May 31st, 2022
Developer Roll Up: May 2022
Christopher Luft
In case you missed the news, LimaCharlie has raised 5.45 million dollars in an oversubscribed seed round led by Susa Ventures, with participation from Xerox Ventures, CoFound Partners, Long Journey Ventures, Sands Capital, StoneMill Ventures, as well as existing investor, Lytical Ventures. The money is going to be used to expand engineering and to build out our go-to-market strategy.
At the end of June, we are going to be hosting a webinar on how you can audit and create detections for Github access inside of your CI/CD pipeline, along with other SecDevOps-related topics.
The webinar will take place on June 30th at 10.00 AM PT. You can register for the webinar here: SecDevOps & LimaCharlie: Automating detection and auditing of GitHub access
Sensor 4.27.0
MacOS will now report MAC address
Fix issue where macOS machines on some network could have difficulty connecting to the cloud
Linux using eBPF will now acquire command lines directly from eBPF, eliminating race conditions for short-lived processes
Sensor 4.27.1
Fixes an issue on Linux eBPF that could result in unexpected data at the end of the FILE_PATH values.
Updated 'Billing & Usage' Page
Along with several user experience enhancements released today, we have combined ‘Usage’ & ‘Billing’ pages into one - ‘Billing and Usage’ - to make it easy to manage the credit card and quota in one place.
SSO Support
LimaCharlie now supports Single sign-on (SSO). SSO is available at no extra cost to customers that leverage our custom branded offering. To learn more about how it works and how to get started, visit our help center.
New Outputs flag for storage optimization
We have added a new Outputs flag - 'Do not include routing' - which allows users to forward only the original logs to Outputs, excluding the routing label. This flag can be found under "Advanced Options" of the Output configuration.
This can be helpful for users wanting to use LimaCharlie for storage optimization since the routing label can add significant overhead. Watch the webinar recording to learn more about using LimaCharlie to reduce spending on Splunk and other high-cost security data solutions.
GitHub Sensor
We have added a new GitHub sensor that allows the ingestion of GitHub audit logs directly into LimaCharlie.
GitHub enables a wide variety of powerful capabilities beyond managing a developer’s code, such as automating the deployment of cloud resources and “infrastructure-as-code”. Securing DevOps infrastructure is critical to prevent privilege escalations or malicious actors from taking control of the cloud deployments.
To ensure full observability, security, and compliance, GitHub Enterprise Server provides logs of audited system, user, organization, and repository events. These logs can now be ingested directly into LimaCharlie and have detection & response rules run on them at wire speed.
Get started by configuring a new sensor in the LimaCharlie web application.