Skip to content

Commit 9e5c327

Browse files
Merge pull request #3341 from MicrosoftDocs/main
Publish main to live, 04/01/25, 3:30 PM PDT
2 parents ead220e + 1e688a5 commit 9e5c327

File tree

2 files changed

+43
-24
lines changed

2 files changed

+43
-24
lines changed

defender-endpoint/microsoft-defender-antivirus-updates.md

Lines changed: 26 additions & 23 deletions
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@ title: Microsoft Defender Antivirus security intelligence and product updates
33
description: Manage how Microsoft Defender Antivirus receives protection and product updates.
44
ms.service: defender-endpoint
55
ms.localizationpriority: high
6-
ms.date: 03/12/2025
6+
ms.date: 04/01/2025
77
audience: ITPro
88
ms.topic: reference
99
author: emmwalshh
@@ -98,17 +98,36 @@ Updates contain:
9898
- Serviceability improvements
9999
- Integration improvements (Cloud, [Microsoft Defender XDR](/defender-xdr/microsoft-365-defender))
100100

101-
### February-2025 (Engine: 1.1.25020.1007)
101+
### March-2025 (Engine 1.1.25030.1)
102+
103+
- Security intelligence update version: **1.427.3.0**
104+
- Release date: **April 1, 2025** (Engine only)
105+
- Platform: **4.18.25020.1009**
106+
- Engine: **1.1.25030.1**
107+
- Support phase: **Security and Critical Updates**
108+
109+
#### What's new
110+
111+
- Product improvements
112+
113+
### February-2025 (Platform 4.18.25020.1009 | Engine: 1.1.25020.1007)
102114

103115
- Security intelligence update version: **1.425.1.0**
104-
- Release date: **March 12, 2025** (Engine only)
105-
- Platform: **4.18.25010.11**
116+
- Release date: **March 12, 2025** (Engine) / **March 31, 2025** (Platform)
117+
- Platform: **4.18.25020.1009**
106118
- Engine: **1.1.25020.1007**
107119
- Support phase: **Security and Critical Updates**
108120

109121
#### What's new
110122

111-
- Product improvements
123+
- Fixed deadlock issue on [VDI](deployment-vdi-microsoft-defender-antivirus.md) that occurred when loading corrupted update files from UNC share.
124+
- Shared root signature setting updates are now applied without a service restart (only applies to the first update to the setting and removes the restart requirement).
125+
- Systems controlled by `SharedSignatureRoot` can be updated by running signature update commands.
126+
- If you're currently using a shared signature path to update VDI environments, you can now use signature update commands through [MpCmdRun](/defender-endpoint/command-line-arguments-microsoft-defender-antivirus), PowerShell, and the user interface to update to latest drops in your signature update shares.
127+
- Improved logic for handling [restore from quarantine](/defender-endpoint/restore-quarantined-files-microsoft-defender-antivirus).
128+
- Fixed fallback issue with [Update-MpSignature](/powershell/module/defender/update-mpsignature).
129+
- Increased [device control policy](device-control-policies.md) limits.
130+
- Improved security resilience for Defender update process.
112131

113132
### January-2025 (Platform: 4.18.25010.11 | Engine: 1.1.25010.7)
114133

@@ -124,8 +143,8 @@ Updates contain:
124143
- Improved AMSI scan performance with changes to exclusion handling.
125144
- Fixed [Controlled Folder Access](controlled-folders.md) (CFA) protection for OneDrive when backup is enabled.
126145
- Fixed performance issues with [full scans](schedule-antivirus-scans.md) when initiated from the Microsoft Defender portal.
127-
- Fixed ASR warn mode processing for containerized objects (such as Office files) when the unblock option is selected.
128-
- Fixed ASR warn mode processing when exclusions are applied.
146+
- Fixed attack surface reduction warn mode processing for containerized objects (such as Office files) when the unblock option is selected.
147+
- Fixed attack surface reduction warn mode processing when exclusions are applied.
129148
- Fixed performance handling with file transfers having Mark of the Web (MoTW) set.
130149
- Implemented `AzureAd` cache to handle offline environments with [device control](device-control-overview.md).
131150
- Resolved an issue with `TrustLabelProtectionStatus` being reset after a Microsoft Defender platform update.
@@ -161,22 +180,6 @@ Updates contain:
161180
> On Windows Server 2019 and later, a new binary (`MpDefenderCoreService.exe`) will be included in the update package to support future service improvements (more information to follow).
162181
163182

164-
### August-2024 (Platform: 4.18.24080.9 | Engine: 1.1.24080.9)
165-
166-
- Security intelligence update version: **1.419.1.0**
167-
- Release date: **September 17, 2024** (Engine and Platform)
168-
- Platform: **4.18.24080.9**
169-
- Engine: **1.1.24080.9**
170-
- Support phase: **Security and Critical Updates**
171-
172-
#### What's new
173-
174-
- Added a new parameter (`ControlledFolderAccessDefaultProtectedFolders`) to [Get-MpPreference](/powershell/module/defender/get-mppreference) cmdlet to show default protected folders for [controlled folder access](enable-controlled-folders.md).
175-
- Fixed an issue with device control regarding printer security checks.
176-
- Resolved an issue with platform rollback after an upgrade from Windows 10 to Windows 11.
177-
- Fixed an issue where volume exclusions weren't properly enforced in real-time protection after the completion of OOBE.
178-
- Removed support for Windows RT devices, like Surface RT, that use 32-bit ARM processors and reached their end-of-servicing date.
179-
180183
### Previous version updates: Technical upgrade support only
181184

182185
After a new package version is released, support for the previous two versions is reduced to technical support only. For more information about previous versions, see [Microsoft Defender Antivirus updates: Previous versions for technical upgrade support](msda-updates-previous-versions-technical-upgrade-support.md).

defender-endpoint/msda-updates-previous-versions-technical-upgrade-support.md

Lines changed: 17 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ ms.author: ewalsh
66
author: emmwalshh
77
ms.localizationpriority: medium
88
ms.reviewer: pahuijbr
9-
ms.date: 03/05/2025
9+
ms.date: 04/01/2025
1010
manager: deniseb
1111
audience: ITPro
1212
ms.collection:
@@ -29,6 +29,22 @@ Microsoft regularly releases [security intelligence updates and product updates
2929

3030
## Engine and platform updates
3131

32+
### August-2024 (Platform: 4.18.24080.9 | Engine: 1.1.24080.9)
33+
34+
- Security intelligence update version: **1.419.1.0**
35+
- Release date: **September 17, 2024** (Engine and Platform)
36+
- Platform: **4.18.24080.9**
37+
- Engine: **1.1.24080.9**
38+
- Support phase: **Technical upgrade support (only)**
39+
40+
#### What's new
41+
42+
- Added a new parameter (`ControlledFolderAccessDefaultProtectedFolders`) to [Get-MpPreference](/powershell/module/defender/get-mppreference) cmdlet to show default protected folders for [controlled folder access](enable-controlled-folders.md).
43+
- Fixed an issue with device control regarding printer security checks.
44+
- Resolved an issue with platform rollback after an upgrade from Windows 10 to Windows 11.
45+
- Fixed an issue where volume exclusions weren't properly enforced in real-time protection after the completion of OOBE.
46+
- Removed support for Windows RT devices, like Surface RT, that use 32-bit ARM processors and reached their end-of-servicing date.
47+
3248
### July-2024 (Platform: 4.18.24070.5 | Engine: 1.1.24070.3)
3349

3450
- Security intelligence update version: **1.417.14.0**

0 commit comments

Comments
 (0)