Invicti Enterprise On-Demand 12 Aug 2025 v25.8.0

This update includes changes to the internal agents. The internal scan agent’s current version is 25.8.0. The internal authentication verifier agent’s current version is 25.8.0.

New security checks

  • Added detection of Pega Infinity as a technology in the Vulnerability Database (VDB)

Improvements

  • Defined the Hawk check delay in the scanning policy
  • Added configurable User and Group ObjectClass settings to LDAP integration, enabling custom values (e.g., userProxy for AD LDS), updating synchronization logic, ensuring compatibility with diverse LDAP servers, maintaining backward compatibility
  • Added a Maximum Cookie Count setting to manage cookie numbers when necessary
  • Updated Bootstrap component
  • Updated Highlight component
  • Added Affected Versions field for on-prem JIRA to custom fields

Resolved issues

  • Added missing Technology icons
  • Fixed logging in Post-Request scripts
  • Implemented fix to ensure Post-Request script is triggered for all requests in the browser context
  • Fixed SCIM activity logs duplicate issue
  • Fixed an issue where importing link via API to Scan Profile did not generate URL Rewrite Rule