<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Secure Endpoint in Endpoint Security</title>
    <link>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4549295#M6662</link>
    <description>Thank you for that detailed explanation.&lt;BR /&gt;I had not considered the potential exposure of documents once sent for&lt;BR /&gt;analysis.&lt;BR /&gt;However, is it not recommended to send automatically for analysis upon&lt;BR /&gt;detection?&lt;BR /&gt;I know it is company-dependent, but is there a benefit of just blocking&lt;BR /&gt;detections without any analysis?&lt;BR /&gt;</description>
    <pubDate>Thu, 10 Feb 2022 04:44:57 GMT</pubDate>
    <dc:creator>larry.siegelman</dc:creator>
    <dc:date>2022-02-10T04:44:57Z</dc:date>
    <item>
      <title>Secure Endpoint &amp; Endpoint Visibility</title>
      <link>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4547534#M6656</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;We would like to distribute Secure Endpoint to other devices that are considered BYOD in our organization.&lt;/P&gt;&lt;P&gt;The issue of privacy concerns popped up, and we need to reassure the end-user of a private device, that Secure Endpoint cannot see files or folders on the device.&lt;/P&gt;</description>
      <pubDate>Tue, 08 Feb 2022 15:16:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4547534#M6656</guid>
      <dc:creator>larry.siegelman</dc:creator>
      <dc:date>2022-02-08T15:16:50Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Endpoint</title>
      <link>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4547627#M6657</link>
      <description>That's just sort of how Secure Endpoint works....&lt;BR /&gt;You can turn off file uploads/retrieval for a group, but when it finds something, it will tell you what and where the file is.&lt;BR /&gt;If you look at device trajectory, it will tell you where a file executed from, what files it created, etc., so there is a certain amount of data that could be extracted from the UI without any "extra" effort...&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;________________________________&lt;BR /&gt;&lt;BR /&gt;This email is intended solely for the use of the individual to whom it is addressed and may contain information that is privileged, confidential or otherwise exempt from disclosure under applicable law. If the reader of this email is not the intended recipient or the employee or agent responsible for delivering the message to the intended recipient, you are hereby notified that any dissemination, distribution, or copying of this communication is strictly prohibited.&lt;BR /&gt;If you have received this communication in error, please immediately notify us by telephone and return the original message to us at the listed email address.&lt;BR /&gt;Thank You.</description>
      <pubDate>Tue, 08 Feb 2022 17:07:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4547627#M6657</guid>
      <dc:creator>Ken Stieers</dc:creator>
      <dc:date>2022-02-08T17:07:13Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Endpoint</title>
      <link>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4547634#M6658</link>
      <description>Hi,&lt;BR /&gt;The identification of suspected malware and the affected file makes sense.&lt;BR /&gt;But, you cannot traverse to other folders to see their contents, correct?&lt;BR /&gt;</description>
      <pubDate>Tue, 08 Feb 2022 17:14:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4547634#M6658</guid>
      <dc:creator>larry.siegelman</dc:creator>
      <dc:date>2022-02-08T17:14:13Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Endpoint</title>
      <link>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4547670#M6659</link>
      <description>You'll also see what's happening on the box, "chrome downloaded a file, Word opened it.", etc.&lt;BR /&gt;But no you can't go generally browsing with just AMP... you could get that info if you enable Orbital.&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Tue, 08 Feb 2022 18:00:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4547670#M6659</guid>
      <dc:creator>Ken Stieers</dc:creator>
      <dc:date>2022-02-08T18:00:14Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Endpoint &amp; Endpoint Visibility</title>
      <link>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4548894#M6660</link>
      <description>&lt;P&gt;BTW, just wanted to mention... even you can query the endpoint and looking for files with Orbital, you cannot view the content of a file...&lt;BR /&gt;Regarding file uploads, Secure Endpoint support PEs only, so Text files or documents will not be uploaded to the File Repository.&lt;BR /&gt;Greetings, Thorsten&lt;/P&gt;</description>
      <pubDate>Wed, 09 Feb 2022 18:10:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4548894#M6660</guid>
      <dc:creator>Troja007</dc:creator>
      <dc:date>2022-02-09T18:10:01Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Endpoint &amp; Endpoint Visibility</title>
      <link>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4548926#M6661</link>
      <description>&lt;P&gt;That is partially correct. There are various methods for files to be pulled into the File Repository. The most common is "Automatic Analysis" which is limited to PE files. However other file types can end up in the File Repository from a request by the user in the Cisco Secure Endpoint console or via an "Automated Action". If the "Submit to Secure Malware Analytics upon Detection" automated action is enabled, it will put the detected file into the File Repository and send it to Cisco Secure Malware Analytics for analysis. Depending on your privacy setting for submission by Cisco Secure Endpoint to Secure Malware Analytics, the analysis results could be available to the "public".&lt;/P&gt;&lt;P&gt;There is the potential for bleeding over user data into the various Cisco Security products.&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Automated Action and User request for .doc* files" style="width: 965px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/143471i083CEE2E8A780D7D/image-size/large?v=v2&amp;amp;px=999" role="button" title="FileRepository.png" alt="Automated Action and User request for .doc* files" /&gt;&lt;span class="lia-inline-image-caption" onclick="event.preventDefault();"&gt;Automated Action and User request for .doc* files&lt;/span&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 09 Feb 2022 18:54:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4548926#M6661</guid>
      <dc:creator>johnosn</dc:creator>
      <dc:date>2022-02-09T18:54:04Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Endpoint</title>
      <link>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4549295#M6662</link>
      <description>Thank you for that detailed explanation.&lt;BR /&gt;I had not considered the potential exposure of documents once sent for&lt;BR /&gt;analysis.&lt;BR /&gt;However, is it not recommended to send automatically for analysis upon&lt;BR /&gt;detection?&lt;BR /&gt;I know it is company-dependent, but is there a benefit of just blocking&lt;BR /&gt;detections without any analysis?&lt;BR /&gt;</description>
      <pubDate>Thu, 10 Feb 2022 04:44:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4549295#M6662</guid>
      <dc:creator>larry.siegelman</dc:creator>
      <dc:date>2022-02-10T04:44:57Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Endpoint &amp; Endpoint Visibility</title>
      <link>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4549426#M6663</link>
      <description>&lt;P&gt;Every Sample submitted to Cisco Secure Malware Analytics gets tagged:&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;•Public –Sample will be visible globally (each user can access all the details of the report)&lt;BR /&gt;•Private –Sample is &lt;U&gt;only&lt;/U&gt; visible to the submitting Organization&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Automated Submissions from an AMP-Enabled Integration are &lt;STRONG&gt;always&lt;/STRONG&gt; marked private&lt;/P&gt;</description>
      <pubDate>Thu, 10 Feb 2022 09:36:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4549426#M6663</guid>
      <dc:creator>Enrico Werner</dc:creator>
      <dc:date>2022-02-10T09:36:21Z</dc:date>
    </item>
    <item>
      <title>Re: Secure Endpoint &amp; Endpoint Visibility</title>
      <link>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4549429#M6664</link>
      <description>&lt;P&gt;Thank you very much&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/323823"&gt;@Enrico Werner&lt;/a&gt;.&lt;/P&gt;&lt;P&gt;That really helps us with privacy and issues related to possible "info bleed."&lt;/P&gt;</description>
      <pubDate>Thu, 10 Feb 2022 09:40:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/secure-endpoint-amp-endpoint-visibility/m-p/4549429#M6664</guid>
      <dc:creator>larry.siegelman</dc:creator>
      <dc:date>2022-02-10T09:40:44Z</dc:date>
    </item>
  </channel>
</rss>

