Malcolm v5.2.4
Malcolm v5.2.4 is a patch release with improvements and bug fixes.
-
New features
- #74 (automatically generate Zeek intelligence indicators from STIX/TAXII)
-
Improvements
- group MAC addresses and OUI (vendors) into
related.mac
andrelated.oui
for easier searching across all fields - improvements to default anomaly detectors
- group MAC addresses and OUI (vendors) into
-
Bug fixes
Malcolm and Hedgehog Linux may be obtained by pulling or building the Docker images and/or building the ISO installer images as described in the documentation. Unofficial ISO installer images for Malcolm and Hedgehog Linux are not hosted on GitHub, but may be downloaded from https://malcolm.fyi/download/.