Contents and detection

A list of the improvements for the Contents and Detection that have been introduced in this release.

  • Improved the SIGN:CLEARTEXT-PASSWORD alert to include a plain text password transmitted on Telnet sessions.
  • To ensure consistent policy enforcement, the Learning section in the Security Control Panel is now locked when the sensor is managed by Vantage. This aligns its behavior with the Security Profile and supports centralized configuration control.
  • Implemented a new detection algorithm that enhances the precision of transmission control protocol (TCP) flooding alerts and reduces false positives.
  • Added support for alert rules that match text within the alert description.
  • The expert view of the Alerts table now displays a Creation time column, representing the timestamp of the first occurrence of each alert.