Skip to content

Commit d5b171d

Browse files
Merge pull request #3867 from DeCohen/applications-inventory-release-note
New Applications inventory page now available in Defender XDR
2 parents 70b20fa + bcbabbd commit d5b171d

File tree

1 file changed

+23
-14
lines changed

1 file changed

+23
-14
lines changed

CloudAppSecurityDocs/release-notes.md

Lines changed: 23 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -29,6 +29,14 @@ For news about earlier releases, see [Archive of past updates for Microsoft Defe
2929

3030
## May 2025
3131

32+
33+
### New Applications inventory page now available in Defender XDR
34+
35+
The new Applications page in Microsoft Defender XDR provides a unified inventory of all SaaS and connected OAuth applications across your environment. This view helps streamline application discovery, monitoring, and risk assessment.
36+
37+
For more information, see [Application inventory overview](applications-inventory.md).
38+
39+
3240
### Changes to Microsoft Defender for Cloud Apps SIEM agent availability
3341

3442
As part of our ongoing convergence process across Microsoft Defender workloads, [Microsoft Defender for Cloud Apps SIEM agents](siem.md) will be deprecated starting November 2025.
@@ -41,6 +49,7 @@ To ensure continuity and access to data currently available through Microsoft De
4149

4250
For detailed guidance see: [Migrate from Defender for Cloud Apps SIEM agent to supported APIs](migrate-to-supported-api-solutions.md)
4351

52+
4453
### New and improved Cloud App Catalog page
4554

4655
The Cloud app catalog page has been revamped to meet security standards. The new design includes improved navigation, making it easier for you to discover and manage your cloud applications.
@@ -100,7 +109,7 @@ For more information, see:
100109

101110
The new *Permissions filter and export capabilities allow you to quickly identify apps with specific permissions to access Microsoft 365.
102111

103-
You can now get granular insights into data accessed by apps using legacy EWS API alongside Microsoft Graph. The enhanced coverage of data usage insights enable you to get deeper visibility into apps accessing emails using legacy EWS API.
112+
You can now get granular insights into data accessed by apps using legacy EWS API alongside Microsoft Graph. The enhanced coverage of data usage insights enables you to get deeper visibility into apps accessing emails using legacy EWS API.
104113

105114
We're also expanding the coverage of privilege level feature for all popular Microsoft first-party API permissions. The enhanced coverage of privilege level classification enables you to view and monitor apps with powerful permissions into legacy and other non-Graph APIs that have access to Microsoft 365.
106115

@@ -157,7 +166,7 @@ For more information, see:
157166

158167
The Enterprise application 'Microsoft Defender for Cloud Apps – Session Controls' is used internally by the Conditional Access App Control service.
159168
Ensure there's no CA policy restricting access to this application.
160-
For policies that restrict all or certain applications, please ensure this application is listed as an exception or confirm that the blocking policy is deliberate.
169+
For policies that restrict all or certain applications, ensure this application is listed as an exception or confirm that the blocking policy is deliberate.
161170

162171
For more information, see [Sample: Create Microsoft Entra ID Conditional Access policies for use with Defender for Cloud Apps](session-policy-aad.md#sample-create-microsoft-entra-id-conditional-access-policies-for-use-with-defender-for-cloud-apps).
163172

@@ -173,7 +182,7 @@ For more information, see:
173182
### SaaS Security initiative in Exposure Management
174183

175184
[Microsoft Security Exposure Management](/security-exposure-management/) offers a focused, metric-driven way of tracking exposure in specific security areas using security [initiatives](/security-exposure-management/initiatives). The "SaaS security initiative" provides a centralized location for all best practices related to SaaS security, categorized into 12 measurable metrics. These metrics are designed to assist in effectively managing and prioritizing the large number of security recommendations.
176-
This capability is General Availability (Worldwide) - Note Microsoft Security Exposure Management data and capabilities are currently unavailable in U.S Government clouds - GCC, GCC High and DoD
185+
This capability is General Availability (Worldwide) - Note Microsoft Security Exposure Management data and capabilities are currently unavailable in U.S Government clouds - GCC, GCC High, and DoD
177186

178187
For more information, see [SaaS security initiative](saas-security-initiative.md).
179188

@@ -191,13 +200,13 @@ For more information, see [filters on app governance](/defender-cloud-apps/app-g
191200

192201
### Visibility into privilege level for popular Microsoft first-party APIs (Preview)
193202

194-
Defender for Cloud Apps users who use app governance can now gain visibility into privilege level for all popular Microsoft first-party API permissions. The enhanced coverage of privilege level classification will enable you to view and monitor apps with powerful permissions into legacy and other non-Graph APIs that have access to Microsoft 365.
203+
Defender for Cloud Apps users who use app governance can now gain visibility into privilege level for all popular Microsoft first-party API permissions. The enhanced coverage of privilege level classification enables you to view and monitor apps with powerful permissions into legacy and other non-Graph APIs that have access to Microsoft 365.
195204

196205
For more information, see [OAuth app permission related details on app governance](/defender-cloud-apps/app-governance-visibility-insights-view-apps#getting-detailed-information-on-an-app).
197206

198207
### Granular data usage insights into EWS API access (Preview)
199208

200-
Defender for Cloud Apps users who use app governance can now get granular insights into data accessed by apps using legacy EWS API alongside Microsoft Graph. The enhanced coverage of data usage insights will enable you to get deeper visibility into apps accessing emails using legacy EWS API.
209+
Defender for Cloud Apps users who use app governance can now get granular insights into data accessed by apps using legacy EWS API alongside Microsoft Graph. The enhanced coverage of data usage insights enable you to get deeper visibility into apps accessing emails using legacy EWS API.
201210

202211
For more information, see [OAuth app data usage insights on app governance](/defender-cloud-apps/app-governance-visibility-insights-view-apps#getting-detailed-information-on-an-app).
203212

@@ -206,7 +215,7 @@ For more information, see [OAuth app data usage insights on app governance](/def
206215
### New anomaly data in advanced hunting CloudAppEvents table
207216

208217
Defender for Cloud Apps users who use advanced hunting in the Microsoft Defender portal, can now utilize the new *LastSeenForUser* and *UncommonForUser* columns for queries and detections rules.
209-
The new columns are designed to assist you to better __identify uncommon activities__ that may appear suspicious, and allow you to create more accurate custom detections, as well as investigate any suspicious activities that arise.
218+
The new columns are designed to assist you to better __identify uncommon activities__ that might appear suspicious, and allow you to create more accurate custom detections, and investigate any suspicious activities that arise.
210219

211220
For more information, see [Advanced Hunting "CloudAppEvents" Data schema](/microsoft-365/security/defender/advanced-hunting-cloudappevents-table).
212221

@@ -227,13 +236,13 @@ For more information, see [Advanced Hunting "CloudAppEvents" Data schema](/micro
227236

228237
## September 2024
229238

230-
### Enforce Edge in-browser when accessing business apps
239+
### Enforce Microsoft Edge in-browser when accessing business apps
231240

232-
Administrators who understand the power of Edge in-browser protection, can now require their users to use Edge when accessing corporate resources.
241+
Administrators who understand the power of Microsoft Edge in-browser protection, can now require their users to use Microsoft Edge when accessing corporate resources.
233242

234-
A primary reason is security, since the barrier to circumventing session controls using Edge is much higher than with reverse proxy technology.
243+
A primary reason is security, since the barrier to circumventing session controls using Microsoft Edge is higher than with reverse proxy technology.
235244

236-
For more information, see [Enforce Edge in-browser protection when accessing business apps](in-browser-protection.md#enforce-microsoft-edge-browser-protection-when-accessing-business-apps).
245+
For more information, see [Enforce Microsoft Edge in-browser protection when accessing business apps](in-browser-protection.md#enforce-microsoft-edge-browser-protection-when-accessing-business-apps).
237246

238247
### Connect Mural to Defender for Cloud Apps (Preview)
239248

@@ -248,13 +257,13 @@ For more information, see:
248257

249258
### Removing the ability to email end users about blocked actions
250259

251-
Effective October 1st, 2024, we will discontinue the feature that notifies end users via email when their action is blocked by session policies.
260+
Effective October 1, 2024, we'll discontinue the feature that notifies end users via email when their action is blocked by session policies.
252261

253262
This option ensures that if a user's action is blocked, they get both a browser message and an email notification.
254263

255264
Admins can no longer configure this setting when creating new session policies.
256265

257-
Existing session policies with this setting will not trigger email notifications to end users when a block action occurs.
266+
Existing session policies with this setting won't trigger email notifications to end users when a block action occurs.
258267

259268
End users will continue to receive the block message directly through the browser and will stop receiving block notification via email.
260269

@@ -293,7 +302,7 @@ For more information, see [Configure custom URL for MDA block pages](mde-govern.
293302

294303
### In-browser protection for macOS users and newly supported policies (Preview)
295304

296-
Edge browser users from macOS who are scoped to session policies are now protected with in-browser protection.
305+
Microsoft Edge browser users from macOS who are scoped to session policies are now protected with in-browser protection.
297306

298307
The following session policies are now supported:
299308

@@ -304,7 +313,7 @@ The following session policies are now supported:
304313

305314
See [In-browser protection](in-browser-protection.md).
306315

307-
In-browser protection is supported with the last 2 stable versions of Edge (for example, if the newest Edge is 126, in-browser protection works for v126 and v125).
316+
In-browser protection is supported with the last two stable versions of Microsoft Edge (for example, if the newest Microsoft Edge is 126, in-browser protection works for v126 and v125).
308317

309318
See [Microsoft Edge releases](/deployedge/microsoft-edge-release-schedule#microsoft-edge-releases).
310319

0 commit comments

Comments
 (0)