Malware Protection (69) - Content Update Release Notes - Cortex - Cortex - Cortex XDR

Cortex XDR and Traps Content Update Release Notes (Version 1200)

Product
Cortex
Creation date
2024-01-17
Last date published
2024-01-17
Category
Content Update Release Notes

Module Name

Issue ID

OS

Action

Description

Behavioral Threat Protection (agents 6.1 and above)

CTNG-8741

CTNG-8712

CTNG-8692

CTNG-8687

CTNG-8683

CTNG-8671

CTNG-8643

CTNG-8639

CTNG-8636

CTNG-8628

CTNG-8552

CTNG-8550

CTNG-8610

CTNG-8607

CTNG-8591

CTNG-8590

CTNG-8600

CTNH-8599

CTNG-8593

CTNG-8075

CTNG-8056

CTNG-8542

CTNG-8549

CTNG-8395

CTNG-8592

CTNG-8567

CTNG-8444

Windows

MacOS

Linux

Modified

Behavioral Threat Protection rules (prevention and silent) were updated both for compatibility reasons and in order to increase security coverage

Child Process Protection module

CTNG-8664

CTNG-8596

MacOS

Modified

Child Process Protection module where updated for compatibility reasons

EDR detection module

CTNG-8718

CTNG-8695

CTNG-8692

CTNG-8687

CTNG-8674

CTNG-8672

CTNG-8671

CTNG-8666

CTNG-8643

CTNG-8584

CTNG-8568

CTNG-8567

CTNG-8639

CTNG-8638

CTNG-8617

CTNG-8610

CTNG-8600

CTNG-8444

CTNG-8395

CTNG-8592

CTNG-8591

CTNG-8563

CTNG-8544

CTNG-8056

CTNG-8534

CTNG-8552

CTNG-8550

CTNG-8599

Windows

MacOS

Linux

Modified

EDR detection module rules were updated for compatibility reasons

Yara protection module

CTNG-8659

CTNG-8609

CTNG-8590

CTNG-8536

CTNG-8566

CTNG-8382

Windows

Modified

Yara Protection Module allow list was updated for compatibility reasons

Trusted signers protection module

CTNG-8606

Windows

MacOS

Modified

Trusted signers protection Module allow list was updated for compatibility reasons

Network Packet Inspection Engine protection module

CTNG-8686

CTNG-8661

Windows

Modified

Network Packet Inspection Engine Protection Module allow list was updated for compatibility reasons

Local Threat-Evaluation Engine module

CTNG-8604

MacOS

Modified

Local Threat-Evaluation Engine module allow list was updated for compatibility reasons

Anti-Ransomware Protection module

CTNG-8643

CTNG-8563

Windows

Modified

Anti-Ransomware Protection module allow list was updated for compatibility reasons