Skip to content

Commit e1f5e86

Browse files
authored
Release: v3.2.0, note about dragonfly (#750)
* Release: v3.2.0, note about dragonfly * fixup * fixup
1 parent b5feb44 commit e1f5e86

File tree

6 files changed

+33
-12
lines changed

6 files changed

+33
-12
lines changed

.github/CHANGELOG.md

Lines changed: 19 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -2,6 +2,25 @@
22

33
[**Upgrade Guide**](https://intelowl.readthedocs.io/en/latest/Installation.html#update-to-the-most-recent-version)
44

5+
## [v3.2.0](https://github.com/intelowlproject/IntelOwl/releases/tag/v3.2.0)
6+
7+
**New Analyzers:**
8+
9+
- `CryptoScamDB_CheckAPI`: Scan a cryptocurrency address, IP address, domain or ENS name against the [CryptoScamDB](https://cryptoscamdb.org/) API.
10+
- `Dragonfly_Emulation`: Emulate and analyze malware in a customizable manner with [Dragonfly](https://dragonfly.certego.net/?utm_source=intelowl) sandbox.
11+
> Dragonfly is a new public service by [Certego](https://certego.net?utm_source=intelowl) developed by the same team behind IntelOwl. [Sign up](https://dragonfly.certego.net/register?utm_source=intelowl) today on Dragonfly for free access!
12+
13+
**Bug Fixes:**
14+
15+
- Fixed [743](https://github.com/intelowlproject/IntelOwl/issues/743): File mime_type identification error. Thanks to @OG-Sadpanda for the report.
16+
17+
**Other:**
18+
19+
- Extended docker bind mount to all configuration files
20+
- Added new `test.flower.override.yml` and `test.multi-queue.override.yml` docker-compose files for flower and multi_queue options in test (local) mode.
21+
- Bump docker-compose file versions to 3.8
22+
- Bump some python dependencies
23+
524
## [v3.1.0](https://github.com/intelowlproject/IntelOwl/releases/tag/v3.1.0)
625

726
> 🎉 We are glad to welcome [Tines](https://www.tines.com/?utm_source=oss&utm_medium=sponsorship&utm_campaign=intelowl) as a new sponsor for IntelOwl. Read everything about this partnership [in the Tines' blog](https://www.tines.com/blog/announcing-our-sponsorship-of-intel-owl).

README.md

Lines changed: 10 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -53,22 +53,24 @@ You can see the full list of all available analyzers in the [documentation](http
5353
| Type | Analyzers Available |
5454
| -------------------------------------------------- | -------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
5555
| Inbuilt modules | - Static Document, RTF, PDF, PE, Generic File Analysis<br/> - Strings analysis with ML<br/> - PE Emulation with Speakeasy<br/> - PE Signature verification<br/> - PE Capabilities Extraction<br/> - Emulated Javascript Analysis<br/> - Android Malware Analysis<br/> - SPF and DMARC Validator<br/> - more... |
56-
| External services | - GreyNoise v2<br/> - Intezer<br/> - VirusTotal v2+v3<br/> - HybridAnalysis<br/> - Censys.io<br/> - Shodan<br/> - AlienVault OTX<br/> - Intelligence_X<br/> - Abuse.ch MalwareBazaar/Threatfox<br/> - many more.. |
56+
| External services | - <a href="https://dragonfly.certego.net" target="_blank">Dragonfly malware sandbox</a><br/> - GreyNoise v2<br/> - Intezer<br/> - VirusTotal v2+v3<br/> - HybridAnalysis<br/> - Censys.io<br/> - Shodan<br/> - AlienVault OTX<br/> - Intelligence_X<br/> - Abuse.ch MalwareBazaar/Threatfox<br/> - many more.. |
5757
| Free modules that require additional configuration | - Cuckoo (requires at least one working Cuckoo instance)<br/> - MISP (requires at least one working MISP instance)<br/> - Yara (a lot of public rules area available. There's also the chance to add your own rules) |
5858

5959
## Partnerships and sponsors
6060

6161
We have an official sponsorship program for companies, organizations and individuals who support IntelOwl development. For more details on how to join the list below, read the page: [Partnership and sponsors](https://github.com/certego/IntelOwl/blob/master/.github/partnership_and_sponsors.md).
6262

63-
### GOLD
63+
### 🥇 GOLD
6464

6565
#### Certego
6666

67-
<a href="https://www.certego.net"> <img style="margin-right: 2px" width=176 height=50 src="static_intel/Certego.png" alt="Certego Logo"/></a>
67+
<a href="https://certego.net/?utm_source=intelowl"> <img style="margin-right: 2px" width=176 height=50 src="static_intel/Certego.png" alt="Certego Logo"/></a>
6868

69-
[Certego](https://www.certego.net) is a MSSP and Threat Intelligence Provider based in Italy.
69+
[Certego](https://certego.net/?utm_source=intelowl) is a MSSP and Threat Intelligence Provider based in Italy.
7070

71-
Without Certego, IntelOwl would have not been born. Also, thanks to this company, it is constantly maintained and updated.
71+
IntelOwl was born out of Certego's Threat intelligence R&D division and is constantly maintained and updated thanks to them.
72+
73+
> [Dragonfly](https://dragonfly.certego.net/?utm_source=intelowl), an automated sandbox to emulate and analyze malware, is a new public service by Certego developed by the same team behind IntelOwl. It is now available as the `Dragonfly_Emulation` analyzer in IntelOwl. [Sign up](https://dragonfly.certego.net/register?utm_source=intelowl) on Dragonfly today for free access!
7274
7375
#### The Honeynet Project
7476

@@ -87,7 +89,7 @@ Project Summaries and/or in-development projects:
8789

8890
If you are interested in being the next GSoC student for IntelOwl, join the [Honeynet Slack chat](https://gsoc-slack.honeynet.org/) for more info.
8991

90-
### BRONZE
92+
### 🥉 BRONZE
9193

9294
#### Tines
9395

@@ -103,9 +105,9 @@ IntelOwl is officially integrated in Tines. Read everything about this partnersh
103105

104106
In 2021 IntelOwl joined the official [Docker Open Source Program](https://www.docker.com/blog/expanded-support-for-open-source-software-projects/). This allows IntelOwl developers to easily manage Docker images and focus on writing the code.
105107

106-
### IRON
108+
### 🤝 IRON
107109

108-
If you are an individual who likes this project and wants to thank us with a little contribution, we would be happy to list you here in the README as a public acknowledgment.
110+
If you are an individual who likes this project and want to thank us with a little contribution, we would be happy to list you here in the README as a public acknowledgment.
109111

110112
## About the author and maintainers
111113

configuration/analyzer_config.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -638,7 +638,7 @@
638638
"Dragonfly_Emulation": {
639639
"type": "file",
640640
"python_module": "dragonfly.DragonflyEmulation",
641-
"description": "Emulate malware against [Dragonfly](https://dragonfly.certego.net) sandbox by [Certego S.R.L](https://certego.net).",
641+
"description": "Emulate malware against [Dragonfly](https://dragonfly.certego.net/?utm_source=intelowl) sandbox by [Certego S.R.L](https://certego.net).",
642642
"supported_filetypes": ["application/x-dosexec", "application/octet-stream"],
643643
"disabled": false,
644644
"external_service": true,

docker/.env

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,5 @@
11
### DO NOT CHANGE THIS VALUE !!
22
### It should be updated only when you pull latest changes off from the 'master' branch of IntelOwl.
3-
INTELOWL_TAG_VERSION=v3.1.0
3+
INTELOWL_TAG_VERSION=v3.2.0
44
### Change this to `develop` when doing local development.
55
INTELOWL_NG_TAG_VERSION=v3.1.0

docs/source/conf.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -29,7 +29,7 @@
2929
author = "Matteo Lodi"
3030

3131
# The full version, including alpha/beta/rc tags
32-
release = "v3.1.0"
32+
release = "v3.2.0"
3333

3434

3535
# -- General configuration ---------------------------------------------------

intel_owl/settings.py

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -153,7 +153,7 @@ def retrieve(self, file, analyzer):
153153
# DRF Spectacular
154154
SPECTACULAR_SETTINGS = {
155155
"TITLE": "IntelOwl API specification",
156-
"VERSION": "3.1.0",
156+
"VERSION": "3.2.0",
157157
}
158158

159159
# Django-Rest-Durin

0 commit comments

Comments
 (0)