Lastline Analyst and Detonator On-Premises Release Notes

Version 5.0

New features

  • Improved analysis reports
  • Audit log feature
  • Flexible schedule updates

Released appliance versions

As part of this release, we are making available the following versions of Lastline appliances for use on-premise:

  • Lastline Analyst version 580

Improved analysis reports

File analysis reports have been improved by adding the following features:

  • the relationship between analysis subjects (processes monitored during the analysis) is shown graphically
  • it is possible to highlight analysis subjects that exhibit specific classes of behaviors (e.g., network activity, console I/O)

URL analysis reports have been improved by adding the following features:

  • the relationship between visited web pages is shown graphically
  • it is possible to download the content of the web pages that were visited during an analysis
  • the report displays the JavaScript code that was dynamically evaluated when visiting the submitted URLs

Audit log

This release introduces an audit log, which collects and displays security-relevant and other critical activities performed on the system.

At the moment, the audit log stores records of user logins on the manager interface. The audit log interface can be accessed in the audit log section of the administration page.

Flexible schedule updates

On Premise appliances will be upgraded if the they have automatic updates enabled.

4.8 5.1