Cytracom Product Updates logo

Product Updates

Check back here for the latest Cytracom product announcments.

Subscribe to Updates

Labels

  • All Posts
  • Desktop
  • ControlOne
  • Mobile
  • PBX
  • Partner Portal
  • Telivy
  • Tentacle
  • PO

Jump to Month

  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • May 2025
  • March 2025
  • January 2025
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • October 2023
  • September 2023
  • August 2023
  • July 2023
  • June 2023
  • May 2023
  • February 2023
Telivy
a week ago

Telivy Update: Typosquatting Improvements, Accurate CVE Detection, and Billing Visibility

Telivy now gives partners cleaner security data, richer threat context, and clearer monitoring scope. Typosquatting detection, which identifies lookalike domains that could be used to impersonate a client's brand, is now easier to triage. Common Vulnerabilities and Exposures (CVE) detection is also more accurate across desktop applications and document platform components, and the new Accounts Usage view helps partners understand monitored assets and billing controls. These updates reduce false-positive noise, improve PSA integration reliability, and help partners manage monitoring scope with less guesswork.

What's New

  • The Typosquatting view now displays decoded lookalike domains, a fuzzer type legend, DNS resolver statuses, risk-level indicators, and a ranked table sorted by threat priority.
  • Typosquatting findings are now enriched with internationalized domain name decoding, readable resolver error statuses, registration data, and risk scores for faster triage.
  • The Accounts > Usage view is now available, listing active monitored endpoints and user accounts per assessment with controls to pause monitoring for selected Microsoft 365 and Google Workspace accounts.
  • The Data-Risk false-positive interface has been redesigned with batch selection, interactive filtering by personally identifiable information type and status, and sorting by match count.
  • CVE alerts for already-fixed vulnerabilities in a widely used document platform component are now attributed correctly to the detected installed version, reducing false-positive risk alerts.
  • Desktop application CVE matching is now more accurate. Inherited browser-variant mismatches and garbage version strings no longer generate false-positive vulnerability findings.
  • PSA task sync-status now displays correctly. A frontend issue that caused the sync-status endpoint to return errors for all users has been resolved.
  • Risk History filtering now works correctly when opening a CVE group, showing only the severities and components relevant to the selected group.

Why You'll Love It

Partners get cleaner, more actionable security data across typosquatting, CVE detection, and Data-Risk workflows. Richer typosquatting findings make it easier to assess lookalike domain threats at a glance, while improved CVE accuracy means fewer follow-up investigations into false alerts. The new Accounts Usage view helps partners stay in control of monitoring scope and avoid unexpected billing charges. PSA sync reliability improvements reduce friction in ticket management workflows, keeping remediation activity visible and up to date.

How to Access It

These updates are live now in Telivy and are automatically applied. No action is required.

Avatar of authorRob McDonald
Telivy
2 weeks ago

Telivy Update: Faster Security Data Retrieval and Improved Platform Stability

Telivy now retrieves partner statistics, security findings summaries, and breach data more efficiently across account sizes. These performance improvements reduce slowdowns and timeouts for partners managing large or complex client environments.

What's New

  • Partner statistics now load faster across agencies, improving responsiveness when reviewing partner-level data.
  • Security findings summaries now process large applications more reliably without timing out or running out of memory.
  • Breach data now responds faster when partners review scan results and related security information.

How to Access It

These updates are live now in Telivy and are automatically applied. No action is required.

Avatar of authorRob McDonald
Telivy
3 weeks ago

Telivy Update: More Accurate CVE Remediation, Risk Prioritization, and Vulnerability Workflows

Telivy now gives partners a clearer path from vulnerability discovery to remediation. Improved CVE guidance helps partners focus patching effort on the right applications and devices, while risk prioritization updates, asset criticality scoring, and expanded reporting make it easier to identify the findings that need attention first.

What's New

  • CVE remediation now identifies the correct application to patch when a vulnerability affects components embedded in multiple products.
  • Actionable remediation guidance now appears alongside CVE findings directly in the dashboard, reducing the need to consult external advisories.
  • The Risk view dashboard now sorts CVE findings by risk priority score (RPS) by default and includes unified tabs for faster triage.
  • Inline Accept and Resolve controls are now available in the Risk view dashboard, helping partners manage vulnerability decisions without switching views.
  • Partners can now accept or resolve individual vulnerability findings directly in the Risk tab, keeping remediation workflows consistent across Findings and Dashboard views.
  • Per-device patch status is now visible for each CVE vulnerability, so partners can verify which devices have been remediated and prioritize the ones still outstanding.
  • A new Asset Criticality Service scores assets based on personally identifiable information (PII) signals and device role, with support for manual overrides.
  • QBR and CSRA reports now include a "Top Critical Assets & Why" section, giving partners a structured view of high-priority assets for client audits and reviews.
  • Mobile-exclusive CVEs for iOS and Android no longer appear on desktop devices, eliminating false positives for Windows and macOS endpoints.

Why You'll Love It

Partners managing vulnerability programs can now move from finding to fix with less guesswork. More accurate remediation targeting helps patching effort go to the right application, per-device patch visibility shows what still needs work, and risk priority scoring helps teams focus on the most important findings first. Asset criticality and report updates also give partners stronger context for client conversations, audits, and reviews without manual preparation.

How to Access It

These updates are live now in Telivy and are automatically applied. No action is required.

Avatar of authorRob McDonald
Telivy
a month ago

Telivy Update: Automatic Agent Updates, Improved CVE Accuracy, and Network Security Fixes

Telivy now keeps agents up to date automatically across agencies, improves vulnerability detection accuracy, and resolves several reporting and navigation issues across security views. These updates reduce manual administration, cut down on false-positive CVE alerts, and make device, Microsoft 365, Dark Web, and Google Workspace Security data easier to review.

What's New

  • Agent auto-updates are now enabled by default for all agencies, so new and existing agency configurations stay current without manual intervention.
  • Common Vulnerabilities and Exposures (CVE) detection is now more accurate for a widely used document and design platform component, reducing false-positive alerts on patched installations.
  • Version-string normalization is now consistent between storage and query time, preventing erroneous CVE alerts caused by mismatched version formats.
  • Phantom installer version strings for the same platform component are now filtered out, reducing repeated false-positive CVE entries in vulnerability reports.
  • The Network Security tab now shows the correct scan completion status on Windows devices when operating system version data is missing, rather than incorrectly displaying "Not started."
  • The Devices search bar in the Inventory > Network section now filters the device list as expected.
  • The industries dropdown in the assessment creation modal now displays and functions correctly.
  • Microsoft 365 policy compliance checks are more accurate, and the "Admin consent required" check no longer flags compliant settings as non-compliant.
  • Dark Web timeline year links now populate the breach table for the selected year.
  • Google Workspace Security summary tiles now show totals across all accounts rather than only the current page of results.
  • Google Workspace Security account table sorting now works correctly for all sortable columns.
  • The CIS Controls Passing progress bar on the Overview tab now stays within its column.

How to Access It

These updates are live now in Telivy and are automatically applied. No action is required.

Avatar of authorRob McDonald
Telivy
a month ago

Telivy Update: Alert Reliability Improvements

Telivy now delivers more reliable security alerting by ensuring typo-squatting domain notifications are delivered and alert history is easier to navigate. These improvements help partners stay aware of suspicious domain activity and review past alerts without interruption.

What's New

  • Email notifications for typo-squatting domain alerts are now delivered reliably, so partners are notified when suspicious domain activity is detected.
  • Alert history pagination now loads correctly, allowing partners to browse past alerts without missing pages or data.

How to Access It

These updates are live now in Telivy and are automatically applied. No action is required.

Avatar of authorRob McDonald
Telivy
a month ago

Telivy Update: Cleaner Alerting and Improved Alert History

Telivy now provides cleaner, more reliable alerting by preventing duplicate alerts for the same security finding, restoring typo-squatting email notifications, and improving access to alert history. Partners can also acknowledge or resolve alerts directly to keep recurring findings from generating repeated helpdesk activity.

What's New

  • Partners can now acknowledge or resolve alerts, marking findings as actioned and preventing the same alert from firing again.
  • Alert deduplication now prevents multiple alerts from being created for the same security finding, such as identical Common Vulnerabilities and Exposures (CVEs) on the same host.
  • Email notifications for typo-squatting domain detections are now delivered reliably, restoring alert coverage for this category of security finding.
  • Alert history pagination now works correctly, giving partners full access to alert history without missing records.

How to Access It

These updates are live now in Telivy and are automatically applied. No action is required.

Avatar of authorRob McDonald
Telivy
2 months ago

Telivy Update: Expanded Browser Password Analysis, Risk Register, and Multi-User Assessments

Telivy now gives partners broader browser security coverage, clearer accepted-risk tracking, and more flexible collaboration on assessments. Firefox data is now included in browser risk analysis, vulnerability details are easier to prioritize, and a new Risk Register helps partners track accepted risks, review dates, compensating controls, and audit history in one place.

What's New

  • Firefox browser history, installed extensions, and saved passwords are now collected on Windows and macOS, expanding browser risk coverage across leading desktop browsers.
  • Common Vulnerabilities and Exposures (CVE) details now include Exploit Prediction Scoring System (EPSS) scores, helping partners prioritize remediation based on exploitation likelihood.
  • CVE detail views are now consistent across all vulnerability sources, making risk assessment and remediation planning easier to follow.
  • The dashboard now includes a "Due for Review" widget that shows risk decisions nearing review or overdue.
  • The new Risk Register tab compiles accepted risks, compensating controls, review dates, and audit history in one place.
  • Assessments now support multi-user sharing, allowing partners to invite teammates to view or collaborate on specific security assessments without changing broader role assignments or ownership.
  • Saved password scanning for Chrome version 137 and later has been restored using the Windows Key Storage Provider, giving partners visibility into Chrome-stored credentials on supported devices.
  • Chrome password decryption is now more reliable when API calls are slow or time out.
  • Personally identifiable information (PII) scanning has been improved for South African ID numbers and common identifier variants across countries.

Why You'll Love It

Partners managing mixed-browser environments now have broader, more reliable browser risk data across Chrome and Firefox without additional configuration. The Risk Register and "Due for Review" widget help partners stay ahead of audit cycles by showing accepted risks that need attention, while multi-user assessment sharing makes it easier for teams to divide security review work without changing role assignments or assessment ownership. CVE detail improvements also make it easier to prioritize remediation based on consistent context and exploitation likelihood.

How to Access It

These updates are live now in Telivy and are automatically applied where supported. No action is required.

Avatar of authorRob McDonald
Telivy
2 months ago

Telivy Update: Crosswalk Mapping for Multi-Framework Compliance Review

Crosswalk Review gives partners a faster path through multi-framework compliance assessments by mapping completed answers from one framework to related controls in others. Partners can reduce repetitive questionnaire work, keep compliance data more consistent, and move more efficiently across overlapping regulatory requirements.

What's New

  • Crosswalk Review is now available to Early Access partners in Telivy.
  • A new overlay highlights potential control mappings across compliance frameworks, so partners can review suggested matches before applying them.
  • Partners can accept or reject suggested mappings and apply completed answers to additional frameworks rather than re-entering them manually.

Why You'll Love It

Crosswalk Review helps partners manage clients with overlapping compliance requirements more efficiently. By mapping answers across frameworks, partners can reduce duplicate effort, keep multi-framework assessment data consistent, and shorten the time needed to move from one compliance program to the next.

How to Access It

Crosswalk Review is available in Early Access through the Telivy console. Use the Enable Early Access Features instructions to get started: Enable Early Access Features

Avatar of authorRob McDonald
Telivy
2 months ago

Telivy Update: Vulnerability Views, Endpoint Security Monitoring, and Microsoft 365 Policy Improvements

Telivy now makes vulnerability data easier to review, export, and share with clients. Endpoint Security monitoring gives partners a clearer view of antivirus, firewall, and disk encryption coverage, while Microsoft 365 policy improvements help Early Access partners move from connection to prioritized remediation with less manual effort.

What's New

  • The Threats & Vulnerabilities dashboard now includes tabbed vulnerability views by endpoint, user, and Common Vulnerabilities and Exposures (CVE), letting partners review risk from multiple perspectives without switching tools.
  • Vulnerability exports now generate a multi-sheet Excel file with separate sheets for CVE, device, and user data, creating a richer client reporting artifact than the previous flat CSV export.
  • The Endpoints tab in Inventory now shows security posture across managed endpoints, including antivirus, firewall, and disk encryption status.
  • The Overview tab now includes an Endpoint Security summary card with monitored endpoint counts and antivirus, firewall, and disk encryption coverage.
  • The Overview tab now includes a prioritized Top Actions table that sorts remediation steps by projected impact on client CIS scores.
  • Browser password results now sort by whether passwords exist rather than by nickname, making it easier to identify accounts with stored credentials.
  • Microsoft 365 policy management now fetches policies automatically on connect for Early Access partners, removing the need for a separate manual policy check.
  • The Microsoft 365 Policy Management table now shows inline recommendations beneath each policy name for Early Access partners.
  • The Microsoft 365 Policy Management table now includes per-policy links to official Microsoft documentation for Early Access partners.
  • The Configure tab now includes a post-connect Remediate call to action for Early Access partners, directing them to policy remediation tasks after connecting Microsoft 365.
  • Fixable findings now sort to the top of the Risk tab table for Early Access partners, with the "Fix Available" badge promoted within the severity column.
  • The Microsoft 365 Policy Inspect drawer now includes a "Learn more" block for Early Access partners, bringing recommendations, CIS references, Microsoft documentation links, and admin portal navigation into one place.

Why You'll Love It

Vulnerability reporting now matches how partners review and explain risk, with dedicated views for each perspective and a multi-sheet export that is easier to share with clients. Endpoint Security monitoring makes antivirus, firewall, and encryption coverage visible without manual cross-referencing, while the Top Actions table helps partners focus on remediation work with the highest projected score impact. For Microsoft 365 policy management in Early Access, automatic policy ingestion, inline guidance, and contextual documentation reduce the steps between finding a policy gap and resolving it.

How to Access It

Vulnerability views, the Endpoints tab, the Endpoint Security summary card, the Top Actions table, and browser password sorting improvements are live now in Telivy and are automatically applied where supported. Microsoft 365 policy management enhancements, including automatic policy fetch, inline recommendations, per-policy documentation links, the post-connect Remediate call to action, fixable findings sorting, and the Policy Inspect "Learn more" block, are available in Early Access through the Telivy console. Use the Enable Early Access Features instructions to get started: Enable Early Access Features

Avatar of authorRob McDonald
Telivy
3 months ago

Telivy Update: Microsoft 365 Remediation Visibility and Framework Crosswalk Improvements

Telivy now makes it easier to identify actionable Microsoft 365 security gaps, understand which fixes can improve assessment scores, and avoid duplicate compliance work across related frameworks. Cloud token reliability improvements also reduce unnecessary reconnection noise and provide clearer guidance when action is needed.

What's New

  • The Microsoft 365 Overview dashboard now shows a reliable count of available automated fixes and the potential score uplift if those fixes are applied.
  • The Risk tab now shows a "Fix Available" badge on Microsoft 365 findings that can be remediated from the interface for Early Access partners.
  • Framework similarity scores are now visible on the frameworks screen for Early Access partners, showing the percentage of overlap between compliance frameworks.
  • Microsoft 365 multifactor authentication (MFA) enforcement and legacy authentication blocking now report correctly for Early Access partners on tenants where Security Defaults are enabled.
  • Cloud token health checks are more reliable, with improved token refresh handling and disconnect emails that explain why reconnection is needed.

Why You'll Love It

Clearer Microsoft 365 remediation signals help partners focus on the findings they can act on directly and understand which fixes may have the greatest impact. Framework similarity scores make it easier to identify overlap across compliance programs, reducing duplicate control work across related frameworks. More reliable cloud token handling and clearer disconnect emails also help partners resolve connectivity issues faster without unnecessary interruptions.

How to Access It

Microsoft 365 Overview updates and cloud token reliability improvements are live now in Telivy and are automatically applied where supported. The Risk tab "Fix Available" badge, framework similarity scores, and Microsoft 365 policy reporting corrections are available in Early Access through the Telivy console. Use the Enable Early Access Features instructions to get started: Enable Early Access Features

Avatar of authorRob McDonald