Zum Inhalt springen

Microsoft Defender for Endpoint Updates & Release Notes

8 Einträge aus 1 Quelle.

Folge Microsoft Defender for Endpoint, um die Release Notes in deinen Feed zu holen.

Datum unbekanntAngaben zum Datum

Kein Datum in der Quelle. Der Eintrag stammt aus dem ersten Abruf der Quelle, der Tag der Aufnahme sagt nichts über das Erscheinen.

Erstmals gesehen am .

Microsoft Defender for Endpoint von Microsoft

Defender for Endpoint macOS 101.26072.0017: Secure Score für AI-Readiness

Microsoft Defender bündelt sechs neue Microsoft Secure Score-Empfehlungen für AI-Readiness (u. a. TPM 2.0, VBS, HVCI), die im Defender-Portal unter Exposure Management > Recommendations mit dem Tag „AI-Readiness“ gefiltert werden können.

| Feature | New Microsoft Secure Score recommendations for AI-Readiness | GA | Microsoft Defender now brings together six security recommendations for AI-Readiness to help organizations strengthen endpoint trust against AI-accelerated cyberattacks. Together, these recommendations provide a layered security baseline that helps reduce externally visible entry points, establish hardware-backed trust in device startup, isolate critical Windows security functions, protect kernel code integrity, and limit the reuse of local administrator credentials for lateral movement.In the Microsoft Defender portal, go to Exposure Management > Recommendations > Devices > Misconfigurations, and filter by the AI-Readiness tag to view the complete recommendation set, affected devices, exposed critical devices, points achieved, and potential impact on the Devices Secure Score. Use this view to prioritize remediation, assign ownership, track exceptions, and monitor adoption throughout the device estate.Four new recommendations are available for AI-Readiness:- Establish a hardware root of trust with TPM 2.0: Helps protect cryptographic keys, device identity, and boot measurements with hardware-backed security.- Isolate critical security functions with VBS: Helps protect critical security functions in an isolated environment that is separate from the operating system kernel.- Enforce kernel code integrity with HVCI: Helps validate kernel-mode code, block untrus…

Originalquelle(öffnet in neuem Tab)Problem melden

Datum unbekanntAngaben zum Datum

Kein Datum in der Quelle. Der Eintrag stammt aus dem ersten Abruf der Quelle, der Tag der Aufnahme sagt nichts über das Erscheinen.

Erstmals gesehen am .

Microsoft Defender for Endpoint von Microsoft

Memory Scan für Linux und WSLc-Plug-in als Preview

Memory Scan für Defender for Endpoint auf Linux prüft Prozessspeicher auf bekannte schädliche Verhaltensweisen und speicherresidente Bedrohungen, und das Plug-in für WSL containers (WSLc) bringt den Schutz in einer Public Preview auf WSL-Container-Workloads.

| Feature | Microsoft Defender for Endpoint plug-in support for WSL containers (WSLc) | Preview | Extend Microsoft Defender for Endpoint protection to workloads running in WSL containers (WSLc). Gain visibility into WSL container activity through device inventory, alerts, incidents, device timeline, and Advanced Hunting, helping security teams investigate and respond to threats across both Windows and Linux workloads.Available in Public Preview. To enroll, complete the registration form. |

August 2026

Type Feature Preview/GA Description

Originalquelle(öffnet in neuem Tab)Problem melden

Datum unbekanntAngaben zum Datum

Kein Datum in der Quelle. Der Eintrag stammt aus dem ersten Abruf der Quelle, der Tag der Aufnahme sagt nichts über das Erscheinen.

Erstmals gesehen am .

Microsoft Defender for Endpoint von Microsoft

Defender for Endpoint macOS 101.26062.0012: Schwachstellenbewertung für Microsoft Store-Apps

In der Preview lassen sich nun Schwachstellen in Microsoft Store-Anwendungen wie Microsoft Teams, Mozilla Firefox, WhatsApp oder Slack überwachen, wobei der Bereich „Software evidence“ Dateipfad und eine Beispielabfrage zeigt.

| Feature | Vulnerability assessment for Microsoft Store applications | Preview | You can now monitor vulnerabilities on devices running Microsoft Store applications, including Microsoft Teams, Mozilla Firefox, WhatsApp, Slack, Dropbox, DuckDuckGo, Dell Command | Update, HP Smart, NVIDIA Control Panel, 1Password, Beyond Compare, and Evernote (see Microsoft Store applications for the full list). Use the Software evidence area in the software page to view the file path for the vulnerable application, along with a suggested query showing the vulnerable app, version, and file location. |

Originalquelle(öffnet in neuem Tab)Problem melden

Datum unbekanntAngaben zum Datum

Kein Datum in der Quelle. Der Eintrag stammt aus dem ersten Abruf der Quelle, der Tag der Aufnahme sagt nichts über das Erscheinen.

Erstmals gesehen am .

Microsoft Defender for Endpoint von Microsoft

Defender for Endpoint macOS 101.26062.0011

Für macOS erschien Build 101.26062.0011 (Release version 20.126062.11.0) mit Verbesserungen und Funktionen, die im Text selbst nicht näher beschrieben werden.

July 2026

Type Feature Preview/GA Description

Originalquelle(öffnet in neuem Tab)Problem melden

Datum unbekanntAngaben zum Datum

Kein Datum in der Quelle. Der Eintrag stammt aus dem ersten Abruf der Quelle, der Tag der Aufnahme sagt nichts über das Erscheinen.

Erstmals gesehen am .

Microsoft Defender for Endpoint von Microsoft

Defender for Endpoint iOS 1.1.78290102: Updates für AI agent runtime protection

AI agent runtime protection (Preview) funktioniert nun ohne Beta-Channel-Konfiguration, unterstützt Codex CLI und die GitHub Copilot app und bietet Netzwerkinspektion für Agents wie OpenClaw ohne herstellerseitige Event-Schnittstellen.

| Feature | AI agent runtime protection updates | Preview | AI agent runtime protection includes these enhancements:- Vendor-supported agent event interfaces now work with standard platform and engine update channels, so no Beta channel configuration is required. Agent-native event inspection now supports Codex CLI and the GitHub Copilot app.- Network inspection is now supported for agents that don't expose vendor-supported event interfaces, including OpenClaw and similar Node.js-based Claw agents.For more information, see AI agent runtime protection with Microsoft Defender for Endpoint. |

Originalquelle(öffnet in neuem Tab)Problem melden

Datum unbekanntAngaben zum Datum

Kein Datum in der Quelle. Der Eintrag stammt aus dem ersten Abruf der Quelle, der Tag der Aufnahme sagt nichts über das Erscheinen.

Erstmals gesehen am .

Microsoft Defender for Endpoint von Microsoft

Defender Deployment Tool for Linux ab Version 101.26042.0011 allgemein verfügbar

Das Defender Deployment Tool for Linux vereinfacht die Bereitstellung, indem es Installation, Onboarding, Upgrades und Deinstallation in einem Workflow zusammenfasst.

June 2026

Type Feature Preview/GA Description
Release - Android Build 1.0.9029.0101 GA Release version 1.0.9029.0101 released: See enhancements and features for this release.

Originalquelle(öffnet in neuem Tab)Problem melden

Datum unbekanntAngaben zum Datum

Kein Datum in der Quelle. Der Eintrag stammt aus dem ersten Abruf der Quelle, der Tag der Aufnahme sagt nichts über das Erscheinen.

Erstmals gesehen am .

Microsoft Defender for Endpoint von Microsoft

Defender for Endpoint macOS 101.26042.0020: KI-Agent-Erkennung und Deployment Tool

Die Local AI agent discovery unterstützt nun macOS und weitere Agents, und das erweiterte Defender deployment tool for Windows bündelt das Onboarding-Paket, erzeugt einen Schlüssel, erlaubt ein Ablaufdatum und bietet eine neue Seite „Deployment packages“.

| Feature | Local AI agent discovery — macOS support and new agents | Preview | Local AI agent discovery now supports macOS endpoints in addition to Windows. This update also adds discovery support for new agents including Junie CLI, Kiro CLI, Warp, Hermes Agent, Goose Desktop, Perplexity Desktop, Kiro IDE, Devin Desktop (formerly Windsurf), and QClaw. For more information, see Local AI agent discovery. | | Feature | Enhanced Defender deployment tool for Windows | GA | The new version of the tool streamlines onboarding and enhances security by:- Bundling the onboarding package directly into the tool's executable.- Generating a key during deployment package creation that is required for running the tool.- Enabling users to configure an expiry date for the package to reduce the risk of unauthorized use.In addition:- You have the option of downloading the package as either an .exe or a .zip file, whichever best suits your organization's needs.- A new Deployment packages page in the Defender portal facilitates management of downloaded packages by providing centralized visibility into all the packages and their current status. | …

Originalquelle(öffnet in neuem Tab)Problem melden

Datum unbekanntAngaben zum Datum

Kein Datum in der Quelle. Der Eintrag stammt aus dem ersten Abruf der Quelle, der Tag der Aufnahme sagt nichts über das Erscheinen.

Erstmals gesehen am .

Microsoft Defender for Endpoint von Microsoft

Windows Defender Antivirus Platform 4.18.26050.15 / Engine 1.1.26050.11

Neu sind die Microsoft Secure Score-Empfehlung zur Reduzierung unnötiger eingehender Internetexposition bei internetzugänglichen Geräten sowie die Preview der Local AI agent discovery, die lokale KI-Agents auf Windows-Geräten erkennt und im AI agent inventory anzeigt.

| Feature | New Microsoft Secure Score recommendation | GA | Microsoft Secure Score now includes the Reduce unnecessary inbound internet exposure on internet-facing devices recommendation, which helps identify devices that are accessible from the public internet and may represent unnecessary attack surface.Internet-facing devices are primary entry points for attackers and automated scanners, making them prime targets for credential brute-forcing, exploitation of unpatched vulnerabilities, and initial access for ransomware and hands-on-keyboard intrusions.This recommendation provides centralized visibility into internet-facing devices across the environment, enabling organizations to validate whether exposure is expected, prioritize remediation for unintended exposure, and reduce external attack surface at scale. | | Feature | Local AI agent discovery | Preview | Microsoft Defender for Endpoint now automatically discovers supported local AI agents running on onboarded Windows devices — including coding agents and IDE extensions, desktop AI assistants, local AI runtimes, and agent platforms. Discovered agents appear as assets in the AI agent inventory, exposure map, and advanced hunting, giving security teams visibility into local AI agent usage across the organization. For more information, see Discover local AI agents. | …

Originalquelle(öffnet in neuem Tab)Problem melden