<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Apple SoftwareUpdate.exe got blocked by Cortex XDR in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/apple-softwareupdate-exe-got-blocked-by-cortex-xdr/m-p/471262#M103077</link>
    <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/199274"&gt;@ReisingerM&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Confirmed false positive.&amp;nbsp; WildFire has indeed updated the status from Malware to Benign.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Cheers,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-Kiwi.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 08 Mar 2022 09:36:52 GMT</pubDate>
    <dc:creator>kiwi</dc:creator>
    <dc:date>2022-03-08T09:36:52Z</dc:date>
    <item>
      <title>Apple SoftwareUpdate.exe got blocked by Cortex XDR</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/apple-softwareupdate-exe-got-blocked-by-cortex-xdr/m-p/471121#M103070</link>
      <description>&lt;P&gt;Hello Palo Community,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;does anybody know why the&amp;nbsp;Apple SoftwareUpdate.exe got blocked by &lt;LI-PRODUCT title="Cortex XDR" id="Cortex_XDR"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;today&lt;/P&gt;&lt;P&gt;Or has someone else also encountered this Problem?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;In the Community section of VirusTotal I discoverd a comment that Palo Alto apperently changed the status at one point, yet i have some triggers with this software that came in today.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;A href="https://www.virustotal.com/gui/file/0682eef4ae722d6dad6b0c41f530d86e44f094f8487105372d5a03e0f0a437e9/community" target="_blank"&gt;https://www.virustotal.com/gui/file/0682eef4ae722d6dad6b0c41f530d86e44f094f8487105372d5a03e0f0a437e9/community&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you in advance,&lt;/P&gt;&lt;P&gt;ReisinM&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 08 Mar 2022 06:46:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/apple-softwareupdate-exe-got-blocked-by-cortex-xdr/m-p/471121#M103070</guid>
      <dc:creator>ReisingerM</dc:creator>
      <dc:date>2022-03-08T06:46:01Z</dc:date>
    </item>
    <item>
      <title>Re: Apple SoftwareUpdate.exe got blocked by Cortex XDR</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/apple-softwareupdate-exe-got-blocked-by-cortex-xdr/m-p/471262#M103077</link>
      <description>&lt;P&gt;Hi &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/199274"&gt;@ReisingerM&lt;/a&gt; ,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Confirmed false positive.&amp;nbsp; WildFire has indeed updated the status from Malware to Benign.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Cheers,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;-Kiwi.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 08 Mar 2022 09:36:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/apple-softwareupdate-exe-got-blocked-by-cortex-xdr/m-p/471262#M103077</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2022-03-08T09:36:52Z</dc:date>
    </item>
    <item>
      <title>Re: Apple SoftwareUpdate.exe got blocked by Cortex XDR</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/apple-softwareupdate-exe-got-blocked-by-cortex-xdr/m-p/471275#M103078</link>
      <description>&lt;P&gt;It is benign software, initally identified as malware.&lt;/P&gt;&lt;P&gt;Same thing happend in the last two days for other software updates, like for Epson and HP:&lt;/P&gt;&lt;P&gt;Initially identified as malicious but then the verdict was reversed a few hours later.&lt;/P&gt;&lt;P&gt;Files had to be released manually and hashes had to be added by hand to the whitelist&lt;/P&gt;</description>
      <pubDate>Tue, 08 Mar 2022 09:48:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/apple-softwareupdate-exe-got-blocked-by-cortex-xdr/m-p/471275#M103078</guid>
      <dc:creator>MartinPfeil</dc:creator>
      <dc:date>2022-03-08T09:48:35Z</dc:date>
    </item>
  </channel>
</rss>

