AI-Powered Cyberattacks: How to Detect, Prevent & Defend Against Intelligent Threats

Read Now
We utilize artificial intelligence for site translations, and while we strive for accuracy, they may not always be 100% precise. Your understanding is appreciated.

MetaDefender Core v4.21.2 Release

by Thao Duong, Senior Product Marketing Manager
Share this Post

Product Overview

OPSWAT MetaDefender Core protects your organization by preventing advanced cybersecurity threats across multiple data channels. MetaDefender Core enables you to integrate advanced malware prevention and detection capabilities into your existing IT solutions and infrastructure for better handling common attack vectors: securing web portals from malicious file upload attacks, augmenting cybersecurity products, and developing your own malware analysis systems.

MetaDefender Core leverages several proprietary technologies, including Deep Content Disarm and Reconstruction (Deep CDR), Multiscanning, File-Based Vulnerability Assessment, Data Loss Prevention and Threat Intelligence.

Release Highlights

Enforce Mutual Authentication for Callbacks

MetaDefender Core 4.21.2 provides an additional security mode for HTTPS callbacks. This enhancement helps prevent man-in-the-middle attacks, as threat actors can attempt to leverage the communication between MetaDefender Core and its clients to intercept and tamper with passing messages.

The mutual authentication for secured webhook mode adds a security layer to prevent situations like this from happening. Learn more about webhook authentication

Webhook Callback for Sanitized File Download (beta)

Once a file that isn’t password-protected has been sanitized, MetaDefender Core will send both the results and the sanitized file content back to the client via a webhook callback.

Before this version, only the analysis results information (file type, number of anti-virus engines, scan status, etc.) were returned through webhook.

SSL Connection Between MetaDefender Core and PostgreSQL

Secure Sockets Layer (SSL) helps in protecting data by encrypting information into undecipherable formats. Version 4.21.2 supports SSL certificates to secure data in transit between MetaDefender Core and PostgreSQL.

Pre-Install Deep CDR and Proactive DLP Dependencies in MetaDefender Core Docker Image

Users of MetaDefender Core Container can now download the new MetaDefender Core Docker image to automatically upgrade to the latest versions of Deep CDR and Proactive DLP. Version 4.21.2 includes three new built-in libraries required to run the two engines:

  • libgomp
  • libgdiplus
  • mscorefonts

Other Enhancements

  • Configurable SameSite attribute: Lax (default), Strict, and None. Configure via REST API or the MetaDefender Core ignition configuration file.
  • Adaptive mode when moving AD/LDAP (Active Directory/Lightweight Directory Access Protocol) users to other OUs (Organization Units): Supports changing DN (Distinguished Name) information in AD/LDAP directories.
  • Logging details enhancements: Logs webhook callback failures and failures to open PostgreSQL configuration file.
  • Separate JSON configuration file now collected in the support package: Provides easier analysis and the ability to import back into MetaDefender Core when needed.

Release Details

For more information, please contact one of our critical infrastructure cybersecurity experts.

Stay Up-to-Date With OPSWAT!

Sign up today to receive the latest company updates, stories, event info, and more.