OpenCTI: Version 4.3.0

03/11/2021 9:20 am

OpenCTI: Version 4.3.0

Dear community, OpenCTI 4.3.0 has been released \U0001f973! This new version fixes all currently known bugs and includes the update of all dependencies as part of our 0-bug / 0-technical debt strategy \U0001f4aa.

We have also introduced a new user interface force graph technology within the platform \U0001f98b. This is just the beginning of many future works around graph investigation and visualizations in the platform \u2728.

Next milestones will be focus on mass operations in the platform (deleting, tagging, select all, etc.) and subscription/notifications system to follow entities and receive knowledge digests \U0001f4f0.

Enhancements:

  • #1149 [api] Improve data segregation to handle multiple marking type
  • #1117 Prevent element creation in case of concurrent deletions
  • #1113 Improve Elasticsearch configuration options
  • #1068 Filter relationships in reports
  • #866 Add a way to save the position of entities in knowledge graph view
  • #593 Entities overlapping in relational graph
  • #574 Filters entities in relational graph of report knowledge
  • #504 Full refactor of knowledge graph and graph everywhere

Bug Fixes:

  • #1146 Live update of the observable description doesn’t always works
  • #1142 Loading files in minio with special chars can fail
  • #1141 Problems creating Attack Patterns via send_stix2_bundle
  • #1138 Registry Value Observable displays as Unknown
  • #1136 Base path context is not taken into account in the stream
  • #1133 IdentitiesFilter should use x_opencti_aliases instead of aliases
  • #1127 Attributes query search can fail and throw a READ ERROR
  • #1132 Error while creating an observable type Directory
  • #1124 Cant create key for X-OpenCTI-Hostname from empty data when creating a new hostname observable
  • #1123 Duplicate STIX IDs
  • #1120 Unable to create a new autonomous system in observables tab
  • #1116 The attribute infrastructure_types is not readable in the API