Thanks again for everyone who attended OSSEC Con 2018, it was fantastic meeting everyone and hearing how you’re using OSSEC. I’d especially like to thank our sponsors: Virgil Security, Prometheus Global, Atomicorp and Cyber Academy. We’ve got some really exciting changes coming up soon! We’ve started collecting the slides from the show here: https://atomicorp.com/ossec-conference-2018/ Want […]
Changelog Release Maintainers Dan Parriott Scott R. Shinn (Atomicorp, Inc.) Whats New Updated rootcheck audit db’s Updated GeoIP support New Rules / Decoders Fixed Windows decoders PR #980: Update for vsftp rules / decoders General PR #1108: Implement GeoIP checks in Groups and Events PR #1136: Fix for mysql building PR #1144: Fixes Issue #1142 […]
Changelog Release Maintainers Dan Parriott Scott R. Shinn (Atomicorp, Inc.) Whats New Alert Output support for JSON and ZeroMQ Syscheck improvements Report file deletion, even without realtime enabled Report modifications made on directories Corrects bug so that files created between the first and second scan are reported as new files Corrects bug that made changes […]
This release marks our first (and possibly only if all goes well) release candidate for OSSEC 2.9. Assuming no issues are reported, this release will become the final OSSEC release. Now is when we need really your help! As a community driven project, we need all the testing a release this size can get. Let […]
This release marks our official code freeze for 2.9, from here on out we will only be accepting bug fixes to the 2.9 branch. Now is when we need your help! As a community driven project, we need all the testing a release this size can get. Let us know in the OSSEC mailing list, […]
The CVE-2015-3222 vulnerability, which allows for root escalation via syscheck has been fixed in OSSEC 2.8.2. Full details of the issue can be found on the OSSEC Github repository – https://github.com/ossec/ossec-hids/releases/tag/2.8.2.
OSSEC 2.8.1 has been released to address the security issue identified by Jeff Petersen of Roka Security LLC. Full details of the issue can be found on the OSSEC Github repository – https://github.com/ossec/ossec-hids/releases/tag/2.8.1. This correction will create the temp file for the hosts deny file in /var/ossec and will use mktemp where available to create […]