<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Endpoint Security / SandBlast Agent Newsletter - Version – E82.00 in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/Endpoint-Security-SandBlast-Agent-Newsletter-Version-E82-00/m-p/66755#M3184</link>
    <description>&lt;P&gt;Hi all,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We recently released SandBlast Agent &lt;STRONG&gt;E82.00!&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;E82.00&lt;/STRONG&gt; introduces new features, stability and quality improvements. The complete list of improvements can be found in the version release’s Secure Knowledge &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk163233" target="_blank"&gt;sk163233&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;BitLocker Management from SmartEndpoint&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;BitLocker is a very popular full volume encryption feature included with Microsoft Windows versions.&lt;/P&gt;
&lt;P&gt;Due to its popularity we have integrated the management of BitLocker into SmartEndpoint to ease its operation to our customers and enable single management experience for endpoint security services.&lt;/P&gt;
&lt;P&gt;BitLocker management is available for data protection license endpoints with Full Disk Encryption service enabled.&lt;/P&gt;
&lt;P&gt;Note that single encryption method is supported, either Check’s Point Full Disk Encryption or BitLocker with the ability to switch between the two using Crossgrade Functionality. More information is available at &lt;A href="http://downloads.checkpoint.com/dc/download.htm?ID=100187" target="_blank"&gt;BitLocker Management Administration Guide&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BitLocker management requirements:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Endpoint Operating System – &amp;nbsp;Windows 10 Pro and Enterprise editions&lt;/LI&gt;
&lt;LI&gt;E82.00&lt;/LI&gt;
&lt;LI&gt;R80.30 with the BitLocker Management Hotfix &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk163297" target="_blank"&gt;sk163297&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="aaa.jpg" style="width: 502px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/2988i0C5756D875FD6991/image-size/large?v=v2&amp;amp;px=999" role="button" title="aaa.jpg" alt="aaa.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="bbb.jpg" style="width: 644px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/2989iBF8C13CE553C5F74/image-size/large?v=v2&amp;amp;px=999" role="button" title="bbb.jpg" alt="bbb.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ccc.png" style="width: 673px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/2990i1145F8A69BC52B83/image-size/large?v=v2&amp;amp;px=999" role="button" title="ccc.png" alt="ccc.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;New Detection Techniques&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;E82.00 introduces new enhancements to the Behavioral Guard to detect and prevent complex Meterpreter/reverse shell and RDP Brute Force attacks.&lt;/P&gt;
&lt;P&gt;Reverse shell attacks obtain control over a compromised system, an attacker usually aims to gain interactive shell access for arbitrary command execution which is very complex to detect. &amp;nbsp;&lt;/P&gt;
&lt;P&gt;The detections is currently deployed is silent mode and will be activated in a later stage.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Important Note&lt;/STRONG&gt;: If you’re participating in a POC, security lab evaluation or penetration test of SandBlast Agent, please contact us to activate these detection enhancements as we know pen-testers love such attacks J&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;VPN's Post Disconnect Feature&lt;/STRONG&gt;&lt;BR /&gt;The post disconnect script feature allows users to run scripts on client computers after disconnections from gateways.&lt;/P&gt;
&lt;P&gt;Please refer to the Revision History of &lt;A href="http://downloads.checkpoint.com/dc/download.htm?ID=60345" target="_blank"&gt;Remote Access for Windows Administration Guide&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best&lt;/P&gt;
&lt;P&gt;Ami.B&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 07 Nov 2019 07:50:43 GMT</pubDate>
    <dc:creator>Ami_Barayev1</dc:creator>
    <dc:date>2019-11-07T07:50:43Z</dc:date>
    <item>
      <title>Endpoint Security / SandBlast Agent Newsletter - Version – E82.00</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Endpoint-Security-SandBlast-Agent-Newsletter-Version-E82-00/m-p/66755#M3184</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We recently released SandBlast Agent &lt;STRONG&gt;E82.00!&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;E82.00&lt;/STRONG&gt; introduces new features, stability and quality improvements. The complete list of improvements can be found in the version release’s Secure Knowledge &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk163233" target="_blank"&gt;sk163233&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;BitLocker Management from SmartEndpoint&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;BitLocker is a very popular full volume encryption feature included with Microsoft Windows versions.&lt;/P&gt;
&lt;P&gt;Due to its popularity we have integrated the management of BitLocker into SmartEndpoint to ease its operation to our customers and enable single management experience for endpoint security services.&lt;/P&gt;
&lt;P&gt;BitLocker management is available for data protection license endpoints with Full Disk Encryption service enabled.&lt;/P&gt;
&lt;P&gt;Note that single encryption method is supported, either Check’s Point Full Disk Encryption or BitLocker with the ability to switch between the two using Crossgrade Functionality. More information is available at &lt;A href="http://downloads.checkpoint.com/dc/download.htm?ID=100187" target="_blank"&gt;BitLocker Management Administration Guide&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BitLocker management requirements:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Endpoint Operating System – &amp;nbsp;Windows 10 Pro and Enterprise editions&lt;/LI&gt;
&lt;LI&gt;E82.00&lt;/LI&gt;
&lt;LI&gt;R80.30 with the BitLocker Management Hotfix &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk163297" target="_blank"&gt;sk163297&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="aaa.jpg" style="width: 502px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/2988i0C5756D875FD6991/image-size/large?v=v2&amp;amp;px=999" role="button" title="aaa.jpg" alt="aaa.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="bbb.jpg" style="width: 644px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/2989iBF8C13CE553C5F74/image-size/large?v=v2&amp;amp;px=999" role="button" title="bbb.jpg" alt="bbb.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ccc.png" style="width: 673px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/2990i1145F8A69BC52B83/image-size/large?v=v2&amp;amp;px=999" role="button" title="ccc.png" alt="ccc.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;New Detection Techniques&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;E82.00 introduces new enhancements to the Behavioral Guard to detect and prevent complex Meterpreter/reverse shell and RDP Brute Force attacks.&lt;/P&gt;
&lt;P&gt;Reverse shell attacks obtain control over a compromised system, an attacker usually aims to gain interactive shell access for arbitrary command execution which is very complex to detect. &amp;nbsp;&lt;/P&gt;
&lt;P&gt;The detections is currently deployed is silent mode and will be activated in a later stage.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Important Note&lt;/STRONG&gt;: If you’re participating in a POC, security lab evaluation or penetration test of SandBlast Agent, please contact us to activate these detection enhancements as we know pen-testers love such attacks J&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;VPN's Post Disconnect Feature&lt;/STRONG&gt;&lt;BR /&gt;The post disconnect script feature allows users to run scripts on client computers after disconnections from gateways.&lt;/P&gt;
&lt;P&gt;Please refer to the Revision History of &lt;A href="http://downloads.checkpoint.com/dc/download.htm?ID=60345" target="_blank"&gt;Remote Access for Windows Administration Guide&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best&lt;/P&gt;
&lt;P&gt;Ami.B&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Nov 2019 07:50:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Endpoint-Security-SandBlast-Agent-Newsletter-Version-E82-00/m-p/66755#M3184</guid>
      <dc:creator>Ami_Barayev1</dc:creator>
      <dc:date>2019-11-07T07:50:43Z</dc:date>
    </item>
    <item>
      <title>Re: Endpoint Security / SandBlast Agent Newsletter - Version – E82.00</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Endpoint-Security-SandBlast-Agent-Newsletter-Version-E82-00/m-p/70588#M3185</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;we are using the Bitlocker feature and are happy with it so far, but I have a question about the hotfix. Is it possible to install a new Jumbo Hotfix after patching the management with the Bitlocker hotfix? Can I remove the hotfix, upgrade the management and reinstall the hotfix without data loss?&lt;/P&gt;&lt;P&gt;Best regards,&lt;/P&gt;&lt;P&gt;Volker&lt;/P&gt;</description>
      <pubDate>Mon, 16 Dec 2019 16:06:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Endpoint-Security-SandBlast-Agent-Newsletter-Version-E82-00/m-p/70588#M3185</guid>
      <dc:creator>VolkerT</dc:creator>
      <dc:date>2019-12-16T16:06:16Z</dc:date>
    </item>
  </channel>
</rss>

