Nera Besic

Nera Besic

Author

Published Date: November 17, 2021

Estimated Read Time: 2 minutes

Bright Product Update – November 2021

Table of Content

  1. New Features
  2. Get full IP traceroute on a specific target
  3. Restrict a Repeater to a specific project(s)
  4. Improvements
  5. Possibility to change the method on redirect when configuring an Authentication Object
  6. Allow using API keys to access role resources
  7. Easy access to Authentications
  8. General UI improvements

This blog post announces the November 2021 Update for Bright.
We added some new features and product enhancements that will make your experience even better.

New Features

Assigning roles to groups

group-roles

Every group can now be assigned a role, which defines the access scope in fine-grained detail. Try it out – manage your organization.

Get full IP traceroute on a specific target

traceroute

Reveal all connectivity bottlenecks in minutes! Get a full IP traceroute on your target application to easily manage whitelisting Bright. See the documentation.

Restrict a Repeater to a specific project(s)

select-repeater-for-project

You can now use a repeater only for particular projects, which lets different teams scan only specific local targets. See the documentation.

Improvements

Optimize attack surface with custom headers

custom-headers

You can now optimize the attack surface by selecting specific custom headers to be covered by tests during scanning. These headers will be included in the “smart scan targets” for your scans, allowing you to test your custom headers with all our tests without compromising on scan speed. Run a scan with custom headers

Possibility to change the method on redirect when configuring an Authentication Object

auth-redirect-method

When configuring an authentication object, you can now enable redirects for code 302, where the server expects the following methods to always be GET during redirects, and not the original method that triggered the redirect. Create an Authentication Object.

Allow using API keys to access role resources

api-key-roles

From now on you can select the role-related access scopes when creating API keys, as well as manage those roles via our REST API. See documentation.

Easy access to Authentications

auth-menu

Now you can easily reach Authentications from the left menu. See the documentation

General UI improvements

ui-improvements

Enjoy our improved breadcrumbs navigation, smart copy button, “found issues” view on the Scans page, and other UI enhancements to make your experience better.

Scan surface discovery and speed improvements

We improved scan speeds by automatically analyzing and excluding irrelevant entry points such as duplicates and static resources.

Stop testing.

Start Assuring.

Join the world’s leading companies securing the next big cyber frontier with Bright STAR.

Our clients:

More

Product Updates

Brightsec MCP: What It Is, Who It’s For, and How to Evaluate It in Your Pipeline

Modern application security doesn’t fail because teams lack tools. It fails because the tools don’t align with how software is...
Nera Besic
April 3, 2026
Read More
Product Updates

Bright + Wiz Integration: Connecting Application Findings with Cloud Context

Security teams rarely struggle to find vulnerabilities. The difficult part usually comes right after. A scan finishes. A finding appears....
Nera Besic
March 10, 2026
Read More
Product Updates

Bright Security DAST Pricing: Packaging, What’s Included, and What Teams Actually Pay For

DAST pricing is one of those topics that sounds simple until you’re the person responsible for buying it. Most teams...
Nera Besic
February 23, 2026
Read More
Product Updates

Configure Bright MCP in Augment Code

This page will guide you on how to setup Bright’s MCP in Augment Code
Nera Besic
January 11, 2026
Read More