Skip to main content

Cyware Orchestrate

Release Notes 3.2.1

We are excited to introduce you to the latest version of Orchestrate v3.2.1. This release comes with a few new features, enhancements, and integrations.

New Features

Admin Logs

Admin logs contain the API logs that provide the following information

  • API requests across the Orchestrate platform

  • Open API requests sent to a Orchestrate instance

Using API logs, administrators can analyze and gather insights into the API requests.

API logs display the following details:

  • API requests

  • The IP address of the device where the API request is initiated

  • The user who has initiated the API request

  • Request methods such as GET, POST, PUT, and DELETE

  • Response statuses such as success, not found, unauthorized, internal server error, and more

  • API request execution timestamp

    ADminlogs.png

You can select the Modules filters such as App Activities, Persistent List Activities, Run Logs, Playbook Activities, Logout, and Login to restrict the logs that appear in the search results.

Modules_Filters.png

Enhancements

Orchestrate is upgraded from Python 3.6 to Python 3.9.

Before upgrading a Orchestrate instance to the 3.2.1.0 version, you must manually update the impacted apps to their latest version and validate the functioning of the associated playbooks.

The following apps are impacted:

Apps

Latest Version for Update

Cisco Adaptive Security

1.0.3

Gmail

1.0.4

Email POP3

1.0.4

Microsoft EWS Exchange

2.0.0

SQL

1.0.0

New Integrations

Orchestrate continues to expand and add new integrations in the Appstore to meet the security orchestration and automation use cases. Some of the existing connectors are also enhanced with new actions.

The following apps are published in Appstore between the 3.2.0 and 3.2.1 releases:

App

Latest Version Available

Secureworks Taegis XDR

1.1.0

Cyware Utility

1.8.2

Microsoft Teams

1.1.1

Stairwell

1.1.0

Hunters.AI

1.0.1

Office 365

2.6.2

Exabeam Analytics

1.3.0

Zscaler Internet Access

2.1.0

VMware Carbon Black Cloud

2.1.0

Confluence Cloud

1.1.0

Trend Micro Vision One V3

1.0

Barracuda WAF

1.0.0

RSA Archer

2.0.0

MongoDB

1.0.0

Area 1 Security

1.1.0

Fortinet FortiEDR

2.0.0

Box

1.0.0

Imperva Incapsula Cloud WAF

2.0.0

Cyware Email Parser

1.0.0

VirusTotal V3

1.2.0

Devo

1.1.0

Infoblox DNS

1.2.0

LogRhythm

1.0.0

Palo Alto Cortex XDR

1.0.1

HTTP Request

2.0.3

Tines

1.0.0

AWS EC2

2.1.0

Stellar Cyber

1.0.0

Crowdstrike Falcon

1.5.0

Blueliv V2

1.0.0

Microsoft Defender for Cloud Apps

1.0.0

Cisco Identity Services Engine

1.0.1

Netskope

1.1.0

Feedly

1.0.0

Joe Security Sandbox

2.2.0

Netskope V2

1.1.0

Cyware Situational Awareness Platform (CSAP)

1.2.0

CloudSEK XVigil

1.0.0

Trend Micro Cloud App Security

1.0.0

RSS

1.0.0

Securonix

1.0.0

Trend Micro Cloud One

1.0.0

Malware Bazaar

1.0.0

AWS Inspector

1.0.0

Akamai Network List

2.0.0

Fortinet Fortigate

2.2.0

FortiManager

1.0.0

SANS Phishing

1.0.0

CrowdStrike Falcon Sandbox

2.0.0

Azure Active Directory V2

1.4.0

Vivantio

1.0.0

DNIF HYPERCLOUD

1.0.0

McAfee ESM

3.0.0

Cyware Email Services

1.2.2

VMware Carbon Black Response

2.0.0

Cyware Threat Intelligence Exchange (CTIX)

1.6.3

CTIX V3

1.1.1

Armis

1.0.0

Microsoft CASB

1.1.0

Hatching Triage

1.0.0

Hybrid Analysis

1.0.0

Intezer Analyze

2.1.0

Trend Micro Cloud One

2.0.0