Skip to content

Commit fde1849

Browse files
committed
Adding new recommendations
1 parent 8c01827 commit fde1849

File tree

1 file changed

+6
-3
lines changed

1 file changed

+6
-3
lines changed

defender-vulnerability-management/whats-new-in-microsoft-defender-vulnerability-management.md

Lines changed: 6 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -24,10 +24,13 @@ This article provides information about new features and important product updat
2424
## November 2025
2525

2626
- (Preview) **Microsoft Secure Score now includes new recommendations** to help organizations proactively prevent common endpoint attack techniques.
27+
- **Require LDAP client signing** and **Require LDAP server signing** - helps ensure integrity of directory requests so attackers can't tamper with or manipulate group memberships or permissions in transit.
28+
- **Encrypt LDAP client traffic** - prevents exposure of credentials and sensitive user information by enforcing encrypted communication instead of clear-text LDAP.
29+
- **Enforce LDAP channel binding** - stops adversaries from hijacking or relaying authentication sessions by binding New Technology LAN Manager (NTLM) authentication to a secure TLS channel.
2730
- (GA) These Microsoft Secure Score recommendations are now generally available:
28-
- **Block web shell creation on servers**.
29-
- **Block use of copied or impersonated system tools**.
30-
- **Block rebooting a machine in Safe Mode**.
31+
- **Block web shell creation on servers**
32+
- **Block use of copied or impersonated system tools**
33+
- **Block rebooting a machine in Safe Mode**
3134

3235
## October 2025
3336

0 commit comments

Comments
 (0)