Continuous Delivery Features

For some Cybereason platform features, the feature is supported and delivered with a specific Cybereason server and sensor version. However, some features are delivered independently of an explicit server or sensor version, through the upgrade of server components or enablement of specific features in your server configuration, such as MalOp creation and enrichment, MalOp grouping, Behavioral allowlisting, Reputation management, and so forth.

This topic contains links to the release notes for different platform features released independent of a specific Cybereason version.

January 2024

We have added the following during this month:

Area

Feature

Description

MalOps

MalOp API

In environments using the new Data Platform infrastructure, to help you better filter MalOps when using the API, we have added a new field called metadataUpdateTime to the request and response to return a list of MalOps. This field enables you to return MalOps based on changes in a MalOp field such as the MalOp status or addition of a MalOp comment.

MalOps

MalOps management

In environments that use the new Data Platform infrastructure, to simplify the process of filtering the list of MalOps in the MalOps Management screen, we have added a filter to select all EDR (AI Hunting) or NGAV (Endpoint Protection) MalOps. Previously , to view Endpoint Protection MalOps, you had to select multiple different options, such as Fileless Protection, Anti-Ransomware, and so forth.

December 2023

We have added the following during this month:

Area

Feature

Description

MalOps

MalOps management

In the MalOps management screen, we have added a new filter called Detection type. You can use this filter to display MalOps classified as Potentially Unwanted Programs (PUP).

October 2023

We have added the following during this month:

Area

Feature

Description

OS Support

New OS

The following OS are now supported:

  • Windows 11 23H2

  • Rocky Linux 9.2

September 2023

We have added the following during this month:

Area

Feature

Description

EDR

New operators for behavioral allowlisting rules

To help make more exact rules for command line Features, we have added the Starts with and Ends with operators.

August 2023

We have added the following during this month:

Area

Feature

Description

EDR

New operators for behavioral allowlisting rules

To help make more exact rules for command line Features, we have added the Starts with and Ends with operators.

May 2023

We have added the following during this month:

Area

Feature

Description

Endpoint Controls

Device Control screen

We have added the following enhancements in the Device Control screen:

  • You now have the Export option to enable you to export Device control events to a .csv file.

  • You can now import up to 200 entries in the CSV file for USB device settings in the Device control section of the Endpoint Controls screen in a sensor policy.

Reputations

Reputation classificatio

We are introducing several improvements to our Threat Analysis and Classification engine as part of our ongoing effort to provide higher levels of protection. These include improved classification of potentially malicious scripts and Linux files.

These improvements will result in higher quality detections in your Cybereason platform. You may see a higher number of true positive file-reputation MalOps, and fewer false positives.

The changes are taking place on Cybereason’s Global Threat Intel server, and require no action or upgrade.

July 2023

We have added the following during this month:

Area

Feature

Description

OS Support

New OS

Oracle Linux 9 is now supported on all versions of 21.2, 22.1, 23.1 and later versions 21.2, 22.1, 23.1 and higher. Please see the OS Support page for each version for more details.

April 2023

We have added the following during this month:

Area

Feature

Description

OS Support

New OS

Oracle Linux 9 is now supported on all versions of 21.2, 22.1, 23.1 and later versions 21.2, 22.1, 23.1 and higher. Please see the OS Support page for each version for more details.