Copyright © Barracuda Incident Responsehttps://validator.w3.org/feed/docs/rss2.htmlBarracuda Incident Response Updatesforensics.barracudanetworks.comhttps://forensics.barracudanetworks.com?utm_source=noticeable&utm_campaign=wvuqkd8pcpumcbm2r24b&utm_content=other&utm_id=wvuqKd8pCpUmCbM2r24B.Es2kNpMfNzdpUuY6dJue&utm_medium=newspageenTue, 16 May 2023 17:24:04 GMThttps://noticeable.io#1e88e5QovHpHWU1Akg8uhztIZFTue, 16 May 2023 17:23:58 GMTdhara@barracuda.com (Barracuda Networks)Incident now includes external users https://forensicstimeline.barracudanetworks.com/publications/incident-now-includes-external-usersIncident Response now includes external users (outside your organization) as part of impact radius when an incident is created. You can view external and internal users under “USERS” tab while viewing incident details. However, we cannot...Incident Response now includes external users (outside your organization) as part of impact radius when an incident is created. You can view external and internal users under “USERS” tab while viewing incident details. However, we cannot track if these external users clicked on a link (if one was present), forwarded the email, opened an email or replied to the email.

https://campus.barracuda.com/product/forensics/doc/79463566/reviewing-incidents/

]]>
New
6KwtmznhW1D1PlA57avmWed, 26 Oct 2022 18:35:56 GMTdhara@barracuda.com (Barracuda Networks)Include a comment while creating a sender policyhttps://forensicstimeline.barracudanetworks.com/publications/include-a-comment-while-creating-a-sender-policyCreating a sender policy while creating an Incident in IR, lets you add a comment that can be seen alongside the policy in Email Gateway Defense (EGD). If you include a comment, it will show alongside the new policy in EGD Added by Incident...Creating a sender policy while creating an Incident in IR, lets you add a comment that can be seen alongside the policy in Email Gateway Defense (EGD). If you include a comment, it will show alongside the new policy in EGD

  • Added by Incident Response will be included with the new policy if the comment field is left blank.

Campus Update:
https://campus.barracuda.com/product/forensics/doc/79463562/creating-an-incident

]]>
New
hJvbdK30q9l11v2QW0VSFri, 30 Sep 2022 18:39:20 GMTdhara@barracuda.com (Barracuda Networks)Send a User List to Security Awareness Traininghttps://forensicstimeline.barracudanetworks.com/publications/send-a-user-list-to-security-awareness-trainingIncident Response can create a group of users involved in an incident and send it to Barracuda Security Awareness Training. This training group is comprised of each user's email address. You must have a Security Awareness Training account...Incident Response can create a group of users involved in an incident and send it to Barracuda Security Awareness Training. This training group is comprised of each user's email address.

You must have a Security Awareness Training account to use this feature. 

More info: https://campus.barracuda.com/product/forensics/doc/98209214

]]>
New
JHoioo5GpOhf2RrA1T3YThu, 29 Sep 2022 23:46:00 GMTdhara@barracuda.com (Barracuda Networks)Microsoft Teams Notificationshttps://forensicstimeline.barracudanetworks.com/publications/microsoft-teams-notificationsAutomated Workflows can now send notifications to Microsoft Teams. See Automated Workflows Settings for configuration information. An example of a notification in Microsoft Teams:...Automated Workflows can now send notifications to Microsoft Teams. See Automated Workflows Settings for configuration information. 

An example of a notification in Microsoft Teams:

]]>
New
vIB6qKCy1WFi8t2m4qvBThu, 28 Jul 2022 22:37:22 GMTdhara@barracuda.com (Barracuda Networks)Ability to search email body using keywords or URLhttps://forensicstimeline.barracudanetworks.com/publications/ability-to-search-email-body-using-keywords-or-urlYou are now able to search in the body of the message using keywords up to 200 characters and search for a URL within the body of the message. View incident details page has also been updated to show this search criteria, if used. This...You are now able to search in the body of the message using keywords up to 200 characters and search for a URL within the body of the message.

View incident details page has also been updated to show this search criteria, if used. This gives additional fields you can search for, when creating an incident.

]]>
New
qHwU78x0u9qkXAz3wX6mMon, 04 Apr 2022 21:46:12 GMTdhara@barracuda.com (Barracuda Networks)Creating an incident for investigationhttps://forensicstimeline.barracudanetworks.com/publications/creating-an-incident-for-investigation-1You can now create an incident to investigate the impact of the incident without deleting emails or any remediation action. You can review how many emails will be deleted and how your end users interacted with these emails. Once you have...You can now create an incident to investigate the impact of the incident without deleting emails or any remediation action.

You can review how many emails will be deleted and how your end users interacted with these emails. Once you have reviewed and have completed the investigation, you can click on the button “Delete emails” to delete the emails impacted.

Please note that this will not add sender policies in Email Gateway Defense or block traffic on Barracuda Content Shield. However, you can enable Continuous Remediation after deleting emails.

]]>
NewImprovement
UCoEvOnAn5dEcaLOxD4UTue, 01 Mar 2022 18:31:31 GMTdhara@barracuda.com (Barracuda Networks)New template added to Automated Workflowshttps://forensicstimeline.barracudanetworks.com/publications/new-template-added-to-autmated-workflowsRather than creating a completely new automated workflow, you can use workflow templates as a starting point to create workflows for common scenarios. For example, you can use the User-reported Message - Create Incident - Specific User...Rather than creating a completely new automated workflow, you can use workflow templates as a starting point to create workflows for common scenarios. For example, you can use the User-reported Message - Create Incident - Specific User template to create a workflow to create an incident whenever a specific user reports a message. When you select the template, the workflow appears automatically. On the left side of the page, you are prompted to complete the condition, in this case, to specify the user who is reporting the message. You can optionally change other parts of the workflow, for example, to change the condition to add another user, to add the number of affected mailboxes, and so on. Be sure to specify a unique name for each workflow you create. 

Additional workflow templates will be added over time. 

Creating an Automated Workflow using a Template

To create an automated workflow using a template:

  1. Open Incident Response.  

  2. From the menu in the upper left corner, select Automated Workflows

  3. On the Automated Workflows page, click Create Workflow

  4. Under Workflow Templates, a specific template, such as User-reported Message - Create Incident - Specific User, to use as the basis for creating a workflow.  

  5. Provide a unique name for the workflow. 

  6. Optional. Provide a description for the workflow.

  7. On the left side of the page, red text indicates conditions you must enter to customize the template. In this example, provide the email address for the user who is reporting emails. Complete the information. Notice it automatically updates in the workflow. 

    workflowTemplates.png

  8. Optionally add more conditions or actions, as described in the section above. 

  9. Review the graphical representation of the workflow. If needed, take actions as described in the section above.  

  10. Click Create Workflow

  11. The workflow appears in table on the Automated Workflows page. It is ready to launch whenever it is triggered. 

More information, please visit campus

]]>
New
urNkvaOfXZofyfn6hzHqTue, 07 Dec 2021 22:26:06 GMTdhara@barracuda.com (Barracuda Networks)Review your settings nowhttps://forensicstimeline.barracudanetworks.com/publications/review-your-settings-nowWith unifying the settings in this release, by default, Automatic Remediation now deletes incident-related emails from users’ mailboxes. From the Menu button, click Settings to confirm your settings...With unifying the settings in this release, by default, Automatic Remediation now deletes incident-related emails from users’ mailboxes. From the Menu button, click Settings to confirm your settings

]]>
NewAnnouncement
vaPySKvEkR6Cc7lTi68iMon, 06 Dec 2021 17:21:15 GMTdhara@barracuda.com (Barracuda Networks)Settings - all in one place!https://forensicstimeline.barracudanetworks.com/publications/settings-all-in-one-placeYou can now access all the settings for Incident Response through the left-hand menu. As part of this, in addition to moving emails that were automatically remediated by the system, you can also now delete emails permanently from end-user...You can now access all the settings for Incident Response through the left-hand menu.

As part of this, in addition to moving emails that were automatically remediated by the system, you can also now delete emails permanently from end-user mailboxes, when this setting is enabled.

Learn more: https://campus.barracuda.com/product/forensics/doc/93195407/settings-before-you-begin/

]]>
New
W6P3jevEi89HoGFZBrekMon, 06 Dec 2021 16:24:28 GMTdhara@barracuda.com (Barracuda Networks)NEW! Email Protection SaaS Planshttps://forensicstimeline.barracudanetworks.com/publications/new-email-protection-saas-plansThey’re here! We are excited to announce the general availability of our new email protection plans. As part of our mission to provide innovative security products that are easy to buy, deploy, and use, our new plans are designed to better...They’re here! We are excited to announce the general availability of our new email protection plans. As part of our mission to provide innovative security products that are easy to buy, deploy, and use, our new plans are designed to better align with customer’s Office 365 security needs and buying preferences. As an existing customer there will be no changes to your products or plans. However, some features have new, more descriptive names and have undergone small changes. For more information on the new plans please visit https://campus.barracuda.com/doc/96014231/

]]>
New