Skip to content

This release fixes issues for SREs watching stability and regressions.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →

✓ No known CVEs patched in this version

Topics

ai security dark-web darknet opensource osint
+4 more
osint-tool self-hosted threat-intelligence tor

Affected surfaces

auth rbac

Summary

AI summary

Fixed import-time config crashes, LLM key propagation failures, query rejection error codes, optional-config-keys warning frequency, and missing graph-build metrics.

Full changelog

v1.9.1

Fixed

  • Import-time config evaluation crashed every CLI command (including --help/--version) on a fresh install with no JWT_SECRET/DATABASE_URL configured
  • Configured LLM API keys never reached get_llm(), causing investigations to silently run with no working LLM despite a valid key being set
  • Rejected queries (empty, single-char, over 500 chars) exited with code 0 instead of a proper non-zero error code
  • Optional-config-keys warning regressed to firing on every command instead of once per session
  • Graph-build metrics (entity/edge counts) were computed but never surfaced to the live progress display

Investigated, confirmed correct

  • LockBit / LockBit4 entity separation reviewed against real threat intel (Intel 471, Check Point Research) — confirmed LockBit 4.0 is a distinct operational variant and correctly remains a separate entity, not a bug

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track KatrielMoses/voidaccess](https:

Get notified when new releases ship.

Sign up free

About KatrielMoses/voidaccess](https:

All releases →

Beta — feedback welcome: [email protected]