Imunify360 3.6.2 is now available
The newest Imunify360 version 3.6.2 is now available on all our servers. This update features further improvements as well as multiple bug fixes.
Fixes
- DEF-5510: collected more info on failed plesk query;
- DEF-5820: when configuring mod_remoteip, insert newline before <IfModule remoteip_module>;
- DEF-5094: fixed HeuristicError: Signatures /var/imunify360/files/sigs/v1/heuristic/main.yara not found;
- DEF-5948: investigated an issue with the probable incorrect implementation of a web server restart on cPanel;
- DEF-5958: fixed FileNotFoundError: [Errno 2] No such file or directory: b'/home/…’;
- DEF-6041: fixed a waiting for force_kernelcare_license;
- DEF-6016: fixed search bot detection;
- DEF-4547: fixed the vulnerability "Malware Scanner Quarantine Escape";
- DEF-4724: fixed a TypeError: 'NoneType' object is not iterable;
- DEF-5061: fixed backtrace for by-IP registration error;
- DEF-5168: fixed an issue when Inotify scan could hit ignore files;
- DEF-5216: fixed the vulnerability "Malware Scanner universal bypass 5 (Quarantine escape)";
- DEF-5294: fixed Ubuntu + Plesk 17.8 error in migrations for a new installation of deb packages;
- DEF-5324: fixed an issue when malicious files are not added to the table if a backup is broken;
- DEF-5346: fixed a minor issue with Imunify360 error log permissions;
- DEF-5350: fixed up the deploy script ipset installation;
- DEF-5438: fixed an issue when deploy script does not perform uninstallation immediately after deploy script update;
- DEF-5541: fixed an issue with i360deploy --uninstall command that might potentially cause server downtime;
- DEF-5609: fixed "Cannot read property 'i360Submit' of undefined";
- DEF-5619: fixed an issue when is not working in some cases (need to switch security2_module);
- DEF-5661: Ubuntu+Plesk changes for i360_modsec_disable.conf;
- DEF-5752: fixed FileNotFoundError: No such file or directory: '/var/imunify360/files/geo/v1/GeoLite2-Country.mmdb';
- DEF-5778: fixed an issue when HardenedPHP is not removing;
- DEF-5779: fixed HardenedPHP removal *cloudlinux->*cpanel bug;
- DEF-5818: fixed an issue when incidents are fetching slowly when using LIST filter;
- DEF-5824: fixed ValueError: not enough values to unpack (expected 2, got 1);
- DEF-5831: when environment variables sent by Proactive Defense are not valid, such values are skipped;
- DEF-5876: fixed RuntimeError: dictionary changes size during iteration;
- DEF-5910: fixed an issue when deleting from Gray List deletes IP from White List\Black List.
Improvements
- DEF-5745: added 'private_html' to inotify scanner;
- DEF-6045: disabled rule 941101;
- DEF-6054: added brute-force configuration for rule 33339;
- DEF-4392: expired graylist records in the database are now cleaned up;
- DEF-4852: investigated 5xx errors from panel;
- DEF-5181: Malicious column now displays correct info in on-demand scan results for repetitive scans;
- DEF-5184: implement auto send of the false negatives to the Malware Scanner team;
- DEF-5211: user is now allowed to decide if we should destroy backups during disabling CloudLinux Backup;
- DEF-5229: redesigned error messages;
- DEF-5231: updated firewall/captcha code for DirectAdmin panel ports;
- DEF-5232: added the support for separate minimal ruleset for LiteSpeed and Apache;
- DEF-5234: merged "Send to analysis" & "Add to ignore" options, UI part;
- DEF-5235: merged "Send to analysis" & "Add to ignore" options, backend part;
- DEF-5254: fixed HardenedPHP installation/removal on CentOS & cPanel;
- DEF-5255: speeded up the initial startup time;
- DEF-5283: re-implemented navigation component to fix some issues and get rid of bootstrap;
- DEF-5284: added sorting to tables in UI;
- DEF-5297: removed "create rules/destroy rules" command;
- DEF-5298: added a description in UI "File(s) will be scanned again after removing from Ignore list";
- DEF-5331: using "chown" is excessive during quarantine;
- DEF-5347: KernelCare license is now checked during installation;
- DEF-5361: on-demand status CLI command is now more informative;
- DEF-5373: investigated an issue when restore-from-backup cannot overwrite immutable files;
- DEF-5374: speedede up 'preparing file list' phase;
- DEF-5378: added KernelCare installation support on Ubuntu;
- DEF-5407: symlinks are now optional for on-demand scan;
- DEF-5412: Malicious column now displays correct info in on-demand scan results for repetitive scans, UI;
- DEF-5448: improveed validation for TTL in UI;
- DEF-5450: Captcha ports should not be opened in CSF;
- DEF-5491: always use strings in finder;
- DEF-5492: remove Acronis client during agent uninstallation;
- DEF-5506: updated browser support info;
- DEF-5573: changed Malware on-demand status API endpoint;
- DEF-5607: reduced IO load during inotify watcher init due to the high number of nested directories;
- DEF-5614: revised Acronis ports in CSF;
- DEF-5616: integrated Ubuntu package for the PHP plugin;
- DEF-5621: removed cPanel license check;
- DEF-5632: removed "i360config" global variable from HTML;
- DEF-5643: added a new feature into the the imunify360 agent "Update new malware hashes databases";
- DEF-5646: validate config on agent start;
- DEF-5649: enabled end-user UI for resellers in cPanel and Plesk;
- DEF-5753: store hit UID/GID in Malware Scan Result;
- DEF-5776: drop messages and log errors on full message queue;
- DEF-5777: removed COMODO WAF from incident description;
- DEF-5781: integrated/tested a new version of Proactive Defense plugin;
- DEF-5706: fixed "ExpressionChangedAfterItHasBeenCheckedError" error related to "translate" pipe;
- DEF-3583: implemented Imunify360 on Ubuntu - changes in UI backend and tests;
- DEF-5336: skip *-%panel% configuration in build system;
- DEF-5353: refactored FileListToFile to use Finder.find();
- DEF-5358: refactored reputation component.
The upgrading is available starting with Imunify360 version 2.0-19.
All Nuagerie servers are automatically updated, however, if you want to upgrade Imunify360 manually:
CentOS/CloudLinux systems:
yum update imunify360-firewall
Ubuntu systems:
apt-get update
apt-get install --only-upgrade imunify360-firewall