v3.9.0
July 28, 2025
New Features
- Juniper & Palo Alto CIS Benchmarks
Support has been added to Nipper 3.9.0 for Juniper OS Benchmark v2.1.0 and Palo Alto Firewall 11 Benchmark v1.1.0, allowing customers to generate detailed CIS Benchmark reports for their Juniper & Palo Alto devices.
- Extended device support within Nipper to allow greater breadth of reporting across top devices.
Nipper 3.9.0 now includes expanded support for several devices, allowing users to perform audits across a wider range of network devices. The following devices are now fully supported:
- Aruba AOS 10.4.0.0
- SonicWall SonicOS 7.0.1-5080
- Sophos UTM 9
- Fortinet Fortigate FortiOS 7.6.3
- Cisco IOS XE 17.12.5a
- Palo Alto PanOS 11.2
- Extra tooling previously available in Nipper 2 has now been added to Nipper 3.
Newly Integrated tools include:
- IP Calculator – Perform subnet calculations quickly and accurately to support network planning and diagnostics
- CVSS Calculator – Evaluate vulnerability severity using the Common Vulnerability Scoring System (CVSS) directly within the interface
- Password Decoders – Decode common password encryption formats to support audit and configuration analysis
This update enhances the software by integrating essential networking and security tools directly into the latest version of Nipper.
- Nipper 3.9.0 includes significant improvements to the Save functionality, making it easier to export and share your reports in multiple formats.
Improvements include:
- Introducing Save to PDF – Generate full audit reports in PDF format
- Fixed Missing Tables in CSV Export – Resolved an issue where some tables were not appearing in CSV exports, ensuring complete data output
- New CSV Save Options:
- Security Recommendations to CSV
- Security Issues to CSV
- Included NVD Recommendations CSV save option for Vulnerability report
Continual Improvements
- Fixed an issue where WatchGuard devices configured with OSPF service were incorrectly reported as allowing traffic from any IP address.
- Resolved an issue where, when Nipper was installed silently as an administrator, it did not appear in the Add or Remove Programs list.
- Addressed an issue preventing Nipper from analysing policy and rule sets for Fortinet 601E v7.0.17.
- Fixed an issue where PSIRT files could not be imported into Nipper.
- Resolved an issue where user-specific SSH host keys were not being correctly parsed for JunOS configurations.
- Fixed a bug causing Nipper to incorrectly report Juniper firewall rules as allowing "Any Protocol" in the report, even when specific protocols were defined in the configuration.
- Fixed an issue whereby when attempting to exclude findings, including "No Time Synchronization Configuration" finding, from a report, all other findings were excluded successfully, except that specific one.
- Fixed a bug where the SSH Host key is not shown in the Configuration report when it is configured on a Juniper SRX device.
-