You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: articles/defender-for-iot/organizations/whats-new.md
+9-9Lines changed: 9 additions & 9 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -22,32 +22,32 @@ Features released earlier than nine months ago are described in the [What's new
22
22
23
23
The legacy on-premises management console won't be available for download after **January 1st, 2025**. We recommend transitioning to the new architecture using the full spectrum of on-premises and cloud APIs before this date. For more information, see [on-premises management console retirement](ot-deploy/on-premises-management-console-retirement.md).
24
24
25
-
## February 2025
25
+
## March 2025
26
26
27
27
|Service area |Updates |
28
28
|---------|---------|
29
-
|**OT networks**| - [Improved RDP Brute Force Detection](#improved-rdp-brute-force-detection)|
29
+
|**OT networks**| - [Improved RDP Brute Force Detection](#improved-rdp-brute-force-detection)<br>- ["Unauthorized Internet Connectivity Detected" alert now include URL information](#unauthorized-internet-connectivity-detected-alert-now-includes-url-information)|
30
30
31
31
### Improved RDP Brute Force Detection
32
32
33
33
The “Excessive Number of Sessions” alert now includes support by default to an RDP port, enhancing visibility into potential brute-force attacks and unauthorized access attempts.
34
34
35
+
### "Unauthorized Internet Connectivity Detected" alert now includes URL information
36
+
37
+
The "Unauthorized Internet Connectivity Detected" alert details now includes the URL from which the suspicious connection initiated, helping SOC analysts assess and respond to incidents more effectively.
38
+
39
+
:::image type="content" source="media/whats-new/url-parameters.png" alt-text="Screenshot of URL information in alert details." lightbox="media/whats-new/url-parameters.png":::
40
+
35
41
## January 2025
36
42
37
43
|Service area |Updates |
38
44
|---------|---------|
39
-
|**OT networks**| - [Aggregating multiple alerts violations with the same parameters](#aggregating-multiple-alerts-violations-with-the-same-parameters)<br>- ["Unauthorized Internet Connectivity Detected" alert now include URL information](#unauthorized-internet-connectivity-detected-alert-now-includes-url-information)|
45
+
|**OT networks**| - [Aggregating multiple alerts violations with the same parameters](#aggregating-multiple-alerts-violations-with-the-same-parameters)|
40
46
41
47
### Aggregating multiple alerts violations with the same parameters
42
48
43
49
To reduce alert fatigue, multiple versions of the same alert violation and with the same parameters are grouped together and listed in the alerts table as one item. The alert details pane lists each of the identical alert violations in the **Violations** tab and the appropriate remediation actions are listed in the **Take action** tab. For more information, see [aggregating alerts with the same parameters](alerts.md#aggregating-alert-violations).
44
50
45
-
### "Unauthorized Internet Connectivity Detected" alert now includes URL information
46
-
47
-
The "Unauthorized Internet Connectivity Detected" alert details now includes the URL from which the suspicious connection initiated, helping SOC analysts assess and respond to incidents more effectively.
48
-
49
-
:::image type="content" source="media/whats-new/url-parameters.png" alt-text="Screenshot of URL information in alert details." lightbox="media/whats-new/url-parameters.png":::
0 commit comments