v1.110

Latest Release
Oct 25, 2024

New and Noteworthy

Now Generally Available

  • Enable two-way status, assignee, and comment syncing between Panther alerts and Jira issues. The Jira alert destination has also been enhanced to support Jira issue label and priority assignment based on Panther alert severity.
  • Manage your Panther users from a single location with Okta SCIM.

In Closed Beta

  • Write detections fully in Python (and avoid merge conflicts) using Panther’s new detection format, PyPanther Detections. The pypanther CLI tool now has a convert command, as well as a --dry-run option for upload. The Severity class now has upgrade() and downgrade() functions.
    • If you would like to participate in the PyPanther beta, please reach out to your Support team.

Panther Developer Workflows

Bug Fixes

  • Fixed a bug that had allowed non-JSON-compliant values (e.g., nan, inf, and -inf) to be present in an alert’s alert context value, which caused downstream issues.
  • Resolved an issue in the Panther console that was causing intermittent network problems, often resulting in a “503 Service Unavailable” error page.
  • Fixed an extremely rare edge case that could lead to dropped alert events.
  • Resolved a bug that had caused large numbers to be truncated in Search and Data Explorer.
  • Fixed an edge case where enabling field discovery could have led to increased Snowflake costs when the data format frequently changed.
`

Previous Releases

v1.109 Aug 29, 2024
Use the CrowdStrike Event Streams log source to ingest logs from the Event Streams API.
 
v1.108 Jun 28, 2024
Create correlation rules to track complex threat behavior across multiple detections.
 
Week of 4/29/24 May 1, 2024
The Torq alert destination is in open beta, and available to all customers.