Release 4.9 - Smarter HTML matching, sharper infrastructure insights

We’re excited to announce the launch of Release 4.9, delivering a set of powerful new features designed to sharpen visibility, streamline investigation, and offer greater control across the platform. Here’s what’s new:
HTML Similarity Content Search
Analysts can now pivot directly from Web Scanner results to uncover websites with matching HTML content. This new feature helps reveal related infrastructure and track down threat campaigns that rely on cloned or reused components.
Domain TLD and ASN Search & Filtering (Enterprise)
Feed Scanner has been upgraded with the ability to filter by TLD and search across multiple ASNs in a single query — making infrastructure scoping faster and more precise.
Web Hook Integration (Enterprise)
Keep your team in the loop with real-time notifications delivered to Microsoft Teams, Slack, or custom webhooks. Know the moment a scan or query completes.
Table View for Feeds and Exports (Enterprise)
A newly added table view makes it easier to compare, sort, and analyze feed data at a glance — ideal for more efficient investigations.
TAXII Integration Details in Automated Exports (Enterprise)
Automated exports now include a dedicated TAXII tab with server URLs, credentials, and collection IDs, plus ready-to-use Bash and Python snippets for faster integration.
‘Save To’ Functionality in Web Scanner (Enterprise)
Save Web Scanner results directly to feeds with the flexibility to include only the fields that matter to your workflow.
Centralized Notification Settings (Enterprise)
Take control of your alerting preferences with a single interface to manage all monitored event notifications.
Want to see these features in action? Book a demo or get in touch with our team to learn how these new capabilities can supercharge your threat intelligence workflows.