Sophos Community
Sophos Community
  • User
  • Site
  • Search
  • User
  • Community & Product Forums
  • Blogs
  • Partners
  • Events & Webinars
  • Getting Started
  • Support Portal
  • Community Blogs
    • Application Control
    • Community
    • Product documentation
    • Security
  • Feedback
    • Support Portal
    • Product documentation
  • Products
    • Endpoint security
      • Sophos Endpoint
      • Sophos XDR
      • Device Encryption
      • Sophos Mobile
    • Network Security
      • Sophos Firewall
      • Sophos ZTNA
      • Sophos Switch
      • UTM Firewall
      • Sophos Wireless
      • Sophos NDR
    • Email Security
      • Sophos Email
      • Phish Threat
    • Cloud Security
      • Sophos Central
      • Sophos Cloud Optix
    • Support Tools
      • Sophos integrations
      • Free tools
    • AI Solutions
      • Sophos AI
  • Services
    • Management platform
      • Sophos Professional Services
      • Sophos Central
      • Support Portal
      • Sophos Community log in
  • Sophos Partners
    • Partners blog
    • Local Partner community
    • Partner news
  • Resources
    • MSP guides
    • Partner Care
    • Sophos Central
  • Webinars & Events
    • Webinars & Events
    • Calendar
  • Become a partner
    • Join our program
  • Events & Webinars
    • Events & Webinars
    • Calendar
    • Recordings
  • Getting started in the Community
    • How to get started
    • SophosID registration
    • How to set up your profile
    • How to contribute and participate
    • How to manage private messages
  • Member recognition
    • Recognition program
    • Leaderboard
  • Products and Services
    • Products
      • Endpoint security
        • Sophos Endpoint
        • Sophos XDR
        • Device Encryption
        • Sophos Mobile
      • Network Security
        • Sophos Firewall
        • ZTNA
        • Sophos Switch
        • UTM Firewall
        • Sophos Wireless
        • NDR
      • Email Security
        • Sophos Email
        • Phish Threat
      • Cloud Security
        • Sophos Central
        • Sophos Cloud Optix
      • Support Tools
        • Sophos integrations
        • Free tools
      • AI Solutions
        • Sophos AI
    • Services
      • Management platform
        • Sophos Professional Services
        • Sophos Central
        • Support Portal
        • Sophos Community log in
  • Blogs
    • Community Blogs
      • Application Control
      • Community
      • Product documentation
      • Security
    • Feedback
      • Support Portal
      • Product documentation
  • Partners
    • Sophos Partners
      • Partners blog
      • Local Partner community
      • Partner news
    • Resources
      • MSP guides
      • Partner Care
      • Sophos Central
    • Webinars & Events
      • Webinars & Events
      • Calendar
    • Become a partner
      • Join our program
  • Events & Webinars
    • Events & Webinars
      • Events & Webinars
      • Calendar
      • Recordings
  • Getting Started
    • Getting started in the Community
      • How to get started
      • SophosID registration
      • How to set up your profile
      • How to contribute and participate
      • How to manage private messages
    • Member recognition
      • Recognition program
      • Leaderboard
  • Support Portal
  • Community Blog
  • Member Recognition
  • More
  • Cancel
Sophos Endpoint
Sophos Endpoint
Release Notes & News
  • Release Notes & News
  • Discussions
  • Recommended Reads
  • Threat Hunting Academy
  • Early Access Programs
  • Live Discover & Response Query Forum
  • Calendars
  • More
  • Cancel
  • New
Sophos Endpoint requires membership for participation - click to join
Release Notes & News
Subscribe
  • Subscribe by email
  • Posts RSS
  • More
  • Cancel
  • Tags
  • Subscribe by email
  • More
  • Cancel
  • Linux EDR - Live Discover

    Release Notes & News: Linux EDR - Live Discover

    StephenMcKay
    StephenMcKay

    There have been posts about our exciting new Linux EDR release elsewhere on the forum, but in case you missed them; here they are!

    We have had our Live Discover feature available for Linux Servers in our Early Access Program for a couple of months; this will be launching next week. Live Discover allows admins to search their data to answer almost any question they can think of by searching across their servers using SQL…

    • 15 Jun 2020
  • Live Discover for LINUX.... Video

    Announcements: Live Discover for LINUX.... Video

    Karl_Ackerman
    Karl_Ackerman

    In the next two weeks we will be fully launching the EDR Live Discover for LINUX.

    The capabilities on Linux are simply astounding, we have been busy creating the prebuilt queries and finishing the last bit of work before this is fully available.

    In the video, Ethan Vince-Urwin, one of the core linux developers who has been building the features we all love takes the product for a test drive and shows off some of the power…

    • 11 Jun 2020
  • KingMiner non-deterministic indicators of compromise

    Announcements: KingMiner non-deterministic indicators of compromise

    Karl_Ackerman
    Karl_Ackerman

    For query assistance, please see the following Best Practices guide

    See the story from SophosLabs Uncut on KingMiner: https://news.sophos.com/en-us/2020/06/09/kingminer-report/

    The article is both educational and enlightening.  One of the aspects of KingMiner that is common with other attacks is that many of the indicators of compromise are non-deterministic.  The domain names and URLs they use are all auto generated.   I read…

    • 10 Jun 2020
  • Intercept X with EDR: Powerful new IT operations and threat hunting features now available

    Release Notes & News: Intercept X with EDR: Powerful new IT operations and threat hunting features now available

    Kevin Kingston
    Kevin Kingston

    We are thrilled to announce that the latest version of Sophos EDR (endpoint detection and response) is now available in Intercept X Advanced with EDR and Intercept X Advanced for Server with EDR.  This release brings powerful new capabilities that enable both IT admins and security analysts to ask detailed IT operations and threat hunting questions across their entire estate. It also provides new functionality to remotely respond…

    • 29 May 2020
  • New Sophos Table - Sophos_process_activity

    Announcements: New Sophos Table - Sophos_process_activity

    Karl_Ackerman
    Karl_Ackerman

    For query assistance, please see the following Best Practices guide

    We have added a new table to the sophos forensics journals. The sophos_process_activity table.

    Often as part of an investigation you need to to get a quick view of what a process did in the past and this table provides a quick lookup location for that information.

    This table contains a subject for each of the other Sophos 'journals' and collects some of…

    • 26 May 2020
  • Live Discover Queries - Review Process

    Announcements: Live Discover Queries - Review Process

    Karl_Ackerman
    Karl_Ackerman

    Posting a query to the Live Discover Queries board will now include a review process.  This will allow us to review any question and proposed answer prior to it being visible by others.  We are adding this to ensure that the content of the queries do not contain anything inappropriate and that the query has been reviewed and tested and is not believed to cause harm. as for how well it does what it says.  we advise administrators…

    • 23 May 2020
  • How to find and use the Schema for Live Discovery Queries

    Announcements: How to find and use the Schema for Live Discovery Queries

    Karl_Ackerman
    Karl_Ackerman

    For query assistance, please see the following Best Practices guide

    While we have the schema posted on the EAP community pages, I have had a number of request for how to find it and how to use it.

    First how to find the schema(s):

    From the Sophos Community: We provide a link to definition of the sophos windows schema on the community form in the documents section. You can downlaod the file with this link: https://community…

    • 19 May 2020
  • Updated Endpoint User Interface

    Release Notes & News: Updated Endpoint User Interface

    tom_w
    tom_w

    We're pleased to announce that a new version of the Sophos Endpoint user interface is being rolled out to customers. Windows clients will begin updating this week, with Windows servers following in June.

    The key goal of the update is to better represent our different endpoint components (Intercept X, Central Device Encryption, and the upcoming Unified Endpoint Management agent), and to bring a consistent look across…

    • 18 May 2020
  • Intercept X with EDR EAP - Variable support for queries

    Announcements: Intercept X with EDR EAP - Variable support for queries

    Karl_Ackerman
    Karl_Ackerman

    Starting on the week of may 18 we will be adding variable support to queries.

    You can create queries that now include support for up to 6 variables. A variable will be given a $$ prefix and postfix and can be either a TEXT or DATE value.  You will write your query and specify the variable information in the query.  Then when you run it you will be able to simply drop in the information for the variable and we will automatically…

    • 15 May 2020
  • Intercept X with EDR EAP  Update - Adding Create/Save/Edit Queries

    Announcements: Intercept X with EDR EAP Update - Adding Create/Save/Edit Queries

    Karl_Ackerman
    Karl_Ackerman

    The week of May 18 we will be turning on two powerful new capabilities in the EAP, Edit Query and Query Variables.

    CREATE, SAVE queries - With this new capability you can now create and save your own queries, This will allow you to start from scratch or modify an existing query.  You will need to give your query a name, description, identify one or more categories it will be a part of and specify what operating systems…

    • 15 May 2020
  • Live Response now in Early Access and other EDR updates

    Announcements: Live Response now in Early Access and other EDR updates

    Kevin Kingston
    Kevin Kingston

    Note: Use of all features and functionalities provided under the Early Access Program is subject to the Sophos End User License Agreement.

     

    We are excited to announce that Live Response is now available in early access.

     

    Live Response allows admins to remotely connect to devices and get access to a command line interface so that detailed investigations can be performed, or to take prompt action to contain or remediate a…

    • 28 Apr 2020
  • Help design the future of security; Live Discover User Experience Research

    Announcements: Help design the future of security; Live Discover User Experience Research

    Marcin Hutnik
    Marcin Hutnik

    Can you help to shape our future products?

     

    We're looking for customers and partners to join our Sophos Design Partner group. Sign up and you'll be able to give us your product feedback and ideas through surveys, interviews, or usability testing.

    You'll be helping to make the world a safer place -- and you might win Amazon vouchers while you're doing it.

    We’re particularly keen to talk to customers who…

    • 23 Apr 2020
  • New Windows endpoint UI

    Announcements: New Windows endpoint UI

    tom_w
    tom_w

    I'm pleased to say that a new version of our endpoint user interface is being released to EAP customers this week. Windows devices (client and server) enrolled in the EAP will receive the update automatically.

    The key goal of the update is to better represent Sophos' different endpoint components - Intercept X, Central Device Encryption and our upcoming UEM agent. It will also to bring a consistent look across platforms…

    • 19 Apr 2020
  • New Linux EDR Agent now available in Early Access

    Announcements: New Linux EDR Agent now available in Early Access

    Kevin Kingston
    Kevin Kingston


    We are excited to announce that we have added our new Linux EDR agent to the New Server Protection and EDR Features early access program.

    Joining the EAP:

    To get access to the new agent you must first join the New Server Protection and EDR Features early access program. See this presentation on how to join the EAP.

    Getting access to the agent and installing:

    Once you have successfully joined, from the Protect Devices…

    • 17 Apr 2020
  • Sophos Anti-Virus version 9.9.8 for MAC OS released

    Release Notes & News: Sophos Anti-Virus version 9.9.8 for MAC OS released

    Jasmin
    Jasmin

    Hi Community,

    Sophos Anti-Virus v9.9.8 for Mac OS has been released. This release has the fix for blank captive portal.

    For more information, please refer to the below release notes:

    • 15 Apr 2020
  • Extended Anti-Virus support for Windows XP and Windows Server 2003

    Release Notes & News: Extended Anti-Virus support for Windows XP and Windows Server 2003

    Shweta
    Shweta

    Hi Community, 

    Due to current events, we are lengthening the Extended Support for Windows XP and Windows Server 2003 until June 30, 2020. Please refer to the below article for more information. 

    • Extended Anti-Virus support for Windows XP and Windows Server 2003
    • 31 Mar 2020
  • Powerful New EDR Capabilities Now Available In Early Access

    Announcements: Powerful New EDR Capabilities Now Available In Early Access

    Kevin Kingston
    Kevin Kingston

    Note: Use of all features and functionalities provided under the Early Access Program is subject to the Sophos End User License Agreement.

    We are excited to announce that Intercept X Advanced with EDR v3.0 with Live Discover is now available in early access.

    Live Discover allows admins to search their data to answer almost any question they can think of by searching across their endpoints and servers using SQL. You can…

    • 29 Mar 2020
  • Intercept X with EDR 3.0 is coming soon

    Announcements: Intercept X with EDR 3.0 is coming soon

    Karl_Ackerman
    Karl_Ackerman

    In early April we are extending the Early Access Program to add Live Discover

    Watch the 5 min video. https://vimeo.com/401888432  

    • 29 Mar 2020
  • Mac Endpoint Support of new Apple System Extensions

    Release Notes & News: Mac Endpoint Support of new Apple System Extensions

    FloSupport
    FloSupport
    Hi All, Apple has just released macOS 10.15.4 and with this release they are highlighting to end users with Sophos Endpoint installed that they have a product installed that has a “Legacy system extension”, the notification goes on to say...
    • 26 Mar 2020
  • New Endpoint/Server Protection Features Early Access Program

    Announcements: New Endpoint/Server Protection Features Early Access Program

    Kevin Kingston
    Kevin Kingston

    Note: Customers can join early access programs and use EAP features free of charge.  Use of all features and functionalities provided under the Early Access Program is subject to the Sophos End User License Agreement.  

    The New Endpoint/Server Protection Features Early Access Program allows customers to test the latest and greatest endpoint and server features and functionality as they are being developed by Sophos.

    See…

    • 24 Mar 2020
  • Sophos Zap is now available!

    Release Notes & News: Sophos Zap is now available!

    Jasmin
    Jasmin

    Source: https://community.sophos.com/kb/en-us/134486

    Overview

    SophosZap is a last resort command line clean up tool focused on uninstalling Sophos Endpoint products to revert a machine to a clean state.
    To uninstall we strongly recommend that you use the standard product uninstaller first. Only use SophosZap when all other uninstall options have failed, as SophosZap uses heuristics trying to identify Sophos components…

    • 10 Mar 2020
  • Sophos AMSI Protection going live!

    Announcements: Sophos AMSI Protection going live!

    Vincent Vanbiervliet
    Vincent Vanbiervliet

    Starting today we are gradually rolling out Sophos AMSI Protection to the Recommended release for endpoints. In a first phase only new Sophos Central customers (with the right license), and a very small percentage of existing Sophos Central customers will see this.

    While we have tested this technology a lot, internally as well as in this EAP, it is still a new technology so we want to be sure all works well.

    If all goes…

    • 3 Mar 2020
  • Sophos Central Device Encryption (CDE) 2.0.81 for Windows released

    Release Notes & News: Sophos Central Device Encryption (CDE) 2.0.81 for Windows released

    Shweta
    Shweta

    Hi All, 

    Sophos Central Device Encryption version 2.0.81 for Windows has been released. 
    Central Device Encryption version 2.0.81 for Windows

    This service release contains bugfixes and improvements. Fixed JIRA items:

    • CDP-7724 - "Protect Attachments" button not working when attaching files using "recent items".
    • CDP-7726 - Outlook Add-In: Secure File Sharing does not pop up when forwarding mails with an…
    • 25 Feb 2020
  • February 2020 Enhanced Protection EAP Update

    Announcements: February 2020 Enhanced Protection EAP Update

    Vincent Vanbiervliet
    Vincent Vanbiervliet

    Starting this week we will gradually roll out an update to the components in the Enhanced Protection EAP. We are mainly focusing on improved quality, and have fixed most of the issues that have been reported. Both endpoints and servers will be updated.

    Other changes are the introduction of Windows 7 support for IPS, and a new and faster SDU log collection.

    This roll-out will take about two weeks.

    The update will bring…

    • 17 Feb 2020
<>

Defeat Cyberattacks

Footer - Default

  • Column 1
    • Endpoint Security
      • Sophos Endpoint
      • Sophos XDR
      • Device Encryption
      • Sophos Mobile
    • Email Security
      • Sophos Email
      • Phish Threat
    • Support Tools
      • Sophos integrations
      • Free tools
  • Column 2
    • Network Security
      • Sophos Firewall
      • Sophos ZTNA
      • Sophos Switch
      • UTM Firewall
      • Sophos Wireless
      • Sophos NDR
    • Cloud Security
      • Sophos Central
      • Sophos Cloud Optix
  • Column 3
    • Partners
      • Find a partner
      • Managed service providers
      • Join our program
    • Current Partners
      • Partners blog
      • Local Partner Community blog
      • Partner MSG guides
      • Partner news
      • Partner care
      • Partner portal login
      • Training & certification
    • Management Platform
      • Sophos Central
  • Column 4
    • Support
      • Downloads and updates
      • Support packages
      • Support portal
      • Sophos Customer Success
      • Sophos Techvids
      • Sophos Learning Center
      • Sophos status
      • Tech support
    • Learn
      • Threat intelligence
      • X-Ops threat research
      • Trust center
      • Security blogs
      • Sophos Academy
  • Column 5
    • Getting Started
      • How to get started
      • Community FAQs
    • Member Recognition
      • Recognition program
      • Leaderboard
    • Events & Webinars
      • Webinars
      • Calendar
      • Recordings
  • Column 6
    • Try for Free
      • Free trials
      • Product demos
    • Sophos Home Premium
      • Sophos Home support
      • Contact Home support
      • Mac antivirus download
      • PC antivirus download
    • About Us
      • Company
      • Events
      • Press
      • Careers
  • Getting Started
  • Terms
  • Privacy
    • Privacy Notice
    • Cookies
  • Legal
    • General
    • Modern Slavery Statement
    • Speak Out
© 1997- Sophos Ltd. All Rights Reserved.