Release Notes 6.0 (2601)
Version 6.0 (2601) of the platform has been released -- see full details below.
Summary
CoreStack v6.0 delivers five new Assessment Agent use cases with MCP integration and smarter context management. AppSecOps gains a nine-widget Infrastructure Dashboard and native Azure Defender vulnerability ingestion. FinOps adds a Budget vs. Spend vs. Forecast widget, Azure CSP Indirect cost ingestion, and eight MCP tools for agent-driven cost management. WAFR remediation coverage grows by 10–15%, and the platform is refactored for Kubernetes horizontal scaling.
FinOps
-
Added Budget vs. Spend vs. Forecast Widget — Combines actual spend, budget, and forecast in a single monthly view scoped to the selected budget period.
-
Added CSP Cost Discovery via Delegated Blob Storage — Azure CSP Indirect customers can supply a Distributor-delegated storage account at onboarding to ingest billing CUR files via the standard cost engine.
-
Added FinOps MCP Tools — Eight authenticated tools exposing billing trends, anomaly detection, budgets, RI management, cost optimization, and savings data to Assessment agents.
-
Changed Dimensions — Account Admin Edit Access — Account Admins can now edit any dimension regardless of who originally created it.
AppSecOps
-
Added Infrastructure Dashboard V1 — Nine new widgets: Threats, Misconfiguration, and Vulnerability Explorers with drill-down and remediation actions; plus six visualization widgets — regional heatmap, account severity matrix, resource change timeline, Sankey chart, Treemap, and open issues trend.
-
Added Azure Defender Vulnerability Integration — Vulnerability scan results from Azure Defender are now ingested into SecOps Posture, SecOps Dashboard, and AppSecOps Security Graph.
-
Changed Supply Chain Dashboard — Widget titles aligned with Infrastructure Dashboard naming. Top Ten (Graphion Score) widget converted from a fixed ranked list to an Explorer widget.
-
Changed Open Vulnerability by Severity — Drill-down enabled on the time series widget — clicking a severity band navigates to the filtered vulnerability list.
Assessments
- Enhanced WAFR Remediation Coverage — Template coverage expanded by 10–15%: 15 new AWS templates and 12 new Azure templates covering unrestricted port access, encryption gaps, logging configuration, and security contact settings.
Platform
-
Added Assessment Agent — Five New AWS Intelligence Use Cases — Surfaces AWS release impacts, EC2 SKU deprecations, service price changes (last 3 months), and planned deprecations (next 3 months) — cross-referenced against active inventory.
-
Added Assessment Agent — MCP Integration — Agent framework connects to MCP servers, including AWS Knowledge MCP for live AWS release notes and documentation.
-
Added Assessment Agent — Context Management — Pipeline that detects prior-result references, applies selective provenance retrieval, and captures structured memory per interaction — reducing inference cost and improving accuracy.
-
Added Kubernetes Horizontal Scaling Readiness — Application refactored for stateless, multi-pod deployment to support horizontal scaling at enterprise scale.
External APIs
API changes in this release: External APIs 6.0 (2601)
Full API reference: https://docs.corestack.io/reference/accesssummarycount