MSTICPy 1.3.0 Released

MSTICPy 1.3.0 Released

We've just released v1.3.0 to PyPI.

The release contains two major improvements:

Timeline Duration Visualization - this lets you visualize sets of events as continuous blocks with start and end times. Applications of this might be visualizing the duration of host logon sessions, durations of connections for different IP addresses, etc. You can choose to group on one or more columns in the input data and timeline duration control will figure out start and end datetimes for those groups and display them as shown below.

No alt text provided for this image

Microsoft Defender for Endpoint Schema updates

We've updated our MDE data provider to comply with schema updates from MDE. If you've been experiencing problems using the MDE (formerly MDATP) data provider, the changes in this version should fix things. We've updated the core driver and all of the affected MDE queries.

Read the release notes here. Also see the updated documentation for Timeline Duration.

Get the update with:

pip install --upgrade msticpy        



Erik M.

Director & Principal Architect GRC, AI, Zero Trust Architecture, FAIR, Vulnerability Management, Encryption, SaaS, PaaS, Cloud, Infrastructure, End Point Management, and Security Operations. ISC2 Test Question Author.

3 年

Amazing progress and impressive work! Be best and better Ian Hellen!

要查看或添加评论,请登录

Ian Hellen的更多文章

社区洞察

其他会员也浏览了