Lucy 4.7.5

Lucy 4.7.5 is available for automated update! Please make sure you have no active campaigns running before updating!

New features

  • New setting to configure the “From” field of the system notification emails (Settings -> Advanced Settings, System Notification Emails field)
  • Multi-language support of the UI and messages in Outlook MSI Plugin. It is possible to configure translations for the following system locales: Dutch, English, German, Italian, Portuguese, Russian, Spanish, Turkish and Ukrainian
  • New design of the End User Portal
  • Possibility for the administrators to configure the widgets on the End User Portal (Settings -> End Users -> Enduser Portal Settings)
  • New column “Certificate received” in the All Recipients export file
  • New export filter “Received Training Certificate” for the recipients who received their certificates

Improvements

  • On the “Recipients” step of the Campaign Wizard the contents of the selected recipient group are displayed
  • Campaign Statistics sub-menus are highlighted
  • Main menu re-organized: Recipients menu moved as a sub-menu of Settings, Sessions menu moved as a sub-menu of Tools, Status menu moved as a sub-menu of Support
  • Campaign Base Settings page re-organized
  • New page for Attack Settings introduced for faster access to the list of attack scenarios
  • Scenario Setting page re-organized, Scenario summary page became a part of Campaign Statistics Summary page (Scenario Selection button)

Bugs fixed

  • Subject encoding bug after changing the template language
  • Unchecking of a single recipient group unchecked all recipient lists
  • Empty MAIL FROM command in case of external SMTP server
  • Wrong contents of the %Subject% variable for emails
  • Incorrect behavior of the Repeating rule of the Scheduler
  • Error 500 for campaign templates with anonymous mode
  • Missing files in the saved campaign templates
  • Automatic detection of the “Quiz” option in Campaign Wizard
  • Incorrect removing of the “Deny For” rule in Campaign Filters
  • Several awareness emails in campaigns with several attack scenarios

Lucy 4.7

Lucy 4.7 is available for automated update! Please make sure you have no active campaigns running before updating!

New Features

  • Campaigns for infrastructure tests in Campaign Wizard
  • Scheduled campaign exports
  • Filter for incoming campaign clicks on IP range or User-Agent
  • Improvements in the internal architecture for better security and stability

Bugs fixed

  • Incorrect awareness time tracking
  • Awareness sub-domain unavailability
  • Minor errors in the Campaign Wizard
  • SSO issues
  • LDAP synchronization issues
  • Export of campaign stats failures
  • Gmail plugin installation (see Wiki)
  • Deleting unused file templates
  • Instability in statistics collecting for large campaigns
  • Instability in OOO and Bounced emails collecting
  • Database encryption issues
  • Custom admin port for SAML
  • Certificate deletion
  • File-based attack issues
  • Abuse function failure
  • Only successfully phished option
  • Copy campaign issues
  • Login form autocomplete
  • Minor bugs

Lucy 4.6

Lucy 4.6 is available for automated update! Please make sure you have no active campaigns running before updating!

New features:

  • SSO/SAML 2.0 support for ADFS added
  • Advanced Automatic backup functionality now allows to select what to backup among options: All, Database, Files, Configuration or System sources. Backup schedule can be specified
  • HSM Database Encryption added

Improvements:

  • “Anonymous mode” option moved to Campaign Base Settings since it always affects the whole campaign
  • Updating statistics process is now takes quite a shorter time due to significant optimization
  • Added a feature to select recipient groups to be automatically updated via “Autoupdate LDAP recipients” option
  • Many new variables are available for Campaign Phishing Reports
  • Several additional charts are now available for Campaign Phishing Reports
  • Campaign report template improved to display all possible data
  • Ability to choose between MSL and EML types for downloading files on the Incidents page added
  • Master/slave improved: SMTP traffic can now be forwarded from Slave to Master; incidents and statistics are transferred from Slave to Master
  • Lucy can now fetch information on sender and recipients from reported phishing emails and display it, the information is also available from Lucy API
  • Campaign scheduler is improved to take into account current time zone settings for weekend days
  • Many minor improvements in MSI Outlook and Office365 plugins
  • Available disk space is checked before installing updates and templates
  • Out of office and bounced e-mails detection by subject added
  • Enduser/Reputation Level statistics improved
  • Many other minor improvements in core functionality

Bugs fixed:

  • Whitelabel can now correctly handle transparent background in images
  • Incidents message headers are now correctly parsed by Lucy and may be returned via API in JSON format
  • PayPal payments are correctly processed and the balance is updated accordingly
  • Recipients with umlauts in their email addresses can be correctly imported now
  • Comma in sender name is correctly handled now
  • German localization is improved
  • Clear db backups folder function now clears the whole contents of the folder
  • SMISHING campaign – correct handling SMS templates taking into account maximum SMS length
  • Lucy server correctly handles phishing reports with large attachments now
  • Outlook 2013 freezing is fixed now
  • E-learning and re-scheduled statistics display is improved in Phishing Campaign reports
  • Lucy sends correct IP addresses in e-mails with login information for End Users
  • Many other minor bugs fixed

URGENT BUGFIX 4.4/4.5

Dear clients, if you are running Lucy versions 4.4 or 4.5 and have installed the system or installed any patches within past 2 weeks, please install the latest patches 4.4.14 or 4.5.6 as soon as possible, they should be available in Lucy upgrade section. If you are already on 4.4.14 or 4.5.6, no actions are needed.

If you have some campaigns running, which prevents you from updating, you can run the update over SSH console using these commands to force the update:

cd /opt/phishing/current/web/protected
./yiic update

This will update Lucy in background mode, without affecting your running campaigns. No reboot is needed after the upgrade.

If you have no access to your Lucy console, please contact our support engineers to help you with that.

Thank you and sorry for the inconvenience!

Lucy 4.3

We have started the rollout of LUCY 4.3. The image is available on https://lucysecurity.com/download. The latest version of LUCY Server offers many interesting functional enhancements and improvements: A new wizard is available to make your first campaigns even easier. A two-factor authentication is now available for end users and for the trainings there is now a real training portal, in which the user can manage his trainings and follow his learning progress. Last but not least, there is a new “Awareness Training Library”, where the end user can individually select his own training from a whole library of training modules.

Continue reading Lucy 4.3

Lucy 4.2

Start summer with all new Lucy 4.2! You can download VMware ESXi, VMware Workstation, VirtualBox images and Linux installer script on Lucy website, or use a pre-configured AMI on Amazon EC2 instance (search for “lucy” in Community AMIs when creating an instance). If you are using a commercial license, you can update the system through the “Update” section in Lucy. Please make sure you have no active campaigns running before updating Lucy!

Continue reading Lucy 4.2

Lucy 4.1

Lucy 4.1 is here! You can download VMware ESXi, VMware Workstation, VirtualBox images and Linux installer script on Lucy website, or use a pre-configured AMI on Amazon EC2 instance (search for “lucy” in Community AMIs when creating an instance). If you are using a commercial license, you can update the system through the “Update” section in Lucy. Please make sure you have no active campaigns running before updating Lucy!

Continue reading Lucy 4.1

Lucy 4.0

Start a new year with a new Lucy 4.0! You can download VMware ESXi, VMware Workstation, VirtualBox images and Linux installer script on Lucy website, or use a pre-configured AMI on Amazon EC2 instance (search for “lucy” in Community AMIs when creating an instance). If you are using a commercial license, you can update the system through the “Update” section in Lucy. Please make sure you have no active campaigns running before updating Lucy!

Continue reading Lucy 4.0