Category: Uncategorized

  • Sophos Firewall v22 is now available

    Sophos Firewall v22 is now available


    The product team is pleased to announce that Sophos Firewall v22 is now generally available. This update brings several Secure by Design enhancements and many of your top requested features.

    Secure by Design

    Over the last several weeks, we’ve covered the importance of Secure by Design principles and why we need secure products as much as we need security products. Sophos Firewall v22 builds on the many security and hardening enhancements from previous releases to take Secure by Design to whole new level.

    Watch this video for a quick overview of what’s new:

    Sophos Firewall Health Check

    A strong security posture depends on ensuring your firewall is optimally configured. Sophos Firewall v22 makes it much easier to evaluate and address the configuration of your firewall with the new Health Check feature.

    This new feature evaluates dozens of different configuration settings on your firewall and compares them with CIS benchmarks and other best practices, providing immediate insights to areas that may be at risk. It will identify all high-risk settings and provide recommendations with quick drill-down to the areas of concern so you can easily address them.

    The Health Check status is displayed on a new Control Center widget and a full report is available under the “Firewall health check” main menu item.

    Watch this video to see how to make the most of this new feature.

    Other Secure by Design enhancements

    Next-Gen Xstream architecture

    Introducing an all-new control plane re-architected for maximum security and scalability that will take us into the future. The new control plane enables modularization, isolation, and containerization of services like IPS for example, to run like “apps” on the firewall platform.

    It also enables complete separation of privileges for added security. In addition, high-availability deployments now benefit from a self-healing capability that is continuously monitoring system state and fixes deviations between devices automatically.

    Hardened kernel

    The next-gen Xstream Architecture in Sophos Firewall OS is built upon a new hardened kernel (v6.6+) that provides enhanced security, performance, and scalability.

    The new kernel offers tighter process isolation and better mitigation for side-channel attacks as well as mitigations for CPU vulnerabilities (Spectre, Meltdown, L1TF, MDS, Retbleed, ZenBleed, Downfall). It also offers hardened usercopy, stack canaries, and Kernel Address Space Layout Randomization (KASLR).

    Remote integrity monitoring

    Sophos Firewall OS v22 now integrates our Sophos XDR Linux Sensor that enables real-time monitoring of system integrity, including unauthorized configuration, rule exports, malicious program execution attempts, file tampering, and more.

    This helps our security teams – who are proactively monitoring our entire Sophos Firewall install base – to better identify, investigate, and respond more quickly to any attack. This is an added security capability that no other firewall vendor provides.

    New anti-malware engine

    Sophos Firewall OS v22 integrates the latest Sophos anti-malware engine with enhanced zero-day real-time detection of emerging threats using global reputation lookups.

    It takes full advantage of SophosLabs’ massive cloud database of known malicious files, updated every five minutes or less. It also introduces AI and ML model detections and delivers enhanced telemetry to SophosLabs for accelerating their emerging threat detection analysis.

    Other security and scalability enhancements:

    • Firmware updates via SSL and certificate pinning ensures authenticity
    • Active Threat Response logging improvements enhance visibility
    • NDR Essentials threat score is included in Logs for added insights
    • NDR Essentials data center selection for data residency requirements
    • Instant web category alerts for education institutions
    • XML API access control enhancements with added granularity
    • TLS 1.3 support for device access for the WebAdmin console and portals

    Top requested features and quality of life enhancements:

    • Enhanced navigation performance
    • Hardware monitoring for SNMP with a downloadable MIB
    • sFlow Monitoring for real-time visibility
    • NTP server settings defaults to “Use pre-defined NTP server”
    • UI enhancements for XFRM interfaces with pagination and search/filter options

    SG UTM features:

    With Sophos UTM coming toward end-of-life soon (July 30, 2026), some migrating customers will appreciate these added features:

    • SHA 256 and 512 support for OTP tokens
    • MFA support for WAF form-based authentication
    • Audit trail logs with before and after tracking to meet the latest NIST standards

    Get the full details

    Download the full What’s New Guide for a complete overview of all the great new features and enhancements in v22. Also be sure to check out the full release notes documentation.

    How to get v22

    As with every firewall release, Sophos Firewall v22 is a free upgrade for Sophos Firewall customers with Enhanced or Enhanced Plus Support and should be applied to all supported firewall devices as soon as possible.

    With the new architectural changes in v22, this update may require some additional steps for a very small percentage of existing desktop, virtual, or software firewall devices to free added disk space or resize the root partition. If your device requires additional steps this will be noted before you download with a link to instructions for the additional steps.

    Review this video for an overview of the different devices and steps that may be required:

    A quick summary:

    • XGS 2100 and above – no additional steps required
    • XGS Desktop Series – 97% will seamlessly upgrade, with 3% requiring a few additional manual steps which will be flagged by an alert
    • Virtual/software devices deployed prior to v18 also require additional steps

    If your device requires some additional manual steps to upgrade, the alert will advise you of what’s required in-product or via Sophos Central before you download the firmware. The alert will link to the required steps in this KB article: Requirements and resolution to upgrade to v22.

    This firmware release will follow our standard staged roll-out process. The new v22 firmware will be gradually rolled out to all connected devices in phases over the coming weeks. A notification will appear on your local device or Sophos Central management console when the update is available, allowing you to schedule the update at your convenience.

    A special thank you to everyone that participated in the early access program!



    Source link

  • At least two dead in explosion at Pennsylvania nursing home

    At least two dead in explosion at Pennsylvania nursing home


    At least two people have died and several others were injured after an explosion and fire at a Pennsylvania nursing home caused a partial collapse of the building.

    Emergency crews were called to the Silver Lake Nursing Home in Bristol at about 14:00 local time (19:00GMT) on Tuesday after receiving reports of a gas odour. When crews arrived, the building exploded causing a massive fire, authorities said.

    Five people were still unaccounted for, but officials said they were unsure if those people were in the building.

    Responders pulled residents out of windows, stairwells, and elevators and carried them to safety, fire chief Kevin Dippolito told reporters.

    “There was one police officer who literally threw two people over his shoulders and ran” with them towards medical staff, he said.

    Several people were trapped in the basement of the collapsed building but were rescued, Dippolito said.

    “We’re still in rescue mode. We have not transitioned into a recovery mode,” he said.

    Emergency crews were still working to rescue people who may be stuck in the building, the fire chief said.

    Governor Josh Shapiro said the exact number of injuries was not yet known, and the cause of the blast remained under investigation.

    Images and videos posted on social platforms by local media outlets show a partially collapsed building with massive flames billowing out of it.

    Shapiro praised the support from authorities around the region who rushed to offer assistance, and said that the residents living near the nursing home were “outstanding”.

    “We had residents coming out of their houses offering to help us,” he said. “This is the Pennsylvania way: neighbors helping neighbors in a moment of need.”



    Source link

  • Brazil’s Supreme Court allows Bolsonaro to leave prison for surgery

    Brazil’s Supreme Court allows Bolsonaro to leave prison for surgery


    Brazil’s former president Jair Bolsonaro has been permitted to leave prison to undergo surgery on Christmas Day following approval from Brazil’s Supreme Court, court documents show.

    Bolsonaro is currently serving a 27-year prison sentence for plotting a coup after he lost the last election in 2022.

    Justice Alexandre de Moraes on Tuesday granted permission for Bolsonaro to temporarily leave prison and be transferred to a hospital on Wednesday for a hernia operation on 25 December.

    Bolsonaro, 70, has faced ongoing health complications since being stabbed in the abdomen during a 2018 presidential campaign.

    In April, the right-wing former president underwent intestinal surgery. By November, Justice Moraes, who also oversaw his trial, mandated that Bolsonaro be given full-time medical care.

    Flávio Bolsonaro, the former president’s son, posted a video to X on Wednesday with the caption: “Keep praying for the president.”

    Bolsonaro was found guilty in September for plotting a coup d’etat after he lost the 2022 election to his left-wing rival, Luiz Inácio Lula da Silva.

    The former leader is serving his sentence in a federal police jail in Brasilia, the capital, after being deemed a flight risk and removed from home detention.

    Earlier this month, tens of thousands of people in Brazil’s main cities gathered to protest against a bill trying to significantly reduce the time Bolsonaro spends in jail.

    Lawmakers passed the bill last week after it was approved by the lower house. Legal experts have estimated it could reduce Bolsonaro’s sentence to less than three years.

    In response, Brazil’s president Lula promised to veto the bill.

    “With all due respect to the Congress, when it reaches my desk, I will veto it,” Lula told journalists last week, while acknowledging his veto could be overridden by the largely conservative Congress.

    US President Donald Trump, who had previously called the investigation into Bolsonaro a “witch hunt”, welcomed the bill being passed. The US also lifted sanctions that had been placed on Justice Moraes in July.



    Source link