2026.06
M&NTIS Platform v26.5 is a release focused on deepening the realism of SOC and CERT team training. It extends the supported EDR ecosystem, refines the user experience for both new and experienced users, and continues to bring lab environments closer to real-world enterprise conditions.
Defense Integrations
Support for CrowdStrike Falcon as an additional EDR in lab environments. This initial integration enables the automated enrollment of CrowdStrike Falcon agents using the customer's own CID (Customer ID) on their test tenant, so teams can train detection and response workflows using their actual EDR stack.
This addition joins the existing HarfangLab and SentinelOne support, expanding the range of real-world defensive toolchains that can be validated within M&NTIS environments.
Lab Enhancements
- Added Firefox internet connectivity within lab environments, enabling realistic legitimate web browsing from lab endpoints. This creates more credible network traffic patterns and activity logs for training scenarios.
User Experience
- Enriched lab activity notifications: users now receive clearer, more informative notifications at key moments, including when a lab is ready for investigation and when an evaluation questionnaire becomes available.
- Improved Trial mode workflow: the onboarding experience for trial accounts has been redesigned to better guide new users through M&NTIS capabilities step by step, reducing time-to-value for teams discovering the platform.

