Make security simple with Secure Cloud
Recently active
One of our core commitments when we began developing Webroot® Security Awareness Training was to remain relevant. We pledged to continuously develop content that reflected the latest threats faced by businesses and users as they arose. One of the most significant challenges we’ve seen since the launch of our user training tool has been the shift to remote workforces forced by the novel coronavirus outbreak. It’s dealt a serious blow to the cyber resilience of many organizations and is something, we felt, needed to be addressed. We’re happy to announce that a course designed to do just that is now available. It’s a guide for organizations and their users to maintain their cyber resilience with dispersed workforces, and we hope you’ll enroll. Why bother developing a Cyber Resilience while Working from Home Course? Cybercriminals know many remote workforces are no longer always under the watchful eyes of IT teams. They know some are even working from their own devices, often outsid
OpenText EDR & MDR Integrations: API-First Power with Flexible Log IngestionOpenText EDR and MDR are designed to adapt to your needs. We are committed to developing and supporting integrations with the data sources and tools used by your business and your customers.Integrations fall into two categories:Advanced API-first product integrations Syslog-based log ingestionAPI-First IntegrationsAPI integrations provide rich functionality and tightly aligned use cases.Provide rich functionality aligned to real-world security workflows. Support bidirectional workflows and data synchronization where supported. Enable deeper automation and response actions. Included at no additional cost.Application SecuritySaltminerAuthentication LogsOkta Workforce IdentityAutomation AuditingAutomation AnywhereCloud SecurityAmazon EventBridge AWS CloudTrail Microsoft (Defender, Intune, Identity Management, Microsoft 365)DNS and URL MonitoringCisco UmbrellaEndpoint SecurityCisco Secure Endpoint (AMP) CrowdSt
Watch step-by-step videos covering Endpoint Protection, DNS Protection, Security Awareness Training, and Detection and Response features. Learn how to start a trial in the Management console and install the Detection and Response agent on Mac. These quick how-to guides make setup and training easier for everyone.Click HERE for the Video Library
It’s an exciting time to be a managed service provider (MSP). More than ever, small and medium businesses (SMBs) are looking to MSPs as trusted advisors to help safeguard them from today’s growing cyber threats. One of the services in high demand right now? Managed detection and response (MDR). When asked about their biggest growth drivers, MSPs cite addressing clients’ cybersecurity concerns and awareness as the top new-business drivers (54%).1For MSPs, adding MDR to your lineup can create new revenue streams while enhancing the value you bring to your clients. By offering OpenText MDR to your MSP clients, you gain access to skilled security experts and advanced technology infrastructure—without the complexity and cost of building it all in-house.Here’s why more MSPs are partnering with OpenText to power their MDR security services: 1. Seamless integration with your existing toolsOne of the greatest advantages of choosing OpenText MDR is its compatibility with your existing tools. Ope
Captains Log: Sending Proxmox Logs to EDR via SyslogA Practical Guide for MSP Partners Modern MSP environments rely heavily on virtualisation platforms. While VMware and Hyper-V have traditionally dominated this space, Proxmox VE has rapidly gained popularity thanks to its flexibility, open architecture, and strong community support.However, one area that’s often overlooked is security monitoring of the hypervisor itself.If you're running OpenText Core EDR, integrating your Proxmox hosts into your logging pipeline can provide valuable visibility into the infrastructure layer. This allows your SOC to detect suspicious activity, operational failures, and potential attacks much earlier in the incident lifecycle.In this guide, we’ll walk through how to configure Proxmox to forward meaningful security events to OpenText Core EDR using Syslog, while keeping noise low and signal high.The configuration described here is designed to be:SOC-friendly Easy to deploy across multiple hosts Low-noise
Captains Log: Sending Email Threat alerts to EDR via SyslogA Practical Guide for MSP Partners Email remains one of the most important telemetry sources in the modern MSP security stack. OpenText Core Email Threat Protection can identify spam, phishing, malware, quarantine events, and link-based activity long before a compromise reaches the endpoint.However, getting those alerts into OpenText Core EDR in a reliable and operationally safe way is not always straightforward.Unlike platforms that offer a native event streaming integration, OpenText Core Email Threat Protection exposes SIEM data through an API. That means MSP engineers must account for:poll timing and overlap API response handling duplicate suppression event normalisation Syslog / CEF forwarding In this guide, we’ll walk through how to deploy a lightweight Linux collector that polls the Email Threat Protection SIEM API, captures all relevant alerts, normalises them, and forwards them to OpenText Core EDR via Syslog.The confi
Everytime I try to open up chrome, I get the spinning icon and nothing opens. If I disable Webroot, I can open it up no problem. I am using windows 10 home edition.
Hi All – I am the Product Manager for DNS Protection and my colleague @JonathanB and I are resident DNS evangelists and we are always interested in hearing from you on your experience with the product – good or bad! It has been close to 2 years since we launched DNS Protection service to the market and I am happy to share that we received the highest rating by Expert Insights and we are seeing good steady adoption of the product. Webroot is committed to serving our SMB and MSP customers and bringing best in class Security offerings. To recap, 2018 was a very busy year for us and I would like to highlight some key product enhancements that has driven our growth: VPN support + IPv6 support (only vendor to support IPv6 for roaming clients) Granular Policy Management enables support at Site, Group, and individual devices. Stable, Hardened DNS client for roaming devices. Powered by BrightCloud Threat Intelligence – Quality, Brand and Accuracy providing Real Time Threat
Just updated to Mac Monterey 12.3 yesterday, and Webroot 9.5.0.139 detects Xprotect Remediator MRT v3 as Keylogger.Refog.1.r. Can anyone verify this, please?Thanks.
Folks, I'm really interested to understand what apps you are running on users Windows computers. This is for us to better align our test systems with what you have. Example:- Windows 7 32bit with Office 365 WSA Chrome Open VPN Client RMM Agent Please post below with your replies Many thanks Jonathan.giffard Senior Product Manager WSA Business
Hi Everyone, This topic is for Webroot customers to use to talk about their businesses. We're always curious to know what kind of companies use Webroot. We know from experience that Webroot is great for any business - big or small - no matter what industry you're in. For instance, our reviews page contains some examples of how our security technology has helped a variety of companies - from flying doctors and law firms to beer distributors and on-wafer probe manufacturers. So when your company isn't worrying about which security products to go with, what else does it do? Is there anything new going on that you'd like to share with us? We'd love to get to know you and your company better.
Hi, We are receiving reports from Webroot of a detection that I am not sure is true... How do I know if it is a false positive? The report log is below:- Automated Cleanup Engine Starting Cleanup at 2016-Oct-26 11:40:30 Starting Routine> Detected /Volumes/Time Machine Backups/Backups.backupdb/User/2016-10-26-053418/Macintosh HD/.PKInstallSandboxManager-SystemSoftware/3F5A27F6-09A2-4D3F-8049-A2ABB8F44C32.sandbox/Root/System/Library/Frameworks/CoreFoundation.framework/Versions/A/CoreFoundation [Name: "PUA.OSX.TuneUpMyMac.1.r", MD5: 00000000000000000000000000000000] Quarantining File> Removing /Volumes/Time Machine Backups/Backups.backupdb/User/2016-10-26-053418/Macintosh HD/.PKInstallSandboxManager-SystemSoftware/3F5A27F6-09A2-4D3F-8049-A2ABB8F44C32.sandbox/Root/System/Library/Frameworks/CoreFoundation.framework/Versions/A/CoreFoundation Quarantining File> Removing /Volumes/Time Machine Backups/Backups.backupdb/User/2016-10-26-053418/Macintosh HD/.PKInstallS
Hi Guys Currently it is not possible to get the trial key for WSA Endpoint Protection in the Firefox browser. We are redirected to a different subpage and do not get any trial key. Customers are very unhappy with this (over50% are using Firefox) - what can I say to them / when it will be fixed? Regards
We have to big issue in Turkey to use Dns Protection. In the starting of computers Dns Protection agent cannot resolve any websites like 5 minutes. After 5 minutes Dns agent working properly. This is a very big issue, a lot of customers, and potential customer affected from that problem.
We're implementing/still testing a virtual desktop infrastructure using Citrix XenDesktop 7.6 running atop VMware vSphere 5.5. The environment is built, support servers running, etc. and we're working on master image deployment via Citrix PVS, but we're running into trouble when it comes to WSA installations. According to the documentation, running WSA is supported within the virtual environment, either using the -clone or -uniquedevice commandline option. We're building WSA into our master image and we've tried it both ways (used both command line options), but when we provision our virtual machines, we don't see those registering within the Webroot Admin Console. When we used -uniquedevice, we saw 1 provisioned VM register in the console but with continual refreshes, that same instance in the Admin Console would change names, our assumption was that we were seeing the last provisioned VM to check in. When we used -clone, to be honest I'm not exactly sure
I am having issues with endpoints not being seen in some of our remote location. I have talked to tech support and they told me to go allow it in our filter which is webroot security service. I have done that but with no luck has anyone else had this problem ?
I hadn't run a speedtest here at Webroot yet, but when I did I was impressed :) http://www.speedtest.net/my-result/3355512045 How about you guys? What sort of speeds to you get at your work?
HelloI am setting up the course ‘Security Awareness Training’ for a company we provide IT support for. According to this guide https://answers.webroot.com/Webroot/ukp.aspx?pid=4&app=vw&vw=1&solutionid=2938 I need to add ‘Secops Mailbox’ in order for the training to work. It is my understanding that flagging a mailbox as ‘Secops’ just opens the mailbox up to any rules I then put into Phishing simulation. I just wanted to confirm this is the case and that there will be no adverse affects from flagging the mailbox as a ‘Secops’ mailbox. I am changing 30 or so mailboxes so wanted to double check before finalising the settings Thanks in advance :) H
Webroot say I am at risk for the following: wssyncmlnps com.wssnps and I cant uninstall it, it safe?
Some observations on installing Webroot endpoint protection (v8.0.8.53) on a Windows 10 (build 10041) test VM.... The endpoint can't / won't check in to the console. I basically have an extra license now ;) Since the endpoint won't call home, it has not picked up our default policy. The GUI will open, all controls are accessible from the user side (no bueno). In our environment, windows firewall is turned off. Webroot is most adamant about telling me this. I click no when it asks if I want WR to keep monitoring the windows firewall. Then, a few minutes later, it happily tells me that windows firewall is turned off... Obviously, these are not pressing issues on my side, I just wanted to report the behavior I have seen from testing WR on a new OS. I did not have WR installed on any previous Win 10 builds, so I have no idea if this was happening on earlier builds.
Anyone else's Labtech plugin been broken since the 3.0 update? When we updated the plugin from 2.5 to 3.0, the plugin dashboard showed most agents as "non-GSM" and lacked information for them. After 3 months working with support on the issue, we're still nowhere, and can't reliably monitor our ~5,000 agents.
Hello! New Webroot SecureAnywhere user here. I recently started at a company that uses this software however I have no experience with it. Dumb question, but we are troubleshooting some software issues on a PC that has Webroot SecureAnywhere installed on it. I have access to the Admin console but am unable to disable the software locally. How do I disable this software on a single PC for testing purposes?
I just purchased your 3-device product. During the initial installation on the client's server, it KILLED my radmin remote software as a "threat". This server is 600+ miles away. Sign me VERY not happy right now.
The feedback we received from the previous beta was foundational to its success – to the extent that we did not receive one bug complaint or call to Support indicating a problem!! This community is truly awesome! – Thank you!Further feedback mentioned that the previous beta was challenging to participate in as you needed either a trial of DNS Protection or an active Webroot Management Console. We hear you! With this next beta, this time, no Keycode will be required! Simply download and use the Beta Runner! However, if you prefer to use a Keycode you already have, it can be specified.Why a second beta?No software should ever stand still, it must evolve and progress! The second release of DNS Leak Prevention has some awesome new features that further augment Leak Prevention; namely, we have added the ability to dynamically detect DoH servers! Whereas previously we leveraged BrightCloud to provide an up-to-date list, now that is just the foundation to build on - now new DoH servers are de
I've seen several posts on this subject already, with no clear resolution. We have 50+ sites, with random endpoints that are "not seen recently" and are all on a previous version of Webroot (not the most current). My assumption is that the endpoints have just stopped "checking in" with the console and are not upgrading as they should. We have hundreds of endpoints in this state. The fix I've seen is "reinstall Webroot" but I have yet to see a solution to the root cause. We're a Continuum partner, so we're not supposed to contact Webroot directly, but I don't see any other way to get this resolved. Can anyone offer advice here? This is a pretty big problem for us (and I'm not the only one, others in the Continuum forums have the same issue).
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.