-
Overview
How it works
Details
Editions & Prices
System Requirements
FAQ

Patch Management Software

Secunia Corporate Software Inspector (CSI) 6.0

Automate your vulnerability scanning and computer security with patch management software from industry experts. Designed to be non-intrusive and easy on the hosts and network being scanned, the Secunia CSI, once downloaded, has a minimal impact while accurately pinpointing vulnerable programs across your network. Start using Secunia CSI 6.0 to secure your computer network.

System Requirements

The Secunia CSI is an authenticated patch scanner, designed to be non-intrusive and easy on the hosts and network being scanned, thus causing a minimal impact while pinpointing vulnerable programs across your network.

Running the centralised dashboard
  • Network/Internet connection (SSL 443/tcp to *.secunia.com)
  • Microsoft Windows XP Service Pack 3, Vista, 7 and 8. Windows Server 2003, 2008 and 2012
  • Microsoft Internet Explorer 7 or higher

The centralised dashboard is your control panel. This is where you manage computers, start and schedule scans, view scan results, pinpoint vulnerable hosts and programs, and so forth. The dashboard is very light weight, in terms of required system resources - it has been designed with the purpose of running in the background for instant access to your results.

Scanning using remote login (Agent-less):
  • Administrative privileges
  • Microsoft Windows XP Service Pack 3, Vista, 7 and 8. Windows Server 2003, 2008 and 2012
  • Windows Update Agent 2.0

    Standard Windows services/ports:
    • Workstation and Server Service
    • Remote Registry Service
    • File and Print Sharing
    • COM+
    • Ports 139/tcp and 445/tcp open inbound
Scanning using installable agent (Agent-based):
  • Administrative privileges
  • Microsoft Windows XP Service Pack 3, Vista, 7 and 8. Windows Server 2003, 2008 and 2012
  • Windows Update Agent 2.0

-

Changelog

Version 6.0.0.7 - Secunia CSI 6.0 (Maintenance Release, 26th March 2013)

This is a minor maintenance release. The primary changes are:

Improved Scanning:

  • Enhancements to SCCM Import Schedule. Users can select Include All Hosts to import the scan results of all Hosts available on the server. If new Hosts are discovered by the SCCM Server at a later date, they will also be included in the scan result.
  • Enhancements to RHEL Agent.

Various:

  • In addition to the above, a number of minor bug fixes and enhancements have been completed.

Version 6.0.0.6 - Secunia CSI 6.0 (Maintenance Release, 11th February 2013)

This is a minor maintenance release. The primary changes are:

CSI Agents:

  • Secunia CSI Agent Deployment not completely silent - CMD appears to users. The installer has been changed to execute command lines without opening the CMD window. If a previous version, before this maintenance release, of the CSI Agent is installed on the system a CMD window will still be shown when the CSIA Installer removes the old CSI Agent. On a clean system, the CSIASetup.exe will be completely silent as of this release. If the CSI Agent on the system is a version later than this release, both uninstalling and installing will be completely silent.
  • Enhancements to Agent installation and Agent Event Overview.

Improved Scanning:

  • Completed Scans, Scan Status. Newline was not properly handled in rollover of Scan Status column in Completed Scans window. Fixed
  • Location of Custom Scan Rules. Moved to the Scanning main menu (above Completed Scans)
  • Completed scans window was missing context menu. Fixed
  • SCCM Inventory Import: Named instances in SQL server breaks import. Fixed
  • SCCM Import Schedule. New.

Various:

  • Windows Server 2012: Publish Package Failed. Fixed.
  • Special Java rule should include a test for 'ssv.dll' or a running instance of 'iexplore.exe'. Fixed.
  • 64-bit specific text from within UI (WSUS Configuration). Fixed.
  • CSI - PSI integration, change of Hostname is not reflected in the CSI or database. Fixed. Added functionality to the CSI to update the Hostname and LAN Group of PSI hosts if they have changed.
  • Database cleanup rule not working. Fixed.
  • Ignore only one host, program or site not working. If you ignore only one host, program or site from outside the Ignore Rules window, for example Completed Scans or Hosts, it will not be part of selected list. Fixed.
  • Smart Group criticality criteria not excluding patched programs. Fixed.
  • Win8 x64-bit: CSI crashes when connected to the WSUS and Available is selected. Fixed.
  • Highlight Programs in SPS does not highlight correctly. Fixed.
  • In addition to the above, a number of minor bug fixes and enhancements have been completed.

Version 6.0.0.5 - Secunia CSI 6.0 (Maintenance Release, 13th December 2012)

Active Directory (AD) Integration. The AD Integration has been updated. The new features include:

  • Faster scanning. The scans are now noticeably faster.
  • Scheduled scans. The user can now schedule the scans of the AD on a regular basis or simply rely on manual scanning.
  • Smarter scanning. Depending on the chosen AD settings, the scanner can now parse the whole accessible AD tree structure and fetch additional Domain Controllers (DCs), other than the main forest DC. This relies on the Configuration's Partition elements to be accessible to the AD scanner, for example: 'LDAP://CN=Partitions,CN=Configuration,' + rootForestDomain.
  • Improved UI. The new options are consistent with each other and make configuration easier. In addition, the AD tree is parsed in such a way that it represents the logical structure of the forest.
  • Specify specific DCs. It is now possible to specify a specific DC to be scanned by the AD.
  • NetBiosName aware. The langroup of the hosts are now fetched consistently with the CSI provided that the Configuration's Partitions elements are accessible to the AD scanner.
  • Non-intrusive. The number of active AD queries is limited to 5 so that the client's domain controllers are not flooded with requests.
  • Improved debugging. There are now fewer AD related messages, but the ones that are printed in the log are much more relevant, allowing for easier debugging.

Detection of 512 Bits RSA key usage. If publishing fails, and the used key is less than 1024 bits long, the publishing wizard will show a warning pointing to the blog post on the Secunia website.

SCCM - SQL database detection. In the CSI SCCM Configuration window, enter the SCCM Server Name and click Save. If you select Manual, you can enter the SQL Host, SQL Port and SQL Database connection data and click Save.

Support for PowerShell in SPS. There is a new option for PowerShell, however it is the responsibility of the customer to write the script.

MAC Agents report with 'Localhost' names to CSI - MACs have other names. MAC Agents now report with their correct names (not 'Localhost' names) to CSI.

Get the NetBios name based on the fully qualified directory domain name. The NetBios name is now based on the fully qualified directory domain name.

Update agents to report their type when checking in. Update agents now report their type when checking in (RHEL, Windows and Mac).

Windows update settings. All customers that did not previously have anything selected, and all new customers, will have “Managed” selected by default.

CSI Red Hat Agent Inconsistency. The CSI Red Hat Agent is now consistent with the way agents are normally configured.

Running the CSIA.exe from command line with proxy settings will produce the following error: Option '-x' is repeated. Cannot have several manual proxy configurations. A number of proxy options can be specified in multiple places, for example, if a proxy-url is stored in registry but a --proxy-pac is specified on the command line, the command line takes priority. If multiple -x parameters are specified, the last one takes priority.

Last Week shows "No Data" when "Number of weeks" = 1. The default synchronization setting has been changed to "Number of Weeks" = "2".

Can't rename site name from the hosts window. The issue was caused by an inconsistent state of the local database when the user disables AD. When the user disables AD, all the sites from the local database are now removed.

VARIOUS - In addition to the major changes, a number of minor bug fixes as well as aesthetic and user-experience enhancements have been completed.

Version 6.0.0.4 - Secunia CSI 6.0 (Maintenance Release, 1st November 2012)

  • Export
    Export buttons added to "Installations", 'Patch Information' and 'Patch Available' tabs.
  • Historical Data
    There is a new "Synchronization" field at the bottom of Configuration > Settings. Users can now configure the amount of historical data for trend reporting purposes. Users can now set it to "unlimited", or set the number of weeks that it syncs, providing a significant overhead saving for large customers synching their private DB – a substantial percentage of their data was historical data that they might require.
  • Ignore Rules
    Fixed issues with ignore rule "Never" functionality.
  • MAC Agent Check-in
    Fixed issues with the initial agent check-in of a MAC local host agent being listed as the Windows platform.
  • Patching
    Fixed naming of patch packages to limit impact of SCCM limitation.
  • Proxy Settings
    The CSI agent (CSI-A) is now able to use proxy settings from Internet Options/PAC.
  • Scans
    Fixed issues with invalid and valid host (which are not connected) being displayed in the Failed Scan status.
    Fixed issues with Quick Scan not displaying scanned hosts (where the hosts that have been quick scanned through the CSI console are not showing up with a 'scan agent' and therefore the customer needs to check 'include not scanned hosts' to be able to see them in the host view).
    Fixed issues with Active Directory Scans where the AD contains special characters (commas, underscores). From now special characters are supported for domain names and computer names.
    Fixed issues with remote "Type 3" scans not displaying any results.
  • SPS
    Fixed issues with SPS Agent proxy option description in Technical User Guide.
    Fixed issue with SPS overview 1 day and 24 hours = 2 days or 48 hours.
  • Uninstall Packages Only Uninstall 32-bit Programs
    Fixed by adding 64-bit context to registry access (ignored on 32-bit machines).
  • Various:
    In addition to the major changes, a number of minor bug fixes as well as aesthetic and user-experience enhancements have been completed.

Version 6.0.0.3 - Secunia CSI 6.0 (Maintenance Release, 21st September 2012)

  • SPS:
    • Fixed issue when creating an uninstall package.
    • Fixed inconsistent checkmark setting issue, when creating a Java package.
    • Fixed error issue when changing the name in the process for editing an approved package.
  • Scanning:
    • Fixed issues when deleting multiple Groups, Agents or Targets.
    • Corrected grid date filtering for completed scans, so it takes the clients time zone settings into account.
  • Trend reporting:
    Fixed issues concerning missing and inconsistent historical data in Trend Reporting.
  • PSI Integration:
    • In the Host section in the CSI, additional information about IP Address and Mac Address from the PSI scanning will be stated.
    • Fixed issues concerning general product update installations on PSI hosts.
  • Activity Log:
    Fixed issue concerning limited data in the Activity Information section in the Activity Log.
  • Some UI glitches have been fixed.
  • Various:
    In addition to the major changes, a number of minor bug fixes as well as aesthetic and user-experience enhancements have been completed.

Version 6.0.0.2 - Secunia CSI 6.0 (Final Release, 30th August 2012)

  • Microsoft SCCM Integration:
    Instead of installing an additional agent from Secunia, the SCCM agent can now handle the scanning, which means one less agent on all company endpoints.
  • Third-party Integration for Patching
    The Secunia CSI can now be easily integrated with your preferred patch deployment solution (for example, the Altiris Deployment Solution) using the Secunia Patch Deployment SDK to allow for easy patch management
  • Secunia Smart Groups
    Secunia Smart Groups help you prioritize your remediation efforts and stay secure and compliant by allowing you to filter and segment your data.
  • Smart Group Notifications
    Configure email notifications and SMS alerts, so that you are immediately notified when an event occurs that is relevant to you.
  • Scanning Red Hat Enterprise Linux (RHEL)
    Expanded coverage which also includes scanning of Red Hat Enterprise Linux in addition to Windows and Mac OSX.
  • Custom Software Scanning
    The Secunia CSI can now be used to scan custom software. That is, if you have (non-public) software that has been designed for your organisation, you can use the Secunia CSI to identify exactly on which hosts this is present, and deploy updates using the Secunia Package System (SPS) together with your existing deployment solution.
  • Scheduled Data Export
    Use the Exporting function to schedule automatic exports of data, for example data required to be automatically imported into a GRC tool for compliance purposes.
  • Active Directory Integration
    Automatically update organisational units and structure in the Secunia CSI when changes are made to the Active Directory, and avoid double-work and ensure that your environment is always in sync.
  • Activity Log
    View a full log of all activities in the Secunia CSI, including “write” actions, logins, and so on.
  • IP Access Management
    Use the IP Access Management window to configure the IP addresses the Secunia CSI console can be accessed from, thereby further limiting the risk of unauthorized access to the console and your environment.
  • Integration with Secunia PSI 3.0
    Integration with Secunia PSI 3.0 allows you to also manage PCs that are not regularly connected to your network. The Secunia PSI 3.0 provides automatic updating and is a simple user interface available in multiple languages.
  • Integration with Secunia VIM
    Integration with the Secunia Vulnerability Intelligence Manager (VIM) allows for automatically creating and updating asset lists in the Secunia VIM based on the Secunia CSI scan results.
  • F1 Help
    You can press F1 to open a help topic associated with the currently selected window in the Secunia CSI or click Help at the top of the window to view all CSI help topics.
  • Various:
    In addition to the major changes, a number of minor bug fixes as well as aesthetic and user-experience enhancements have been completed.

Version 5.0.0.3 - Secunia CSI 5.0 (Maintenance Release, 13th December 2012)

This is a minor maintenance release. The primary changes are:

  • PSI host configuration view:
    Fixed.
  • Sub User gets "license limit reached" even if they have enough spare licenses:
    Fixed.
  • JAVA update package - checkmark missing:Fixed. When creating an update package on the CSI5 - for JAVA v 6.0.350.10 the checkmark "only make packages available for installation if Java is not running" is now checked by default.
  • Microsoft XML core services 4.x - Issued date:
    Fixed. Simple date handling for "0000-00-00" has been changed.
  • Various:
    In addition to the above changes, a number of minor bug fixes as well as aesthetic and user-experience enhancements have been completed.

Version 5.0.0.2 - Secunia CSI 5.0 (Maintenance Release, 21st September 2012)

  • Proxy settings:
    • Fixed issues when reinstalling the CSI Agent (Installed with Direct Connection) with Proxy-settings.
    • When creating an Agent Deployment in the Secunia Package System, there was an issue when writing the Proxy settings to the User Registry, this has been fixed.
    • Fixed issues with proxy settings being stored during Mac Agent installation.
  • Reporting:
    Criticality rating was ignored during some Report configurations, this has been fixed.
  • Secunia Package System:
    • Fixed issues when editing download links in the Package create wizard.
    • Wrong error message during publishing of some Packages.
  • PSI:
    Fixed issue when downloading and deploying the PSI when using a Shadow Account.
  • Shadow User:
    • A shadow user with read/write access now has the privileges to assign licenses.
    • Fixed issue concerning Shadow user permission rights.
  • Network Appliance Group:
    Fixed issue when trying to edit Groups containing a large number of Targets.
  • Some UI glitches have been fixed.
  • Various:
    In addition to the major changes, a number of minor bug fixes as well as aesthetic and user-experience enhancements have been completed.

Version 5.0.0.1 - Secunia CSI 5.0 (Minor update, 1st June 2012)

  • Added a "Do not email" option to the 'Configure New Report' wizard to allow users to download the report from the CSI Console
  • Added "All hosts" and "All products" option in the 'Configure New Report' wizard, when selecting host level statistics and product level statistics
  • Fixed various minor bugs

Version 5.0 - Secunia CSI 5.0 (Major update / Final release, 31st August 2011)

  • Updated Design - The design of the Secunia CSI 5.0 has been updated in accordance with Secunia’s brand image and new design guidelines.
  • Enhanced Reporting - Improved modular reporting has been implemented. This means that reports are fully customisable and can be configured to include the data that the customer wants. This also includes data from sub-users.

    The modular reporting is similar to what has already been successfully implemented in the Secunia Vulnerability Intelligence Manager (VIM). It allows for greater flexibility and ensures a reporting setup that is easily extendable in terms of adding more reporting features.
  • Scan Agent for Apple Mac OS X - With the Secunia CSI 5.0 it is now possible to scan Apple Mac OS X and have the scan results displayed in the solution’s user interface.

    The new CSI Agent for Mac is available for download from the “Download Local Agent” page within the Secunia CSI 5.0. The new agent can be installed on the Mac host in both “command line” and “service” mode, in a similar way to how the Windows equivalent works.
  • Enhanced Secunia Personal Software Inspector (PSI) Integration - The integration with the Secunia PSI has evolved from the previous implementation. It now allows for enhanced management of the connected Secunia PSI installations. This includes:
    • Control of scan frequency
    • Control of check-in frequency
    • If auto-updates should be enabled or not
    • Approval of missing updates for connected Secunia PSI users
  • Secunia Community - The Secunia Community is now directly available from within the Secunia CSI 5.0 user interface. This allows for fast access to other users of the Secunia CSI 5.0, which enables experiences, problems, ideas, files / packages, and useful advice, etc. to be shared.

    The Secunia Community can be accessed through the conveniently located “Community” button located on the top right-hand side of the Secunia CSI 5.0 interface.
  • Secunia CSI API – Local Database Access - Secunia appreciates openness, which is why we have introduced the Secunia CSI API. The API’s “Local Database Console” provides access to, and interaction with, Secunia’s underlying database containing all scan results, scan history, sites, and configuration settings as presented and used in the Secunia CSI 5.0 user interface.

    The underlying database is a standard SQLite database, which makes it very easy to write your own custom SQL queries. The Secunia CSI 5.0 synchronises the database with the client.

    This allows quick and simple access to the vast amounts of information collected in the Secunia CSI 5.0 database. Furthermore, it provides the ability to copy and export the contents of the local database to 3rd party programs for further processing.

    The “Local Database Console” is built in a way that makes it very easy for users to share their “database queries” through the Secunia Community Forum for example which, in turn, helps other users retrieve custom data from the Secunia CSI 5.0 database.

    The local database is located on the file system and can be accessed using any 3rd party tool capable of interacting with a SQLite database.
  • Secunia Package System (SPS) – Enhanced WSUS integration
    • Fully Customisable Packages
      The Secunia Package System (SPS) enables the creation of packages that are fully customisable, meaning that it is possible to control every aspect of the package (update) that is deployed and executed on the client. Such flexibility enables you to control the execution flow, add multiple files to the same update package, perform configuration changes, and so forth, all through a simple wizard using standard techniques.

      The extended control of your packages is of course optional. You can still create “normal” update packages in a matter of seconds by using the predefined SPS packages as provided by the Secunia CSI 5.0 for a wide variety of products.

      All available packages can be created, edited, and altered to your fit your requirements in a few simple steps.
    • Full 32-bit and 64-bit support
      Packages for both 32-bit and 64-bit systems can easily be created and defined during the package creation wizard, thus enabling simplified deployment of patches to 32-bit and 64-bit systems.
    • Language Specific Updates
      As with the 32-bit and 64-bit support, it is now very convenient to define which languages a package should be installed for. For example, now you can easily patch various language versions of Adobe Reader.
    • Program Uninstall
      Due to the flexibility of the new Secunia Package System (SPS), it is now also possible to create “uninstall packages” for installed software that support silent uninstallation or where a custom uninstaller may be used. This effectively enables customers to remotely uninstall unwanted programs across their client base.
    • Import and Export Packages
      Packages can be imported and exported, which allows for sharing between colleagues and other Secunia CSI 5.0 users on the Secunia Community Forums, for example. Packages are saved in XML format, making it easy to open an exported package in your favourite editor for further customisation and adjustment.
    • Edit Published Packages
      Packages can be edited even after they have been “published” to a WSUS server. Once edited, they can either be re-published to WSUS or exported to a file for sharing or for future reuse.
  • Minor Items - Besides the major items described, many minor improvements are also available within the Secunia CSI 5.0 interface.
    • Zombie Files Concept
      The Secunia CSI 5.0 now supports Zombie File detection. This allows the Secunia CSI back-end to automatically filter out scan results which are likely “left-over” files from a previous installation that do not pose any immediate threat to your clients. The control panel for enabling detection of Zombie Files is located on the Settings page.
    • Additional Portlets on the Dashboard
      Additional portlets have been implemented in the Secunia CSI 5.0 Dashboard based on customer feedback.
    • Rule-Based Database Clean-up
      Hosts may be deleted from your database using rules. This allows for easier database maintenance, when, for example, hosts have been decommissioned or for some other reason are no longer are part of the network.
    • Generic Page Specific Help
      On every page there is page specific help available. This help information can be accessed through the Help icon on the top menu bar within the Secunia CSI 5.0.
    • Automated Solution Setup Help
      The automated solution setup help is represented by a red / green icon on the top menu bar that will help to ensure that basic functionality is configured correctly in the Secunia CSI 5.0.
    • Warning When Creating Patches Based on Old Scan Results
      The Secunia CSI 5.0 will show a warning message if packages are created based on old scan results, thus recommending a rescan before a package is created. This is carried out in order to avoid packages being created based on old and potentially out-of-date scan results.
    • Ability to Group Results on WSUS Page
      As a default setting, the results on the entry page for creating SPS packages for WSUS is now grouped by Vendor, thereby making it easier to prioritise and manage missing updates.
    • Limit Black/White List Rules to a Specific Site
      Black and White list rules can be limited to apply to a specific site, enabling more advanced result filtering.
    • Deregister CSI / Permanently Logout
      It is now possible to “deregister” your Secunia CSI 5.0 installation. This will remove local login credentials and settings from the host. This is useful for customers with multiple accounts or if the Secunia CSI 5.0 has been used temporarily on a host.
    • Automatic Password Recovery
      By registering and confirming your e-mail address and mobile number, it will be possible to change your password without contacting the Secunia Customer Support Center (CSC) in advance.
    • Improved Access to View Missing KB Numbers for Microsoft Programs
      The access to view exactly what KB numbers are missing has been improved and the program specific view now offers a full list of missing security-related KB numbers for the specific program.
    • Feedback on Software Suggestions
      It is possible to add your e-mail address when you make Software Suggestions to Secunia, meaning that we can notify you once your suggestions have been added to the Secunia database, or allow the Secunia team to request more information if the initially submitted data proves insufficient.
    • Use of Client Local Time in Interface
      Throughout the interface local client time is used, meaning that all dates, timestamps, etc. will be presented in local time based on the local system clock.
    • Ability to Export Result Data to Clipboard or File in CSV Format
      Many views under “Results” offer the ability to export the results of the grids into CSV format to either your clipboard or to a local file. This can be used to export and further process your scan results.
    • App-V Scanning
      Using the Secunia CSI 5.0 and the Microsoft Application Virtualization (App-V) SFT View, it is possible to make automated assessments of already created and deployed App-V packages and have the results shown in your Secunia CSI 5.0 interface.

Version 4.1.0.2007 - Secunia CSI 4.1 (Minor update, 24th May 2011)

  • Resolved issue with local database synchronisation
  • Added time to the WSUS deadline option

Version 4.1.0.2004 - Secunia CSI 4.1 (Minor update, 5th April 2011)

  • Fixed incompatibility issue with Internet Explorer 9
  • Fixed minor display issue with Quick Scan

Version 4.1.0.2001 - Secunia CSI 4.1 (Recommended update, 10th February 2011)

  • Improved WSUS connection wizard
  • Updated the Secunia CSI menu system
  • Performance improvements
  • Updated manuals

Version 4.1.0.0 - Secunia CSI 4.1 (Recommended update, 1st September 2010)

  • Secunia CSI and Secunia PSI Integration
    The Secunia CSI now integrates with the Secunia PSI. The integration enables you to create a custom Secunia PSI installer that will automatically configure the Secunia PSI installation to post data to your Secunia CSI account.

    It allows you to monitor and track the security and patch level of computers that are not directly under your control and where the local user has administrative privileges.
  • Scheduled Report Generation
    All reports can now be scheduled for generation at an interval configured by you and sent via email to addresses of your choice. This can be used for setting up reports that are automatically generated and emailed to you, management, auditors, etc. based on your preferences and company requirements / policies.
  • Additional Report: Executive Summary
    A new "Executive Summary" report has been implemented, which quickly gives you a complete summary on the security state of the hosts that are scanned with your Secunia CSI, furthermore, it provides intelligence on historic data, for example on how many vulnerabilities or patch events the programs deployed on your network have suffered over the duration of the last three years.
  • Deployment of the CSI Agent Scan Engine using the WSUS / SCCM integration
    Get full value of your solution in a few clicks. You are no longer limited to deploy security patches using the Secunia CSI's integration with WSUS and SCCM, you can also use it to deploy your "CSI Agents" to computers in your network.
  • Improved Dashboard
    Many new and improved views have been added to the internal dashboard in your Secunia CSI. Most of the views focus on the current state of your programs, hosts, and sites across your network compared to data from e.g. 1 or more weeks ago, thus enabling you to quickly and easily assess if patching on your network is on a positive or negative trend.
  • Static URL for the Dashboard
    Each Dashboard Profile that you configure comes with a URL which allows you to "export" the Dashboard Profile to your browser of choice, thus enabling you to view it on the IT departments info screens or the company "war room".
  • Black/White Listing Paths in Scan Engine
    Using the new Black and White Listing rules, it is now possible to impact how and where the CSI Scan Engine will search for files on the local hard drives of the computer being scanned.
  • Ability to Configure Microsoft Update scan server
    Ability to configure on a global-level how scans of your Microsoft products should be conducted. You can choose between either your "Locally Managed Server (WSUS/SCCM)" or the "Official Microsoft Update Online Site" depending on your scan and result requirements.
  • Fixed various minor bugs

Version 4.0.0.1 - Secunia CSI 4.0 (Recommended update, 5th May 2010)

  • User Management
    Added ability to create and login with Shadow Accounts.

    "Groups" renamed to "Sites"
    The terminology "Groups" has been replaced with "Sites" as this better suits the recommended usage of the Secunia CSI. It is recommended that you choose site names that are descriptive for you and your organisation, thus making it easy to verify the security state of hosts within each site you manage.

    Added in-line trend reporting for sites, available through "Results" -> "Sites"
  • Speed and Performance
    Usage and start-up speed of the Secunia CSI has been improved.
  • Replaced Flash charts
    The Secunia CSI no longer require Adobe Flash player to display graphs and charts.
  • Support for multiple Microsoft WSUS downstream servers
    The patches created with the Secunia CSI can now be distributed to downstream Microsoft WSUS servers, after installing the appropriate certificates on the downstream Microsft WSUS servers.

    Allow editing of the name of update packages for Microsoft WSUS/SCCM

    Allow editing of the silent install parameters used in update packages for Microsoft WSUS/SCCM
  • Fixed various minor bugs

Version 4.0.0.0 - Secunia CSI 4.0 (Major update / Final release, 22nd March 2010)

  • User Management
    Implemented user management module which allows for setting up sub-accounts beneath an administrative Secunia CSI account, as well as providing access to scan results of those sub-accounts.
  • Added in-line program trend reporting, available through "Results" -> "Programs"
  • Fixed sorting in the "Available" and "Deployment" pages
  • Fixed various minor bugs

Version 3.9.0.7 - Secunia CSI 4.0 Public Beta (Minor update / Beta release, 10th March 2010)

  • Improved logic for automatically patching Adobe Reader
    The Secunia CSI now handles Adobe's incremental patches (version 9.3.1), as well as the normal major branch patches (version 9.3.0).
  • Improved logic for automatically patching Adobe Flash Player
    The update packages created by the Secunia CSI for Adobe Flash Player will automatically detect new file names if created by the Adobe Flash Player installer.
  • Implemented "Support" menu
  • Corrected sorting on the "Available" and "Deployment" pages
  • Updated names for certain data, to correspond to the column/state names used in Microsoft WSUS
  • Fixed performance issue with certain pages, when large amounts of data (hosts) was loaded from Microsoft WSUS
  • Fixed various minor bugs

Version 3.9.0.4 - Secunia CSI 4.0 Public Beta (Minor update / Beta release, 1st March 2010)

  • Added in-line host trend reporting, available through "Results" -> "Host Overview"
  • Added report generation wizard, available through "Reports" -> "Generate Reports"
  • General cosmetic changes to highlight available functionality on all pages
  • Fixed various minor bugs

Version 3.9.0.3 - Secunia CSI 4.0 Public Beta (Minor update / Beta release, 15th February 2010)

  • Improved descriptions and documentation
  • Improved configuration of WSUS. Added wizard and automatic creation of a GPO, which configures everything automatically for all clients.
  • Functionality for handling Scan Grous configured to use Network-Appliance agents.
  • Added ability to double-click a column-divider to auto-expand its width.
  • Added password reset functionality.
  • Added ability to quickly create Ignore Rules, available through the product right-click menu.
  • Added PDF report - Product Report, available through the product right-click menu.
  • Added PDF report - Host Remediation Report, available through the host right-click menu.
  • Added PDF report - Administrative Report, available through the host right-click menu.
  • Fixed various minor bugs

Version 3.9.0.2 - Secunia CSI 4.0 Public Beta, Invite Only (Minor update / Beta release, 3rd February 2010)

  • Improved error handling when creating update packages
  • Functionality for handling Network-Appliance agents
  • Improved help messages for initial WSUS connection and configuration
  • Added ability to configure Change Summary settings
  • Added ability to set a Deadline for the installation of a package via Microsoft WSUS
  • Added more details about Secunia Advisories, Criticality Ratings, and Download Links for End-of-Life and Insecure programs
  • Added one new Dashboard element for End-of-Life programs
  • Fixed various minor bugs

Version 3.9.0.1 - Secunia CSI 4.0 Public Beta, Invite Only (Major update / Beta release, 18th January 2010)

  • Integrated with Microsoft WSUS for 3rd Party Patch Deployment
    The Secunia CSI 4.0 BETA features direct integration with Microsoft WSUS for deploying 3rd party security patches, as detected by the Secunia CSI scan engine.
    The integration allows for fast and very easy creation of 3rd party update packages, that will be silently installed for the hosts you choose.
  • New User Interface and Design
    A brand new user interface has been implemented to further improve usability and functionality of the Secunia CSI.
  • Numerous Improvements and Enhancements Based on Customer Feedback

Version 3.0.0.1 - Secunia CSI 3.0 (Minor update, 4th November 2009)

    This is a minor update, if you are upgrading from the Secunia CSI 2.x then you don't need this update.

  • Ensure that data from versions, prior to the Secunia CSI 2.x, are correctly imported into the Secunia CSI 3.0

Version 3.0.0.0 - Secunia CSI 3.0 (Major update, 29th October 2009)

    This is a major update, all customer are recommended to install / upgrade to this version.

  • User Interface: Improved speed/responsiveness
  • The user interface has been completely rewritten, to improve the responsiveness of accessing the various functions and features of the Secunia CSI. This means that changing the view from e.g. the Dashboard to Groups Overview will be instantaneous. Furthermore, this also means that searching, sorting, viewing details, etc. will be extremely fast and overall improves the usability of the Secunia CSI significantly.
  • User Interface: Prepared for enterprise-level data amounts
  • The user interface rewrite also enables handling of "Enterprise-Level Data Amounts", basically meaning that the Secunia CSI will be able to handle/display data from thousands of hosts WITHOUT any noticeable performance impact when using the various functions and features within the Secunia CSI. The result is that the responsiveness of the Secunia CSI is the same with data from 1 or 10,000 hosts!
  • New option for the Secunia CSI-Agent: Network Appliance Mode
  • The Network Appliance mode, enables you to setup any Secunia CSI-Agent as a remote-controlled dedicated scan engine capable of automatically scanning complete networks at scheduled intervals.

    The result is that the Secunia CSI scales for large networks and enables you to manage multiple networks that are not immediately connected. Everything managed from your locally installed Secunia CSI GUI on your desktop PC.

  • Update of the Intelligent / Manual grouping concept
  • This release merges the two previous grouping mechanisms into one single grouping functionality, which is embedded into the actual design of the Secunia CSI, thus making the grouping functionality much simpler and easier use.
  • Updated scan engine
  • Increased speed of "Type 2" scans, which means better results in less time.
  • No longer possible to access scan results through browser (https://ca.secunia.com/)
    As part of the update to the User Interface it will no longer be possible to login through a browser, to view the scan results online. The Secunia CSI 3.0 must be used to view the scan result.
  • Various minor interface and usability improvements

Version 2.9.0.14 - Secunia CSI 3.0 Public Beta (Major update / Beta release, 1st October 2009)

    This is a BETA release of the Secunia CSI 3.0. Secunia invites you to join the Public Beta test of this new version, the Public Beta test period lasts from the 1st October 2009 until 29th October 2009.

  • User Interface: Improved speed/responsiveness
  • The user interface has been completely rewritten, to improve the responsiveness of accessing the various functions and features of the Secunia CSI. This means that changing the view from e.g. the Dashboard to Groups Overview will be instantaneous. Furthermore, this also means that searching, sorting, viewing details, etc. will be extremely fast and overall improves the usability of the Secunia CSI significantly.
  • User Interface: Prepared for enterprise-level data amounts
  • The user interface rewrite also enables handling of "Enterprise-Level Data Amounts", basically meaning that the Secunia CSI will be able to handle/display data from thousands of hosts WITHOUT any noticeable performance impact when using the various functions and features within the Secunia CSI. The result is that the responsiveness of the Secunia CSI is the same with data from 1 or 10,000 hosts!
  • New option for the Secunia CSI-Agent: Network Appliance Mode
  • The Network Appliance mode, enables you to setup any Secunia CSI-Agent as a remote-controlled dedicated scan engine capable of automatically scanning complete networks at scheduled intervals.

    The result is that the Secunia CSI scales for large networks and enables you to manage multiple networks that are not immediately connected. Everything managed from your locally installed Secunia CSI GUI on your desktop PC.

  • Update of the Intelligent / Manual grouping concept
  • This release merges the two previous grouping mechanisms into one single grouping functionality, which is embedded into the actual design of the Secunia CSI, thus making the grouping functionality much simpler and easier use.
  • Updated scan engine
  • Increased speed of "Type 2" scans, which means better results in less time.
  • Various minor interface and usability improvements

Version 2.0.2.2 (Minor update, 20th May 2009)

  • Fixed issue which caused CSI to not always detect all remote network shares.

 

Version 2.0.2.1 (Minor update, 29th April 2009)
  • Improved networking functionality.

 

Version 2.0.2.0 (16th February 2009)
  • The "Secunia Network Software Inspector (NSI)" has been renamed to the "Secunia Corporate Software Inspector (CSI)".

Version 2.0.1.2 (Minor update, 12th November 2008)

  • Improved thread handling.

Version 2.0.1.1 (Minor update, 8th October 2008)

  • Minor bug fixes for integration with Active Directory (AD).

Version 2.0.1.0 (Feature update, 30th September 2008)

  • Integration with Active Directory (AD). Capable of enumerating AD for a better overview and easier scanning.

Version 2.0.0.3 (Minor update, 16th June 2008)

  • Minor bug fixes.

Version 2.0.0.2 (Minor update, 19th May 2008)

  • Enhanced proxy support.

Version 2.0.0.1 (Minor bug fix, 6th May 2008)

  • Minor bug fix for systems running Microsoft Windows 2000

Version 2.0.0.0 (Final NSI 2.0 release, 2nd May 2008)

  • Improved with several suggestions from Beta testers
  • Minor bug fixes

Version 1.9.1.3 BETA (Minor bug release, 15th April 2008)

Version 1.9.1.1 BETA (1st BETA of NSI 2.0, 11th April 2008)

  • Initial release

Try Secunia CSI today

Sign up for a FREE trial

First name

Last name

Company

Email

Phone

Country

Yes, I would like to receive latest news on product updates and announcements.

Get a quote

Answer a few quick questions and get a free bespoke quote for your patch management needs.

Get quote
 

Buy it now

Get the right Secunia CSI edition for you here and now.

Buy now
 

For existing customers

Secunia CSI 6.0
If you want to upgrade to CSI 6.0 you can download it here!

Download CSI 6.0

 

Download CSI 6.0 (64-bit)
Please note! the CSI 6.0 (64-bit) requires Windows 8 or Windows Server 2012

-

Previous versions

Looking for CSI 5.0?
If you are still using CSI 5.0 you can download it here!

Download CSI 5.0

Looking for CSI 4.1?
If you are still using CSI 4.1 you can download it here!

Download CSI 4.1

-


What our customers say

"We are convinced and very happy to use the Secunia CSI. Before using the Secunia CSI, fixing the security threats from vulnerable programs on a computer was time consuming and costly." Read more

- Network Systems Administrator

-

"The Secunia CSI's database is my favourite feature. Most programs are represented here and the intelligence is updated daily. Grupo Unidad Editorial bought the solution because of it - it is the best in the market!" Read more

- CISO, Grupo Unidad Editorial

-

"The Secunia Corporate Software Inspector (CSI) offers great value for Niko Group to optimize the security patch policy." Read more

- Head of IT Security, Niko Group




 Products Solutions Customers Partner Resources Company
 
 Corporate
Vulnerability Intelligence Manager (VIM)
Corporate Software Inspector (CSI)
Consumer
Personal Software Inspector (PSI)
Online Software Inspector (OSI)
 Industry
Compliance
Technology
Integration
 Customers
Testimonials
 VARS
MSSP
Technology Partners
References
 Factsheets
Reports
Webinars
Events
 About us
Careers
Memberships
Newsroom


 
© 2002-2013 Secunia ApS - Rued Langgaards Vej 8, 4th floor, DK-2300 Copenhagen, Denmark - +45 7020 5144
Terms & Conditions and Copyright - Privacy - Report Vulnerability