v3.26.0
panther-bot-automation
released this
28 Nov 22:12
·
410 commits
to main
since this release
What's Changed
🏡 Miscellaneous
- Add threat research team to CODEOWNERS by @egibs in #963
- Update standard_ruleset.yml to include Notion Data Model by @LCMeed in #961
- Update github_secret_scanning_alert_created rule/tests by @egibs in #962
- Snowflake Kubernetes Inital Detection Drop by @sfc-gh-kderevyanik in #965
- Enable Dependabot for GitHub actions by @wadells in #968
- build(deps): bump actions/checkout from 3 to 4 by @dependabot in #969
- build(deps): bump peterjgrainger/action-create-branch from 2.3.0 to 2.4.0 by @dependabot in #970
- build(deps): bump actions/github-script from 6 to 7 by @dependabot in #971
- Teleport: Update Rules by @jof in #966
- Carbonblack passthrough rule by @arielkr256 in #967
- Add rule to detect AWSCompromisedKeyQuarantineV2 policy attachments by @egibs in #964
- k8s pack by @arielkr256 in #974
- Renamed default rule to avoid by @arielkr256 in #975
- k8s queries disabled by default by @arielkr256 in #976
- Update CRYPTO_MINING_DOMAINS IOCs; add two additional tests by @egibs in #973
- Checkout repository with GITHUB_TOKEN by @egibs in #977
- Add rule to alert on known cryptomining ports in VPC flow logs by @egibs in #972
- Revert "Add rule to alert on known cryptomining ports in VPC flow logs" by @egibs in #978
New Contributors
- @sfc-gh-kderevyanik made their first contribution in #965
- @jof made their first contribution in #966
Full Changelog: v3.25.0...v3.26.0