• Tags
  • Subscribe by email
  • More
  • Cancel
  • Technical training on XDR Data lake with Queries used

    Announcements: Technical training on XDR Data lake with Queries used

    Karl_Ackerman
    Karl_Ackerman
    For query assistance, please see the following Best Practices guide Watch the video from the technical demo where we cover how to use Live Discover datalake queries. https://vimeo.com/519661823 Queries used during SophSkills Demo DATA LAKE...
    • 10 Mar 2021
  • Sophos Central: Intercept X v2.0.20 released

    Release Notes & News: Sophos Central: Intercept X v2.0.20 released

    Shweta
    Shweta
    Hi Community,  A new version of Intercept X has been released to our Sophos Central customers. The release updates: Sophos Central Intercept X version to 2.0.20 HitmanPro.Alert component version to 3.8.1.504 Resolved issues Resolved issues fo...
    • 10 Mar 2021
  • Live Discover Pivoting

    Announcements: Live Discover Pivoting

    Karl_Ackerman
    Karl_Ackerman
    For those enrolled in the XDR & EDR Data Lake early access program (EAP), this week we will be launching new pivoting capabilities which allow administrators to rapidly navigate from the result of one query to an available Action, Query, or Enric...
    • 8 Mar 2021
  • Sophos Central - Release of Central Windows Server Core Agent 2.15.4 and Server Anti-Virus 10.8.10

    Release Notes & News: Sophos Central - Release of Central Windows Server Core Agent 2.15.4 and Server Anti-Virus 10.8.10

    Shweta
    Shweta
    Hi Community,  The following is being released to Sophos Central Window Servers: Server Core Agent 2.15.4 Endpoint Advanced 10.8.10 The following are changes of note introduced in this release: Enablement of Tamper Protection in safe boot Upd...
    • 3 Mar 2021
  • EDR Live Response session audit logs

    Release Notes & News: EDR Live Response session audit logs

    Kevin Kingston
    Kevin Kingston
    The latest of our Live Response enhancements is now available to customers with the release of our new Live Response per session audit logs.   Typically a few minutes after running a Live Response session, if you navigate to the Logs and R...
    • 2 Mar 2021
  • MITRE ATT&CK Hunting in the Data Lake

    Announcements: MITRE ATT&CK Hunting in the Data Lake

    Karl_Ackerman
    Karl_Ackerman
    For query assistance, please see the following Best Practices guide With the data lake we can do some interesting IOC hunts that perform counts across all devices for similar IOC's and with some use of variables we allow for the administra...
    • 26 Feb 2021
  • Sophos Central - Release of Central 10.0.4 / OPM 9.10.2 with Big Sur Support

    Release Notes & News: Sophos Central - Release of Central 10.0.4 / OPM 9.10.2 with Big Sur Support

    GlennSen
    GlennSen
    Hello Community. A new version of Sophos Central Endpoint for macOS and Sophos Anti-virus for macOS (OPM) has been released now.  The release versions are:  Central 10.0.4 OPM 9.10.2  Release information This release contains th...
    • 22 Feb 2021
  • XDR & EDR Data Lake Early Access Program

    Release Notes & News: XDR & EDR Data Lake Early Access Program

    Kevin Kingston
    Kevin Kingston
    We're pleased to announce that the XDR & EDR Data Lake Early Access Program is now publicly available to our Intercept X Endpoint and Server customers. For customers who join and enroll devices into these endpoint and/or server early access progr...
    • 22 Feb 2021
  • All you need to know about getting up and running

    Announcements: All you need to know about getting up and running

    Kevin Kingston
    Kevin Kingston
    For anyone who's joined the XDR & EDR Data Lake Early Access Program, we've been providing instructions on the different steps to join and enroll devices but I thought it would be useful to have one full blog post covering those steps and also de...
    • 22 Feb 2021
  • Database Schemas explained

    Announcements: Database Schemas explained

    Karl_Ackerman
    Karl_Ackerman
    For query assistance, please see the following Best Practices guide (NEW) Video on Schemas for EDR and Data Lake (15 Min) https://vimeo.com/515493008 With the addition of the data lake a significant amount of new information is available....
    • 21 Feb 2021
  • Video of XDR EAP Features

    Announcements: Video of XDR EAP Features

    Karl_Ackerman
    Karl_Ackerman
    In this 7min video we show the features that were enabled on Feb 22nd for the Early Access Program for the XDR Data lake. Welcome to the EAP and stay tuned more features are coming in March and April as we add Context aware pivoting to another query...
    • 21 Feb 2021
  • Powerful Generic Search Query explained

    Announcements: Powerful Generic Search Query explained

    Karl_Ackerman
    Karl_Ackerman
    For query assistance, please see the following Best Practices guide One of the most frequently used queries by our threat hunting team is a flexible generic search query against the data lake. Often you know exactly what you are looking fo...
    • 21 Feb 2021
  • Get an Inventory of all installed applications

    Announcements: Get an Inventory of all installed applications

    Karl_Ackerman
    Karl_Ackerman
    For query assistance, please see the following Best Practices guide Below is a query that will list all installed applications, the publisher, application name, and version number. It performs some nice counting so you don't have to deal w...
    • 21 Feb 2021
  • Get an Inventory of all installed applications

    Release Notes & News: Get an Inventory of all installed applications

    Karl_Ackerman
    Karl_Ackerman
    For query assistance, please see the following Best Practices guide Below is a query that will list all installed applications, the publisher, application name, and version number. It performs some nice counting so you don't have to deal with a long...
    • 20 Feb 2021
  • Powerful Generic Search Query explained

    Release Notes & News: Powerful Generic Search Query explained

    Karl_Ackerman
    Karl_Ackerman
    For query assistance, please see the following Best Practices guide One of the most frequently used queries by our threat hunting team is a flexible generic search query against the data lake. Often you know exactly what you are looking fo...
    • 20 Feb 2021
  • Demo on core features included with the next release

    Release Notes & News: Demo on core features included with the next release

    Karl_Ackerman
    Karl_Ackerman
    In this brief demo video we cover the core features being add during the early access program and as part of the expected product availability in May/June 2021 Content Data Lake and direct endpoint queries from one console (Available in EAP) Schedul...
    • 20 Feb 2021
  • Database Schemas explained

    Release Notes & News: Database Schemas explained

    Karl_Ackerman
    Karl_Ackerman
    For query assistance, please see the following Best Practices guide With the addition of the data lake a significant amount of new information is available.  In this document we will discuss each of the core database schemas. For thos...
    • 20 Feb 2021
  • Sophos Central - Release of Central Windows Endpoint Core Agent 2.15.4 and Endpoint Advanced 10.8.10

    Release Notes & News: Sophos Central - Release of Central Windows Endpoint Core Agent 2.15.4 and Endpoint Advanced 10.8.10

    FormerMember
    FormerMember
    Hi Community,  The following is being released to Sophos Central Windows Endpoints : Core Agent v2.15.4 Endpoint Advanced v10.8.10 The following are changes of note introduced in this release: Enablement of Tamper Protection in safe boot mode...
    • 11 Feb 2021
  • Recover Tamper Protection passwords - export options

    Release Notes & News: Recover Tamper Protection passwords - export options

    StephenMcKay
    StephenMcKay
    New feature – Tamper Protection Password Export (due for release on w/c 25th January) Sophos Central allows you to recover the tamper protection passwords of devices that you’ve recently deleted.You might need to do this so that you...
    • 13 Jan 2021
  • New Endpoint/Server Protection early access features now generally available

    Announcements: New Endpoint/Server Protection early access features now generally available

    Kevin Kingston
    Kevin Kingston
    This blog post contains a listing and details on features that have previously been released to the New Endpoint/Server Protection Features early access program and are now generally available to all customers. 19/08/2020 - IPS for Windows Ser...
    • 1 Jan 2021
  • Sophos Central - Sophos Linux Protection v1.1.4  released

    Release Notes & News: Sophos Central - Sophos Linux Protection v1.1.4 released

    Shweta
    Shweta
    Hi Community,  The latest Sophos Linux Protection has been released with the following module version changes: Sophos Linux Base has been updated to 1.1.4. Sophos Live Discover plugin has been updated to 1.1.0. Sophos Linux Live Response has be...
    • 11 Dec 2020
  • Sophos Central- Sophos Central Windows Endpoint and Server Core Agent 2.10.8 has been released

    Release Notes & News: Sophos Central- Sophos Central Windows Endpoint and Server Core Agent 2.10.8 has been released

    Shweta
    Shweta
    Hi Community,  The following is being released to Sophos Central Windows Endpoints and Servers: Core Agent v2.10.8 Update components are:  Sophos AutoUpdate updated to version 6.6.386. Sophos Endpoint Defense updated to versi...
    • 11 Dec 2020
  • Important changes to AWS and Azure Connectors in Intercept X for Server and Central Server Protection

    Release Notes & News: Important changes to AWS and Azure Connectors in Intercept X for Server and Central Server Protection

    StephenMcKay
    StephenMcKay
    IaaS connector functionality for Amazon AWS and Microsoft Azure is being removed from the Intercept X Advanced for Server (SVRCIXA) and Central Server Protection (SVRC) licenses. It is being replaced by the more comprehensive capabilities of Sophos C...
    • 2 Dec 2020
  • Welcome to the Big Sur EAP - GA support is now available

    Announcements: Welcome to the Big Sur EAP - GA support is now available

    FormerMember
    FormerMember
    Sophos appreciates your assistance. Please make sure to read all the items in this post. Also, please report any issues on the Discussions forum - we need your feedback to help improve the product. Overview Support is now GA (Generally Available) fo...
    • 20 Nov 2020
<>