<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Whitelist our backup software in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/whitelist-our-backup-software/m-p/585999#M6644</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/1379254235"&gt;@Dav_ArxOne&lt;/a&gt;, thanks for reaching us.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The software might be detected due to his behavior on the endpoints, but as in many other cases that doesn't mean it is a real threat.&lt;/P&gt;
&lt;P&gt;If a customer with Cortex XDR agents running finds that the software is blocked, they can create exceptions to allow it, even allow all the signatures to run no matter which executable file is running. Then they can create an internal technical case to let our product team know that there is a false positive and it will be updated after the analysis.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If this post answers your question, please mark it as the solution.&lt;/P&gt;</description>
    <pubDate>Tue, 07 May 2024 12:20:25 GMT</pubDate>
    <dc:creator>jmazzeo</dc:creator>
    <dc:date>2024-05-07T12:20:25Z</dc:date>
    <item>
      <title>Whitelist our backup software</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/whitelist-our-backup-software/m-p/585861#M6640</link>
      <description>&lt;P&gt;Hello,&lt;BR /&gt;I do represent a company called Arx One. We have been publishing a backup software suite (backup agent, agent management console) for more than 15 years now and those software are installed on our customers' workstations, servers or NAS (Windows, Linux, MacOS, Synology and QNAP).&lt;/P&gt;
&lt;P&gt;We recently discovered through a VirusTotal analyse that your antivirus was considering our software as a virus.&lt;BR /&gt;Could you please register our products on your whitelist to fix this situation ?&lt;BR /&gt;As we publish updates from time to time you can also whitelist our code signing.&lt;/P&gt;
&lt;P&gt;Websites: &lt;A href="https://arxone.com/" target="_blank"&gt;https://arxone.com/&lt;/A&gt; and &lt;A href="https://arx.one/" target="_blank"&gt;https://arx.one/&lt;/A&gt;&lt;BR /&gt;Download page: &lt;A href="https://www.arxone.com/downloads" target="_blank"&gt;https://www.arxone.com/downloads&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Direct download links:&lt;BR /&gt;Backup Agent - Windows : &lt;A href="http://get.arx.one/backup?os=windows&amp;amp;channel=stable" target="_blank"&gt;http://get.arx.one/backup?os=windows&amp;amp;channel=stable&lt;/A&gt;&lt;BR /&gt;Backup Agent Management Console - Windows : &lt;A href="http://get.arx.one/backupui?os=windows&amp;amp;channel=stable" target="_blank"&gt;http://get.arx.one/backupui?os=windows&amp;amp;channel=stable&lt;/A&gt;&lt;BR /&gt;Backup Agent - Windows (pre-release) : &lt;A href="http://get.arx.one/backup?os=windows&amp;amp;channel=testing" target="_blank"&gt;http://get.arx.one/backup?os=windows&amp;amp;channel=testing&lt;/A&gt;&lt;BR /&gt;Backup Agent - macOS (pre-release) : &lt;A href="http://get.arx.one/backup?os=macos&amp;amp;channel=testing" target="_blank"&gt;http://get.arx.one/backup?os=macos&amp;amp;channel=testing&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;The troublesome analysis was done with the Windows pre-release version. As our code signing certificate was changed recently, this might be the cause of our problem...&lt;/P&gt;
&lt;P&gt;You can reach us using the address backup@arx.one or at this phone number : (+33) 09 72 134 990&lt;/P&gt;
&lt;P&gt;Best regards,&lt;/P&gt;</description>
      <pubDate>Mon, 06 May 2024 13:26:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/whitelist-our-backup-software/m-p/585861#M6640</guid>
      <dc:creator>Dav_ArxOne</dc:creator>
      <dc:date>2024-05-06T13:26:41Z</dc:date>
    </item>
    <item>
      <title>Re: Whitelist our backup software</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/whitelist-our-backup-software/m-p/585999#M6644</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/1379254235"&gt;@Dav_ArxOne&lt;/a&gt;, thanks for reaching us.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The software might be detected due to his behavior on the endpoints, but as in many other cases that doesn't mean it is a real threat.&lt;/P&gt;
&lt;P&gt;If a customer with Cortex XDR agents running finds that the software is blocked, they can create exceptions to allow it, even allow all the signatures to run no matter which executable file is running. Then they can create an internal technical case to let our product team know that there is a false positive and it will be updated after the analysis.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If this post answers your question, please mark it as the solution.&lt;/P&gt;</description>
      <pubDate>Tue, 07 May 2024 12:20:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/whitelist-our-backup-software/m-p/585999#M6644</guid>
      <dc:creator>jmazzeo</dc:creator>
      <dc:date>2024-05-07T12:20:25Z</dc:date>
    </item>
  </channel>
</rss>

