Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
bund
Explorer

Why is the Threat emluation engine update version different?

Hello
I checked the log and found that the threat emulation release version and the actual updated version are different.

 

https://support.checkpoint.com/results/sk/sk95235

 

1. Why is it being updated to a version that doesn't appear in the sk document? What is this version?

(sk version 203->305 / actually version 278->305)

2023_0726_update_preparing_278_305.jpg

 

2. Also, according to the sk document, there was an engine update on August 28th, and the actual update date was August 25th.
Why does this happen?

Do you know anyone?

 

Thank you in advance.

0 Kudos
3 Replies
G_W_Albrecht
Legend
Legend

ad 1. - I see 60.990000355 in your screenshot and in the SK :

Date Release Engine Version What's New
28 Aug 2023 11.08

60.990000355

  • MemDive - a new approach to prevent encrypted payload hidden in memory enabled by default in TE ( Cloud mode only). Further info could be found in: sk181419
  • Improved DLL emulation mechanism triggers additional malicious behavioral

 

ad 2. - Usually, documentation is later than protection 😉 Why is that so important for you ?

I know at least someone...

CCSE CCTE CCSM SMB Specialist
0 Kudos
bund
Explorer

Thanks for your answer.

1. I understand that the sk document has version 60.990000355.
However, 60.990000278 is not in the sk document.
What version 60.990000278 is not in the release notes?
Will a new updated version be released even if it is not in the SK document?

 

2. That's not really important to me.

Based on client request, I needed a clear answer as to whether this was a normal update.

0 Kudos
G_W_Albrecht
Legend
Legend

If you have a client request ask TAC in an informational SR# !

CCSE CCTE CCSM SMB Specialist
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events