VORANT. Threat Intelligence Sign in Get the full feed

MISP 2.4.88 patches CVE-2018-6926

low vulnerability technology

MISP 2.4.88 adds ssdeep fuzzy-hash correlation and STIX 1.1 import while fixing a security vulnerability, CVE-2018-6926.

MISP, the open-source threat intelligence platform, released version 2.4.88 with several feature additions including fuzzy hashing correlation via ssdeep for classifying and matching similar binaries, and STIX 1.1.1 XML import support through the user interface. The release also improves sharing group APIs, organisation merging workflows, freetext import parsing, and adds application-wide keyboard shortcuts for analysts.

Notably, the release addresses a security bug tracked as CVE-2018-6926, though the article does not provide technical details on the vulnerability's nature or impact. Organizations running MISP should update to 2.4.88 to remediate this issue along with numerous other bug fixes. This is a routine software update announcement rather than a threat campaign report, with no indication of active exploitation.

Mentioned in this report

Vulnerabilities CVE-2018-6926

Source reporting: https://www.misp-project.org/2018/02/21/misp.2.4.88.released.html

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free