Critical Patch: AI Threat Engine Deserialization Fix
Applied a critical security patch to the AI Threat Engine to resolve a potential unsafe deserialization vulnerability in the threat ingestion pipeline. This update hardens the /api/v2/threats/ingest endpoint against crafted payloads. All instances have been automatically updated.
Security
Patch
New Feature: Unified Zero-Trust Policy Manager
Introducing the Unified Policy Manager. You can now define, simulate, and deploy zero-trust access policies across on-prem, cloud, and remote endpoints from a single interface. Includes new visual policy builder and JSON-based export for infrastructure-as-code workflows.
Feature
Zero Trust
Resolved: SOC Dashboard Latency on Large Datasets
Fixed a performance regression causing the Security Operations Center dashboard to load slowly when aggregating metrics for tenants with >100,000 endpoints. Optimized database queries and implemented pagination for real-time event streams.
Bug Fix
Performance
Integration: Microsoft Sentinel & Splunk Connectors
CyberVault now natively integrates with Microsoft Sentinel and Splunk Enterprise. Forward alerts, enrich events, and trigger SOAR playbooks directly from the CyberVault console. Documentation updated with connection guides.
Integration
SIEM
Improved MFA Enforcement & Recovery Flows
Enhanced the Multi-Factor Authentication module with better recovery codes UI and support for TOTP rotation reminders. Added granular controls to enforce MFA based on geolocation risk scores.
Improvement
IAM
CVE Mitigation: OpenSSL Dependency Update
Proactively updated underlying OpenSSL libraries across all edge nodes to address recently disclosed vulnerabilities. No customer data was at risk, but this update ensures continued compliance with strict security standards.
Dependency Update
Maintenance