This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos cloud endpoint: Multiple users getting "Caller Check Exploit Prevented in Microsoft Excel" when using custom spreadsheets

I need a resolution for this false positive that does not completely whitelist Excel.

This is directly relevant to the following thread:

https://community.sophos.com/intercept/f/information/82464/microsoft-power-query-for-excel---false-flagging-by-intercept-crashes-excel

This was supposed to be resolved by the end of November. 

We need a resolution now.

 



This thread was automatically locked due to age.
Parents Reply
  • From Sophos support as we have a ticket open for this: 

    "As I was expecting - Excel is triggering multiple detections for the same behavior with different thumbprints.
    Which causes our application to ignore any of the set up exclusions for excel.

    - This is being currently investigated with our GES escalation team.
    - Patch should be coming out some time soon."

     

    GES = Global Escalated Support, I think  -Rick

Children