Server Software and Configuration Services
New cxs v2.02
Changes: Fixed bugs in –decode [file] output report and improved content of the report Exploit fingerprint definitions database additions
Changes: Fixed bugs in –decode [file] output report and improved content of the report Exploit fingerprint definitions database additions
Changes: New Mailscanner v4.83.4:
Changes: Modified –decode [file] and –options [D] to drop privileges to the “nobody” user while running the interactive php interpreter and on the ownership of the decoded file while processing it
Changes: Added new scanning option: cxs Watch. This is an alternative to ftp and web script upload scanning. The cxs Watch daemon uses a separate process to watch entire user accounts for new and modified files and scans them immediately.…
Changes: Fixed html problem viewing Quarantine via the UI in FF4
Changes: Reinstated the Scan Report header for the –all option lost in v1.55 Added new option –www to only scan within the public_html/ directory when using –allusers or –user [user] Exploit regex definitions database additions Exploit fingerprint definitions database additions
Changes: Modified FTP IP Address lookup code to only read the last 64K of the relevant log file, improving lookup speed and resource usage Made LSB compliant Exploit fingerprint definitions database additions
Changes: Added stats workaround for February/March calculations Added new option CC_IGNORE – this Country Code list will prevent lfd from blocking IP address hits for the listed CC’s Reduced CC_* memory usage when loading zones Modified lfd logging for regex.pm…
Changes: Remove RT_POPRELAY_* from csf.conf on DA servers as it does not apply Improved Server Check for cPanel Update configuration check Modifed csf restart to not start bandmin during the stop phase Modified LF_DIRWATCH to remove dependency on File::Type Modified…
Changes: Added a note to the CGI alert email for ModSecurity false-positives where the request body is inspected before Apache has a chance to determine whether the called script exists (i.e. a 404) Added new option –wttw [file] which is…