Release notes-Cydarm 26.7.0
Updates and release notes for Cydarm version 26.7.0
Cydarm version 26.7.0 is now generally available!
There have been a few notable updates to this release. The standout feature is a major performance boost introduced via our new infinite scrolling capability; case threads now load incrementally as you scroll, keeping the interface lightning-fast even when managing complex cases with hundreds of entries.
Beyond this speed upgrade, we have also introduced a full-screen expand view for dashboards tailored specifically for SOC wall monitors alongside several security hardening updates and performance enhancements.
Enhancements and bug fixes 26.7.0
18 June 2026
New features
Full-screen dashboard monitor mode
A new enter fullscreen icon at the bottom right corner of the Dashboards > Operations page, which can also be activated by pressing the 'F' key, allows you to hide the application menus to fill the entire screen. This is perfect for displaying on SOC wall monitors or large ops-room displays, and includes built-in auto-refresh capabilities while a quick press of the ESC key exits the view instantly.
AI security playbooks
Now available upon request we have two brand-new, pre-built Incident Response playbook templates created to help teams rapidly detect, triage, and remediate unauthorized corporate AI data leaks and AI infrastructure compromises.
Contact support@cydarm.com if you would like these added to your system!
Enhancements
-
On the case thread, data now loads incrementally as you scroll to significantly improve performance on large cases.
-
The generic webhook integration now supports PATCH and DELETE HTTP methods, to support containment actions against external APIs.
-
The generic webhook integration, OAuth2 (client credentials) authentication is now supported for secure machine-to-machine connections.
-
On the Tags, Metadata, and ACLs settings pages, a name filter has been added to quickly locate specific entries.
-
For group-to-group memberships, changes to access permissions now take effect immediately, eliminating the need for a user logout.
-
On the system properties admin UI and API, critical configuration values are now restricted to view-only to prevent accidental platform breaks, and duplicate names now return a clear conflict error.
-
Container logs from the web UI proxy are now captured directly by the host machine, with automatic rotation and compression built in. This keeps access logs from accumulating unchecked and gives you reliable, space-efficient log retention out of the box.
Security
-
Resolved a cross-site scripting (XSS) vulnerability in the SAML single sign-on callback.
-
Playbook creation logic now strictly enforces the playbook-editor attribute, ensuring users without explicit permissions can no longer create playbooks.
-
Hardened credential encoding within the web application to use a Unicode-safe Base64 utility, ensuring special characters are handled securely and accurately.
-
Upgraded the web application to use a highly secure, standards-based JWT decoder when reading active user sessions.
Bug fixes
-
Fixed a crash error ("Cannot assign to read only property") that occurred when trying to add a second comment to a playbook action. Multiple comments can now be added seamlessly.
-
Fixed an issue where the web UI proxy’s access logs could grow indefinitely. Container logs are now safely captured by the host machine with automatic rotation and compression to protect disk space.
Did you know?
Board cyber-AI risk questions, mapped to CPS 234, CPS 230 and s912A:
https://support.cydarm.com/hubfs/Assets/Cydarm%20-%20Board%20Cyber-AI%20Risk%20Questions%20-%20APRA%20ASIC.pdf