Lastline Analyst and Detonator On-Premises Release Notes

Version 7.9

New features

  • Added tutorial videos to the Lastline Portal
  • Support SHA256 in submissions and queries to Analyst API
  • Bug fixes and improvements

Added tutorial videos to the Lastline Portal

The Lastline Portal now includes support for tutorial videos.

The Portal offers to show videos contextually the first time a relevant page is visited. The video can also be viewed later by clicking on the camera icon.

Available videos are also listed in the videos Page, which can be reached from the Help menu.

Support SHA256 in submissions and queries to Analyst API

The Lastline Analyst API now supports using the SHA256 hash of a file when submitting files for analysis or querying for existing analysis results. Furthermore, functions returning submission metadata will include the SHA256 of the submitted file (if this information is available).

Bug fixes and improvements

  • Fixed visual glitch when the Analysis history page reloads the data to display.

  • Added support for the submission of network traffic capture files (in tcpdump pcap format). The traffic contents are analyzed to determine the presence of malicious traffic or communication with malicious endpoints. Notice that at the moment, any artifact contained in the capture is not extracted and analyzed.

Deprecation of API methods

No additional methods of the legacy API (/ll_api/ll_api) are being deprecated or removed in this version.

The Lastline API documentation includes a deprecation schedule for methods in the legacy API, as well as information on how to replace usage of these deprecated methods with supported methods.

Released appliance versions

As part of this release, we are making available the following versions of Lastline appliances for use with Lastline Enterprise On Premise:

  • Lastline Analyst version 713
7.8 7.9.1