<rss version="2.0"><channel><title>3.2 on CRS Project</title><link>https://31d2f1a5.website-1u6.pages.dev/tags/3.2/</link><description>Recent content in CRS Project</description><item><title>Announcement: OWASP ModSecurity Core Rule Set Version 3.2.0-RC2</title><link>https://31d2f1a5.website-1u6.pages.dev/20190903/announcement-owasp-modsecurity-core-rule-set-version-3-2-0-rc2/</link><pubDate>Tue, 03 Sep 2019 13:51:47 +0200</pubDate><description>&lt;p>The OWASP ModSecurity Core Rule Set team is proud to announce the general availability of release candidate 2 for the upcoming CRS v3.2.0. The new release is available at&lt;/p>
&lt;ul>
&lt;li>&lt;a href="https://slack-redir.net/link?url=https%3A%2F%2Fgithub.com%2FSpiderLabs%2Fowasp-modsecurity-crs%2Farchive%2Fv3.2.0-rc2.zip&amp;amp;v=3">https://github.com/coreruleset/coreruleset/archive/v3.2.0-rc2.zip&lt;/a>&lt;/li>
&lt;li>&lt;a href="https://slack-redir.net/link?url=https%3A%2F%2Fgithub.com%2FSpiderLabs%2Fowasp-modsecurity-crs%2Farchive%2Fv3.2.0-rc2.tar.gz&amp;amp;v=3">https://github.com/coreruleset/coreruleset/archive/v3.2.0-rc2.tar.gz&lt;/a>&lt;/li>
&lt;/ul>
&lt;p>This release represents a very big step forward in terms of both capabilities and protections including:&lt;/p>
&lt;ul>
&lt;li>Improved compatibility with ModSecurity 3.x&lt;/li>
&lt;li>Improved CRS docker container that is fully configureable at creation&lt;/li>
&lt;li>Expanded Java RCE blacklist&lt;/li>
&lt;li>Expanded unix shell RCE blacklist&lt;/li>
&lt;li>Improved PHP RCE detection&lt;/li>
&lt;li>New javascript/Node.js RCE detection&lt;/li>
&lt;li>Expanded LFI blacklists&lt;/li>
&lt;li>Added XenForo rule exclusion profile&lt;/li>
&lt;li>Fixes for many false positives and bypasses&lt;/li>
&lt;li>Detection of more security scanners&lt;/li>
&lt;li>Regexp performance improvements preventing ReDoS in most cases&lt;/li>
&lt;/ul>
&lt;p>Please see the CHANGES document with around 150 entries for a detailed list of new features and improvements.&lt;br>
&lt;a href="https://slack-redir.net/link?url=https%3A%2F%2Fgithub.com%2FSpiderLabs%2Fowasp-modsecurity-crs%2Fblob%2Fv3.2.0-rc2%2FCHANGES&amp;amp;v=3">https://github.com/coreruleset/coreruleset/blob/v3.2.0-rc2/CHANGES&lt;/a>&lt;/p></description></item></channel></rss>