• New To The Community

    Hello, I am new to the community and am is looking forward to learning for others, especially about phishing. Thanks
  • Intrusion Prevention Alert - The packet has *not* been dropped

    Ok, so how specifically do I ' set the corresponding intrusion protection rule to "drop" in WebAdmin ' per the alert email below I received? There is no 'rule' identified in the alert. Am I supposed to infer that 58442 in the snort link is the rule…
  • Security alerts from ios device

    Hello, some time ago I get messages from my UTM9 like these two following 2018:05:09-07:53:21 lyra snort[17243]: id="2101" severity="warn" sys="SecureNet" sub="ips" name=" Intrusion protection alert " action="drop" reason=" EXPLOIT-KIT Rig Exploit…
  • Alert in Network Protection with ATP - C2/Generic-A mrdistrupd.com

    Hello, First, sorry for my english, you know french guys don't speaks correctly english x) .... I have an alert on Sophos UTM 9 in network protection Advanced threat protection : ip source : (my server DNS) adresse ip de destination : mrdistrupd…
  • Sophos UTM 9 double NAT

    I am new to this and just finding my way around setting up utm/firewalls i have a 2 firewall setup an internal sophos utm 9 ffirewall and an external firewall The internal firewall sophos utm 9 is setup where all computers and mobile devices are behind…
  • How Do I Check What Traffic Is Using A Certain Port

    I'm not a network guy so please forgive me if this is a simple answer. We have to be PCI compliant. We passed the network scan last year, and failed this year with this report: TCP 2323 - Unencrypted Communication Channel Accessibility. Description…