New Security Enhancement: Anti-Malware Scanning for HTTP File Uploads

Options
Zyxel_Claudia
Zyxel_Claudia Posts: 194 image  Zyxel Employee
Network Detective-New Adventure Badge Network Detective Badge First Comment Friend Collector
edited November 14 in Other Topics

USG FLEX H Series latest firmware update brings an important upgrade to its Anti-Malware engine: real-time scanning of HTTP uploads, including HTTP POST requests. This enhancement ensures malware is intercepted not just during downloads, but also during file uploads services.

What’s Implemented?

Traditionally, Zyxel firewalls scanned files downloaded via:

  • HTTP
  • FTP
  • POP3
  • SMTP

Now, with the latest update:

  • Files uploaded using HTTP POST are scanned
  • No extra configuration is needed - enabled by default

How It Works

  • If a user uploads a file (via HTTP POST) from a LAN client to a server (e.g., OneDrive, Dropbox, or internal web apps), the firewall:
    • Intercepts the HTTP POST traffic
    • Scans the file for malware
    • Blocks and logs any malicious content before it leaves the network

Note: Requires SSL Inspection for HTTPS upload

Verification

After a virus file is detected, check the Event Logs under:

Log & Report > Log/Event > System

If the file contains malware, the system logs the detection and destroy the upload.

image.png
Tagged: