Hey Guys!
Here is the latest version of VoodooShield. It should be ready for public release on Monday, but if you find anything please let me know!
As you have noticed, we are transitioning a lot of VS’s features from the cloud to the local computer. Not only is it faster, but there are no disadvantages in doing so, there are only advantages.
Version 7.20 now includes a list of VS’s verified digital signatures (there are 14,000+), so cloud lookups for this feature are no longer required. The purpose of this feature is to mitigate against signed malware, not to allow items simply by the signer’s name. That would be very, very dangerous.
In other words, this list is not yet editable, and we probably do not need to ever make it editable, simply because VS already handles digital signatures in a much more comprehensive way.
I forgot to mention, one of the 250+ Ai features is still cloud based. It is the feature that verifies the digital signature in the cloud. So if you test VoodooAi in Offline Mode, this feature will be ignored, so the VoodooAi result might be a little higher than it would be otherwise. No big deal either way, but if the results do not match, that is why. Technically, we could have a different model for Offline Mode that removes this feature from the training data set as well, but I kinda like it the way it is. Basically, VoodooAi might be slightly more aggressive when in Offline Mode, which means WLC is not active and covering what VoodooAi might miss. So in that case, being a little more aggressive might be a good thing.
I have not yet started refining the Rules feature, but will do that soon. I wanted to finish this version of VS and the new DefenderUI so we can release them to the public. Refining the Rules is going to take a little time to do properly, and we will certainly want to test some beta versions before we release the updated Rules feature to the public.
VS 7.20
SHA-256: 97f85bfce8d6c0676f20dfbde7067360f583dc89bc26d5e85410871fbdaea7cc
Thank you guys!
Dan