We have been made aware of an attack that bypasses SentinelOne EDR through the execution of a local SentinelOne installer. We recommend following SentinelOne’s instructions to enable the “Online Authorization” setting for “Local Upgrade/Downgrade,” as doing so mitigates this attack effectively.
Please see this blog for more details and specific instructions.
https://www.sentinelone.com/blog/protection-against-local-upgrade-technique-described-in-aon-research/
Please note that while this is not a security issue within our N-able products, we take this issue seriously and we are committed to ensuring that you have the information you need to protect your users.