WatchGuard Endpoint Security Prime Enhancements and Resolved Issues

Applies To: WatchGuard Endpoint Security Prime

For more information about new features, go to the What's New in WatchGuard Endpoint Security PowerPoint. Friends & Family testing involves a small number of invited partners and helps us to validate a release, collect feedback, and uncover bugs ahead of general availability. To participate in Friends & Family testing, send an email to the Friends & Family mailbox.

Protection and Agent Versions for WatchGuard Endpoint Security Prime 4.70.00

  • Windows protection: 8.00.26.0011
  • macOS protection: 3.08.00.0002
  • Linux protection: 3.08.01.0000
  • Android agent and protection: 3.14.3  
  • iOS agent and protection: 2.02.06.0001  
  • Windows agent: 1.25.12.0000
  • macOS agent: 1.17.20.0000
  • Linux agent: 1.17.00.0000

WatchGuard periodically updates Endpoint Security products and modules to provide enhancements and resolve reported issues. New versions roll out gradually to accounts. Some features and enhancements listed here might not be available to your account. When a new version is available, upgrade notifications appear as alerts in the upper-right corner of the management UI. If an upgrade is available, we recommend that you upgrade to the most recent version. If there is no alert in the management UI and you need to upgrade to the latest version of the product, contact your WatchGuard representative to request an upgrade. For more information, go to the Knowledge Base article: WatchGuard Endpoint Security Upgrade Schedule.

Release notes include customer-reported issues that were resolved in this release. Routine internal maintenance, localization updates, and other low-impact changes are not individually documented.

Latest Release

Release Date: 3 August 2026 (Aether 19.1 Update)

Enhancements

  • The digital signature technology used to authorize programs as part of the Zero-Trust security model now includes support for short-lived certificates. This enhancement requires Windows protection v8.00.26.0011 or higher.
  • Endpoint Security now supports these Linux distributions: Red Hat Enterprise Linux 10.0, 10.1, and 10.2; AlmaLinux 10.0, 10.1, and 10.2; Rocky Linux 10.0, 10.1, and 10.2; Oracle Linux 10.0, 10.1, and 10.2; CentOS Stream 10; AlmaLinux Kitten 10; SUSE Linux Enterprise 16; openSUSE Linux Enterprise 16.0; and Amazon Linux 2023. For more information on supported Linux distributions, go to Endpoint Security Installation Requirements in the WatchGuard Cloud Release Notes. Support for these distributions requires Linux protection v3.08.01.0000 or higher.
  • The Endpoint Security software no longer requires Rosetta to run on ARM-based Mac devices. This feature requires macOS protection v3.08.00.0002 or higher.

Resolved Issues

  • This release resolves BSOD errors caused by the NNSPICC.sys network interception driver.
  • This release resolves an issue that caused continuous restarts of the protection service (PSANHost.exe). This caused the device to temporarily appear as unprotected in the management UI.
  • This release resolves an issue in the Web Access Control feature where the category reported in block notifications was incorrect for pages that belonged to the Unknown category.
  • This release resolves BSOD errors caused by the PSINReg.sys network interception driver when you connected specific dock stations or USB devices.
  • This release resolves BSOD errors caused by a concurrency issue that affected the NNSPRV.sys network interception driver.
  • This release resolves an issue that caused Network Attack Protection to reduce the Internet connection upload speed.
  • This release resolves several performance issues.
  • This release resolves an issue in the driver update that prevented the repair of the MSI cache.
  • This release resolves BSOD errors caused by the PSINKNC.sys driver on computers where there was a large number of running processes that generated multiple input/output operations.
  • We have re-signed Device Control drivers to prevent errors on legacy Windows 10 (th1) systems.
  • This release resolves BSOD errors caused by the PSINFILE.sys driver.
  • This release resolves an issue where Device Control local alerts did not show when the security software blocked USB devices.
  • We have updated the SQLite3.dll library to resolve vulnerabilities.
  • This release resolves a security software vulnerability that could enable privilege escalation.

Previous Releases