MISP
Open-source threat intelligence and information sharing platform
MISP 2.5.46 delivers a 50× sightings query speedup and systematic SSRF closure — serious infrastructure work.
◆Recent moves
- 5d ago
MISP 2.5.46 released - security hardening, major performance gains, knowledge-base updates and Overmind moving forward
⚡ SPARKThe headline moves in 2.5.46 are the 50× sightings query reduction (8.1s → 0.15s, 10,661 queries → 6) and the new UrlEgressValidator, which begins systematic closure of MISP's outbound SSRF surface — two changes that together represent a step-change in performance and security posture for large, multi-user instances.
View source ↗ - 21d ago
MISP v2.5.45 released - Overmind Everywhere, LDAP Reworked, Security Hardened and Many Fixes
A six-week cycle advancing the Overmind UI migration into server settings, workflow editors, and feed management, alongside a full LDAP authentication revamp with group-based role mapping and CI-backed test coverage — real infrastructure work for enterprise and government deployments.
View source ↗ - 2mo ago
MISP v2.5.43 released
Collection synchronisation between MISP instances — pull and push directions, feature negotiation for backward compatibility, and paginated negotiation for memory efficiency — extends the federation model meaningfully; env-var settings unlock container and IaC deployments.
View source ↗ - 2mo ago
MISP v2.5.44 released
Hotfix release addressing a pull-synchronisation failure on events without tags, plus continued Overmind Bootstrap 5 view additions — routine maintenance following the 2.5.43 feature cycle.
View source ↗ - 2mo ago
MISP 2.5.42 - scorching hot weather release
⚡ SPARKThe 2.5.42 security audit closed two RCE vectors via strict config-path validation and systematically swept 74 controllers for mass-assignment and broken-access-control vulnerabilities — a codebase-wide hardening pass unusual in scope for open-source threat intelligence infrastructure.
View source ↗ - 3mo ago
MISP 2.5.41 - heatwave edition
2.5.41 adds mass event tagging, galaxy cluster ACL enforcement on dashboards, and a sync optimization replacing full tag-list fetches with fingerprints — incremental work that moves MISP's scale ceiling upward without changing the product surface.
View source ↗