Release Notes Archive
In brief
The archive now uses updated anchors for CMK-encrypted VM agentless scanning, automated remediation scripts, and AWS agentless scanning. A link to “Disable specific findings” was removed.
What Defender admins need to know
Administrators following these release-note links will be directed to the updated documentation sections; no action is required.
Summaries are generated from the documentation change itself.
Documentation change
The comparison below shows only the changed extract. Use the full-page view for complete context.
Agentless scanning for Azure VMs with CMK encrypted disks is now Generally Available. Both the Defender CSPM plan, and the Defender for Servers P2 provide support for agentless scanning for VMs, now with CMK support across all clouds
Learn how to enable agentless scanning for Azure VMs with CMK encrypted disksenable agentless scanning for Azure VMs with CMK encrypted disks.
Upcoming change to the recommendation severity levels
March 12, 2024
We're enhancing the AWS and GCP recommendations with automated remediation scripts that allow you to remediate them programmatically and at scale.
Learn more about automated remediation scriptsautomated remediation scripts.
Preview: Compliance standards added to compliance dashboard
- Select Click to download the CloudFormation template.
- Navigate to your AWS environment and apply the updated template.
Learn more about agentless scanning and enabling agentless scanning in AWSenabling agentless scanning in AWS.
Revised JIT (Just-In-Time) rule naming conventions in Defender for Cloud
If you have an organizational need to ignore a finding, rather than remediate it, you can optionally disable it. Disabled findings don't impact your secure score or generate unwanted noise.
Learn more in Disable specific findings.
Azure Monitor Workbooks integrated into Security Center and three templates provided
As part of Ignite Spring 2021, we announced an integrated Azure Monitor Workbooks experience in Security Center.
@@ -963,7 +963,7 @@ March 26, 2025 Agentless scanning for Azure VMs with CMK encrypted disks is now Generally Available. Both the Defender CSPM plan, and the Defender for Servers P2 provide support for agentless scanning for VMs, now with CMK support across all clouds -Learn how to [enable agentless scanning for Azure VMs with CMK encrypted disks](enable-agentless-scanning-vms.md#enable-for-azure-vms-with-cmk-encrypted-disks).+Learn how to [enable agentless scanning for Azure VMs with CMK encrypted disks](enable-agentless-scanning-vms.md#azure-vms-with-customer-managed-keys). ### Upcoming change to the recommendation severity levels @@ -2330,7 +2330,7 @@ Defender for Cloud now includes a business criticality feature, using Microsoft March 12, 2024 We're enhancing the AWS and GCP recommendations with automated remediation scripts that allow you to remediate them programmatically and at scale.-Learn more about [automated remediation scripts](implement-security-recommendations.md#use-the-automated-remediation-scripts).+Learn more about [automated remediation scripts](implement-security-recommendations.md#use-automated-remediation-scripts). ### Preview: Compliance standards added to compliance dashboard @@ -3512,7 +3512,7 @@ You can learn more about the [permissions used to scan AWS instances](faq-permis 1. Select **Click to download the CloudFormation template**. 1. Navigate to your AWS environment and apply the updated template. -Learn more about [agentless scanning](concept-agentless-data-collection.md) and [enabling agentless scanning in AWS](enable-agentless-scanning-vms.md#enable-agentless-scanning-on-aws).+Learn more about [agentless scanning](concept-agentless-data-collection.md) and [enabling agentless scanning in AWS](enable-agentless-scanning-vms.md#aws). ### Revised JIT (Just-In-Time) rule naming conventions in Defender for Cloud @@ -6204,8 +6204,6 @@ Security Center includes a built-in vulnerability scanner to help you discover, If you have an organizational need to ignore a finding, rather than remediate it, you can optionally disable it. Disabled findings don't impact your secure score or generate unwanted noise. -Learn more in [Disable specific findings](defender-for-sql-on-machines-vulnerability-assessment.md#disable-specific-findings).- ### Azure Monitor Workbooks integrated into Security Center and three templates provided As part of Ignite Spring 2021, we announced an integrated Azure Monitor Workbooks experience in Security Center. 