Invicti Standard 27 Aug 2024 v24.8.1

New Security Checks

  • Added detection for Jenkins Secret as a Sensitive Data Exposure

Improvements

  • Started to utilize the Microsoft Azure Trusted Signing service for code signing of Invicti Standard

Fixes

  • Fixed chromium-related issues in the agent
  • Fixed the issue where temp folders could not be deleted and Chromium instances remained open when Puppeteer encountered an error
  • Fixed the false positive on detection of “Stack Trace Disclosure (Java)”
  • Fixed an issue related to the Moment.js regex
  • Fixed the OIDC authentication issue
  • Fixed the issue where the REST API endpoint returned HTTP 400 instead of HTTP 200 when sending custom values
  • Fixed the issue preventing proper login to the target URL