This X-Press Update™ product enhancement (XPU) 24.3, featuring Virtual Patch ™ technology, includes 48 new events including added coverage for detection of spyware applications, and a vulnerability in Computer Associates License Server. Also in this XPU are 16 security content updates and blocking for 42 existing events has been enabled.



Checks:

RiskVulnIDCheck NameCategory
Low11835PDE_Renew_Host*Protocol Signature
Low11835PDE_Unauthenticated_Host*Protocol Signature
Medium14267Spyware_PH_BroadcastPCPre-attack Probe
High14311Spyware_PH_DownloadWareUnauthorized Access Attempt
Medium14320Spyware_PH_MoeMoneyMakerUnauthorized Access Attempt
Medium14333Spyware_PH_ExactSearchBarPre-attack Probe
High14336Spyware_PH_EzulaTopTextUnauthorized Access Attempt
High14370Spyware_PH_HotBarUnauthorized Access Attempt
Medium14425Spyware_PH_MyWebSearchPre-attack Probe
Medium14477Spyware_PH_ShopAtHomeSelectPre-attack Probe
Low14571Spyware_PH_WhenUSearchUnauthorized Access Attempt
Medium14848Spyware_PH_WildTangentPre-attack Probe
Medium16627SMB_System32_FileWrittenSuspicious Activity
Medium17404Spyware_PH_GAINUnauthorized Access Attempt
High18126Spyware_PH_QuickSearchBarUnauthorized Access Attempt
Medium18148Spyware_PH_EliteBarUnauthorized Access Attempt
Medium18252Spyware_PH_GameSpyArcadeUnauthorized Access Attempt
Medium18261Spyware_PH_WeatherBugPre-attack Probe
Medium18291Spyware_PH_MySearchBarUnauthorized Access Attempt
Medium18307Spyware_PH_MessengerPlusUnauthorized Access Attempt
Medium18395HTML_IE_Sysimage_DisclosurePre-attack Probe
High18419Spyware_PH_IEPluginUnauthorized Access Attempt
Medium18451Spyware_PH_KeenValueUnauthorized Access Attempt
Medium18476Spyware_PH_DownloadAcceleratorPlusPre-attack Probe
High18519SMB_Samba_SecurityDescriptor_BoUnauthorized Access Attempt
Medium18836DNS_Authors_RequestPre-attack Probe
Low18884UDP_Squid_WCCP_Cachelist_DOSDenial of Service
Medium19268HTTP_WmvDownloader_BOUnauthorized Access Attempt
High19269Image_GIF_Netscape_Extension_BOUnauthorized Access Attempt
Low19303DNS_IDN_QueryProtocol Signature
High19385PsExec_InstalledSuspicious Activity
High19385PsExec_Service_AccessedSuspicious Activity
Medium19396IM_File_Xfer_Double_ExtensionSuspicious Activity
Low19405GTP_C_Element_UnexpectedSuspicious Activity
Low19408GTP_C_Element_OverflowSuspicious Activity
High19433LHA_File_Path_OverflowUnauthorized Access Attempt
High19494MGCP_LongFieldSuspicious Activity
High19494MGCP_Long_EndpointSuspicious Activity
High19494MGCP_Long_TidSuspicious Activity
Low19506GTP_C_Element_UnderflowSuspicious Activity
Low19507GTP_C_Err_SystemFailureSuspicious Activity
Low19509GTP_C_DiscoverySuspicious Activity
Low19510GTP_C_APN_CorruptSuspicious Activity
Low19511GTP_C_PPP_LoginSuspicious Activity
Low19513GTP_U_InfrastructureAddressSuspicious Activity
Low19514GTP_U_RecursionSuspicious Activity
Low19518GTP_U_StationToStationSuspicious Activity
High19562CA_License_Server_Request_BoUnauthorized Access Attempt

If you are an existing customer or partner, and you wish to download X-Press Updates from our download center, click here.