Release 4.4: Total View, Infrastructure Variance, Context Similarity and more...

Release 4.4

Release 4.4 is here and it’s our biggest yet! Check out the new features and changes below.

Total View

We’ve implemented a major restructuring of the IPv4 and domain Enrichment screens. Enriching either of these data types now presents the ‘Total View’ screen.

‘Total View’ populates data relating to an IPv4 address or domain across the following queries and functions, from one screen:

  1. Passive DNS record count, and list per record type
  2. WHOIS information
  3. Infrastructure Variance (associated ASNs, IP diversity data and nameservers used)
  4. Live Scan highlights
  5. Web Scanner quick scan
  6. WHOIS changes over time
  7. Threat Feed presence
  8. Screenshot history
  9. Dangling DNS record count and list
  10. Associated subdomains
  11. Associated certificates

This allows users to quickly pivot within a single page, and view a range of new data visualizations to interpret data more effectively.

Improved Enrichment highlights

Infrastructure Variance

Under the Total View menu, there is a new tab for ‘Infrastructure Variance’ – a data element unique to Silent Push. This tab hosts variance data for ‘ASN Diversity’, ‘IP Diversity’ and ‘NS Changes’ relating to any enriched domain:

  1.  A list of ASNs associated with the domain
  2. The domain’s IP Diversity metrics (visual timelines of AS hops, IP diversity score, ASN diversity data)
  3. Nameserver data (associated nameservers, nameserver domain density, nameserver reputation scores)

You are now able to track these variances in one place, supporting the identification of patterns to stop attacks before they escalate.

Infrastructure Variance IP Diversity Visualization

Context Similarity

Also unique to Silent Push is a new ‘Context Similarity’ tab under Total View. This tool visualizes domain similarity and compares enriched attributes of your domain with others on your Silent Push threat intel feeds.

You are also able to compare any two of the results side-by-side, and unearth new pivots to enhance your threat hunting.

Context Similarity Visualization

Additional resources

The Silent Push Knowledge Base comprises more than 200 articles that provide simple guidance on every aspect of the platform. It caters to both Community and Enterprise subscribers, and it’s constantly updated with new features and functionality.

Get in touch

Have any questions about the new release, or would like to learn more about our Community and Enterprise Editions? Get in touch today and we’ll get back to you shortly.