Updated Threat Prevention Agents released

Due to an issue with expired signing certificates, we’re releasing newly signed Netwrix Threat Prevention Agent builds today. These builds are re-signed with a new certificate valid until October 2026.

Want the full details? Click the link below!

Updated builds available:

  • 7.5.0.247
  • 7.4.0.276
  • 7.3.9.328

Any Netwrix Threat Prevention Agent builds earlier than those listed above will fail to install or download via the Netwrix Threat Prevention Console if attempted after October 25, when the previous signing certificate expired.

Bug Fixes

  • 405820: Exchange 25-10 updates support
  • 406602: Expired code-signing certificate
  • 406427: Update Agent Installer error message [PERN]

How to Upgrade Netwrix Threat Prevention Agents

  1. Via the console (will be available on Monday)

Use the Netwrix Threat Prevention (formerly StealthINTERCEPT) Console and the “Update Agent Installer” button on the Agents panel. Then verify the version matches the relevant version in the Product Notification email
–– or ––

  1. Manually (available now)

Manually obtain the latest Agent build(s) and place them in the ..\SIEnterpriseManager\Setup\ folder. Then upgrade via Console.

Need help with this update?

There are many different ways to get help with our products!

Situation Action
If you feel the product is broken and not working as intended… Contact Support
If you have a question you’d like to ask other experts… Create a discussion in the community: Threat Prevention > Discussions & Questions
If you have a feature request… Let our product team know directly: Threat Prevention > Ideas
If you have something cool to show… Show everyone what you built: Threat Prevention > Show & Tell

What are your thoughts?

We are always happy to hear from our users on what you like, and what you hope to see in the future. Please, share your thoughts below!

1 Like

I just deployed 7.5.0.242 into production last Thursday. Are you saying that if I wanted to deploy those same 7.5.0.242 agents after the 25th, it wouldn’t work? So I’m good now if I don’t have to deploy the agent, but if I do have to deploy the agent, I won’t be able too, because of an expired certificate? I’m a little confused.

We are also coming up on the end of year freeze, so I want to ensure that our agents are stable.

Hi Jay - 7.5.0.242 is fine if already deployed. If you have any agents not already updated or need to install first time on a new machine, then will need 7.5.0.247 as you will get a certificate error doing an upgrade after Oct 25th using the 242 build (one time check pre upgrade / install). If you need agent support on an Exchange server updated to 25-10 then you would want todays 247 build.

-Tony

1 Like

Thanks Tony! Another question is that if my EM is 7.5.0.242, do I need to upgrade that because of the cert issue, or does just downloading the new agent cover the certificate issue?

This affects the agent only. At some point there will be an EM update to prevent this from happening in the future with agent builds beyond October 2026.

1 Like

Thanks again, Tony! Really appreciate it!

You’re welcome - have a happy Halloween and great weekend.

2 Likes

You too!! Happy Halloween!!

1 Like