cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

[ INQUIRY ] : CVE-2021-40449-Chinese hackers use Windows zero-day to attack defense, IT firms.

Jump to solution

Hi McAfee Team / McAfee Forum Community,

[Urgent: ]
Can we ask if McAfee with this Zero Day Exploit (CVE), will be releasing an EXTRA.DAT for (ENS) > McAfee Epo.

*current AMcore check-in in Mcafee EPO is = 4587

Regards,

William

1 Solution

Accepted Solutions
Pravas
McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 6 of 6

Re: [ INQUIRY ] : CVE-2021-40449-Chinese hackers use Windows zero-day to attack defense, IT firms.

Jump to solution

Hi @WillLAus20 ,

Coverage for the sample is included in GTI as of now.

It may take 4-5 days to include in AmCore/DAT.

Thanks

Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!

View solution in original post

5 Replies
Pravas
McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 2 of 6

Re: [ INQUIRY ] : CVE-2021-40449-Chinese hackers use Windows zero-day to attack defense, IT firms.

Jump to solution

Hi @WillLAus20 ,

Thank you. I've requested McAfee Labs to share more information on the coverage.

We shall update as soon as we've more information.

Thanks

Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!

Re: [ INQUIRY ] : CVE-2021-40449-Chinese hackers use Windows zero-day to attack defense, IT firms.

Jump to solution

thank you for your fast response, looking forward on the next update.

Pravas
McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 4 of 6

Re: [ INQUIRY ] : CVE-2021-40449-Chinese hackers use Windows zero-day to attack defense, IT firms.

Jump to solution

Hi @WillLAus20 ,

Thank you for your patience. As per McAfee Labs, we do not monitor the API used by the vulnerability. So its considered Out Of Scope for Exploit Prevention coverage.

However we've added coverage for the sample mentioned in the URL below as T-TRO-TYZ

hxxps://securelist[dot]com/mysterysnail-attacks-with-windows-zero-day/104509/

Thanks

Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!

Re: [ INQUIRY ] : CVE-2021-40449-Chinese hackers use Windows zero-day to attack defense, IT firms.

Jump to solution

You mention you/McAfee added coverage (as per post on"hxxxs://securelist[dot]com/mysterysnail-attacks-with-windows-zero-day/104509/")

Are you talking about AMCORE detection?

What Amcore/Dat version this is covered ?

Regards,

William

 

 

Pravas
McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 6 of 6

Re: [ INQUIRY ] : CVE-2021-40449-Chinese hackers use Windows zero-day to attack defense, IT firms.

Jump to solution

Hi @WillLAus20 ,

Coverage for the sample is included in GTI as of now.

It may take 4-5 days to include in AmCore/DAT.

Thanks

Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!

You Deserve an Award
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.

Community Help Hub

    New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.

  • Find Forum FAQs
  • Learn How to Earn Badges
  • Ask for Help
Go to Community Help

Join the Community

    Thousands of customers use the McAfee Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership:

  • Get helpful solutions from McAfee experts.
  • Stay connected to product conversations that matter to you.
  • Participate in product groups led by McAfee employees.
Join the Community
Join the Community