You are on page 1of 10

Darktrace Release Notes

November 4, 2021

cSensor Windows
Versions 1.5.8 to 1.9.12

cSensor macOS
Versions 1.0.0 to 1.3.82
2 2

Contents
cSensor Windows

Version 1.9.12 4 Version 1.7.1 5


Version 1.9.8 4 Version 1.7.0 6
Version 1.8.8 4 Version 1.6.6 6
Version 1.8.6 4 Version 1.6.4 6
Version 1.8.4 5 Version 1.6.3 6
Version 1.8.2 5 Version 1.6.2 6
Version 1.8.0 5 Version 1.6.1 7
Version 1.7.3 5 Version 1.6.0 7
Version 1.7.2 5 Version 1.5.8 7

cSensor macOS

Version 1.3.82 8 Version 1.1.40 9


Version 1.3.72 8 Version 1.1.26 9
Version 1.1.46 8 Version 1.0.4 9
Version 1.1.44 8 Version 1.0.0 9
2 3

The software releases referenced in this document are subject to the Darktrace Product Support and End Of
Life (EOL) Policy. The policy can be found in the "Documentation" section of the Customer Portal "Software
Updates" page: https://customerportal.darktrace.com/downloads/product-updates
CSENSOR WINDOWS 4

cSensor Windows
Version 1.9.12
October 19, 2021

Resolved Issues
● Fixed possible crash during proxy resolution if DefaultConnectionSettings in the registry is empty
● Fixed possible crash upon receiving invalid messages from the server
● Fixed issue in HTTP MIME analysis

Version 1.9.8
September 7, 2021

New Features
● Improved handling of HTTPS connections between client and secure gateway
● Send regular updates about active logged in sessions
● Improve proxy discovery logic and accept proxy authentication credentials
● Can detect proxy settings if set on an Azure Active Directory User
● Antigena Endpoint actions can now be enacted by the cSensor agent.
● Applications can be specified by path for exemption from Antigena Endpoint quarantine actions.
● A WebSocket connection is now created and maintained for rapid receipt of Antigena instructions.

Resolved Issues
● Allow better collection of crash dumps from cSensor processes and during installation
● Removed 32 bit DLLs from the installer
● Automatically set local policy to allow monitoring of SSH logins
● Fix bug where desynchronisation of agent clock with server could trigger a service restart
● Fix bug in MAC address handling
● Maintenance restarts now exit the service cleanly
● Log out FQDN of secure gateway on connection attempt
● Logged adapter names are converted to their more readable form when available

Version 1.8.8
April 29, 2021

Resolved Issues
● Improve traffic visibility when going through a HTTP Proxy.
● Fix bug causing service to crash rather than stop nicely during maintenance restart.

Version 1.8.6
April 9, 2021

Functionally identical to v1.8.4


CSENSOR WINDOWS 5

Version 1.8.4
March 29, 2021

Resolved Issues
● Upgrade installations run without admin privileges could not be completed

Version 1.8.2
March 23, 2021

Resolved Issues
● Installing the same cSensor version with a different product code would create a second instance rather than attempt to upgrade
the existing instance

Version 1.8.0
March 18, 2021

Resolved Issues
● Installer system has been changed for additional flexibility dealing with distribution systems
● Proxy resolution would fail when a user's registry file was missing
● CWE-428 issue partially resolved in v1.7.2 was not removed in all installations, now resolved

Version 1.7.3
February 22, 2021

New Features and Product Refinements


● Improved logging around DNS failures when trying to connect to server
● Improved logging for generic installer errors

Resolved Issues
● Fixed problem with large positive timezone handling

Version 1.7.2
February 8, 2021

Resolved Issues
● Fix high CPU use trigger in packet time handling
● Fix reported connection data size bug
● Fix a CWE-428 type weakness in installed service (unquoted path) - with thanks to Ryan Matson for finding and reporting this

Version 1.7.1
January 28, 2021
CSENSOR WINDOWS 6

Functionally identical to v1.7.0

Version 1.7.0
January 26, 2021

New Features and Product Refinements


● Added resilience to machine GUID changes
● Logged error codes originating from Windows APIs and system calls are now translated to human readable messages
● Better handling of clock skew between device and server
● Better handling of failure to upgrade cSensor and rollback
● WinHTTP proxy detection improvements, can now detect WinInet settings
● Now uses any version of NPCAP driver installed that is not specifically forbidden, instead of requiring the bundled version
● All EXE and DLL files are now signed

Resolved Issues
● Agent could crash when a network adapter was added or removed
● Fixed handling of less common DNS record types
● Fix bug when getting user sessions present when cSensor starts
● Fix bug when probing interfaces on the device.

Version 1.6.6
January 14, 2021

Resolved Issues
● Fix high CPU usage triggered by specific HTTP header content

Version 1.6.4
December 10, 2020

Resolved Issues
● Fix service crashing and restarting on network interface changes
● Fix incorrect reporting of certain connection sizes

Version 1.6.3
November 20, 2020

Functionally identical to v1.6.2

Version 1.6.2
November 19, 2020

Resolved Issues
● Fix installer issues on devices with certain Windows language packs
CSENSOR WINDOWS 7

Version 1.6.1
October 9, 2020

Functionally identical to v1.6.0

Version 1.6.0
October 9, 2020

New Features and Product Refinements


● User sessions on the endpoint are now tracked and shown as credentials
● NPCAP 1.0.0 bundled
● Re-registration of previously registered devices will now be recognised as the original device
● Logging improvements during normal running

Version 1.5.8
September 29, 2020

New Features and Product Refinements


● First release version
● Agent core operation and maintenance functionality
● Network monitoring functionality
CSENSOR MACOS 8

cSensor macOS
Version 1.3.82
October 18, 2021

Resolved Issues
● Pre-existing connections when an Antigena quarantine action begins may be affected by the order in which the agent started up
relative to other security programs.
● Metadata events for very short lived connections are sent in a more timely manner.

Version 1.3.72
September 27, 2021

New Features
● Antigena Endpoint actions can now be enacted by the cSensor agent.
● Applications can be specified by path for exemption from Antigena Endpoint quarantine actions.
● A WebSocket connection is now created and maintained for rapid receipt of Antigena instructions.

Resolved Issues
● Rare race condition seen in starting monitoring components.
● System extension may attempt to load in Mojave 10.14.
● High memory and CPU usage experienced in some monitoring tasks.

Version 1.1.46
August 18, 2021

Resolved Issues
● The application no longer has to be able to resolve DNS for the server at installation

Version 1.1.44
June 16, 2021

Resolved Issues
● Occasional excessive byte counts reported for connections
CSENSOR MACOS 9

Version 1.1.40
March 17, 2021

Resolved Issues
● Memory leak caused high memory use in rare circumstances
● DNS connection direction could be mistaken

Version 1.1.26
February 25, 2021

New Features and Product Refinements


● Updated third-party libraries e.g. libpcap
● Improved time synchronisation in the presence of clock skew

Version 1.0.4
December 11, 2020

Resolved Issues
● Connection tracking issue entered incorrect details into Event Log
● Delayed delivery of data could report single connections as two

Version 1.0.0
October 20, 2020

New Features and Product Refinements


● Improved authentication to gateway
● Updated connection tracking

You might also like