Here is the complete record of our NSS Labs test participation. You can see in each instance we received NSS Labs’ highest award, NSS Recommended. In fact Check Point has received nine NSS Recommended awards since 2011. Every FW, IPS and NGFW test we’ve participated in, we’ve received NSS Recommended. Plus we conducted one Individual IPS test where we scored 99% Security Score – but NSS only grant “Recommended” as part of Group Tests – this was an Individual test on our 61000 appliance. Overall a truly exceptional record – that should help give you confidence in the quality of our products and the security we deliver – over the long term.
Topic
CVEs
Covered by Check Point, but not covered by Palo Alto
Covered by Palo Alto, but not covered by Check Point
Covered by Check Point in Recommended, but not covered by Palo Alto
Covered by Check Point with Critical performance impact
Covered by Check Point with Critical performance impact, but not covered by Palo Alto
Topic
CVEs
Covered by Check Point, but not covered by Palo Alto
Covered by Palo Alto, but not covered by Check Point
Covered by Check Point in Recommended, but not covered by Palo Alto
Covered by Check Point with Critical performance impact
Covered by Check Point with Critical performance impact, but not covered by Palo Alto
Topic
CVEs
Covered by Check Point, but not covered by Palo Alto
Covered by Palo Alto, but not covered by Check Point
Covered by Check Point in Recommended, but not covered by Palo Alto
Covered by Check Point with Critical performance impact
Covered by Check Point with Critical performance impact, but not covered by Palo Alto
Full Reference : https://docs.google.com/spreadsheets/d/16kMzTF2xIlnzyrkGmKswnbR_qsMg4heO8aqzv4D3qTI/edit#gid=1963141070
# of vulnerabilities represent the sum of CVE’s + Internal vulnerabilities found in 2016 by each vendor.
The list include vulnerabilities of all enterprise security products (network + endpoint security)
Full reference patch teusday http://tiny.cc/urgency)
BlueKeep CVE-2019-0708: publish date – May 16, 2019
Check Point – May 19, 2019 - https://www.checkpoint.com/defense/advisories/public/2019/cpai-2019-0657.html
Palo Alto – May 21, 2019 – content version 8154
Fortinet – May 22, 2019 - https://fortiguard.com/search?q=CVE-2019-0708&engine=3
Cisco - May 21, 2019 https://blog.talosintelligence.com/2019/05/talos-releases-coverage-for-wormable.html
Fragmentsmack:
CVE-2018-5391 - used in FragmentSmack. Publication: August 14, 2018
Check Point released a fix (patch) on August 16, 2018 = 2 days (https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk134253&src=securityAlerts)
Palo Alto released advisory with “medium” severity that they are vulnerable and with fix in November 29, 2018 = 108 days (https://securityadvisories.paloaltonetworks.com/ PAN-SA-2018-0012)
Cisco released a fix in August 24 @21:30 GMT = 10 days (https://tools.cisco.com/security/center/mpublicationListingDetails.x?pageNo=5&docType=CiscoSecurityAdvisory)
SegmentSmack:
CVE-2018-5390 & CVE-2018-6922
https://www.kb.cert.org/vuls/id/962459/ and https://access.redhat.com/security/cve/cve-2018-5390
Published in Aug 6, 2018 (after embargo)
Check Point Released a patch OS fix in August 16, 2018 = 10 days (https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk134253&src=securityAlerts)
Cisco released a fix in Cisco released a fix in August 24 @21:30 GMT (https://tools.cisco.com/security/center/mpublicationListingDetails.x?pageNo=5&docType=CiscoSecurityAdvisory)
Palo Alto released “info” advisory, stating they are not vulnerable - in September 19, 2018 - (https://securityadvisories.paloaltonetworks.com/ PAN-SA-2018-0012)
Struts2 2018
CVE-2018-11776 published in August 22, 2018 - https://nvd.nist.gov/vuln/detail/CVE-2018-11776 & https://semmle.com/news/apache-struts-CVE-2018-11776
Check Point published August 23, 2018 @ 18:22 GMT+2
PAN published in August 24, 2018 @20:43 (8:43pm) GMT+2 (pkg 8057)
Cisco published in Aug 23, 2018 @21:29 GMT+2 https://www.snort.org/advisories/talos-rules-2018-08-23-8-23-2018
Fortinet published in Oct 15, 2018 https://fortiguard.com/encyclopedia/ips/30956/apache-struts-2-ognl-script-injection
===ALL TIMES ARE IST (GMT +2 with daylight) ===
Microsoft Patch Tuesday release dates :
Flash (In The Wild) 0days 2016
Check Point
CVE-2016-1010 (http://arstechnica.com/security/2016/03/adobe-issues-emergency-patch-for-actively-exploited-code-execution-bug/)
Mar 2016 update package 634161670 Thu 10-Mar-16 22:11
CVE-2016-1019 (https://helpx.adobe.com/security/products/flash-player/apsa16-01.html)
Apr 2016 update package 634162315 Wed 06-Apr-16 19:12
Fortinet:
CVE-2016-1010 http://fortiguard.com/updates/ips?version=7.813 (Mar 16th, 2016 - 10:37:11)
CVE-2016-1019 http://fortiguard.com/updates/ips?version=7.829 ( Apr 08th, 2016 - 10:44:09)
Palo Alto :
CVE-2016-1010 Version 570 (Thu 3/17/2016 12:24 AM)
CVE-2016-1019 Version 576 (Fri 4/8/2016 11:39 AM)
BADLOCK
Check Point
Apr 2016 update package 634162437 Tue 12-Apr-16 20:14 ====> 11 Min.
Palo Alto:
Apr 2016 update package 578 Wed 4/12/2016 4:55 AM====> 532 Min
Fortinet
Update 7.831 Apr 12th, 2016 - 21:07:14=64 min
Full references at http://tiny.cc/dna-cp
===ALL TIMES ARE IST (GMT +2 with daylight) ===
Microsoft Patch Tuesday release dates :
Jan 2015 Tue 13-Jan-15 20:41
Feb 2015 Tue 10-Feb-15 20:23
Mar 2015 Tue 10-Mar-15 20:05
Apr 2015 Tue 14-Apr-15 20:11
May 2015 Tue 12-May-15 20:01
Jun 2015 Tue 09-Jun-15 20:11
Jul 2015 14-07-15 20:22
Aug 2015 Tue 11-Aug-15 20:13
Sept 2015 Tue 08-Sep-15 20:11
Oct 2015 Tue 13-Oct-15 20:02
Nov 2015 10-Nov-15 20:06
Dec 2015 08-Dec-15 20:21
Jan 2016 12-Jan-16 20:32
Feb 2016 09-Feb-16 20:11
Mar 2016 08-Mar-16 20:10
Apr 2016 12-Apr-16 20:03
Check Point:
Jan 2015 update package 634150275 Tue 13-Jan-15 21:10 ====> 29 Min.
Feb 2015 update package 634150971 Tue 10-Feb-15 20:44 ====> 21 Min.
Mar 2015 update package 634151647 Tue 10-Mar-15 21:06 ====> 61 Min.
Apr 2015 update package 634152477 Tue 14-Apr-15 20:32 ====> 21 Min.
May 2015 update package 634153159 Tue 12-May-15 22:11 ====> 130 Min.
Jun 2015 update package 634153827 Tue 09-Jun-15 20:41 ====> 30 Min.
Jul 2015 update package 634154669 Tue 14-Jul-15 21:21 ====> 59 Min.
Aug 2015 update package 634155315 Tue 11-Aug-15 20:34 ====> 21 Min.
Sept 2015 update package 634156015 Tue 08-Sep-15 23:02 ====> 171 Min.
Oct 2015 update package 634156850 Tue 13-Oct-15 20:21 ====> 19 Min.
Nov 2015 update package 634157526 Tue 10-Nov-15 21:11 ====> 55 Min.
Dec 2015 update package 634158204 Tue 08-Dec-15 22:11 ====> 110 Min.
Jan 2016 update package 634150275 Tue 12-Jan-16 20:48 ====> 16 Min.
Feb 2016 update package 634160946 Tue 09-Feb-16 20:31 ====> 20 Min.
Mar 2016 update package 634161619 Tue 08-Mar-16 20:32 ====> 22 Min.
Apr 2016 update package 634162437 Tue 12-Apr-16 20:14 ====> 11 Min.
Average for Check Point Patch Tuesday response time (Jan-2015 – Apr 2016 ): 50 minutes
Palo Alto
Jan 2015 update package 481 Wed 1/14/2015 1:26 AM====> 285 Min.
Feb 2015 update package 485 Wed 2/11/2015 2:00 AM====> 337 Min.
Mar 2015 update package 490 Wed 3/11/2015 6:50 PM====> 1365 Min.
Apr 2015 update package 495 Wed 4/15/2015 12:01 AM====> 230 Min.
May 2015 update package 499 Wed 5/13/2015 8:18 AM====> 737 Min.
Jun 2015 update package 504 Tue 6/9/2015 10:46 PM====> 95 Min.
Jul 2015 update package 515 Thu, 7/16/2015 3:24 AM====> 1862 Min.
Aug 2015 update package 521 Thu, 8/13/2015 7:11 PM====> 2818 Min.
Sept 2015 update package 526 Wed, 9/9/2015 6:14 PM====> 1323 Min.
Oct 2015 update package 533 Wed, 10/14/2015 7:38 AM====> 696 Min.
Nov 2015 update package 539 Wed, 11/11/2015 10:16 AM====> 850 Min.
Dec 2015 update package 544 Wed 12/9/2015 2:34 AM====> 373 Min.
Jan 2016 update package 551 Tue 1/12/2016 10:25 PM====> 113 Min.
Feb 2016 update package 557 Wed 2/10/2016 5:08 AM====> 537 Min.
Mar 2016 update package 566 Thu 3/10/2016 0:03 AM====> 1793 Min.
Apr 2016 update package 578 Wed 4/12/2016 4:55 AM====> 532 Min
Average for PAN Patch Tuesday response time (Jan-2015 – Apr 2016 ): 872 minutes (14h33m)
Cisco (https://www.snort.org/advisories/) :
Jan 2015 VRT Rules 2015-01-13 2015-01-13 19:27:43 UTC====> 106 Min.
Feb 2015 VRT Rules 2015-02-10 2015-02-10 18:23:34 UTC====> 60 Min.
Mar 2015 VRT Rules 2015-03-10 2015-03-10 19:40:03 UTC====> 155 Min.
Apr 2015 VRT Rules 2015-04-14 2015-04-14 17:46:40 UTC====> 35 Min.
May 2015 Talos Rules 2015-05-12 2015-05-12 18:28:55 UTC====> 87 Min.
Jun 2015 Talos Rules 2015-06-09 2015-06-09 17:25:03 UTC====> 14 Min.
Jul 2015 Talos Rules 2015-07-14 2015-07-14 17:51:25 UTC====> 31 Min.
Aug 2015 Talos Rules 2015-08-11 2015-08-11 17:55:32 UTC34 ====> 42 Min.
Sept 2015 Talos Rules 2015-09-08 2015-09-08 18:14:21 UTC====> 63 Min.
Oct 2015 Talos Rules 2015-10-13 2015-10-13 19:03:24 UTC====> 121 Min.
Nov 2015 Talos Rules 2015-11-10 2015-11-10 19:54:08 UTC ====> 168 Min.
Dec 2015 Talos Rules 2015-12-08 2015-12-08 22:03:06 UTC====> 282 Min.
Jan 2016 Talos Rules 2016-01-12 2016-01-12 19:05:37 UTC====> 153 Min.
Feb 2016 Talos Rules 2016-02-09 2016-02-09 19:15:02 UTC ====>124 min
Mar 2016 Talos Rules 2016-03-08 2016-03-08 18:21:55 UTC====> 61 Min.
Apr 2016 Talos Rules 2016-04-12 2016-04-12 19:06:33 UTC ====> 63 Min
Average for Cisco Patch Tuesday response time (Jan-2015 – Apr 2016 ): 98 minutes (1h38m)
SSL Drown Attack
Check Point : proactively protecting with signature “Secure Sockets Layer Version 2.0” see also sk92447
Palo Alto : Version 567 Thursday, March 10, 2016 at 9:16 PM
Fortinet: http://fortiguard.com/updates/ips?version=7.802 Thursday, March 3, 2016 at 11:26 PM
Flash (In The Wild) 0days 2016
Check Point
CVE-2016-1010 (http://arstechnica.com/security/2016/03/adobe-issues-emergency-patch-for-actively-exploited-code-execution-bug/)
Mar 2016 update package 634161670 Thu 10-Mar-16 22:11
CVE-2016-1019 (https://helpx.adobe.com/security/products/flash-player/apsa16-01.html)
Apr 2016 update package 634162315 Wed 06-Apr-16 19:12
Fortinet:
CVE-2016-1010 http://fortiguard.com/updates/ips?version=7.813 (Mar 16th, 2016 - 10:37:11)
CVE-2016-1019 http://fortiguard.com/updates/ips?version=7.829 ( Apr 08th, 2016 - 10:44:09)
Palo Alto :
CVE-2016-1010 Version 570 (Thu 3/17/2016 12:24 AM)
CVE-2016-1019 Version 576 (Fri 4/8/2016 11:39 AM)
BADLOCK
Check Point
Apr 2016 update package 634162437 Tue 12-Apr-16 20:14 ====> 11 Min.
Palo Alto:
Apr 2016 update package 578 Wed 4/12/2016 4:55 AM====> 532 Min
Fortinet
Update 7.831 Apr 12th, 2016 - 21:07:14=64 min
===ALL TIMES ARE IST (GMT +2 with daylight) ===
Microsoft Patch Tuesday release dates :
Jan 2015 Tue 13-Jan-15 20:41
Feb 2015 Tue 10-Feb-15 20:23
Mar 2015 Tue 10-Mar-15 20:05
Apr 2015 Tue 14-Apr-15 20:11
May 2015 Tue 12-May-15 20:01
Jun 2015 Tue 09-Jun-15 20:11
Jul 2015 14-07-15 20:22
Aug 2015 Tue 11-Aug-15 20:13
Sept 2015 Tue 08-Sep-15 20:11
Oct 2015 Tue 13-Oct-15 20:02
Nov 2015 10-Nov-15 20:06
Dec 2015 08-Dec-15 20:21
Jan 2016 12-Jan-16 20:32
Feb 2016 09-Feb-16 20:11
Mar 2016 08-Mar-16 20:10
Apr 2016 12-Apr-16 20:03
Check Point:
Jan 2015 update package 634150275 Tue 13-Jan-15 21:10 ====> 29 Min.
Feb 2015 update package 634150971 Tue 10-Feb-15 20:44 ====> 21 Min.
Mar 2015 update package 634151647 Tue 10-Mar-15 21:06 ====> 61 Min.
Apr 2015 update package 634152477 Tue 14-Apr-15 20:32 ====> 21 Min.
May 2015 update package 634153159 Tue 12-May-15 22:11 ====> 130 Min.
Jun 2015 update package 634153827 Tue 09-Jun-15 20:41 ====> 30 Min.
Jul 2015 update package 634154669 Tue 14-Jul-15 21:21 ====> 59 Min.
Aug 2015 update package 634155315 Tue 11-Aug-15 20:34 ====> 21 Min.
Sept 2015 update package 634156015 Tue 08-Sep-15 23:02 ====> 171 Min.
Oct 2015 update package 634156850 Tue 13-Oct-15 20:21 ====> 19 Min.
Nov 2015 update package 634157526 Tue 10-Nov-15 21:11 ====> 55 Min.
Dec 2015 update package 634158204 Tue 08-Dec-15 22:11 ====> 110 Min.
Jan 2016 update package 634150275 Tue 12-Jan-16 20:48 ====> 16 Min.
Feb 2016 update package 634160946 Tue 09-Feb-16 20:31 ====> 20 Min.
Mar 2016 update package 634161619 Tue 08-Mar-16 20:32 ====> 22 Min.
Apr 2016 update package 634162437 Tue 12-Apr-16 20:14 ====> 11 Min.
Average for Check Point Patch Tuesday response time (Jan-2015 – Apr 2016 ): 50 minutes
Palo Alto
Jan 2015 update package 481 Wed 1/14/2015 1:26 AM====> 285 Min.
Feb 2015 update package 485 Wed 2/11/2015 2:00 AM====> 337 Min.
Mar 2015 update package 490 Wed 3/11/2015 6:50 PM====> 1365 Min.
Apr 2015 update package 495 Wed 4/15/2015 12:01 AM====> 230 Min.
May 2015 update package 499 Wed 5/13/2015 8:18 AM====> 737 Min.
Jun 2015 update package 504 Tue 6/9/2015 10:46 PM====> 95 Min.
Jul 2015 update package 515 Thu, 7/16/2015 3:24 AM====> 1862 Min.
Aug 2015 update package 521 Thu, 8/13/2015 7:11 PM====> 2818 Min.
Sept 2015 update package 526 Wed, 9/9/2015 6:14 PM====> 1323 Min.
Oct 2015 update package 533 Wed, 10/14/2015 7:38 AM====> 696 Min.
Nov 2015 update package 539 Wed, 11/11/2015 10:16 AM====> 850 Min.
Dec 2015 update package 544 Wed 12/9/2015 2:34 AM====> 373 Min.
Jan 2016 update package 551 Tue 1/12/2016 10:25 PM====> 113 Min.
Feb 2016 update package 557 Wed 2/10/2016 5:08 AM====> 537 Min.
Mar 2016 update package 566 Thu 3/10/2016 0:03 AM====> 1793 Min.
Apr 2016 update package 578 Wed 4/12/2016 4:55 AM====> 532 Min
Average for PAN Patch Tuesday response time (Jan-2015 – Apr 2016 ): 872 minutes (14h33m)
Cisco (https://www.snort.org/advisories/) :
Jan 2015 VRT Rules 2015-01-13 2015-01-13 19:27:43 UTC====> 106 Min.
Feb 2015 VRT Rules 2015-02-10 2015-02-10 18:23:34 UTC====> 60 Min.
Mar 2015 VRT Rules 2015-03-10 2015-03-10 19:40:03 UTC====> 155 Min.
Apr 2015 VRT Rules 2015-04-14 2015-04-14 17:46:40 UTC====> 35 Min.
May 2015 Talos Rules 2015-05-12 2015-05-12 18:28:55 UTC====> 87 Min.
Jun 2015 Talos Rules 2015-06-09 2015-06-09 17:25:03 UTC====> 14 Min.
Jul 2015 Talos Rules 2015-07-14 2015-07-14 17:51:25 UTC====> 31 Min.
Aug 2015 Talos Rules 2015-08-11 2015-08-11 17:55:32 UTC34 ====> 42 Min.
Sept 2015 Talos Rules 2015-09-08 2015-09-08 18:14:21 UTC====> 63 Min.
Oct 2015 Talos Rules 2015-10-13 2015-10-13 19:03:24 UTC====> 121 Min.
Nov 2015 Talos Rules 2015-11-10 2015-11-10 19:54:08 UTC ====> 168 Min.
Dec 2015 Talos Rules 2015-12-08 2015-12-08 22:03:06 UTC====> 282 Min.
Jan 2016 Talos Rules 2016-01-12 2016-01-12 19:05:37 UTC====> 153 Min.
Feb 2016 Talos Rules 2016-02-09 2016-02-09 19:15:02 UTC ====>124 min
Mar 2016 Talos Rules 2016-03-08 2016-03-08 18:21:55 UTC====> 61 Min.
Apr 2016 Talos Rules 2016-04-12 2016-04-12 19:06:33 UTC ====> 63 Min
Average for Cisco Patch Tuesday response time (Jan-2015 – Apr 2016 ): 98 minutes (1h38m)
SSL Drown Attack
Check Point : proactively protecting with signature “Secure Sockets Layer Version 2.0” see also sk92447
Palo Alto : Version 567 Thursday, March 10, 2016 at 9:16 PM
Fortinet: http://fortiguard.com/updates/ips?version=7.802 Thursday, March 3, 2016 at 11:26 PM
Flash (In The Wild) 0days 2016
Check Point
CVE-2016-1010 (http://arstechnica.com/security/2016/03/adobe-issues-emergency-patch-for-actively-exploited-code-execution-bug/)
Mar 2016 update package 634161670 Thu 10-Mar-16 22:11
CVE-2016-1019 (https://helpx.adobe.com/security/products/flash-player/apsa16-01.html)
Apr 2016 update package 634162315 Wed 06-Apr-16 19:12
Fortinet:
CVE-2016-1010 http://fortiguard.com/updates/ips?version=7.813 (Mar 16th, 2016 - 10:37:11)
CVE-2016-1019 http://fortiguard.com/updates/ips?version=7.829 ( Apr 08th, 2016 - 10:44:09)
Palo Alto :
CVE-2016-1010 Version 570 (Thu 3/17/2016 12:24 AM)
CVE-2016-1019 Version 576 (Fri 4/8/2016 11:39 AM)
BADLOCK
Check Point
Apr 2016 update package 634162437 Tue 12-Apr-16 20:14 ====> 11 Min.
Palo Alto:
Apr 2016 update package 578 Wed 4/12/2016 4:55 AM====> 532 Min
Fortinet
Update 7.831 Apr 12th, 2016 - 21:07:14=64 min
Full reference patch teusday http://tiny.cc/urgency
WannaCry CVEs (eternalblue) were announces much earlier then actual outbreak. (Microsoft notified everyone on patch Tuesday of March 14, 2017 @ 7:19pm)
CVE-2017-0144 - used in both WannaCry and Not-Petya (not-petya is a new variant of wannacry)
CVE-2017-0146
===ALL TIMES ARE IST (GMT +2 with daylight) ===
Microsoft Patch Tuesday release dates :
Jan 2015 Tue 13-Jan-15 20:41
Feb 2015 Tue 10-Feb-15 20:23
Mar 2015 Tue 10-Mar-15 20:05
Apr 2015 Tue 14-Apr-15 20:11
May 2015 Tue 12-May-15 20:01
Jun 2015 Tue 09-Jun-15 20:11
Jul 2015 14-07-15 20:22
Aug 2015 Tue 11-Aug-15 20:13
Sept 2015 Tue 08-Sep-15 20:11
Oct 2015 Tue 13-Oct-15 20:02
Nov 2015 10-Nov-15 20:06
Dec 2015 08-Dec-15 20:21
Jan 2016 12-Jan-16 20:32
Feb 2016 09-Feb-16 20:11
Mar 2016 08-Mar-16 20:10
Apr 2016 12-Apr-16 20:03
Check Point:
Jan 2015 update package 634150275 Tue 13-Jan-15 21:10 ====> 29 Min.
Feb 2015 update package 634150971 Tue 10-Feb-15 20:44 ====> 21 Min.
Mar 2015 update package 634151647 Tue 10-Mar-15 21:06 ====> 61 Min.
Apr 2015 update package 634152477 Tue 14-Apr-15 20:32 ====> 21 Min.
May 2015 update package 634153159 Tue 12-May-15 22:11 ====> 130 Min.
Jun 2015 update package 634153827 Tue 09-Jun-15 20:41 ====> 30 Min.
Jul 2015 update package 634154669 Tue 14-Jul-15 21:21 ====> 59 Min.
Aug 2015 update package 634155315 Tue 11-Aug-15 20:34 ====> 21 Min.
Sept 2015 update package 634156015 Tue 08-Sep-15 23:02 ====> 171 Min.
Oct 2015 update package 634156850 Tue 13-Oct-15 20:21 ====> 19 Min.
Nov 2015 update package 634157526 Tue 10-Nov-15 21:11 ====> 55 Min.
Dec 2015 update package 634158204 Tue 08-Dec-15 22:11 ====> 110 Min.
Jan 2016 update package 634150275 Tue 12-Jan-16 20:48 ====> 16 Min.
Feb 2016 update package 634160946 Tue 09-Feb-16 20:31 ====> 20 Min.
Mar 2016 update package 634161619 Tue 08-Mar-16 20:32 ====> 22 Min.
Apr 2016 update package 634162437 Tue 12-Apr-16 20:14 ====> 11 Min.
Average for Check Point Patch Tuesday response time (Jan-2015 – Apr 2016 ): 50 minutes
Palo Alto
Jan 2015 update package 481 Wed 1/14/2015 1:26 AM====> 285 Min.
Feb 2015 update package 485 Wed 2/11/2015 2:00 AM====> 337 Min.
Mar 2015 update package 490 Wed 3/11/2015 6:50 PM====> 1365 Min.
Apr 2015 update package 495 Wed 4/15/2015 12:01 AM====> 230 Min.
May 2015 update package 499 Wed 5/13/2015 8:18 AM====> 737 Min.
Jun 2015 update package 504 Tue 6/9/2015 10:46 PM====> 95 Min.
Jul 2015 update package 515 Thu, 7/16/2015 3:24 AM====> 1862 Min.
Aug 2015 update package 521 Thu, 8/13/2015 7:11 PM====> 2818 Min.
Sept 2015 update package 526 Wed, 9/9/2015 6:14 PM====> 1323 Min.
Oct 2015 update package 533 Wed, 10/14/2015 7:38 AM====> 696 Min.
Nov 2015 update package 539 Wed, 11/11/2015 10:16 AM====> 850 Min.
Dec 2015 update package 544 Wed 12/9/2015 2:34 AM====> 373 Min.
Jan 2016 update package 551 Tue 1/12/2016 10:25 PM====> 113 Min.
Feb 2016 update package 557 Wed 2/10/2016 5:08 AM====> 537 Min.
Mar 2016 update package 566 Thu 3/10/2016 0:03 AM====> 1793 Min.
Apr 2016 update package 578 Wed 4/12/2016 4:55 AM====> 532 Min
Average for PAN Patch Tuesday response time (Jan-2015 – Apr 2016 ): 872 minutes (14h33m)
Cisco (https://www.snort.org/advisories/) :
Jan 2015 VRT Rules 2015-01-13 2015-01-13 19:27:43 UTC====> 106 Min.
Feb 2015 VRT Rules 2015-02-10 2015-02-10 18:23:34 UTC====> 60 Min.
Mar 2015 VRT Rules 2015-03-10 2015-03-10 19:40:03 UTC====> 155 Min.
Apr 2015 VRT Rules 2015-04-14 2015-04-14 17:46:40 UTC====> 35 Min.
May 2015 Talos Rules 2015-05-12 2015-05-12 18:28:55 UTC====> 87 Min.
Jun 2015 Talos Rules 2015-06-09 2015-06-09 17:25:03 UTC====> 14 Min.
Jul 2015 Talos Rules 2015-07-14 2015-07-14 17:51:25 UTC====> 31 Min.
Aug 2015 Talos Rules 2015-08-11 2015-08-11 17:55:32 UTC34 ====> 42 Min.
Sept 2015 Talos Rules 2015-09-08 2015-09-08 18:14:21 UTC====> 63 Min.
Oct 2015 Talos Rules 2015-10-13 2015-10-13 19:03:24 UTC====> 121 Min.
Nov 2015 Talos Rules 2015-11-10 2015-11-10 19:54:08 UTC ====> 168 Min.
Dec 2015 Talos Rules 2015-12-08 2015-12-08 22:03:06 UTC====> 282 Min.
Jan 2016 Talos Rules 2016-01-12 2016-01-12 19:05:37 UTC====> 153 Min.
Feb 2016 Talos Rules 2016-02-09 2016-02-09 19:15:02 UTC ====>124 min
Mar 2016 Talos Rules 2016-03-08 2016-03-08 18:21:55 UTC====> 61 Min.
Apr 2016 Talos Rules 2016-04-12 2016-04-12 19:06:33 UTC ====> 63 Min
Average for Cisco Patch Tuesday response time (Jan-2015 – Apr 2016 ): 98 minutes (1h38m)
SSL Drown Attack
Check Point : proactively protecting with signature “Secure Sockets Layer Version 2.0” see also sk92447
Palo Alto : Version 567 Thursday, March 10, 2016 at 9:16 PM
Fortinet: http://fortiguard.com/updates/ips?version=7.802 Thursday, March 3, 2016 at 11:26 PM
Flash (In The Wild) 0days 2016
Check Point
CVE-2016-1010 (http://arstechnica.com/security/2016/03/adobe-issues-emergency-patch-for-actively-exploited-code-execution-bug/)
Mar 2016 update package 634161670 Thu 10-Mar-16 22:11
CVE-2016-1019 (https://helpx.adobe.com/security/products/flash-player/apsa16-01.html)
Apr 2016 update package 634162315 Wed 06-Apr-16 19:12
Fortinet:
CVE-2016-1010 http://fortiguard.com/updates/ips?version=7.813 (Mar 16th, 2016 - 10:37:11)
CVE-2016-1019 http://fortiguard.com/updates/ips?version=7.829 ( Apr 08th, 2016 - 10:44:09)
Palo Alto :
CVE-2016-1010 Version 570 (Thu 3/17/2016 12:24 AM)
CVE-2016-1019 Version 576 (Fri 4/8/2016 11:39 AM)
BADLOCK
Check Point
Apr 2016 update package 634162437 Tue 12-Apr-16 20:14 ====> 11 Min.
Palo Alto:
Apr 2016 update package 578 Wed 4/12/2016 4:55 AM====> 532 Min
Fortinet
Update 7.831 Apr 12th, 2016 - 21:07:14=64 min
Full reference patch teusday http://tiny.cc/urgency
WannaCry CVEs (eternalblue) were announces much earlier then actual outbreak. (Microsoft notified everyone on patch Tuesday of March 14, 2017 @ 7:19pm)
CVE-2017-0144 - used in both WannaCry and Not-Petya (not-petya is a new variant of wannacry)
CVE-2017-0146
meltdown/spectre:
CVE-2017-5753, CVE-2017-5715, CVE-2017-5754
First javascript POC publication time stamp in Jan 4, 2018 @11:48am GMT+2 : https://www.reddit.com/r/webdev/comments/7o1zkp/exploiting_speculative_execution_meltdownspectre/
Check Point published signatures: Jan 5, 2018 @12:14am GMT+2
PAN published signatures: Jan 6, 2018 @12:24am GMT+2
Fortinet published signatures: Jan 5th 10:51pm PDT which is 8:51 GMT+2
===ALL TIMES ARE IST (GMT +2 with daylight) ===
Microsoft Patch Tuesday release dates :
Jan 2015 Tue 13-Jan-15 20:41
Feb 2015 Tue 10-Feb-15 20:23
Mar 2015 Tue 10-Mar-15 20:05
Apr 2015 Tue 14-Apr-15 20:11
May 2015 Tue 12-May-15 20:01
Jun 2015 Tue 09-Jun-15 20:11
Jul 2015 14-07-15 20:22
Aug 2015 Tue 11-Aug-15 20:13
Sept 2015 Tue 08-Sep-15 20:11
Oct 2015 Tue 13-Oct-15 20:02
Nov 2015 10-Nov-15 20:06
Dec 2015 08-Dec-15 20:21
Jan 2016 12-Jan-16 20:32
Feb 2016 09-Feb-16 20:11
Mar 2016 08-Mar-16 20:10
Apr 2016 12-Apr-16 20:03
Check Point:
Jan 2015 update package 634150275 Tue 13-Jan-15 21:10 ====> 29 Min.
Feb 2015 update package 634150971 Tue 10-Feb-15 20:44 ====> 21 Min.
Mar 2015 update package 634151647 Tue 10-Mar-15 21:06 ====> 61 Min.
Apr 2015 update package 634152477 Tue 14-Apr-15 20:32 ====> 21 Min.
May 2015 update package 634153159 Tue 12-May-15 22:11 ====> 130 Min.
Jun 2015 update package 634153827 Tue 09-Jun-15 20:41 ====> 30 Min.
Jul 2015 update package 634154669 Tue 14-Jul-15 21:21 ====> 59 Min.
Aug 2015 update package 634155315 Tue 11-Aug-15 20:34 ====> 21 Min.
Sept 2015 update package 634156015 Tue 08-Sep-15 23:02 ====> 171 Min.
Oct 2015 update package 634156850 Tue 13-Oct-15 20:21 ====> 19 Min.
Nov 2015 update package 634157526 Tue 10-Nov-15 21:11 ====> 55 Min.
Dec 2015 update package 634158204 Tue 08-Dec-15 22:11 ====> 110 Min.
Jan 2016 update package 634150275 Tue 12-Jan-16 20:48 ====> 16 Min.
Feb 2016 update package 634160946 Tue 09-Feb-16 20:31 ====> 20 Min.
Mar 2016 update package 634161619 Tue 08-Mar-16 20:32 ====> 22 Min.
Apr 2016 update package 634162437 Tue 12-Apr-16 20:14 ====> 11 Min.
Average for Check Point Patch Tuesday response time (Jan-2015 – Apr 2016 ): 50 minutes
Palo Alto
Jan 2015 update package 481 Wed 1/14/2015 1:26 AM====> 285 Min.
Feb 2015 update package 485 Wed 2/11/2015 2:00 AM====> 337 Min.
Mar 2015 update package 490 Wed 3/11/2015 6:50 PM====> 1365 Min.
Apr 2015 update package 495 Wed 4/15/2015 12:01 AM====> 230 Min.
May 2015 update package 499 Wed 5/13/2015 8:18 AM====> 737 Min.
Jun 2015 update package 504 Tue 6/9/2015 10:46 PM====> 95 Min.
Jul 2015 update package 515 Thu, 7/16/2015 3:24 AM====> 1862 Min.
Aug 2015 update package 521 Thu, 8/13/2015 7:11 PM====> 2818 Min.
Sept 2015 update package 526 Wed, 9/9/2015 6:14 PM====> 1323 Min.
Oct 2015 update package 533 Wed, 10/14/2015 7:38 AM====> 696 Min.
Nov 2015 update package 539 Wed, 11/11/2015 10:16 AM====> 850 Min.
Dec 2015 update package 544 Wed 12/9/2015 2:34 AM====> 373 Min.
Jan 2016 update package 551 Tue 1/12/2016 10:25 PM====> 113 Min.
Feb 2016 update package 557 Wed 2/10/2016 5:08 AM====> 537 Min.
Mar 2016 update package 566 Thu 3/10/2016 0:03 AM====> 1793 Min.
Apr 2016 update package 578 Wed 4/12/2016 4:55 AM====> 532 Min
Average for PAN Patch Tuesday response time (Jan-2015 – Apr 2016 ): 872 minutes (14h33m)
Cisco (https://www.snort.org/advisories/) :
Jan 2015 VRT Rules 2015-01-13 2015-01-13 19:27:43 UTC====> 106 Min.
Feb 2015 VRT Rules 2015-02-10 2015-02-10 18:23:34 UTC====> 60 Min.
Mar 2015 VRT Rules 2015-03-10 2015-03-10 19:40:03 UTC====> 155 Min.
Apr 2015 VRT Rules 2015-04-14 2015-04-14 17:46:40 UTC====> 35 Min.
May 2015 Talos Rules 2015-05-12 2015-05-12 18:28:55 UTC====> 87 Min.
Jun 2015 Talos Rules 2015-06-09 2015-06-09 17:25:03 UTC====> 14 Min.
Jul 2015 Talos Rules 2015-07-14 2015-07-14 17:51:25 UTC====> 31 Min.
Aug 2015 Talos Rules 2015-08-11 2015-08-11 17:55:32 UTC34 ====> 42 Min.
Sept 2015 Talos Rules 2015-09-08 2015-09-08 18:14:21 UTC====> 63 Min.
Oct 2015 Talos Rules 2015-10-13 2015-10-13 19:03:24 UTC====> 121 Min.
Nov 2015 Talos Rules 2015-11-10 2015-11-10 19:54:08 UTC ====> 168 Min.
Dec 2015 Talos Rules 2015-12-08 2015-12-08 22:03:06 UTC====> 282 Min.
Jan 2016 Talos Rules 2016-01-12 2016-01-12 19:05:37 UTC====> 153 Min.
Feb 2016 Talos Rules 2016-02-09 2016-02-09 19:15:02 UTC ====>124 min
Mar 2016 Talos Rules 2016-03-08 2016-03-08 18:21:55 UTC====> 61 Min.
Apr 2016 Talos Rules 2016-04-12 2016-04-12 19:06:33 UTC ====> 63 Min
Average for Cisco Patch Tuesday response time (Jan-2015 – Apr 2016 ): 98 minutes (1h38m)
SSL Drown Attack
Check Point : proactively protecting with signature “Secure Sockets Layer Version 2.0” see also sk92447
Palo Alto : Version 567 Thursday, March 10, 2016 at 9:16 PM
Fortinet: http://fortiguard.com/updates/ips?version=7.802 Thursday, March 3, 2016 at 11:26 PM
Flash (In The Wild) 0days 2016
Check Point
CVE-2016-1010 (http://arstechnica.com/security/2016/03/adobe-issues-emergency-patch-for-actively-exploited-code-execution-bug/)
Mar 2016 update package 634161670 Thu 10-Mar-16 22:11
CVE-2016-1019 (https://helpx.adobe.com/security/products/flash-player/apsa16-01.html)
Apr 2016 update package 634162315 Wed 06-Apr-16 19:12
Fortinet:
CVE-2016-1010 http://fortiguard.com/updates/ips?version=7.813 (Mar 16th, 2016 - 10:37:11)
CVE-2016-1019 http://fortiguard.com/updates/ips?version=7.829 ( Apr 08th, 2016 - 10:44:09)
Palo Alto :
CVE-2016-1010 Version 570 (Thu 3/17/2016 12:24 AM)
CVE-2016-1019 Version 576 (Fri 4/8/2016 11:39 AM)
BADLOCK
Check Point
Apr 2016 update package 634162437 Tue 12-Apr-16 20:14 ====> 11 Min.
Palo Alto:
Apr 2016 update package 578 Wed 4/12/2016 4:55 AM====> 532 Min
Fortinet
Update 7.831 Apr 12th, 2016 - 21:07:14=64 min