<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FP on Microsoft Edge update? in Endpoint Security</title>
    <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813888#M7456</link>
    <description>&lt;P&gt;Does this have anything to do with the &lt;STRONG&gt;Cisco-Maintained Exclusion list&lt;/STRONG&gt; changes that were done yesterday?&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 13 Apr 2023 15:44:57 GMT</pubDate>
    <dc:creator>magragen</dc:creator>
    <dc:date>2023-04-13T15:44:57Z</dc:date>
    <item>
      <title>FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813733#M7442</link>
      <description>&lt;P&gt;Hey guys,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Anyone else seeing this:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;&lt;STRONG&gt;Detection:&lt;/STRONG&gt; W32.082827C4A5.RET.SBX.TG&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;File:&lt;/STRONG&gt; MicrosoftEdge_X64_112.0.1722.39_112.0.1722.34.exe&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;File path:&lt;/STRONG&gt; file:///C%3A/Program%20Files%20%28x86%29/Microsoft/EdgeUpdate/Install/%7BBEA8EA03-94F9-45AB-AC52-0309F5FD1DF3%7D/MicrosoftEdge_X64_112.0.1722.39_112.0.1722.34.exe&lt;/LI&gt;
&lt;LI&gt;&lt;STRONG&gt;Detection SHA-256:&lt;/STRONG&gt; 082827c4a5582f887901c4cce83a1aa9b8a4eb23835a434fc104bba745172a85&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Feels like an FP to me.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Ken&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 13:29:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813733#M7442</guid>
      <dc:creator>Ken Stieers</dc:creator>
      <dc:date>2023-04-13T13:29:03Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813749#M7443</link>
      <description>&lt;P&gt;We are also seeing a large number of these this morning.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 13:49:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813749#M7443</guid>
      <dc:creator>jeremy.peace-hall</dc:creator>
      <dc:date>2023-04-13T13:49:19Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813755#M7444</link>
      <description>&lt;P&gt;Our team is actively looking on this SHA-256 investigation to either discard if it is a FP event or not. Thank you for sharing.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 13:53:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813755#M7444</guid>
      <dc:creator>pmedinac</dc:creator>
      <dc:date>2023-04-13T13:53:47Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813807#M7445</link>
      <description>&lt;P&gt;Just got FP confirmation from a Cisco Secure Endpoint announcement email about 15 minutes ago.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 14:40:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813807#M7445</guid>
      <dc:creator>ac513</dc:creator>
      <dc:date>2023-04-13T14:40:41Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813811#M7446</link>
      <description>&lt;P&gt;Hey,,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This SHA-256 is already marked as clean after analysis:&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;SHA-256: 082827c4a5582f887901c4cce83a1aa9b8a4eb23835a434fc104bba745172a85&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;You should see the alerts stop during the next minutes/hours, as soon as the endpoints receive the latest definition updates.&lt;/P&gt;
&lt;P&gt;--&lt;/P&gt;
&lt;P&gt;Pedro M.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 14:43:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813811#M7446</guid>
      <dc:creator>pmedinac</dc:creator>
      <dc:date>2023-04-13T14:43:08Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813817#M7447</link>
      <description>&lt;P&gt;Hi pmedinac&lt;/P&gt;&lt;P&gt;also seeing alerts on&amp;nbsp;975c0d48c41d2ad76a242d5f7270f4bf8063bb9c753b375ab2c47c9e2060f562. Same/similar issue?&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 14:49:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813817#M7447</guid>
      <dc:creator>keitha</dc:creator>
      <dc:date>2023-04-13T14:49:20Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813819#M7448</link>
      <description>Just got that one too...&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 13 Apr 2023 14:52:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813819#M7448</guid>
      <dc:creator>Ken Stieers</dc:creator>
      <dc:date>2023-04-13T14:52:27Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813820#M7449</link>
      <description>&lt;P&gt;Also seeing this SHA-256 detection on our Firepower appliances&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 14:53:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813820#M7449</guid>
      <dc:creator>jeremy.peace-hall</dc:creator>
      <dc:date>2023-04-13T14:53:28Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813837#M7450</link>
      <description>My TAC engineer says Talos just poked that one clean too.&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 13 Apr 2023 15:05:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813837#M7450</guid>
      <dc:creator>Ken Stieers</dc:creator>
      <dc:date>2023-04-13T15:05:27Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813846#M7452</link>
      <description>&lt;P&gt;Yeap, I double check and that one (&lt;SPAN&gt;975c0d48c41d2ad76a242d5f7270f4bf8063bb9c753b375ab2c47c9e2060f562&lt;/SPAN&gt;) was is also Clean.&lt;/P&gt;
&lt;P&gt;Same as the other, it may take some time to get the endpoint updates to stop alerts.&lt;/P&gt;
&lt;P&gt;Greetings.&lt;/P&gt;
&lt;P&gt;--&lt;/P&gt;
&lt;P&gt;Pedro M.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 15:11:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813846#M7452</guid>
      <dc:creator>pmedinac</dc:creator>
      <dc:date>2023-04-13T15:11:11Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813875#M7454</link>
      <description>&lt;P&gt;Same issue.&amp;nbsp; Do we still need to whitelist the SHA256?&amp;nbsp; Or has Cisco corrected the behavior detection?&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 15:32:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813875#M7454</guid>
      <dc:creator>mski7861</dc:creator>
      <dc:date>2023-04-13T15:32:40Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813878#M7455</link>
      <description>&lt;P&gt;This is already corrected, the endpoints may take some time to get the latest update.&lt;/P&gt;
&lt;P&gt;--&lt;/P&gt;
&lt;P&gt;Pedro M.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 15:35:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813878#M7455</guid>
      <dc:creator>pmedinac</dc:creator>
      <dc:date>2023-04-13T15:35:50Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813888#M7456</link>
      <description>&lt;P&gt;Does this have anything to do with the &lt;STRONG&gt;Cisco-Maintained Exclusion list&lt;/STRONG&gt; changes that were done yesterday?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 15:44:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813888#M7456</guid>
      <dc:creator>magragen</dc:creator>
      <dc:date>2023-04-13T15:44:57Z</dc:date>
    </item>
    <item>
      <title>Re: FP on Microsoft Edge update?</title>
      <link>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813905#M7457</link>
      <description>&lt;P&gt;Nope, this has nothing related to the Cisco-Maintained Exclusion list modified yesterday.&lt;/P&gt;
&lt;P&gt;This is just an incorrect conviction that has been fixed at the moment.&lt;/P&gt;
&lt;P&gt;--&lt;/P&gt;
&lt;P&gt;Pedro M.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Apr 2023 16:03:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/fp-on-microsoft-edge-update/m-p/4813905#M7457</guid>
      <dc:creator>pmedinac</dc:creator>
      <dc:date>2023-04-13T16:03:40Z</dc:date>
    </item>
  </channel>
</rss>

