Hi Everyone,
MISP 2.4 has been released.
https://github.com/MISP/MISP2.4 branch is now the default branch. Regular hot-fixes will be in that branch along with some
"minor" new functionalities.
The 2.4 version includes the long awaited sharing group functionality so you can now create local
or even remote sharing groups to meet your sharing policy and distribute information to specific
organizations. The
sharing group functionality is in addition to the existing MISP distribution model.
The sharing groups can be used at event level or even at the attributes level. So you can restrict
specific distribution depending of the attributes types.
The
synchronisation protocol improved over version 2.3 to include sharing groups but also to improve
efficiency. The MISP connection management in the UI has been improved in 2.4. You can check the
type of remote MISP instances that you can connect to. In addition, you can even browse remotely an existing
MISP instance and
remotely cherry-pick events to be pulled in your instance.
Tagging and classification has been improved especially regarding the ability to have exportable Tags.
In addition, Tags are now part of a taxonomy mechanisms where you can add existing new taxonomies
or even your own classification scheme automatically by creating a simple JSON file[1].
A
graphical navigation scheme[2] has been added to easily navigate between events and attributes and quickly
see the relationships.
Various
new cyber security attributes has been added in 2.4 along with new
financial fraud indicators.Many bug fixed and improvements including a
more flexible free-text import, improvement in the API and the proposal scheme.
If you find any bug or have any issues with MISP 2.4, feel free to open an issue on GitHub[3].
Thank you very much for using MISP.
[1]
https://github.com/MISP/misp-taxonomies [2]
https://raw.githubusercontent.com/MISP/MISP/2.4/INSTALL/screenshots/misp-panorama.png[3]
https://github.com/MISP/MISP/issues