|
|
|
|
Changelog for kismet-capture-nrf-51822-2023_07_R1-lp156.120.10.x86_64.rpm :
* Thu Feb 22 2024 Dominique Leuenberger - Use %patch -P N instead of deprecated %patchN. * Mon Oct 09 2023 Marcus Meissner - add the sysuser pre section to %package common. * Thu Jul 27 2023 Martin Hauke - Update to version 2023-07-R1 * New dark mode in the web UI. * New page-based device list in the web UI. * The old device list was always slightly odd & could get in states where the JS did not update as expected. The new pager UI addresses this & brings a big performance boost. * Fixes to channel listing. * Fixes to remote capture in some situations. * Optimizations to the field tracking system. * Improvements and fixes to WiFi 6e channel processing and numbering. * Fixes and general improvements to the order of operations when configuring WiFi interfaces on Linux for monitor mode. * Inclusion of the Hak5 WiFi Coconut userspace drivers and capture. * Transition to using emphemeral JWT signing for login management instead of a state file. * Increased live censorship in the Web UI when ?censor=1 is passed. * Fixes to Python-based websockets not loading SSL contexts. Upgrade a number of internal libraries for the Web UI and internals. * New graphing libraries. * New datatables version. * New robinhood hash. * Upgraded font-awesome. * Upgraded libfmt. * New moodycamel queue. * Fix long-standing bugs with field selection and summary in the API requests. * Add new display of thermal state on supported systems (linux). * Revamp how rtl433 devices are mapped, split into sensors/meters/etc. * Handle power meter via rtl433. * Revamp sensor/meter UI to carry much more informaiton. * Revamp IO system loops and locking patterns entirely to address hangs in some situations. * Add packet id and checksumming to pcap-ng exports. * Fix linux-capture-wifi following symlinks in /tmp. * Better NMEA handling. * Support libpcre2 now that pcre1 is deprecated. * Massive speed improvements in packet processing due to removal of dissection chain chokepoints. * Revamp of packet de-duplicaton system. * Add tx/rx packet counts per device. * Wed Mar 01 2023 Wolfgang Frisch - Packaging: * Move systemd-sysusers config to a common subpackage. * Separate %post and %verify sections for each package. * Set %noarch for a number of subpackages. * Thu Jan 26 2023 Wolfgang Frisch - Drop unnecessary root privileges in the systemd unit (bsc#1207654). * switch from old-style user/group mgmt to sysusers.- Disable overly strict hardenings that would break some capture binaries, e.g. kismet_cap_linux_wifi.- Remove superfluous executable bits from CSS files. * Tue Jan 03 2023 Johannes Segitz - Added hardening to systemd service(s) (bsc#1181400). Added patch(es): * harden_kismet.service.patch * Wed Aug 17 2022 Dirk Müller - update to 2022-08-R1: * Initial support for Wi-Fi 6e support 6GHz channels now have initial support, and can be captured from. 6e APs will show up in Kismet, but currently the UI won’t classify them quite right. For Intel based 6e cards, you must run iw dev scan before starting Kismet! Intel ignores the regdb and will only enable 6GHz channels after a scan! For other cards, you must set the regdomain to US via iw reg set US. * GPS magnetic heading support on hardware which provides it * New graph line in packets UI showing the packets per second processed * New BPF filter programs for wardrive and remote capture mode * Fix 802.11r records not being initialized which could cause a crash * Initial support for modern droneID v2 data * Lots of performance improvements * Tue Jun 21 2022 Martin Hauke - Add missing Requires: python-websockets- Use setcap (group kismet) for the capture binaries * kismet_cap_linux_wifi * kismet_cap_linux_bluetooth * Fri Feb 11 2022 Martin Hauke - Update to version 2022-02-R1 This is primarily a maintenance release to fix a number of bugs discovered in the 2022-01 releases, including: * Some datasources not appearing on arm32 (rpi) * Fix segfault due to “smart” pointers and legacy api * Check for zero-sized broken frames * Give IE127 alerts a little more headroom * Fix override config append not appending * Merge patch to trim GPS coordinates in logs * Fix old mutex in datasource serialization * Detect binary in NMEA GPS streams * Thu Feb 03 2022 Andreas Schwab - Limit parallelism to avoid running out of memory * Fri Jan 28 2022 Martin Hauke - Update to version 2022-01-R3a * Install missing kismet_wardrive.conf * Fri Jan 28 2022 Martin Hauke - Update to version 2022-01-R3 * Minor fixes on top of 2022-01-R1 and 2022-01-R2 * Fixing compilation on some old compilers and distributions * Fixing a javascript race condition that caused some of the tabs in the UI to not appear sometimes. * Fri Jan 21 2022 Martin Hauke - Update to version 2022-01-R2 * Fix alert-syslog plugin * Remove outdated docs * Fix webserver stall * Add regex to the devices view-by-time endpoint- Drop patch: * 0001-Update-FetchGlobal-usage.patch * Wed Jan 19 2022 Martin Hauke - Update to version 2022-01-R1 New features * Significantly reduced RAM requirements * Additional packet tags * Additional eventbus events * New packet deduplication system * More info in the UI * Show more collected information in the UI, like GPScoordinates per SSID. * Better column alignment in the UI * Columns in the main device list are now better formatted and aligned, with right-aligned numeric columns and proper scrolling of the headers. * Able to disable sources in the UI * More log filtering * Direct Wigle logging * Direct logging to Wigle CSV format. * Wardriving mode Changes and Fixes * New memory model for packet contents * New pooled memory for packet contents * New packet data handling * New IPC & remote capture protocol * New pooled memory for tracked components * New dynamic element contents * Optimized Adler32 checksums * Update robinhood hash and transition more pools to it * Reworked kismetdb database writing * Squeeze more memory out of tracked components * Fix Linux monitor mode creation * Faster packet deduplication * Better BTLE support * Fixes for some GPS behavior * Better handling of proxied subdirectories * Lots of threading fixes * Latest boost/asio/beast * Fixes to ADSB lookups- Add patch to fix the build of the alertsyslog plugin: * 0001-Update-FetchGlobal-usage.patch * Sat Aug 21 2021 Martin Hauke - Update to version 2021-08-R1 Changes and Updates * UTF8/Unicode support in the UI * New WIDS alerts * Kismet now detects the VDOO RTL8170C exploits, and \"funny\" SSIDs that attack Apple products. * Small tweaks and improvements * Wigle CSV files now encode the Kismet version in the upload. * Client names are used in AP lists. * Initial support for environmental sensors connected to Kismet. * ticc2540/2531 udev rules. * Minor revamping of websocket timeouts. * Regex filtering added to the wiglecsv converter. * Quick copy-to-clipboard buttons for some common fields in the UI. Bug fixes * Handle URI parameters more correctly * Don’t spin on \"Loading...\" in the datasource window sometimes.- Update to version 2021-06-R1 Bug fixes * Another huge change to the threading model. * Fix kismetdb_to_pcap on older kismetdb logs. * Detect version properly in kismetdb_to_pcap and query the tags field properly on older logs. * Handle db versions properly in kismetdb_to_wiglecsv. * Detect version properly in kismetdb_to_wiglecsv and query fields properly. * Handle nested WHERE in sqlite bridge. * Handle nested WHERE queries properly and detect malformed queries in the sqlite3 bridge. * Fix kismetdb_to_wiglecsv Bluetooth. * Handle the nested WHERE for Bluetooth devices in wiglecsv correctly. * Other minor bugfixes to errors, terminology, etc.- Update to version 2021-05-R1 Changes and Updates * New mutex and threading. * Multi-core packet decoding. * New 802.15.4 phy. * 802.15.4 is now decoded and displayed in the UI! While many devices report the default PAN of 0x00, it’s still a huge step forward! * New data capture drivers for the Nuand BladeRF2 with Wiphy firmware, the nrf52840 802.15.4 hardware, and killerbee 802.15.4 hardware. * New alert UI. * Alerts now have their own top-level panel and are searchable, sortable, and have priorities assigned to them. * Fix Wi-Fi on Linux 5.10 and newer. * The Linux kernel changed how netlink messages are fragmented, which broke how channels were indexed. Most likely this would show up when you had a number of Wi-Fi interfaces plugged in at once. This is fixed now. * PcapNG GPS logging. * New custom blocks and attributes in PcapNG logs for GPS logging. * Shift to officially requiring C++14 . * Support older libwebsockets. * Support ADSB HEX export per-source. * Fix datasources in error state getting into weird loops. * Datasoruces flapping in some error states (such as devices being unplugged) could get into weird states where the UUID would flap; this confused the logs, the datasources UI, and other spots. Properly retain the UUID. * Fix datasources getting into a no-channels state. * Some combinations of errors could lead to datasources getting into a state with no channels, and never being able to get out of it. * Fix Wi-Fi pulling WEXT legacy channels. * Default to WEXT IOCTL legacy channels when netlink fails or returns no channels, resolve wext channel frequencies to channel names. * Fix several thread contention errors on data. * Several objects were shared for serialization and not properly protected, leading to subtle corruption or outright crashes at times. Those are now removed from the combined APIs or properly protected. * Better error handling for TI-CC-2531 and TI-CC-2540 . * Handle soft-resets of the TI-CC-2531 and 2540 802.15.4 and BTLE chipsets gracefully, so there are fewer errors and resets of the hardware. * Add Bluetooth and BTLE to Wigle exports. * Adding a /&censor=1 to the Kismet web UI will censor all location and mac addresses (to the best of its ability), making it easy to take screenshots. * The new webserver broke CORS negotiation. Fixed. * Smarter handling of HT/VHT IE tags. * Fix error timer initialization in datasources. * Don’t accidentally kill other timers anymore. * Add new WIDS signatures. * Detect CVE-2020-9395. * Fix up HTTP header connection states. * Add fetch device, monitor device, mac search APIs. * Fix eventbus websocket errors. * Expand buffer sizes for remote and IPC capture, this improves stability significantly on some platforms. * Many more smaller bugfixes throughout. * General improvements and changes to the REST API. * Sun Feb 28 2021 Bernhard Wiedemann - Update kismet-fix-build.patch to drop build date again (boo#1047218) * Mon Dec 07 2020 Martin Hauke - Update to version 2020-12-R3 * A bugfix release which solves a possible infinite loop until crash due to how GCC handles C++ templates differently than Clang. * Sat Dec 05 2020 Martin Hauke - Update to version 2020-12-R2 * Fix improper assignment of system endpoints to the logon role instead of read-only * Fix broken implementation of legacy TCP remote capture on python-based sources * Fri Dec 04 2020 Martin Hauke - Update to version 2020-12-R1 Release Highlights: * All new ASIO networking model + Kismet now uses the C++ ASIO networking library. * All new web server implementation (drop libmicrohttpdd) * New role based REST API * Remote capture over websockets * Huge RAM savings * Stability improvements * Higher performance web UI * New websocket APIs * Better location averaging * Improved channel and signal mapping * Improved 802.11 WDS handling * General improvements and changes to the REST API See https://www.kismetwireless.net/release/kismet-2020-12-R1/ for the full changelog. * Sat Sep 26 2020 Martin Hauke - Update to version 2020-09-R4 * Fix a false “login required” error on the datasources panel. * Sun Sep 20 2020 Martin Hauke - Update to version 2020-09-R3 * Properly show messages from datasources * Properly show error and status messages from opening datasources, which previously were ignored. This should make seeing errors opening datasources much easier. * Fix bluetooth capture on some platforms * Some platforms / kernels / setups appear to not enable rfkill. The bluetooth hci capture source erroneously failed when no rfkill information was available. * Remove 221 IE tag subtype match requirement * Remove requiring a subtype of 0 on an IE221 tag for matching the manufacturer of otherwise unknown devices. * Fix potential crash in datasource panel * Fix a long-standing potential crash when the datasource panel is open in the UI caused by a race condition with the constructor and callbacks. * Fix race condition in launching datasources * Fix a long-standing race condition which could lead to some datasources not being opened properly or their types autodetected properly due to a race condition with the type probe code. * Increase precision of some doubles in JSON for GPS * Found some legacy serialization code which reduced the precision of some doubles (double-vector) which would cause GPS to display with less precision. * Don’t shut down messagebus processing thread until Kismet is fully exiting * The messagebus service thread could shut down before Kismet had finished spinning down, causing it to not show some of the errors causing the shutdown. * Fix moodycamel fast queue for gcc 9.2.0 * Merge fix from cameron314/moodycamel to the fast concurrent queue library for compiling on gcc 9.2.0 * Add new device locking API * Add new device locking API for internal range locking of devices to better protect records during updates between threads. * Sun Sep 13 2020 Martin Hauke - Add patch: * kismet-fix-build.patch (revert 3c8f8d83)- Update to version 2020-09-R2 * Save more RAM! * Fix a very silly error in kismetdb_dump_devices * The kismetdb_dump_devices tool was broken and printed out the JSON twice, generating an invalid JSON file. * Tweak how IE221 manufacturers are derived * Look for some specific AP manufacturers in the IE221 tags, and then fall back to using generic 221 manufacturers. * Fix packet RRD in main device table * Fix the packet RRD in the main device table not scrolling properly * Generally clean up compiling and squash a number of warnings during compiling * Fix a bug classifying some devices as APs * Some devices doing an inter-ds communication (like a chromecas and a phone) got flagged as APs when they’re not really.- Update to version 2020-09-R1 * Kismet server auto-discovery * New SSID details window to go along with the SSID views * New “MAC censorship” demo option in the web UI * Split advertised and responded APs * Significant memory optimizations * New optimized internal field building * Optimized “multikey-as-dictionary” API * Verbose output on remote capture tools * Expanded ICAO databases for ADSB * Compressed server-side ICAO databases * More memory control options * New greatly simplified JSON generation and parsing * Support for non-packet scan reports * New event bus extension to the Kismet helper protocol * New kismetdb_to_pcap tool * Configuration flavors/override system * Packet rate graphs * More manufacturer indexing * Optimized internal map structure * Lots and lots of bug fixes and minor updates * Sun May 03 2020 Martin Hauke - Update to version 2020-04-R3 * fix a possible crash in Kismet and associated tools when compiled with GCC; there are no other changes. * Thu Apr 23 2020 Martin Hauke - Update to version 2020-04-R2 * Bugfix release * Tue Apr 21 2020 Martin Hauke - Update to version 2020-04-R1 * New web-based UI with searching, device notes, realtime graphs, and more. * A REST-like API * Expanded support for non-WiFi capture types * New remote capture * Massive data set support * New KismetDB logs * Multithreaded optimizations * Kismet will now take advantage of multi-core systems, both on large servers, and on small systems like the Raspberry Pi; * Live packet export * Packets can now be streamed live via the export endpoints, as a pcapng stream of all packets or with live filtering by data source, device, and more. * Scriptable alerts * Alerts can be defined (and triggered) via REST endpoints * Sun Mar 29 2020 ecsosAATTopensuse.org- Install plugin alertsyslog. * Mon Mar 09 2020 Martin Hauke - Update to version 2020-03-R1 Bugfix release * RTL433 changing command line arguments * Extreme memory use compiling bluetooth_ids code * Fixes to kismetexternal python code used by rtladsb and rtlamr * Fixes to handling “weird” rtl433 serial numbers, like 000000001 * Fixes for ubertooth remote cap * Updates to the kw41z capture code * Support for multiple phys on a single interface * Fix for buffer size calculation which could impact gps handling * Smarter error handling with channel tuning failures * Support for CORS cross-side negotiation for running Kismet behind a proxy- Introduce new subpackages * kismet-capture-ti-cc-2531 + TICC2531 802.15.4 Zigbee Sniffer capture helper * kismet-capture-nrf-nxp-kw41z + NXP KW41Z BTLE and Zigbee Sniffer capture helper * Sun Jan 05 2020 Martin Hauke - Update to version 2019-12-R2 A bugfix release for Kismet 2019-12, R2 solves a number of quirks which were quite annoying: * Solve a race condition in Linux with interface naming. Due to how the nl80211 layer handles interface naming, combined with how systemd can name interfaces on some systems, it was possible to have a race condition when Kismet defaulted to kismonX interface names, resulting in either errors or Kismet ignoring one of the interfaces. * Solve a free on an unused pointer in nl80211 vif creation. The new vif creation code doesn’t use the nl80211 flags sub-message when there are no flags to add, but tried to free it. This could cause a crash the first time trying to open a source, but the second time would succeed. * Fix TICC2540 USB devices. Some systems were very unhappy with the order in which the USB device was initialized; now it should be fine. * Work around the very broken RTL8812BU driver. While we don’t recommend this driver or these cards, due to a HUGE number of issues, Kismet will now do its best to open one and get it into monitor mode. * Much smoother operation with very very large numbers of sources. A side effect of the vif naming fix, interfaces are now initialized and opened one at a time. While this may take much longer to open huge numbers (dozens or more) of interfaces, it is much more reliable and much less likely to cause Kismet or kernel problems during the initial bring-up and firmware load of interfaces. * Minor output text fixes. Capture interface and base interface were swapped in some messages to the user. * Wed Dec 25 2019 Martin Hauke - Update to version 2019-12-R1 Bugfixes and performance boosts * Remove OpenMP/parallel processing; this resolves a massive CPU burn on even moderate numbers of devices. * Fix logging bug causing export of all devices every logging cycle, instead of only modified and new devices. * Revamped python-kismet-external using asyncio to prevent a large CPU wasting IO loop. * Bugfixes to the Linux netlink monitor controls to prefer nl80211, find existing monitor interfaces correctly, and to work on devices that don’t support IOxIWCTL iocontrols at all (AX200). * Switch to std::unordered_map hash maps for O(1) lookups whenever possible New features * BTLE packet capture and basic device display, using the aUbertooth One, CC2540, or nRF51822; * New SDR demodulators for ADSB (airplane) and AMR (power and water meter) with no external dependencies beyond librtlsdr and python3! * New ADSB mapping UI * BTLE support in the UI * New formatting options for ekjson to simplify export to other tools * Device present/missing alerts * ADSB geolocation * Detection of CVE-2019-17666 RTLWIFI vulnerabilities * Sun Dec 01 2019 Martin Hauke - Completely rewritten spec-file- Intruduce subpackages for the capture helpers- Add kismet-rpmlintrc- Package systemd service file- Remove obsolete patch: * kismet-2011-03-R2-makefile.diff- Update to version 2019-09-R1 This is the new, MAJOR rewrite of Kismet! This version changes almost everything, hopefully for the better, including: * Web-based UI allowing for much simpler presentation of data and compatibility with mobile devices * Standard JSON-based data export for easy scripting against Kismet instances * Support for wireless protocols beyond Wi-Fi, like basic Bluetooth scanning, thermometer, and weather station detection with the RTL-SDR hardware, and more on the way * New remote-capture code optimized for binary size and RAM, allowing extremely low-end embedded devices to be used for packet capture * New logging format which can encapsulate complex information about devices, system state, alerts, messages, and packets in a single file with simple tools for extracting standard formats * Pcap-NG multi-interface logs with complete original headers, readable by Wireshark and other tools * Tue Jul 05 2016 mardnhAATTgmx.de- Kismet 2016-07-R1: * nl8011 support is fixed so finding the vif device works again * full 5GHz channel discovery works now * memory leaks in the drone are fixed * some ncurses compile bugs are resolved * Wed Apr 13 2016 astiegerAATTsuse.com- Kismet 2016-01-R1: * force validation of fcs by default for all sources * support for recent autotools * fixes for crashes when alert backlog was set to zero * fixes for failures in some VIF situations * fixes to resizing windows * fixes to GPS averaging * fixes to Radiotap changes in recent kernels * add WPS state parsing * handle BSSTimestamp parsing- upstream sources no longer signed, use source URLs
|
|
|