<?xml version="1.0"?>
<rss version="2.0">
  <channel>
    <title>Sentrigo Security Updates</title>
    <link>http://support.sentrigo.com/</link>
    <description>RSS Feed for the latest Sentrigo Security Updates</description>
    <language>en-us</language>
    <pubDate>Mon, 30 Aug 10 11:51:22 +0000</pubDate>
    <lastBuildDate>Mon, 30 Aug 10 11:51:22 +0000</lastBuildDate>
    <ttl>60</ttl>
	
	<item>
	 <title>Security Update 4.0.2</title>
	 <link>http://updates.sentrigo.com/security/predefined-4.0.2-1139.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 4.0.2
</p>
This Security Update is a maintenance update.<br />
<ul><li>Rules 1836 and 1837 were improved to reduce false alerts.</li><li>Rules 1830 and 6225 were improved to extend their coverage.</li></ul>Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Thu, 26 Aug 10 16:20:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-4.0.2-1139.sup</guid>
    	</item>
	
	<item>
	 <title>Security Update 4.0.1</title>
	 <link>http://updates.sentrigo.com/security/predefined-4.0.1-1128.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 4.0.1
</p>
This Security Update contains a new rule for a 0-day vulnerability, as well as
maintenance updates.<br />
<ul><li>Rule 6270 was added to protect against a 0-day vulnerability not yet fixed by Oracle.</li><li>Rule 1017 was split from 1015 to better detect attacks and reduce false alerts.</li><li>Rules 1836, 1837 and 6264 were improved to reduce false alerts.</li><li>The coverage of these rules was improved: 5510, 5520, 5530, 5540, 5550, 5560, 5570, 5700, 5710, 5720.</li></ul>Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Sun, 08 Aug 10 12:09:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-4.0.1-1128.sup</guid>
	</item>

	<item>
	 <title>Security Update 4.0.0</title>
	 <link>http://updates.sentrigo.com/security/predefined-4.0.0-1118.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 4.0.0
</p>
This Security Update contains many new protections and several
maintenance updates.<br />
<ul>
<li>11 rules were added to protect against some patched and some 0-day vulnerabilities:</li><ul><li>1015</li><li>6266</li><li>6268</li><li>7834</li><li>7836</li><li>7838</li><li>7840</li><li>7842</li><li>7844</li><li>7846</li><li>7848</li></ul>
<li>Rule 6030 was updated for maintenance.</li>
</ul>
<br />
Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Wed, 21 Jul 10 13:44:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-4.0.0-1118.sup</guid>
	</item>

	<item>
	 <title>Security Update 3.5.7</title>
	 <link>http://updates.sentrigo.com/security/predefined-3.5.7-1109.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 3.5.7
</p>This Security Update includes Virtual Patches for Oracle's Critical 
Patch Update (CPU) of July 2010.
<ul>
<li>Rule 6264 was added to address a newly disclosed vulnerability in Oracle
 databases.</li>
<li>Rule 6256 was already in place to protect 
Hedgehog users from vulnerabilities patched in this CPU.</li><li>Rule 1880 was updated for maintenance.</li>
</ul><br />
Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Fri, 16 Jul 10 16:18:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-3.5.7-1109.sup</guid>
	</item>

	<item>
	 <title>Security Update 3.5.6</title>
	 <link>http://updates.sentrigo.com/security/predefined-3.5.6-1055.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 3.5.6
</p>
This Security Update contains a new rule for a 0-day vulnerability, as well as
maintenance updates.<br />
<ul><li>Rule 6262 was added to protect against a 0-day vulnerability not yet fixed by Oracle.</li><li>Rules 5584 and 5586 were improved to reduce false alerts.</li></ul>Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Sun, 30 May 10 15:39:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-3.5.6-1055.sup</guid>
	</item>

	<item>
	 <title>Security Update 3.5.5</title>
	 <link>http://updates.sentrigo.com/security/predefined-3.5.5-1040.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 3.5.5
</p>
This Security Update contains additional and improved protections for recent Oracle CPUs, as well as
maintenance updates.<br />
<ul>
<li>Rule 6258 was added to protect against an issue patched in the April 2010 CPU.</li><li>Rule 6260 was added to protect against a 0-day vulnerability reported to Oracle by Sentrigo.</li><li>Rules 1830, 5586, 5590 and 6254 were improved to reduce false alerts and increase coverage.</li><li>Alert level has been tuned in rules 5590, 5700 and 5730.</li><li>Rule 6224 has been renumbered 6225 in Server versions 3.5.2 and above.</li></ul><br />
Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Thu, 20 May 10 15:23:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-3.5.5-1040.sup</guid>
	</item>

	<item>
	 <title>Security Update 3.5.4</title>
	 <link>http://updates.sentrigo.com/security/predefined-3.5.4-1022.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 3.5.4
</p>This Security Update includes Virtual Patches for Oracle's Critical 
Patch Update (CPU) of April 2010.
<ul>
<li>Rules 6248, 6250 and 6252 were already in place to protect 
Hedgehog users from vulnerabilities patched in this CPU.</li>
<li>Rule 6256 was added to address a newly disclosed vulnerability in Oracle
 databases.</li>
</ul><br />
Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Sun, 18 Apr 10 17:32:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-3.5.4-1022.sup</guid>
	</item>

	<item>
	 <title>Security Update 3.5.3</title>
	 <link>http://updates.sentrigo.com/security/predefined-3.5.3-1012.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 3.5.3
</p>
This Security Update contains many new protections, as well as
maintenance updates.<br />
<ul>
<li>The following rules were added to protect against known
vulnerabilities: 1046,
1090, 1110, 1224, 1349, 1351, 1372, 5060,
6101, 6103, 6105, 6111, 6113 and 6115.</li>
<li>Numerous rules have been modified to improve their coverage and reduce false alerts.</li>
<li>Numerous rules have been modified to clarify their
description.</li></ul><br />
Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Sun, 28 Mar 10 17:45:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-3.5.3-1012.sup</guid>
	</item>

	<item>
	 <title>Security Update 3.5.2</title>
	 <link>http://updates.sentrigo.com/security/predefined-3.5.2-989.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 3.5.2
</p>
This Security Update includes Virtual Patches for Oracle's Critical Patch Update (CPU) of January 2010.<br />
<ul>
<li>Rules 1092, 1118, 1120 and 6224 were already in place to protect Hedgehog users from vulnerabilities patched in this CPU.</li><li>Rule 6254 was added to address a newly disclosed vulnerability in Oracle databases.</li><li>Rules 210, 1106, 1206, 1208 and 5560 were updated for maintenance.</li></ul>
<br />
Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Thu, 14 Jan 10 15:02:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-3.5.2-989.sup</guid>
	</item>

	<item>
	 <title>Security Update 3.5.1</title>
	 <link>http://updates.sentrigo.com/security/predefined-3.5.1-983.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 3.5.1
</p>
This Security Update contains many new protections, as well as
maintenance updates.<br />
<ul>
<li>The following rules were added to protect against known and
0-day vulnerabilities: 1113,
1157, 1366, 1368, 1370, 1837, 1842, 2142, 
6242, 6244, 6246, 6248, 6250 and 6252.</li><li>Numerous rules have been modified to improve their coverage.</li><li>Numerous rules have been modified to clarify their description.</li><li>On Hedgehog Server versions 3.5.1 and later, rule 1837 was added. This rule is very useful in detecting general (even 0-day) SQL Injection attacks,
but may adversely affect system performance. For this reason, rule 1837
is disabled by default, and may be enabled by users who wish to
activate it.</li>
</ul>
<br />
Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Sun, 10 Jan 10 12:44:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-3.5.1-983.sup</guid>
	</item>

	<item>
	 <title>Security Update 3.5.0</title>
	 <link>http://updates.sentrigo.com/security/predefined-3.5.0-902.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 3.5.0
</p>
<span id="If_45">This Security Update
includes more Virtual Patches for Oracle's October 2009 CPU.
<ul>
<li>Rules 6238 and 6240 were added to address remaining
vulnerabilities disclosed in the CPU</li>
<li>Rules 2140, 6234 and 6236 were added to address
publicly-known attack vectors</li>
<li>Rule 5590 was updated to improve its ability to identify
attacks</li>
</ul>
</span>Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Wed, 04 Nov 09 13:34:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-3.5.0-902.sup</guid>
	</item>

	<item>
	 <title>Security Update 3.0.2</title>
	 <link>http://updates.sentrigo.com/security/predefined-3.0.2-887.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 3.0.2
</p><span id="If_45">This Security Update
includes Virtual Patches for Oracle's October 2009 CPU.
<ul><li>Rules 6226, 6228, 6230 and 6232 were added to address newly disclosed vulnerabilities in Oracle databases</li><li>Rules 1112, 6214 and 6216 were already in place to protect Hedgehog users from vulnerabilities patched in this CPU</li><li>Rules 1158, 1166, 5540, 5550 and 6128 were updated to improve their coverage</li></ul></span>
</div>]]></description>
	 <pubDate>Thu, 22 Oct 09 09:41:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-3.0.2-887.sup</guid>
	</item>

	<item>
	 <title>Security Update 3.0.1</title>
	 <link>http://updates.sentrigo.com/security/predefined-3.0.1-876.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 3.0.1
</p>
This security update introduces many new and improved vPatch rules. In
this
update:<br />
<ul>
<li>27 new rules were introduced to detect attacks and
suspicious activity.</li>
<li>The existing rules were optimized for performance and
effectiveness.</li>
<li>A few rules underwent minor maintenance updates.</li>
</ul>
Previous release notes can be found <a href="http://www.sentrigo.com/resources/sentrigos-red-team#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Mon, 05 Oct 09 09:20:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-3.0.1-876.sup</guid>
	</item>

	<item>
	 <title>Security Update 3.0.0</title>
	 <link>http://updates.sentrigo.com/security/predefined-3.0.0-781.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 3.0.0
</p>
This is a maintenance update of the vPatch rules. In this
update:<br />
<ul>
<li>The rules were streamlined and optimized for accuracy and
performance.</li>
<li>The names of the rules were clarified to better reflect
their meaning.</li>
<li>The tags attached to the rules were standardized and made
easier to use. <a href="https://support.sentrigo.com/forum/viewtopic.php?f=6&amp;t=58" target="_blank">More on predefined tags...</a></li>
<li>The following rules have been consolidated:</li>
<ul>
<li>Rule 1124 was merged into rule 1096.</li>
<li>Rule 1134 was merged into rule 1060.</li>
<li>Rule 2100 was merged into rule 2090.</li>
<li>Rule 7000 was merged into rule 5010.</li>
<li>Rule 7010 was merged into rule 5040.</li>
</ul>
</ul>
<br />
Previous release notes can be found <a href="http://www.sentrigo.com/resources/red-team-security-updates#Release_notes" target="_blank">here</a>.
</div>]]></description>
	 <pubDate>Wed, 12 Aug 09 14:31:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-3.0.0-781.sup</guid>
	</item>

	<item>
	 <title>Security Update 2.5.3</title>
	 <link>http://updates.sentrigo.com/security/predefined-2.5.3-749.sup</link>
	 <description><![CDATA[<div style="color: rgb(31, 73, 125);">
<p style="font-weight: bold;" class="MsoNormal">Sentrigo
Security Update 2.5.3
</p><span id="If_45">This Security Update
includes Virtual Patches for Oracle's July 2009 CPU.
<ul><li>Rules 5580, 5582, 6030, 6210, 6212, 6214 and 6216 were added, to address advanced
exploits of Oracle databases</li><li>Rules 1012, 1056 and 6202 were already in place to protect Hedgehog users from vulnerabilities patched in this CPU</li><li>Rules 1083, 1096, 5670, 6000,&nbsp;6010 and 6020 were updated for maintenance</li></ul></span>
</div>]]></description>
	 <pubDate>Thu, 16 Jul 09 10:10:00 +0000</pubDate>
	 <guid>http://updates.sentrigo.com/security/predefined-2.5.3-749.sup</guid>
	</item>
  </channel>
</rss>