Announcements

  1. πŸŽ‰ Fresh updates from RiskProfiler.io πŸŽ‰ (September 1st to September 15th)

    New Feature
    Improvement
    Fix
    Announcement

    Greetings, everyone! We've worked hard to bring forth various new features and improvements. Let's explore them!

    πŸš€ New Features:

    • Data Breaches Coverage: Added support to track data breaches of your supply chain portfolio including Third-party and Fourth Party Vendors.
    • RiskProfiler AI Chatbot: Introduced a AI chatbot within the RiskProfiler application for logged-in users. The AI Bot allows users to search for product-related queries and submit helpdesk tickets directly.

    🐞 Bug Fixes & Improvements:

    • Credential Leaks: Fixed an issue where the Export function was not working for few tenants in a particular region.
    • Incident Management: Resolved multiple Incident Tracker issues, including improved search by Incident ID, corrected ordering, and fixed MTR data synchronization. Also fixed an issue where email notifications were not triggered for security incidents created from existing ones.
    • Optimized dropdown search performance for MSP tenants.
    • Scheduled Reports: Fixed an issue where scheduled reports were failing to trigger email notifications.
    • Credential Leaks: Fixed an inconsistency where passwords in the Credential Leaks module UI and exported files did not match. The UI and exported data now display passwords accurately and consistently.
    • Brand Threats: Fixed an issue where screenshots were not appearing when moving Brand findings to β€œResolved.”

    Your participation in our journey is irreplaceable. Each piece of feedback is highly valued.

    Warm Regards,

    Setu Parimi πŸ₯³πŸ™Œ

  2. πŸŽ‰ Fresh updates from RiskProfiler.io πŸŽ‰ (Aug 1st to Aug 15th)

    New Feature
    Improvement
    Fix
    Announcement

    Greetings, everyone! We've worked hard to bring forth various new features and improvements. Let's explore them!

    πŸš€ New Features:

    • Users can now create incidents directly from Internet Inventory (My Domains, Subdomains, IP Addresses, Trackers, etc.), as well as from Credential Leaks and Executive Monitoring.
    • Introduced Webhook Integration to deliver real-time platform event notifications directly to Slack
    • Questionnaire Collaboration – Enabled inviting additional collaborators.

    🐞 Bug Fixes & Improvements:

    • Typosquat Module – Improved search and filter functionality, now allowing users to filter by similarity for a better experience.
    • Global Issues Inventory – Resolved issues with the Export functionality.
    • Authentication – Fixed an issue where signing in with an email ID generated 502 errors in logs for some APIs
    • Brand Threat Intelligence – Addressed and resolved multiple issues affecting module performance.
    • AI-Driven Questionnaires – Fixed issues impacting functionality when leveraging Flags in a questionnaire
    • Custom Questionnaires – Resolved an error that prevented creating questionnaires with file upload fields.
    • Brand Threats Dashboard – Enhanced the display of findings in the top cards to correctly reflect severity levels in a given swimlane (Low, Medium, High, Unknown, Critical).

    Your participation in our journey is irreplaceable. Each piece of feedback is highly valued.

    Warm Regards,

    Setu Parimi πŸ₯³πŸ™Œ

  3. πŸŽ‰ Fresh updates from RiskProfiler.io πŸŽ‰ (August 16th to August 31st)

    New Feature
    Improvement
    Fix
    Announcement

    Greetings, everyone! We've worked hard to bring forth various new features and improvements. Let's explore them!

    🐞 Bug Fixes & Improvements:

    • Fixed an issue where user invitations failed due to missing first/last name fields
    • Resolved a bug where the β€œNext Page” icon appeared enabled even when only 25 results were available (applies across modules such as Vulnerabilities and Brand Threats etc.).
    • Added additional information for Breach Type in credential leaks Module.
    • Improved the UX for User Onboarding to the platform
    • Addressed and resolved an edge case issue where moving any successful or unsuccessful takedowns to a different status resulted in a system error.
    • Resolved issues where reports were not generated for Portfolio Companies and the Remediation Plan. Corrected inaccuracies in the Executive Report and the Company Breach Report. All report generation issues are now addressed and functioning as expected.
    • Fixed an issue where automated takedown attempts for rogue apps failed. Users can now successfully perform rogue app auto-takedowns.
    • Resolved an issue preventing users from adding conditions to custom questionnaires.
    • Fixed a problem where the Export function was not working in the Issues Module.

    Your participation in our journey is irreplaceable. Each piece of feedback is highly valued.

    Warm Regards,

    Setu Parimi πŸ₯³πŸ™Œ

  4. πŸŽ‰ Fresh updates from RiskProfiler.io πŸŽ‰ (July 16th to July 31st)

    New Feature
    Improvement
    Fix
    Announcement

    Greetings, everyone! We've worked hard to bring forth various new features and improvements. Let's explore them!

    πŸš€ New Features:

    • The user will receive an immediate Slack alert from the Brand & Dark Web Threats module whenever a new threat finding is created in the system.
    • Improved the search and filter functionality in the Typosquat module, allowing users to filter by similarity for an enhanced user experience.

    🐞 Bug Fixes & Improvements:

    • Fixed an issue where threat URLs were missing in exported CSV files under the Brand & Dark Web Threats module.
    • Resolved issues with export in security findings.
    • Updated filter logic to ensure all flagged questions are displayed accurately in the reviewed questionnaire view.
    • Updated the share link generation logic to include full context parameters (threat status, active tab, applied filters, and current view).Updated
    • Fixed the issue and added validation if it is my domain or subdomain in internet inventory.

    Your participation in our journey is irreplaceable. Each piece of feedback is highly valued.

    Warm Regards,

    Setu Parimi πŸ₯³πŸ™Œ

  5. πŸŽ‰ Fresh updates from RiskProfiler.io πŸŽ‰ (July 1st to July 15th)

    New Feature
    Improvement
    Fix
    Announcement

    Greetings, everyone! We've worked hard to bring forth various new features and improvements. Let's explore them!

    πŸš€ New Features:

    • RiskProfiler now supports Microsoft Active Directory Federation Services (ADFS) for Single Sign-On (SSO). This integration enables organizations to seamlessly authenticate users through their existing Microsoft AD infrastructure
    • Users can export questionnaires in XLS format as structured documents containing original questions, stakeholder responses, and internal or vendor-provided feedback.
    • The new Executive Monitoring module enhances digital protection for high-profile personnel. It continuously monitors executive names, emails, and titles across surface, deep, and dark web sources, detecting impersonation attempts, leaked credentials, and exposed contact data.
    • The Vulnerabilities module offers a comprehensive overview of all identified security vulnerabilities across the organization. It provides detailed insights into each vulnerability, including severity, status, and potential impact, and maps them directly to the specific assets they affect.
    • Introduced the Global Issues Inventoryβ€”a centralized, organization-wide dashboard offering real-time visibility into all known vulnerabilities and security issues across your enterprise and its portfolio entities.

    🐞 Bug Fixes & Improvements:

    • Users can now extend due dates into the future using the edit feature available in the Send Questionnaire interface.
    • Improved tag functionality across the Internet Inventory, Portfolio, and Onboarding modules.
    • Introduced the option to edit a user's name and profile information.
    • Enabled incident creation for all types of findings, improving incident management coverage.
    • Users can now cancel a takedown request that is already in progress, helping prevent accidental actions and allowing for strategic reassessment.
    • Resolved a visibility issue where vendor-related findings were not appearing on the Security Rating pageβ€”vendor-specific risks are now accurately displayed.
    • Fixed a bug that prevented the full risk assessment report from being generatedβ€”reports are now successfully produced.
    • Fixed an issue where validation or alert messages were displayed only once.
    • Addressed and resolved the issue where My domain counts were incorrect for newly added organizations on the vendor's analytics page.
    • Users will now automatically receive a re-invite if their activation link has expired. This ensures uninterrupted access and a smoother onboarding experience.

    Your participation in our journey is irreplaceable. Each piece of feedback is highly valued.

    Warm Regards,

    Setu Parimi πŸ₯³πŸ™Œ

  6. πŸŽ‰ Fresh updates from RiskProfiler.io πŸŽ‰ (June 16th to June 30th)

    New Feature
    Improvement
    Fix
    Announcement

    Greetings, everyone! We've worked hard to bring forth various new features and improvements. Let's explore them!

    πŸš€ New Features:

    • AI-Powered Questionnaire Module: Introduced an intelligent Questionnaire AI module to streamline and enhance the accuracy of responses. Completes the entire questionnaire based on the policy and penetration test-related artifacts uploaded to the Document Vault.

    🐞 Bug Fixes & Improvements:

    • Resolved multiple issues related to Portfolio and Questionnaire modules, ensuring better data consistency and user experience.
    • Enhanced the detection logic and reporting for credential leaks to provide more accurate and timely alerts.
    • Fixed problems with missing criticality and port details in findings, improving the completeness of security reports.

    Your participation in our journey is irreplaceable. Each piece of feedback is highly valued.

    Warm Regards,

    Setu Parimi πŸ₯³πŸ™Œ

  7. πŸŽ‰ Fresh updates from RiskProfiler.io πŸŽ‰ (June 1st to June 15th)

    New Feature
    Improvement
    Fix
    Announcement

    Greetings, everyone! We've worked hard to bring forth various new features and improvements. Let's explore them!

    πŸš€ New Features:

    • Remediation Action Plan: Introduced the Remediation Action Plan feature, enabling users to track, manage, and implement corrective measures for identified security issues more efficiently.

    🐞 Bug Fixes & Improvements:

    • Resolved an issue preventing users from sending questionnaires to recipients within the same domain.
    • Updated the Organization Settings > Login tab to enforce authentication exclusively via Magic Links, enhancing security and simplifying access control.
    • Vendor Portfolio Improvements: Made the β€˜Issue’ entries clickable to allow quicker navigation and context access. Enabled β€˜Security Factor’ entries to be clickable for improved usability and vendor analysis.

    Your participation in our journey is irreplaceable. Each piece of feedback is highly valued.

    Warm Regards,

    Setu Parimi πŸ₯³πŸ™Œ

  8. πŸŽ‰ Fresh updates from RiskProfiler.io πŸŽ‰ (May 16th to May 31st)

    New Feature
    Improvement
    Fix
    Announcement

    Greetings, everyone! We've worked hard to bring forth various new features and improvements. Let's explore them!

    πŸš€ New Features:

    • Google Workspace Integration: Seamlessly connect and manage your Google Workspace environment for enhanced productivity and centralized control.
    • Force Login Using Magic Links: Introduced support for enforcing user authentication via secure magic links, eliminating the need for passwords and improving user experience.

    🐞 Bug Fixes & Improvements:

    • Empty Field Handling in Assessment Updates: Fixed a bug where leaving fields such as continuous assessment empty caused the "Get Quota Details" API to fail.
    • Missing Data in Findings: Criticality and port details were not being populated in certain findings. This has now been addressed.
    • Rescan API in Typosquats: Corrected unexpected behavior in the Rescan API for Typosquat findings, ensuring accurate and consistent rescans

    Your participation in our journey is irreplaceable. Each piece of feedback is highly valued.

    Warm Regards,

    Setu Parimi πŸ₯³πŸ™Œ

  9. πŸŽ‰ Fresh updates from RiskProfiler.io πŸŽ‰ (May 1st to May 15th)

    New Feature
    Improvement
    Fix
    Announcement

    Greetings, everyone! We've worked hard to bring forth various new features and improvements. Let's explore them!

    πŸš€ New Features:

    • OKTA Single Sign-On (SSO): Integrated support for OKTA SSO. Users can now log in to RiskProfiler using their enterprise OKTA credentials for enhanced identity management and secure access.
    • Slack Integration: Slack integration module added under the Integrations section. Users can configure Slack with a bot token and channel name to receive real-time alerts for various security events. Supports test connection, enable/disable, and event-based notification configuration.
    • Tags Implementation in Organization Settings: Tags can now be created, edited, and managed from the Organization Settings. Tags are attachable to assets via the Internet Inventory edit interface. Dependency and associated findings now reflect tag relationships.
    • Jira Integration 2.0: Enhanced Jira integration with. Multiple integration points now support issue tracking directly from RiskProfiler. Users can auto-create Jira tickets from findings and view integration under the β€œManage Integrations” section.

    🐞 Bug Fixes & Improvements:

    • Send and Receive Questionnaires: Fixed delivery and reception errors in the Questionnaire module. Ensures correct association of questionnaires with vendors and internal teams.
    • Knowledge Hub – Add Document Field: Added a new Document Field in the upload form of the Knowledge Hub. Users can now label and categorize documents more effectively at the time of upload.
    • HSTS – New Low Severity Rule: Introduced a new low-severity rule for HSTS headers valid for less than 6 months. Enhances compliance scoring accuracy in attack surface findings.
    • Brand Configurations: Fixed label mismatch and visibility inconsistencies in brand settings.
    • Portfolio – Industry Field Dropdown: Fixed an issue where the Industry dropdown was not functioning in the Add Portfolio form.
    • Portfolio Email Notifications: Resolved failures where email notifications were not triggering after adding or removing a portfolio company.
    • Jira Removed from Alert Module: Jira ticket creation functionality has been deprecated and removed from the Alert module to avoid redundancy with the new integration flow.
    • Onboarding Integration – Redirection Bug: Fixed the issue where users were not redirected correctly after completing onboarding integrations.
    • Integration Forms – Loading Issues: Addressed slow loading and unresponsive behavior in integration configuration forms.
    • Magic Link Login: Fixed a reliability issue with Magic Link login functionality. Users will now receive and access the platform via secure login links without failure.
    • Credential Leaks – UI Update: Enhanced the Credential Leaks module by adding filtering functionality for the newly introduced columns: Status, Login Status, Verification Method, and Resolution Status.

    Your participation in our journey is irreplaceable. Each piece of feedback is highly valued.

    Warm Regards,

    Setu Parimi πŸ₯³πŸ™Œ

  10. πŸŽ‰ Fresh updates from RiskProfiler.io πŸŽ‰ (April 16th to April 30th)

    New Feature
    Improvement
    Fix
    Announcement

    Greetings, everyone! We've worked hard to bring forth various new features and improvements. Let's explore them!

    πŸš€ New Features:

    • Evidence Locker : Introducing Evidence Locker β€” a centralized location for managing documentation during audits and assessments. This tool allows organizations to request specific documents from stakeholders or vendors, track received files, and monitor pending requests and compliance status.
    • Remediation Plan Report: Introduced a comprehensive Remediation Plan report within the Remediation Plan module to enhance visibility into remediation efforts and track progress effectively to increase a given organizations security posture
    • Onboarding-The new Onboarding Hub offers a guided checklist to help teams quickly set up key modules and start using RiskProfiler efficiently. It includes tasks such as adding company information, seeding data, configuring alerts, and integrating cloud services etc. Helpful resources like documentation, expert support, and feedback options are also readily accessible.

    🐞 Bug Fixes & Improvements:

    • Fixed an issue where users were unable to filter credentials leak data or top breach counts accurately. Filtering is now smooth and fully functional.
    • Addressed and resolved the problem where Executive Brand Intel Reports were failing to generate.
    • Resolved an issue where users had to refresh the page for the newly added third-party company to appear in the "Add Organization" list.
    • Implemented a β€œView Details” option on the Security Ratings page to display all security rating factor findings in a single, centralized view.
    • Added TikTok and other social platforms under the Social Media Handles, Executive Members, and Hashtags tabs under the Brand Configuration module. The same has been updated in the Executive Members and Company Profiles tabs within Internet Inventory.
    • Credential leak filter and breach top count issue: Addressed and resolved the issue where credential leak data could not be filtered properly.
    • A new Search Config tab has been added to the Brand Configuration Module to provide greater control over brand visibility. This feature enables the monitoring and management of key brand-related terms and keywordsβ€”supporting proactive reputation protection and early detection of potential brand risks.

    Your participation in our journey is irreplaceable. Each piece of feedback is highly valued.

    Warm Regards,

    Setu Parimi πŸ₯³πŸ™Œ