{"id":16667,"date":"2019-10-22T23:20:53","date_gmt":"2019-10-23T07:20:53","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2019\/10\/22\/news-10406\/"},"modified":"2019-10-22T23:20:53","modified_gmt":"2019-10-23T07:20:53","slug":"news-10406","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2019\/10\/22\/news-10406\/","title":{"rendered":"Enhanced protection comes to Intercept X"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/sophos.files.wordpress.com\/2019\/09\/sophos-intercept-x.png\"\/><\/p>\n<p><strong>Credit to Author: Alex Gardner| Date: Tue, 22 Oct 2019 21:22:59 +0000<\/strong><\/p>\n<div class=\"entry-content\">\n<p>Intercept X has launched a new <a href=\"https:\/\/community.sophos.com\/products\/intercept\/early-access-program\/?cmp=26104\">early access program (EAP)<\/a> that brings protection enhancements including Anti-Malware Scanning Interface Protection (AMSI) and Malicious Network Traffic Protection.<\/p>\n<p>AMSI is a Microsoft interface in Windows 10, Windows Server 2016 and later that allows for the scanning of script files even when obfuscated, as well as .NET 4.8 assemblies.<\/p>\n<p>Obfuscated PowerShell scripts are a very common method for attackers to compromise systems. By leveraging AMSI Intercept X gets even better at detecting and blocking these attacks.<\/p>\n<p>Malicious Network Traffic Protection, also known as Intrusion Prevention System (IPS), scans inbound and outbound traffic for malicious attack patterns, with rules based on Snort methodology.<\/p>\n<p>This helps in several key ways, for example, if an employee takes their laptop to a caf\u00e9 where they have no firewall protection, IPS will identify and block malicious traffic patterns. Outbound traffic scanning also helps block lateral movement from a compromised device, stopping the threat from spreading across the network.<\/p>\n<p>The EAP is open right now and available to everyone using Intercept X Advanced and Central Endpoint Protection. Support for Intercept X for Server Advanced will be added during the EAP. To join head over to the <a href=\"https:\/\/community.sophos.com\/products\/intercept\/early-access-program\/?cmp=26104\">community page<\/a>.<\/p>\n<\/p><\/div>\n<p><a href=\"http:\/\/feedproxy.google.com\/~r\/sophos\/dgdY\/~3\/uD7IhjfMW9U\/\" target=\"bwo\" >http:\/\/feeds.feedburner.com\/sophos\/dgdY<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/sophos.files.wordpress.com\/2019\/09\/sophos-intercept-x.png\"\/><\/p>\n<p><strong>Credit to Author: Alex Gardner| Date: Tue, 22 Oct 2019 21:22:59 +0000<\/strong><\/p>\n<p>The Intercept X Enhanced Protection early access program is here &#8211; try it out and have your say.&lt;img src=&#8221;http:\/\/feeds.feedburner.com\/~r\/sophos\/dgdY\/~4\/uD7IhjfMW9U&#8221; height=&#8221;1&#8243; width=&#8221;1&#8243; alt=&#8221;&#8221;\/&gt;<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10378,10377],"tags":[10379,18663,10401,10405],"class_list":["post-16667","post","type-post","status-publish","format-standard","hentry","category-security","category-sophos","tag-corporate","tag-early-access-program","tag-enduser","tag-intercept-x"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/16667","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=16667"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/16667\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=16667"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=16667"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=16667"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}