine.
|
Deployment May 18, 2023
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added new property "ReplicationGroup" for AWS ElastiCache in compliance engine and protected assets.
|
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added a Context Graph to the Azure Virtual Machine's Protected Asset Page. The Context Graph will display the asset exposure to the Internet.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for new assets in Risk Management: AWS SQS, AWS DynamoDB Table, AWS Redshift, AWS SNS Topic, AWS ECR Repository, Azure FunctionApp, Azure Storage Account.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Fix a bug with a certain GSL for the Compliance Engine.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Events page - group by category show irrelevant events under category with empty value
|
Deployment May 17, 2023
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Fixed edit role page loading stuck when user with millions of records
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Fixed edit role page loading stuck when user with millions of records
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for "AWS CodeBuild Project" in compliance engine and protected assets.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: New AWS and Azure rules; AWS CIS v1.5 ruleset enrichment; Azure CIS v2 ruleset enrichment; A complete list can be found here.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added new property "dbInstanceParameter" for Alibaba RdsDbInstance in compliance engine and protected assets.
|
Deployment May 15, 2023
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: OCI onboarding doesn't work if only "root" OrganizationUnit exists
|
Deployment May 14, 2023
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added new properties to Azure VirtualMachineScaleSet Entity, “OrchestrationMode”, “Instances.SecurityProfile“, “VirtualMachineProfile.SecurityProfile“.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added new properties to Azure VM entity “SecurityProfile“, “StorageProfile”.
|
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added “Serverless” cluster type support the AWS “MskCluster” entity.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: A new look and feel for Protected Asset details page. The new Protected Asset page includes a new Overview tab that displays Risk Management information in a much clearer way. The new area includes the Context Graph (for selected assets) that provides insights into the asset exposure to the Internet as well as the potential blast radius in case of exploit, both from an IAM and network perspective. Case ID: SEC-900
|
Deployment May 11, 2023
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Add new button was missing in case the user delete all his environments
|
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Third party label was missing in protected asset details page
|
Deployment May 10, 2023
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: New tenant not getting landing page on Infinity Portal
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Support GKE Autopilot clusters (version 1.25 and above), Allow specifying priority class per agent, Autopilot Supported Blades: Inventory, Compliance, Image Assurance, Admission Controller and Threat Intelligence. A complete list can be found here.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for Alibaba Security Center Edition Center Config in compliance engine and protected assets.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for Alibaba Security Center Webshell Config in compliance engine and protected assets.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for Alibaba Security Center Notification Config in compliance engine and protected assets.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for Alibaba Security Center Log Analysis Config in compliance engine and protected assets.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for Alibaba Security Center Linux Vulnerability in compliance engine and protected assets.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for Alibaba Security Center Linked Role Statusin compliance engine and protected assets.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for Alibaba Security Center Asset Security Info in compliance engine and protected assets.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for Alibaba Security Center Vulnerability Scan Config in compliance engine and protected assets.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for Alibaba Security Center Anti Virus Config in compliance engine and protected assets.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for new entity in AWS GuardDutyDetector in compliance engine and protected assets.
|
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added support for "terminationProtectionEnabled" property for AWS “Instance” entity in compliance engine.
|
Info | ||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Added new property "FlowLogs" for Alibaba VPC in compliance engine and protected assets.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: New AWS rules; AWS PCI-DSS ruleset enrichment; AWS rules deprecation. A complete list can be found here.
|
Deployment May 9, 2023
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Some asset properties have the indication External, for example, ExternalObject, ExternalArray. These properties are brought by GloudGuard from another entity to help you write GSL rules easier.
|
Deployment May 7, 2023
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: New infrastructure for future configuration of key vaults onboarding: Azure Key vault data will now be fetch from specific IP.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Add "AssetLables" field to entity view in playground
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Added Network Exposure support for Azure Virtual Machines via Application Gateway.
|
Deployment May 4, 2023
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Removed the following redundant properties from Azure Network Security Group entity, as they are not in use anymore - "InboundRules" "OutboundRules" "DefaultInboundRules" "DefaultOutboundRules"
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Removed "new" label for entities that are supported for more than a month
|
Deployment May 3, 2023
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: The first release of the Admission Control default ruleset; New AWS encryption rules, new Azure CIS rules; rule improvement; ERM rulesets update. A complete list can be found here.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Fixed compliance for Alibaba NAS entity.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Risk Management dashboard is now available in the Overview menu as “Risk Management”. The Risk Management welcome page was removed.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Add VendorIdentifier field to posture fidnings, this data is available for (ARN for AWS, ResourceURI for Azure). Field will be missing if data is not available
|
Deployment May 2, 2023
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Network exposure for AWS ECS Service is now more accurate and includes the “Private” classification.
|
Info | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|
Description: Added S3 Bucket policy status enrichment in the data fetcher. Using GetBucketPolicyStatus API.
|
Deployment May 1, 2023
Info | ||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Description: Fixed inconsistence of "IsOwnedByUserFlag" field in EC2 Image entity, this issue also caused inconsistence response of CloudAmi API where some Images ami where missing randomly
|