Threat Advisory

Nessus Agent Update Failure Leads to Service Interruptions

Threat: Vulnerability
Targeted Region: America, Europe, Asia
Targeted Sector: Technology & IT
Criticality: High

EXECUTIVE SUMMARY:

Nessus Agent versions 10.8.0 and 10.8.1, causing agents to go offline globally due to buggy differential plugin updates. To resolve the problem, customers must manually upgrade to version 10.8.2 or downgrade to 10.7.3, accompanied by a plugin reset if agent profiles are utilized. While plugin downloads are expected to resume soon, recovery requires using the provided install package and resetting plugins via script or command-line tools. This incident follows a similar widespread outage caused by a faulty CrowdStrike update earlier. Users are advised to manually upgrade or downgrade their agents and perform a plugin reset to restore functionality. The company is working to resolve the issue and resume normal operations soon.

RECOMMENDATION:

  • We strongly recommend you update Nessus Agent version to version 10.8.2.

REFERENCES:

The following reports contain further technical details:
https://www.bleepingcomputer.com/news/security/bad-tenable-plugin-updates-take-down-nessus-agents-worldwide/

crossmenu