• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Download VulnDetect Installer
  • Login
SecTeer VulnDetect & PatchPro Support Forum VulnDetect
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Download VulnDetect Installer
  • Login

[Implemented] Grouping multiple (vulnerable) programs

Scheduled Pinned Locked Moved Implemented Feature Requests
16 Posts 2 Posters 5.6k Views 2 Watching
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • O Offline
    OLLI_S Community Moderator
    last edited by OLLI_S 16 Mar 2019, 11:36

    What about also bundling multiple instances of the same application?

    • FreeCommander XE
      • FreeCommander XE (C:\Program Files\FreeCommander XE\FreeCommander.exe)
      • FreeCommander XE (C:\Program Files\FreeCommander XE\backup\FreeCommander.exe)
      • FreeCommander XE (D:\PortableApps\PortableApps\FreeCommanderPortable\App\FreeCommanderXE\FreeCommander.exe)

    And what about bundling 32-Bit and 64-Bit instances of the same application?

    • Toolbox for VulnDetect
      • Toolbox for VulnDetect 32-Bit (D:\Lazarus\Toolbox for VulnDetect\Released Versions\Version 3.0\Toolbox for VulnDetect.exe)
      • Toolbox for VulnDetect 64-Bit (D:\Lazarus\Toolbox for VulnDetect\Released Versions\Version 3.0\Toolbox for VulnDetect x64.exe)
    T 1 Reply Last reply 17 Mar 2019, 08:07 Reply Quote 0
    • O Offline
      OLLI_S Community Moderator
      last edited by 16 Mar 2019, 19:02

      @OLLI_S said in Grouping multiple (vulnerable) programs:

      indows 10 Professional

      I suggested above that you show one line for Windows and below that you should show all applications that are bundled with Windows.
      You should also show the exact version number of Windows, like:

      Windows 10 Professional Version 1809 (Build 17763.316)

      1 Reply Last reply Reply Quote 0
      • T Offline
        Tom VulnDetect Team Member @OLLI_S
        last edited by 17 Mar 2019, 08:07

        @OLLI_S said in Grouping multiple (vulnerable) programs:

        What about also bundling multiple instances of the same application?

        • FreeCommander XE
          ....

        And what about bundling 32-Bit and 64-Bit instances of the same application?
        ....

        The rule of thumb that we will apply to bundling is the following:
        If an installer installs both 32bit and 64bit versions, then we intend to bundle them.
        If it requires downloading and running two different installers, then it will not be bundled.

        In your example with FreeCommander, then we will bundle them, if the "backup" folder is created by the installer. If you created it manually, then we usually consider it separate installations (but manually moving exe files may class with the bundle specifications).
        The PortableApps will generally not be considered bundled, but rather separate installations.

        /Tom
        Download the latest SecTeer VulnDetect agent here:
        https://vulndetect.com/dl/secteerSetup.exe

        1 Reply Last reply Reply Quote 0
        • O Offline
          OLLI_S Community Moderator
          last edited by 17 Mar 2019, 09:58

          For FreeCommander the backup folder is created automatically.
          So you should bundle it (make it expandable and show the backup version as "bundled").

          Here is an other specialty: FreeFileSync
          I have installed FreeFileSync normally (not Portable) and I see the following files:

          1. C:\Program Files\FreeFileSync\FreeFileSync.exe
          2. C:\Program Files\FreeFileSync\Bin\FreeFileSync_Win32.exe
          3. C:\Program Files\FreeFileSync\Bin\FreeFileSync_x64.exe
          4. C:\Program Files\FreeFileSync\Bin\FreeFileSync_XP.exe

          File 1. is detected by VulnDetect.
          It is only 462 KB in size and is only a Launcher that starts the correct EXE file (files 2., 3. or 4.) depending on your system.
          So when I start FreeFileSync.exe (launcher) then the FreeFileSync_x64.exe is started as child process.

          FreeFileSync_Process_Tree.png

          So here you should also show FreeFileSync expandable and show all 3 platform-related files as child.
          So it looks like the process tree structure.

          1 Reply Last reply Reply Quote 0
          • O Offline
            OLLI_S Community Moderator
            last edited by OLLI_S 4 Apr 2019, 18:45 17 Mar 2019, 12:59

            You also should group:

            • Elite Dangerous
              • Elite Dangerous Launcher

            • Star Citizen
              • RSI Launcher
                • 7-Zip

            • The Dark Mod
              • The Dark Mod Updater/Downloader
              • The Dark Mod x32
              • The Dark Mod x64

            The Dark Mod is not added yet, see https://vulndetect.org/topic/495/the-dark-mod-game-request
            The Dark Mod Updater/Downloader is not requested yet, because the version number in the app is not correct


            But the Launchers can be updated separately from the game.
            So there can be new versions of the game available but also new versions of the launcher.
            And I can update the launcher but not update the game.

            1 Reply Last reply Reply Quote 0
            • O Offline
              OLLI_S Community Moderator
              last edited by 18 Apr 2019, 07:23

              @Tom I wrote in Grouping multiple (vulnerable) programs:

              But the Launchers can be updated separately from the game.
              So there can be new versions of the game available but also new versions of the launcher.
              And I can update the launcher but not update the game.

              Do you have any idea how you will display this, when there is an update for the Launcher available but not for the game itself?
              So an update for the bundled app and not for the parent applications.

              1 Reply Last reply Reply Quote 0
              • O Offline
                OLLI_S Community Moderator
                last edited by OLLI_S 18 Apr 2019, 21:49

                @OLLI_S said in Grouping multiple (vulnerable) programs:

                how you will display this, when there is an update for the Launcher available but not for the game itself?
                So an update for the bundled app and not for the parent applications.

                Today I updated some apps, also the following:

                • I had an update for the Elite Dangerous Launcher but not for Elite Dangerous (the game)
                • I had an update for Star Citizen (the game) but not for the RSI Launcher

                So you should show the user updates for bundles.

                1 Reply Last reply Reply Quote 0
                • O Offline
                  OLLI_S Community Moderator
                  last edited by 18 Jun 2019, 15:40

                  @Tom I think we can mark this topic as "Implemented" because you added "Bundling".
                  If there are bundling issues then we should add new topics for each app in the detection issues.
                  Do you agree?

                  T 1 Reply Last reply 25 Jun 2019, 13:57 Reply Quote 0
                  • T Offline
                    Tom VulnDetect Team Member @OLLI_S
                    last edited by 25 Jun 2019, 13:57

                    @OLLI_S I agree

                    /Tom
                    Download the latest SecTeer VulnDetect agent here:
                    https://vulndetect.com/dl/secteerSetup.exe

                    1 Reply Last reply Reply Quote 0
                    • O Offline
                      OLLI_S Community Moderator
                      last edited by 25 Jun 2019, 20:38

                      OK, I mark this idea as Implemented and move it to the category Implemented Feature Requests.

                      1 Reply Last reply Reply Quote 0
                      • T Tom referenced this topic on 25 Jun 2022, 10:02
                      • First post
                        Last post
                      Download SecTeer Personal VulnDetect - an alternative to the long lost Secunia PSI

                      Please see our Privacy and Data Processing Policy
                      Sponsored and operated by SecTeer | VulnDetect is a replacement for the EoL Secunia PSI
                      Forum software by NodeBB