Bitdefender Tech News

Security Advisory: Bitdefender Response to Critical Zero-Day Apache Log4j2 Vulnerability 12-11-2021

As normal Bitdefender is on top of this:

Link for Article

On December 9, 2021, Apache disclosed CVE-2021-44228, a remote code execution vulnerability – assigned with a severity of 10 (the highest possible risk score) – affecting Apache Log4j2, a Java-based logging framework widely used in commercial and open-source software products. The vulnerability affects versions 2.0 through 2.14.1; version 2.15.0 is not vulnerable.  

Bitdefender is already seeing and monitoring several malicious actors running active exploitation campaigns. 

The CVE-2021-44228 vulnerability has been assigned the highest possible risk score (CVSS 10) due to its exploitation impact (ability to remotely execute code on targeted hosts). Likely, this vulnerability will linger in computing infrastructures for an extensive period of time due to the widespread use of the Log4j2 logging framework. It is important to note this vulnerability is easy to exploit and applications using the affected Log4j2 versions are subject to an extensive attack surface. Immediate action is advisable.

Double check you other Vendors and RMM systems or remote Control programs

Roy Miehe | MspPortal Partners Inc. | Ceo/President

Bitdefender /MSP  – Distributor

“Where Service and Technical Skills Count”

Bitdefender Endpoint Security for Mac 7.2.6.200021 and 7.4.8.200006 Release Notes – Fast Ring

Hello everyone,

Bitdefender has today released on fast ring the following versions of Endpoint Security for Mac:
• Version 7.2.6.200021 – enables migration to 7.4.8.200006.
• Version 7.4.8.200006 – brings new features, improvements and bug fixes. It requires 7.2.6.200021.
The release notes are available here (English only) (https://www.bitdefender.com/business/support/en/77209-78218-macos-agent.html).

Should you have any questions or suggestions regarding the GravityZone technical documentation, please contact us (gravityzone-docs@bitdefender.com).

Thank you,
Roy Miehe | MspPortal Partners Inc. | Ceo/President
Bitdefender /MSP – Distributor
“Where Service and Technical Skills Count”

Update to Bitdefender email alerts 9-29-2021

Bitdefender still struggling with email alerts follow up on
Yesterday when I reported to you
I reported the case early this morning 9-28-2021 with no response yet (Case ID 00610932). Probably do to the fact that Intuit bought mail chimp (mail broadcast)..As of today 9-29-2021 there is still no resolution. Should probably switch to smtp2go I made that suggestion to them

Solution just to make sure you are protected run 3 reports and set them up daily till Bitdefender can fix the mail issue
Report 1 Malware Status Report
Report 2 HyperDetect Activity Report
Report 1 Executive Summary Report

Bitdefender struggling with email alerts

I reported the case early this morning with no response yet (Case ID 00610932). Probably do to the fact that Intuit bought mail chimp (mail broadcast)

Make sure you review the dashboard alert section important. Send an email for update to (goldsupport@bitdefender.com) if you have questions

Roy Miehe | MspPortal Partners Inc. | Ceo/President Bitdefender /Distributor “Where Service and Technical Skills Count”

MspPortal Partners will be offering to all partners a Bitdefender Gravity Zone Policy review and update

MspPortal Partners

Will be offering to all partners a Bitdefender Gravity Zone Policy review and update

Free of charge

This will only be offered to MspPortal Partners for a limited time through the middle of October 2021 on Tuesdays and Thursdays from 8 am to 11:30 am MST/NO DST

If you are not one of the 425 partners you are more than welcome to change out your existing Distributor/Partner

Existing partners and new partners are welcome go to the website www.mspportalpartners.net and fill out the contact form

MspPortal Partners specializes in Bitdefender Gravity Zone Malware protection

Roy Miehe | MspPortal Partners Inc. | Ceo/President

Bitdefender / Distributor

“Where Service and Technical Skills Count”

Bitdefender Requirement Important

Please read your Security Alerts:

Deployments have reached Customer’s maximum license limit:

Notification Details:

The Customer company XYZ FD has reached the maximum number of endpoints protected by the license key (Company Key).
To protect more endpoints for this company, you should extend its service subscription or add more licenses.
Otherwise your endpoints will not be protected and are subject to malware

Windows Print Spooler Remote Code Execution Vulnerability

MspPortal Reported the issue on 7-7-2021

For PrintNightmare we currently have the following detections live:
Exploit.RPRN.CVE-2021-1675.PrintNightmare — from our NAD module (I know the CVE in the name differs, but it still detects the attack)
Alert.RPRN.AddPrinterDriver — from our EDR module
We are also working on detection from our behavioral engine. However, that will take a bit more time as it requires extensive testing but will be available soon.

 

Solution 7-12 Bitdefender Solved the issue

Bitdefender technologies will now protect against this vulnerability. 

Bitdefender Email Alerts on Gravity Zone Important

Folks if you are not receiving Bitdefender Alerts

Please send an email to goldsupport@bitdefender.com

Subject Line: Not receiving Bitdefender Mail Alerts Important You should receive a response with a case number

** Importance to this is alerting you folks as to Incidents occurring in Gravity Zone -> whatever you have chosen to receive alerts on**

I have already made Development aware of this issue