May 30, 2021 Service Pack

The following Service Pack versions were released:

Versions (Sensor and Server)

20.1.502,

20.2.282

The tables below describe the enhancements, fixed issues, and changes included in each version.

  • The Versions column indicates the versions that include the fix.

  • The Required Update column indicates if the fix requires sensor/server update.

IMPORTANT: If you want to upgrade your servers to this version, we recommend that you upgrade all components - Registration server, Detection servers, and WebApp server - to this version.

Enhancements

Issue

Area

Description

Versions

Required Update

Sensor OS

CYBR-42362

Investigation

We have added additional operators for Enum type features to help you better perform investigation queries:

  • You can use the contains and not contains operators.

  • You can use the matches pattern and doesn’t match pattern if you have the newer data infrastructure.

20.2.282

Server

N/A

CYBR-34752

Malops management

On the Malop details screen, you can now resolve a Malop by clicking Mark as resolved.

On the Malops management screen, a new column has been added in the list of Malops called Resolved by to enable you to identify if the Malop was resolved manually by a user or resolved and mitigated automatically by the Cybereason platform.

20.2.282

Server

N/A

CYBR-40838

NGAV

We have developed a new method of .NET process exclusion to exclude processes that are disrupted by communication with the sensor, for example FSCConfigurationServer.exe (a Microsoft exchange process) or WaAppAgent.exe. For more information, see here.

20.1.502, 20.2.282

Sensor

Windows

Fixed issues

Issue

Area

Description

Versions

Required Update

Sensor OS

CYBR-25988

Investigation

In versions 19.2 and above, on the Investigation screen, the text in the Owner machine and User columns stated the string Element instead of the relevant element type. This issue has been resolved, the correct text is now displayed.

20.1.502, 20.2.282

Server

N/A

CYBR-42101

Investigation

On the Investigation > Process detail screen, in the File section, your environment uses the newer data infrastructure, file extension information was missing. This issue has been resolved.

20.2.282

Server

N/A

CYBR-42175

NGAV

If a full scan took longer than expected (as a result of a low performance machine or large or irregular files), the Cybereason platform considered the scan to be stuck, and stopped the scan prematurely. This issue has been resolved.

20.1.502, 20.2.282

Sensor

Windows

CYBR-42275

Malops management

On environments with with the newer data infrastructure enabled, email notifications for Endpoint Protection Malops were not sent. This issue has been resolved.

20.1.502, 20.2.282

Server

N/A

CYBR-41424

Sensor Management

On the System > Sensors in the Action log drop down list, if you clicked on an action and were taken to the System > Sensor page and applied a sensor policy using the Select all checkbox, the policy was applied to all sensors in the environment and not just the sensors related to the action. This issue has been resolved.

20.1.502, 20.2.282

Server

N/A

CYBR-41679

Syslog

In the Malop syslog (syslog.log), Malops generated for a Detection Event Element contained an incorrect link. This issue has been resolved.

20.2.282

Server

N/A

CYBR-42635

User Management

If you enabled or disabled two-factor authentication for a user from the checkbox on the Users screen, the action was not recorded in the User Audit log (/opt/cybereason/logs/userAuditSyslog.log). This issue has been resolved.

20.1.502, 20.2.282

Server

N/A

CYBR-8354

User Management

If a User admin reset a user’s password, the language settings for that user was also reset. This issue has been resolved.

20.1.502, 20.2.282

Server

N/A

Please see our Legal Disclaimer on links to third party web sites.