Skip to content

Releases: redcanaryco/surveyor

v2.5.0

11 Jul 13:46
812314d
Compare
Choose a tag to compare

What's Changed

Definition Files

  • Added support for network connection port field in definition files by @pmichaudrc in #116
  • Added support for registry field in definition files by @xC0uNt3r7hr34t in #117

EDR

General

New Contributors

Full Changelog: v2.4.1...v2.5.0

v2.4.1

27 Jun 18:55
eafdfff
Compare
Choose a tag to compare

What's Changed

Definition Files

  • No changes

EDR

  • No changes

General

Full Changelog: v2.4.0...v2.4.1

v2.4.0

20 Jun 21:03
d964f36
Compare
Choose a tag to compare

What's Changed

Definition Files

EDR

  • Updated Microsoft Defender for Endpoint Query Building Logic by @rc-csmith in #104

General

New Contributors

Full Changelog: v2.3.0...v2.4.0

v2.3.0

24 Mar 14:46
7c9d72d
Compare
Choose a tag to compare

What's Changed

Definition Files

  • No changes

EDR

General

  • No changes

Full Changelog: v2.2.0...v2.3.0

v2.2.0

23 Mar 14:39
e4d2684
Compare
Choose a tag to compare

What's Changed

Definition Files

  • Existing definition files updated to use new query field by @rc-csmith in #100

EDR

  • Added support for regex and full query options within definition files. Expanded parameter mappings and output fields for SentinelOne by @xC0uNt3r7hr34t in #87
  • Added Support for "Query" Field in Definition Files for VMware Carbon Black Response, VMware Carbon Black Cloud and Microsoft Defender for Endpoint by @rc-csmith in #93
  • Implemented PowerQuery support for SentinelOne by @jholtmann in #94

General

  • No changes

Full Changelog: v2.1.0...v2.2.0

v2.1.0

19 Jan 16:50
fe4b437
Compare
Choose a tag to compare

What's Changed

Definition Files

EDR

  • Made siteID optional for SentinelOne by @rc-csmith in #72
  • Fixed query options and added support for process name for SentinelOne by @xC0uNt3r7hr34t in #74
  • Added base_query filters to merged queries for all command line argument scenarios for SentinelOne by @xC0uNt3r7hr34t in #78
  • Allowed siteID and/or accountID in commandLine for SentinelOne by @rc-csmith in #79
  • Implemented VMware Carbon Black Cloud SDK by @rc-csmith in #69
  • Added enhancements to VMware Carbon Black Response & VMware Carbon Black Cloud by @rc-csmith in #84

General

New Contributors

Full Changelog: v2.0...v2.1.0

v2.0 - SentinelOne Support

05 Apr 19:33
2361839
Compare
Choose a tag to compare
Merge pull request #54 from redcanaryco/dev-v2

Update documentation and click version string for v2.0

v1.0

05 Apr 19:14
b47ec85
Compare
Choose a tag to compare
Merge pull request #51 from amashinchi-rc/update-readme-per-wiki

Update readme per wiki