v2.154.0 Model Updates
The following model updates were made during the v2.154.0 Synapse release.
New Forms
ou:requirementA specific requirement.
risk:leakAn event where information was disclosed without permission.
risk:leak:type:taxonomyA taxonomy of leak event types
risk:extortionAn event where an attacker attempted to extort a victim.
risk:extortion:type:taxonomyA taxonomy of extortion event types.
New Properties
ou:orgThe form had the following property added to it:
tagA base tag used to encode assessments made by the organization.
risk:compromiseThe form had the following properties added to it:
ext:idAn external unique ID for the compromise.
urlA URL which documents the compromise.
risk:alertThe form had the following property added to it:
hostThe host which generated the alert.
Updated Types
inet:ipv4RFC6598 addresses now have a
:typeproperty value ofshared.inet:urlAccept Microsoft URLPrefix strings with a strong wildcard host value.
Add a check to prevent creating
inet:urlnodes with an empty host and path part, such asinet:url=file://''.
Light Edges
leakedWhen used with a
risk:leaknode, the edge indicates the leak included the disclosure of the target node.leveragedWhen used with a
risk:extortionnode, the edge indicates the extortion event was based on attacker access to the target node.meetsWhen used with a
ou:requirementnode, the edge indicates the requirement was met by the source node.