<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
   <channel>
      <title>TrendAI Vision One</title>
      <link>https://docs.trendmicro.com/en-us/documentation/trend-vision-one/trend-vision-one-whats-new/</link>
      <description>New Features, updates, and release notes for TrendAI Vision One</description>
      <language>en-us</language>
      <lastBuildDate>Wed, 20 May 2026 18:16:34 GMT</lastBuildDate>
<item>
    <title>Unhealthy cluster notification for Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-unhealthy-cluster-notif-consec</link>
    <description><![CDATA[<div class="p">September 10, 2025—Enabling this alert sends email or webhook notifications when your
               Container Security clusters become unhealthy. You can configure different clusters
               to send alerts to different recipients using cluster groups or tags, making it easier
               to manage a large number of clusters across different areas.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-alert-notifications#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-81ylzg">Alerts</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Notifications</b></span></div>]]></description>
    <pubDate>Fri, 10 Sep 2021 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-unhealthy-cluster-notif-consec</guid>
    <category>Administration</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 2.0.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-2-0-4</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-31__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">January 9, 2023—Service Gateway: Local ActiveUpdate Service Version 2.0.4 delivers
                  key enhancements, bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-31__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update fixes a path issue for Japan region users.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Sun, 01 Jan 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-2-0-4</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 2.0.7</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-7</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-22__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">January 9, 2023—Service Gateway Firmware Version 2.0.7 provides enhanced security
                  and management capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-22__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds support for AWS private links per customer request.</div>
</li>
<li class="li">
<div class="p">This update adds support for upgrading Azure Virtual Image appliances.</div>
</li>
<li class="li">
<div class="p">This update fixes some CLISH command issues.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Sun, 01 Jan 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-7</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Forensics supports YARA, osquery, and Collect Evidence tasks on Linux endpoints</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-yara-osquery-linux</link>
    <description><![CDATA[<div class="p">January 11, 2023—The Forensics app now allows you to run YARA, osquery, and Collect
               Evidence
               tasks on Linux endpoints, enabling you to better monitor and analyze both Windows
               and Linux
               endpoints in your environment.</div><div class="p">For more information on these tasks, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-actions-section#GUID-9254ED63-6714-4DD1-A9B8-29AD02028380">Response actions</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Forensics</b></span></div>]]></description>
    <pubDate>Wed, 11 Jan 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-yara-osquery-linux</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 1.0.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-3</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-41__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">February 13, 2023—Service Gateway Forward Proxy Service Version 1.0.3 provides enhanced
                  security and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-41__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds support for using Service Platform certificates as API keys to access
                        container services hosted on Service Gateway.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Wed, 01 Feb 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-3</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Syslog Connector (On-Premises) Version 1.0.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-syslog-premises-1-0-4</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-51__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">February 21, 2023—Service Gateway Syslog Connector Version 1.0.4 includes enhancements,
                  bug fixes, and security updates for the syslog connector (on-premises) service hosted
                  on Service Gateway appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-51__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update fixes an issue that occurs when sending logs from Observed Attack
                        Techniques to an on-premises SIEM server.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Wed, 01 Feb 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-syslog-premises-1-0-4</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Syslog Connector (On-Premises) Version 1.0.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-syslog-premises-1-0-3</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-52__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">February 21, 2023—Service Gateway Syslog Connector Version 1.0.3 provides enhanced
                  logging and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section>]]></description>
    <pubDate>Wed, 01 Feb 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-syslog-premises-1-0-3</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Suspicious Object Synchronization Service Version 1.0.1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-suspicious-obj-synch-1-0-1</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-54__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">February 13, 2023—Service Gateway Suspicious Object Synchronization Service Version
                  1.0.1 includes enhancements, bug fixes, and security updates for the suspicious object
                  synchronization service hosted on Service Gateway appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-54__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds support for using Service Platform certificates as API keys to access
                        container services hosted on Service Gateway.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Wed, 01 Feb 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-suspicious-obj-synch-1-0-1</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 2.0.8</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-8</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-21__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">February 13, 2023—Service Gateway Firmware Version 2.0.8 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-21__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds support for using Service Platform certificates as API keys to access
                        container services hosted on Service Gateway.</div>
</li>
<li class="li">
<div class="p">This update fixes routing issues.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Wed, 01 Feb 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-8</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 1.0.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-1-0-2</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-47__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 23, 2023—Service Gateway Smart Protection Services Version 1.0.2 provides enhanced
                  security and threat detection capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-47__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds support for TLS 1.3.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Wed, 01 Mar 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-1-0-2</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 2.0.9</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-9</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-20__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 8, 2023—Service Gateway Firmware Version 2.0.9 provides enhanced security and
                  management capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-20__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds the function to check accessibility to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
                        FQDNs when registering a new Service Gateway appliance.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Wed, 01 Mar 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-9</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>TrendAI Vision One is now TrendAI Vision One</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-trend-vision-one-rename</link>
    <description><![CDATA[<div class="p">To align with our company strategy and image, the following product names have been
               changed:</div><ul class="ul" id="GUID-7C990455-DECC-40DE-BCE6-AAEA22A64EDC__ul_b2y_ldp_5wb">
<li class="li">
<div class="p"><span class="tm">TrendAI™</span> Vision One<span class="tm">™</span> is now <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span><span class="tm">™</span></div>
</li>
<li class="li">
<div class="p"><span class="tm">TrendAI™</span> Cloud One<span class="tm">™</span> is now <span class="ph" lang="en-us" xml:lang="en-us">Cloud One</span><span class="tm">™</span></div>
</li>
</ul>]]></description>
    <pubDate>Wed, 01 Mar 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-trend-vision-one-rename</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 2.0.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-2-0-5</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-30__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 8, 2023—Service Gateway Local ActiveUpdate Service Version 2.0.5 provides enhanced
                  update management and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-30__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update enhances ActiveUpdate service compliance with third-party security
                        tools.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Wed, 01 Mar 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-2-0-5</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>User-defined Automated Response Playbooks are available in the Security Playbooks app</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-defined-response-playbooks</link>
    <description><![CDATA[<div class="p">Security Playbooks now enables you to create Automatic Response Playbooks from scratch
               with a
               flexible workflow, while still allowing you to create the playbooks from a fully customizable
               template.</div><div class="p">In addition to "highly suspicious" and "suspicious" highlighted objects, you can use
               Automatic
               Response Playbooks to take response actions on other "unrated" highlighted objects
               in Workbench
               alerts.</div><div class="p">Additionally, Security Playbooks provides one more response action "Submit URL to
               sandbox" to
               help you quickly respond to Workbench alerts.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Wed, 01 Mar 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-defined-response-playbooks</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 1.0.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-4</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-40__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">April 4, 2023—Service Gateway: Forward Proxy Service Version 1.0.4 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-40__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update includes wording changes and enhancements for the Command Line Interface
                        (CLI).</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-4</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 1.0.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-1-0-3</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-46__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">April 18, 2023—Service Gateway Smart Protection Services Version 1.0.3 provides enhanced
                  security and threat detection capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-46__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds the Smart Protection Services Proxy function to reduce FQDN
                        requirements for the service.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-1-0-3</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Suspicious Object Synchronization Service Version 1.0.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-suspicious-objg-synch-1-0-2</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-53__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">April 27, 2023—Service Gateway: Suspicious Object Synchronization Service Version
                  1.0.2 includes enhancements, bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
</section>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-suspicious-objg-synch-1-0-2</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Network Inspector version 1.0.1065</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inspector-version-1-0-1065</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-15__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">April 10, 2023—Virtual Network Sensor Version 1.0.65 provides enhanced network monitoring
                  and threat detection capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-15__ul_wln_fbm_v1c">
<li class="li">
<div class="p">Network Inspector OVA is available for download from Network Inventory in limited
                        regions.</div>
</li>
<li class="li">
<div class="p">Network Inspector automatically connects and registers to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> and
                        provides telemetry data for Network Analytics.</div>
</li>
<li class="li">
<div class="p">Configurable Network Assets for Network Inspector accessible from Network
                        Inventory.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inspector-version-1-0-1065</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Service Gateway Firmware Version 2.0.11</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-2-0-11</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-18__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">April 27, 2023—Service Gateway Firmware Version 2.0.11 provides enhanced security
                  and management capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-18__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds the function to enable or disable open ports using CLISH commands
                        to
                        help enhance security of the appliance.</div>
</li>
<li class="li">
<div class="p">This update reduces unnecessary IoT communications between the Service Gateway
                        appliance and <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span> hosted
                        services.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-2-0-11</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 2.0.10</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-10</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-19__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">April 4, 2023—Service Gateway Firmware Version 2.0.10 provides enhanced security and
                  management capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-19__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds the function to clean up storage by deleting inactive service
                        images.</div>
</li>
<li class="li">
<div class="p">This update adds host platform detection capabilities, allowing the Service Gateway
                        appliance to determine feature availability.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-10</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Enhancements to Automated Response Playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhance-automated-response-playbook</link>
    <description><![CDATA[<div class="p">You can now specify detection models when configuring trigger settings for Automated
               Response playbooks. The subsequent nodes in the playbook are only triggered for
               Workbench alerts related to the specified detection models. </div><div class="p">Playbooks also adds support for additional webhook types in user-defined Automated
               Response playbooks.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-automated-response-playbooks#GUID-BED80320-70E5-47C4-9530-CC26073D469D-36">Manually create Automated Response Playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhance-automated-response-playbook</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Security Playbooks official release</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-playbooks-official-release</link>
    <description><![CDATA[<div class="p">Security Playbooks is now officially released and can be utilized alongside your Risk
               Insights and XDR entitlements as part of the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> platform.</div><div class="p">For details on what types of entitlements are required for each playbook type, see
               <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-playbooks-requirements#SecurityPlaybooksEntitlements">Security playbooks requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-playbooks-official-release</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>New point-of-presence (PoP) site for Zero Trust Secure Access Internet Access available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-nternet-access</link>
    <description><![CDATA[<div class="p">Zero Trust Secure Access Internet Access has launched a new PoP site for the Internet
               Access Cloud Gateway in Bahrain in the AWS Middle East region.</div><div class="p">For details on the available PoP sites for the Internet Access Cloud Gateway, see
               <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-nternet-access</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Enhancement to Internet Access On-Premises Gateway</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-internet-access-premises-gateway</link>
    <description><![CDATA[<div class="p">If your organization uses a third-party proxy server to access the internet, you can
               now
               configure the proxy server as the upstream proxy to connect your deployed Internet
               Access On-Premises Gateway to the internet.</div><div class="p">For details on configuring upstream proxy for an Internet Access On-Premises Gateway,
               see
               <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deploy-ia-premises-gateway#GUID-BED80320-70E5-47C4-9530-CC26073D469D-jg0fgm">Deploy an Internet Access On-Premises Gateway</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-internet-access-premises-gateway</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Report Management official release</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-report-management-official</link>
    <description><![CDATA[<div class="p">Report Management is now officially released and can be utilized alongside your Risk
               Insights and XDR entitlements as part of the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> platform.</div><div class="p">For details on what types of entitlements are required for each report type, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-reports-license-requirements#ReportEntitlements">Reports license requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Reports</b></span></div>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-report-management-official</guid>
    <category>Dashboards and Reports</category>
</item>
<item>
    <title>Risk Insights supports multiple Azure AD tenants</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-azure-ad-tenants</link>
    <description><![CDATA[<div class="p">Customers with multiple Azure AD tenants can now have full visibility of accounts
               on all
               tenants and perform risk assessment on multiple Azure AD tenants in Risk Insights
               apps.</div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b></div>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-azure-ad-tenants</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Risk Insights official release</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-official</link>
    <description><![CDATA[<div class="p">All Risk Insights capabilities are now officially released and can be purchased alongside
               XDR as part of the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
               platform. Contact your sales representative to discuss your license transition period
               options.</div><div class="p">For more details on the licensing and product experience for Risk Insights, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-credit-req-for-apps-services#GUID-001E41E3-6F8A-499E-85E5-14A3DBD67C6C-2">Credit requirements for TrendAI Vision One™ solutions</a>.</div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b></div>]]></description>
    <pubDate>Sat, 01 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-official</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 1.0.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-5</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-39__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">April 27, 2023—Service Gateway Forward Proxy Service Version 1.0.5 provides enhanced
                  security and network connectivity features.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-39__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds the CLISH command function to manually limit traffic allowed by the
                        forward proxy service to only traffic with the destination of a <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span> hosted service.</div>
</li>
<li class="li">
<div class="p">This update adds the function to customize the cloud proxy configuration using CLISH
                        commands.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Thu, 27 Apr 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-5</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Network Inspector version 1.0.1089</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inspector-version-1-0-1089</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-13__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">May 22, 2023—Virtual Network Sensor Version 1.0.89 provides enhanced network monitoring
                  and threat detection capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-13__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds support for response actions for endpoints, email, and IAM based
                        on
                        network detections.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 01 May 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inspector-version-1-0-1089</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Network Inspector version 1.0.1077</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inspector-version-1-0-1077</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-14__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">May 9, 2023—Virtual Network Sensor Version 1.0.77 provides enhanced network monitoring
                  and threat detection capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-14__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds the ability to automatically update to the latest version when
                        connected.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 01 May 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inspector-version-1-0-1077</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Service Gateway Firmware Version 2.0.12</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-2-0-12</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-17__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">May 22, 2023—Service Gateway Firmware Version 2.0.12 provides enhanced security and
                  management capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-17__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds the function to enable or disable Service Gateway appliance network
                        ports.</div>
</li>
<li class="li">
<div class="p">This update fixes an issue which might cause the firmware to randomly disable
                        ports.</div>
</li>
<li class="li">
<div class="p">Zero Trust Secure Access On-premises Gateway: This update adds support for the NTLM
                        v2
                        protocol.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Mon, 01 May 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-2-0-12</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Zero Trust Secure Access adds service mode configuration for internet access</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-service-mode-internet-access</link>
    <description><![CDATA[<div class="p">The Secure Access Module can now configure the service mode for the internet access
               service of
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>,
               facilitating the selection of the proper configuration for your endpoints. Adaptive
               mode is
               selected by default to assist you in automatically configuring the proper mode for
               endpoint
               internet access.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 01 May 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-service-mode-internet-access</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Log collection available in Zero Trust Secure Access agent console</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-log-collection-ztsa-agent</link>
    <description><![CDATA[<div class="p">The Zero Trust Secure Access agent can now collect debug logs to make troubleshooting
               more
               convenient for users. The agent console features a new button for users to initiate
               log
               collection. When debug logging is enabled, the log will include diagnostic information
               to assist
               with troubleshooting end users' issues.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Overview</b></span></div>]]></description>
    <pubDate>Mon, 01 May 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-log-collection-ztsa-agent</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Internet Access On-Premises Gateway supports syslog forwarding</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-syslog</link>
    <description><![CDATA[<div class="p">Zero Trust Secure Access Internet Access On-Premises Gateway now supports forwarding
               activity
               logs in the Common Event Format (CEF) to a designated syslog server.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deploy-iac-onpremises-gateway#GUID-BED80320-70E5-47C4-9530-CC26073D469D-c08alh">Deploying an Internet Access On-Premises
                  Gateway</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 01 May 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-syslog</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Internet Access supports sandboxing integration</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-internet-access-sandboxing</link>
    <description><![CDATA[<div class="p">Zero Trust Secure Access Internet Access now supports sandbox integration as part
               of a public preview, allowing you to automatically submit suspicious files to the
               Sandbox Analysis app.</div><div class="p">You must set a daily reserve of more than zero to enable the automatic submission
               of suspicious files to the Sandbox Analysis app.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adding-threat-protection-rule#GUID-BED80320-70E5-47C4-9530-CC26073D469D-kf68e">Adding a threat protection rule</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 01 May 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-internet-access-sandboxing</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Deep Discovery Inspector appliance plans available for Network Inventory</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ddi-plans-network-inventory</link>
    <description><![CDATA[<div class="p">Manage connected Deep Discovery Inspector appliances in Network Inventory with appliance
               plans.
               Plans allow you to deploy important upgrades such as firmware, patches, or hotfixes;
               as well as
               replicate settings from one appliance to another. You can also deploy prepared images
               to
               appliances configured to use Virtual Analyzer.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 01 May 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ddi-plans-network-inventory</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Threat and Exposure Management monitors new risk factors</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-operations-dashboard-risk-factors</link>
    <description><![CDATA[<div class="p">Threat and Exposure Management now monitors two new risk factors: System Configuration
               and Security
               Configuration. You can view the related risk metrics and events in the Risk Factors
               tab.</div><div class="p">Risk Insights identifies potential misconfigurations of your environment, including
               exposed
               ports, insecure host connections, insecure IAM and cloud infrastructure configurations,
               and
               unsafe software and endpoint configurations.</div><div class="p">Risk Insights monitors your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span> security settings,
               including endpoint agent and sensor deployments, update status, and key feature adoption
               rates.
               The Security Configuration risk factor helps you ensure that <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span> solution settings are following best practices.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 01 May 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-operations-dashboard-risk-factors</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Cyber Risk Overview widgets reorganized</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-executive-dashboard-reorganized</link>
    <description><![CDATA[<div class="p">In the Exposure Overview tab of Cyber Risk Overview, clicking View Details in widgets
               now
               redirects you to Threat and Exposure Management for more detailed information.</div><div class="p">In the Activity and Behaviors section, the Legacy Authentication Protocol with Log
               On Activity
               widget has moved to the System Configuration section and the Account Compromise Indicators
               widget
               has moved into Threat and Exposure Management.</div><div class="p">In the Attack Overview tab of Cyber Risk Overview, the General Detection Summary widgets
               have moved to the Dashboards for easier access and to improve the customizability
               of dashboards. The following widgets are now found in the Widget Catalog of the Security
               Dashboard:</div><ul class="ul" id="GUID-880CAD29-A343-4355-9807-FC9B10C3D909__ul_fxp_fxr_qxb">
<li class="li">
<div class="p">Detections by Attack Type</div>
</li>
<li class="li">
<div class="p">Mitigated Events by Attack Type</div>
</li>
<li class="li">
<div class="p">Detections by Protection Layer</div>
</li>
<li class="li">
<div class="p">Workbench Alert Tracking</div>
</li>
</ul><div class="note">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">You must enable Risk Insights capabilities to access Threat and Exposure Management
                           and Security Dashboard. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-credit-req-for-apps-services#GUID-001E41E3-6F8A-499E-85E5-14A3DBD67C6C-2">Credit requirements for TrendAI Vision One™ solutions</a>.</div>
</td>
</tr>
</table>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 01 May 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-executive-dashboard-reorganized</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Attack Surface Discovery presents data sources for discovered devices</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asd-data-sources-for-discovery</link>
    <description><![CDATA[<div class="p">Attack Surface Discovery lists all assets discovered in your organization to facilitate
               risk
               assessments. <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span> leverages several data sources for asset
               discovery, which are now presented in the Discovered by column of the Device List
               for further
               investigation. You can also configure Device Overview to show only specific sources
               by adding the
               Discovered by filter.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 01 May 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asd-data-sources-for-discovery</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 2.0.7</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-version-2-0-7</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-28__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 28, 2023—Service Gateway Local ActiveUpdate Service Version 2.0.7 provides enhanced
                  update management and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section>]]></description>
    <pubDate>Thu, 01 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-version-2-0-7</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 2.0.6</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-service-version-2-0-6</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-29__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 1, 2023—Service Gateway Local ActiveUpdate Service Version 2.0.6 provides enhanced
                  update management and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section>]]></description>
    <pubDate>Thu, 01 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-service-version-2-0-6</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 1.0.7</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-7</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-37__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 19, 2023—Service Gateway Forward Proxy Service Version 1.0.7 provides enhanced
                  security and network connectivity features.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-37__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds an enhancement to limit traffic allowed by the forward proxy service
                        to only traffic with a <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span> hosted
                        service as a destination.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Thu, 01 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-7</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 1.0.6</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-6</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-38__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 1, 2023—Service Gateway Forward Proxy Service Version 1.0.6 provides enhanced
                  security and network connectivity features.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-38__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds support for IPv6 when the host Service Gateway is configured to use
                        IPv6.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Thu, 01 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-6</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 1.0.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-1-0-4</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-45__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 28, 2023—Service Gateway: Smart Protection Services Version 1.0.4 delivers key
                  enhancements, bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-45__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update fixes an issue which may block Smart Protection Services queries to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span> services for some products.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Thu, 01 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-1-0-4</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 2.0.15</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-15</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-14__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 28, 2023—Service Gateway Firmware Version 2.0.15 provides enhanced security and
                  management capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-14__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security required FQDNs to the Service
                        Gateway forward proxy service allow list.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Thu, 01 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-15</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 2.0.14</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-14</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-15__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 7, 2023—Service Gateway Firmware Version 2.0.14 provides enhanced security and
                  management capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-15__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update fixes an issue which might cause Service Gateway to block some appliances
                        configured with a public IP address.</div>
</li>
<li class="li">
<div class="p">This update fixes certificate recognition issues when importing a custom
                        certificate.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Thu, 01 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-14</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 2.0.13</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-13</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-16__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 1, 2023—Service Gateway Firmware Version 2.0.13 delivers key enhancements, bug
                  fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-16__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds support for the Cloud Extension Service to help consolidate FQDN
                        requirements.</div>
</li>
<li class="li">
<div class="p">This update adds support for changing the Service Gateway appliance hostname/FQDN
                        in
                        the Service Gateway Management app.</div>
</li>
<li class="li">
<div class="p">This update changes the default hostname to fix an issue which might cause Linux
                        endpoints to not recognize or fail to connect to the Service Gateway appliance.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Thu, 01 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-13</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Virtual Network Sensor, a network sensor for network detection and response, now available in Network Inventory</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-detection-response</link>
    <description><![CDATA[<div class="p">June 5, 2023—Virtual Network Sensor is the new network sensor solution available for
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. Virtual
               Network Sensor is a virtual appliance that provides <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> with
               network activity data, enabling you to review detailed network activity. The network
               data can
               also help discover unmanaged and unknown network assets, allowing for a more holistic
               view of
               your attack surface for network detection, response, analysis, and visibility.</div><div class="p">Start your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> journey by providing needed network detection and response
               capabilities such as network telemetry collection and investigation responses. Get
               an overview
               of your connected Virtual Network Sensor virtual appliances in Network Inventory.</div><div class="p">For more details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-ri3zyn">Virtual Network Sensor Virtual Appliance</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 05 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-detection-response</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Significant update to the Risk Index algorithm</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-update-risk-index-algorithm</link>
    <description><![CDATA[<div class="p">June 5,  2023—Risk Insights has applied a significant update to the Risk Index algorithm
               for all customers.
               The algorithm now places a greater importance on Attack Detection. Periodic algorithm
               updates
               are part of our continuous effort to optimize the risk algorithm to provide you with
               an
               accurate, timely, and actionable Risk Index.</div><div class="important">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">
<div class="p">Algorithm updates can result in a sudden and significant increase to asset risk scores
                              and the
                              Risk Index. A sharp increase in the Risk Index that directly coincides with an algorithm
                              update
                              can be considered the result of the algorithm change.</div>
</div>
</td>
</tr>
</table>
</div><div class="p">For more details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-index-algorithm-updates#ExecutiveDashboardFAQs">Cyber Risk Index algorithm updates</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 05 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-update-risk-index-algorithm</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access adds customized DLP templates for Internet Access</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-dlp-templates-internet-access</link>
    <description><![CDATA[<div class="p">June 19, 2023—To strengthen the data loss prevention capability of Internet Access,
               Zero
               Trust Secure Access supports customized Data Loss Prevention (DLP) templates and customized
               DLP
               data identifiers including expressions, file attributes, and keywords. Administrators
               can add
               customized DLP templates using either predefined or customized DLP data identifiers,
               create DLP
               rules to include customized DLP templates, and then apply them to Internet Access
               rules to scan
               outbound web traffic against accidental data disclosure and intentional theft.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-loss-prevention-rules#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-gd6gmz">Data loss prevention rules</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 19 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-dlp-templates-internet-access</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access supports SMB protocol for Private Access</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-smb-protocol-private-access</link>
    <description><![CDATA[<div class="p">June 19, 2023—Administrators can add the organization's private applications that
               use the
               Server Message Block (SMB) protocol to the internal apps list. This allows Private
               Access to
               control users' access to these applications through the Secure Access Module.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-add-internal-application-pac#GUID-BED80320-70E5-47C4-9530-CC26073D469D-2swofk">Add an internal application to Private Access</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Private Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 19 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-smb-protocol-private-access</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Asset graph for service accounts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-graph-service-accounts</link>
    <description><![CDATA[<div class="p">June 21, 2023—Attack Surface Discovery now provides asset graph support for service
               accounts.
               The asset graph provides detailed information about the service account and its relationships
               and
               interactions with other assets in your organization. The service account might also
               appear in the
               asset graph of other assets.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Wed, 21 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-graph-service-accounts</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Risk Insights support for TrendAI Vision One credits</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-credits</link>
    <description><![CDATA[<div class="p">June 21, 2023—As Risk Insights capabilities become a paid feature on July 4, 2023,
               credit
               usage data is now displayed in Risk Insights apps. You can view your current credit
               balance and
               estimate future credit usage. To ensure uninterrupted access to Threat and Exposure
               Management and Attack
               Surface Discovery, activate the "auto-allocate credits" toggle to enable <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to automatically allocate credits to Risk Insights
               capabilities when the complimentary period ends.</div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b></div>]]></description>
    <pubDate>Wed, 21 Jun 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-credits</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 2.0.9</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-version-2-0-9</link>
    <description><![CDATA[<section class="section" id="RN_2023-07_SG-LocalActiveUpdate209-GUID-c06205ad-4074-41af-acab-ccc633750910__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">July 12, 2023—Service Gateway Local ActiveUpdate Service Version 2.0.9 provides enhanced
                  update management and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="RN_2023-07_SG-LocalActiveUpdate209-GUID-c06205ad-4074-41af-acab-ccc633750910__ul_m55_5y2_hzb">
<li class="li">
<div class="p">This update adds a bug fix for product auto-detection when connecting to a Service
                        Gateway appliance.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 01 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-version-2-0-9</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 1.0.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-1-0-5</link>
    <description><![CDATA[<section class="section" id="RN_2023-07_SG-SPS105-GUID-dd75e943-8efa-4ba6-96ee-fad9f200409b__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">July 12, 2023—Service Gateway Smart Protection Services Version 1.0.5 includes enhancements,
                  bug fixes, and security updates for Smart Protection Services hosted on Service Gateway
                  appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="RN_2023-07_SG-SPS105-GUID-dd75e943-8efa-4ba6-96ee-fad9f200409b__ul_ffj_sy2_hzb">
<li class="li">
<div class="p">This update adds a bug fix for <span class="tm">TrendAI™</span> Predictive Machine Learning detection
                        queries.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 01 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-1-0-5</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Network Inspector version 1.0.1121</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inspector-version-1-0-1121</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-11__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">July 31, 2023—Virtual Network Sensor version 1.0.1121 includes enhancements, bug fixes,
                  and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-11__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds the enhancement to provide SSH protocol telemetry data to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
<li class="li">
<div class="p">This update adds support for encapsulated remote mirroring.</div>
</li>
<li class="li">
<div class="p">This update adds support for monitoring traffic from the VMware vSphere Distributed
                        Switch (VDS).</div>
</li>
<li class="li">
<div class="p">This update adds the ability to toggle SSH in Network Inventory.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 01 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inspector-version-1-0-1121</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Network Inspector version 1.0.1109</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inspector-version-1-0-1109</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-12__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">July 10, 2023—Virtual Network Sensor version 1.0.1109 includes enhancements, bug fixes,
                  and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-12__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds the ability to send protocol traffic logs to the Scanned Traffic
                        Summary widget in Security Dashboard.</div>
</li>
<li class="li">
<div class="p">This update adds support for collecting debug logs from <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span> Solution Center when remote
                        support is enabled.</div>
</li>
<li class="li">
<div class="p">This update adds the CLI command <code class="cmdname">connect</code> to monitor connection and
                        onboarding status with <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 01 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inspector-version-1-0-1109</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Permissions for Risk Insights updated</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-permissions-for-risk-insights</link>
    <description><![CDATA[<div class="p">July 3, 2023—To streamline the management of Risk Insights access in the User Roles
               app, the
               Configure settings and Export data permissions are no longer listed under Cyber Risk
               Overview,
               Attack Surface Discovery, and Threat and Exposure Management. Configure settings and
               Export data are now
               found in the new General category, which affects the three Risk Insights apps.</div><div class="p">The new Manage assets permission now affects Attack Surface Discovery. Threat and
               Exposure Management now
               uses two new permissions, Manage risk events and Manage vulnerabilities.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">User Roles</b></span></div>]]></description>
    <pubDate>Mon, 03 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-permissions-for-risk-insights</guid>
    <category>Administration</category>
</item>
<item>
    <title>Native TrendAI Vision One Endpoint Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-native-endpoint-security</link>
    <description><![CDATA[<div class="p">July 3, 2023—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> provides a centralized and comprehensive solution for your
               endpoint security, offering a streamlined, single-console experience. The new interface
               allows
               for the deployment of protection and policies, risk management, and the handling of
               detection and
               response for your endpoints, servers, and workloads.</div><div class="p">To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-get-start-endpoint-security#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-7nm150">Getting started with TrendAI Vision One™ Endpoint Security</a>.</div>]]></description>
    <pubDate>Mon, 03 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-native-endpoint-security</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Security Playbooks supports management scope</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-playbooks-management-scope</link>
    <description><![CDATA[<div class="p">July 3, 2023—For customers that signed up for or expressly updated <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> on or after July 3, 2023, Security Playbooks now
               supports management scope.</div><div class="p">Permissions to view or manage playbooks can be assigned based on management scope
               for custom
               roles. Users can only approve the execution of playbooks and view execution results
               for endpoints
               in their management scope. Newly created playbooks are executed based on the playbook
               creator's
               management scope.</div><div class="p">All roles retain full permissions for playbooks created before the implementation
               of management
               scope.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 03 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-playbooks-management-scope</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>System log enhancements and unusual status alerts for Zero Trust Secure Access Internet Access</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-syslog-unusual-status-alerts-ztsa</link>
    <description><![CDATA[<div class="p">July 3, 2023—Zero Trust Secure Access Internet Access now maintains system logs to
               provide
               summaries about Internet Access On-Premises Gateway events that occurred, including
               gateway
               connection status change, service version update, and SSO authentication proxy status
               change.</div><div class="p">You can also configure alerts to send notifications when the status of an on-premises
               gateway
               changes to "Unhealthy", or when the on-premises gateway that serves as the authentication
               proxy
               for SSO is disconnected from your on-premises Active Directory server. For more information,
               see
               <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-corporate-network-locations-ia#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-nj7qsy">Internet Access gateways and corporate
                  network locations</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 03 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-syslog-unusual-status-alerts-ztsa</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Internet Access supports Artificial Intelligence category for cloud app filtering</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-ia-ai-cloud-app-filtering</link>
    <description><![CDATA[<div class="p">July 3, 2023—Zero Trust Secure Access Internet Access now supports a new cloud app
               category
               "Artificial Intelligence" evaluated by Cloud Reputation Services. This allows you
               to easily
               filter out generative AI-based cloud apps when adding <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-cloud-app-categories#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-e7ql2p">custom cloud app categories</a> and create Risk rules and Internet Access rules to control
               users' access to these cloud apps.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 03 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-ia-ai-cloud-app-filtering</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Secure Access Module can be deployed on the endpoints managed by TrendAI Vision One Endpoint Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sam-deploy-endpoint-security</link>
    <description><![CDATA[<div class="p">July 3, 2023—Customers that have updated to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security can now
               install the Secure Access Module on the following endpoints with supported operating
               systems:
               Standard Endpoint Protection endpoints, Server &amp; Workload Protection endpoints, and
               Sensor
               only endpoints.</div><div class="p">Other features available for the Secure Access Module can also be applied to the endpoints,
               such as removing the module or replacing the PAC file.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Module</b></span></div>]]></description>
    <pubDate>Mon, 03 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sam-deploy-endpoint-security</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Report Management and Security Dashboard merged under new Dashboards and Reports app group</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-report-security-dashboard-app-group</link>
    <description><![CDATA[<div class="p">July 3, 2023—Security Dashboard and Reports (formerly Report Management) have moved
               from Risk
               Insights to the new Dashboards and Reports app group. Access detailed reports and
               custom
               dashboard views from a single location to more easily make informed security decisions.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Reports</b></span></div>]]></description>
    <pubDate>Mon, 03 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-report-security-dashboard-app-group</guid>
    <category>Dashboards and Reports</category>
</item>
<item>
    <title>Advanced filtering and ability to assign secure access rules added to Cloud Apps</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adv-filter-secure-access-cloud-apps</link>
    <description><![CDATA[<div class="p">July 3, 2023—The Cloud Apps tab of the Attack Surface Discovery app now features a
               new
               Artificial Intelligence category for cloud apps based on artificial intelligence technology.
               The
               Cloud Apps tab now also features advanced filtering by category, risk level, sanctioned
               state,
               breach warnings, and last detected. In addition, you can now assign Internet Access
               rules by
               selecting cloud apps and clicking Assign Secure Access Rule.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 03 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adv-filter-secure-access-cloud-apps</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Risk Insights-related security playbooks require entitlement</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-playbooks-entitlement</link>
    <description><![CDATA[<div class="p">July 4, 2023—Customers must now enable the Risk Insights license entitlement to create,
               edit,
               or execute the following playbooks.</div><ul class="ul" id="GUID-BDA860C4-D1F5-4A2F-94AF-DB70D931C688__ul_q5g_mr5_yxb">
<li class="li">
<div class="p">Account Configuration Risk</div>
</li>
<li class="li">
<div class="p">CVEs with High or Medium Global Exploit Activity - Internet-Facing Assets</div>
</li>
<li class="li">
<div class="p">CVEs with High or Medium Global Exploit Activity</div>
</li>
</ul><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-playbooks-requirements#SecurityPlaybooksEntitlements">Security playbooks requirements</a></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Tue, 04 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-playbooks-entitlement</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Automated Response Playbooks gain support for custom detection models</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-playbooks-custom-detection-models</link>
    <description><![CDATA[<div class="p">July 4, 2023—You can now specify custom detection models when configuring Target nodes
               for
               Automated Response Playbooks. Subsequent nodes in the playbook are only triggered
               for Workbench
               alerts related to the specified detection models.</div><div class="p">Enhancements to the Security Playbooks user interface facilitate selecting and enabling
               detection models.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-automated-response-playbooks#GUID-BED80320-70E5-47C4-9530-CC26073D469D-36">Manually create Automated Response Playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Tue, 04 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-playbooks-custom-detection-models</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Risk Insights capabilities require a license or credits</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-license-credits</link>
    <description><![CDATA[<div class="p">July 4, 2023—Risk Insights capabilities are now a paid feature. You must purchase
               a license
               or allocate sufficient credits for Risk Insights to access Threat and Exposure Management
               and Attack
               Surface Discovery.</div><div class="p">If you have not purchased a license or allocated credits to Risk Insights, you can
               start a
               30-day free trial when you attempt to access Threat and Exposure Management or Attack
               Surface Discovery. To
               ensure uninterrupted access to Threat and Exposure Management and Attack Surface Discovery
               after your trial
               ends, contact your sales representative in advance to prepare a license or credits
               for Risk
               Insights. You can configure <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to automatically allocate credits to Risk Insights
               capabilities at the end of your free trial period.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Tue, 04 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-license-credits</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Custom detection model public preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-detection-model-preview</link>
    <description><![CDATA[<div class="p">July 4, 2023—The Detection Model Management app now offers the ability to create custom
               filters using search query syntax. Create custom detection models that use the new
               custom filters
               to trigger the generation of custom Observed Attack Techniques events and Workbench
               alerts.</div><div class="p">The custom Observed Attack Techniques events and Workbench alerts are accessible by
               several
               downstream features and services, including the Observed Attack Techniques app, the
               Workbench
               public API, widgets, and third-party SIEM integrations. In addition, the new custom
               detection
               models can be leveraged by the Security Playbooks app to create automated response
               actions. </div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Tue, 04 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-detection-model-preview</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Scanned Traffic Summary widget for Security Dashboard</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scanned-traffic-summary-widget</link>
    <description><![CDATA[<div class="p">July 10, 2023—The Scanned Traffic Summary widget provides an overview of scanned traffic,
               protocols, and discovered devices in your network environment. The widget supports
               both Network
               Inspector and Deep Discovery Inspector version 6.6 or later.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards</b></span></div>]]></description>
    <pubDate>Mon, 10 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scanned-traffic-summary-widget</guid>
    <category>Dashboards and Reports</category>
</item>
<item>
    <title>Zero Trust Secure Access Internet Access supports ICAP integration for On-premises Gateways</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-internet-access-icap</link>
    <description><![CDATA[<div class="p">July 17, 2023—The Zero Trust Secure Access - Internet Access On-Premises Gateway now
               supports
               enabling ICAP integration in addition to the default proxy mode. ICAP integration
               can be
               configured from the <span class="menucascade"><b class="uicontrol">Internet Access Configuration</b> → <b class="uicontrol">Gateway</b></span> page.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deploy-iac-onpremises-gateway#GUID-BED80320-70E5-47C4-9530-CC26073D469D-c08alh">Deploying an Internet Access On-Premises
                  Gateway</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 17 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-internet-access-icap</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Vulnerability Assessment for Linux users</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerability-assessment-linux</link>
    <description><![CDATA[<div class="p">July 24, 2023—Vulnerability Assessment is now available for the following Linux operating
               systems: Amazon Linux, CentOS, Red Hat Enterprise Linux, and Ubuntu.</div><div class="p">For details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerability-assessment-os#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-85">Vulnerability Assessment supported operating systems</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 24 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerability-assessment-linux</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access Internet Access supports bandwidth control for On-premises Gateways</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-internet-access-bandwidth</link>
    <description><![CDATA[<div class="p">July 31, 2023—The Zero Trust Secure Access - Internet Access On-premises Gateway now
               supports
               bandwidth control for specified URLs on both downstream and upstream traffic.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-configuring-bandwidth-control#GUID-BED80320-70E5-47C4-9530-CC26073D469D-7cb7z1">Configure bandwidth control</a></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 31 Jul 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-internet-access-bandwidth</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1146</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1146</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-10__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">August 28, 2023—Virtual Network Sensor version 1.0.1146 includes enhancements, bug
                  fixes, and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-10__ul_wln_fbm_v1c">
<li class="li">
<div class="p">Network Inspector is renamed Virtual Network Sensor.</div>
</li>
<li class="li">
<div class="p">This update adds support for deploying on Red Hat Enterprise Linux 9.2 with KVM.</div>
</li>
<li class="li">
<div class="p">This update adds enhancements to debug log collection.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Tue, 01 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1146</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Notifications implemented for disabled custom filters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notifications-disabled-filters</link>
    <description><![CDATA[<div class="p">August 1, 2023—Notifications are now displayed for disabled custom filters. The notifications
               include the notification message that pops up in the Notification Center and the tooltip
               message
               displayed next to the filter name on the <b class="uicontrol">Custom Filter</b> tab and the
               associated model name on the <b class="uicontrol">Custom Model</b> tab.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Tue, 01 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notifications-disabled-filters</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Connected endpoint protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-connected-endpoint-protection</link>
    <description><![CDATA[<div class="p">August 7, 2023—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security provides better visibility by displaying
               all your connected endpoint protection products (both on-premises and SaaS) directly
               to the
               Endpoint Inventory screen and allows you direct linking to the related product consoles.
               You can
               also evaluate the new Endpoint Security protection by moving a subset of your agents
               from Trend
               Micro Apex One as a Service or Cloud One Endpoint &amp; Workload Security. After
               experiencing the single console benefits, you can update your SaaS offerings to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
               Endpoint Security.</div><div class="p">You can also view endpoint policies for the following on-premises versions of Apex
               One and Deep
               Security.</div><ul class="ul" id="Connected_Endpoint_Protection__ul_pn3_nnh_nyb">
<li class="li">
<div class="p">Apex Central Patch 6 (B6511 or later)</div>
</li>
<li class="li">
<div class="p">Apex One SP1 Patch 1 (12380 or later)</div>
</li>
<li class="li">
<div class="p">Apex One (Mac) Patch 10 (3.5.7163 or later)</div>
</li>
<li class="li">
<div class="p">Deep Security (20.0.804 or later)</div>
<div class="note">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">
<div class="p">The current version of Deep Security policies on <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security does not
                                    display the enabled/disabled status for Device Control.</div>
</div>
</td>
</tr>
</table>
</div>
</li>
</ul><div class="tip">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Tip" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/tip.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Tip</h5>
<div class="note-body">
<div class="p"><span class="tm">TrendAI™</span> highly recommends you update your applications to the latest versions to ensure a
                              seamless transition to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security.</div>
</div>
</td>
</tr>
</table>
</div>]]></description>
    <pubDate>Mon, 07 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-connected-endpoint-protection</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Risk Insights apps gain Tanium Comply as data source</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-tanium-source</link>
    <description><![CDATA[<div class="p">August 14, 2023—Risk Insights apps now support Tanium Comply as a third-party data
               source.
               Tanium Comply contributes device information and CVE detections. To grant data upload
               permissions
               for Tanium Comply, enter the Tanium console URL and API token in the data sources
               settings
               drawer.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 14 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-tanium-source</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Security Dashboard adds five new widgets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-dashboard-widgets</link>
    <description><![CDATA[<div class="p">August 14, 2023—Five new widgets have been added to the Security Dashboard widget
               catalog: 
               <ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-59__ul_xvn_lch_ryb">
<li class="li">
<div class="p">Activity Data Statistics</div>
</li>
<li class="li">
<div class="p">Detection Statistics</div>
</li>
<li class="li">
<div class="p">Endpoint Statistics</div>
</li>
<li class="li">
<div class="p">Email Threat Detection Overview</div>
</li>
<li class="li">
<div class="p">Email Spam Detection Overview</div>
</li>
</ul>
</div><div class="p">The new widgets provide an overview of all activity data and detections, allowing
               users to spot issues involving endpoints and email security and then go deeper to
               pinpoint product connector or configuration errors. Find the new widgets in the XDR
               Threat Investigation and Email categories of the Dashboards widget catalog.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards</b></span></div>]]></description>
    <pubDate>Mon, 14 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-dashboard-widgets</guid>
    <category>Dashboards and Reports</category>
</item>
<item>
    <title>Cloud Accounts app now available for pre-release preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-app-prerelease</link>
    <description><![CDATA[<div class="p">August 15, 2023—Cloud Accounts consolidates the management and deployment of cloud
               security
               features in your environment across <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> apps. Cloud Accounts currently provides the
               following features for AWS accounts:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xcn3hp__ul_mng_lpb_qyb">
<li class="li">
<div class="p">Core Features: Allows <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to discover your cloud assets and rapidly identify
                     risks such as compliance and security best practice violations on your cloud infrastructure.
                     Once connected, assets in the account are visible in the Attack Surface Discovery
                     app.</div>
</li>
<li class="li">
<div class="p">Container Protection for Amazon ECS: Deploys <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Container Security in your
                     AWS account to protect your containers and container images in Elastic Container Service
                     (ECS)
                     environments. Container Security uncovers threats and vulnerabilities, protects your
                     runtime
                     environment, and enforces deployment policies. Once connected, managed clusters are
                     visible in
                     the Container Inventory page.</div>
</li>
</ul><div class="p">Additional features and expanded support for additional public cloud providers are
               planned for
               Cloud Accounts in the future. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-opaf4f">Cloud Accounts</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Tue, 15 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-app-prerelease</guid>
    <category>Service Management</category>
</item>
<item>
    <title>TrendAI Vision One Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security-release</link>
    <description><![CDATA[<div class="p">August 15, 2023—<a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-fmf2si">Container Security</a>
               helps safeguard your containers throughout their entire life cycle. Container Security
               is
               accessible directly in the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console, offering an intuitive and seamless
               experience for our customers.</div><div class="table" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-uftplr__table_dw4_1zp_lyb">
<table border="1" class="tgroup">
<colgroup class="colspec" style="width: 25%;"></colgroup>
<colgroup class="colspec" style="width: 75%;"></colgroup>
<thead class="thead table-header-style">
<tr class="row">
<td class="entry">
<div class="p">Feature</div>
</td>
<td class="entry">
<div class="p">Description</div>
</td>
</tr>
</thead>
<tbody class="tbody">
<tr class="row">
<td class="entry">
<div class="p">End-to-End Container Protection</div>
</td>
<td class="entry">
<div class="p">Container Security ensures the security of your containers from build to termination
                              and
                              provides you peace of mind as your containers remain shielded against evolving threats
                              at
                              every step.</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Multi-Platform Support</div>
</td>
<td class="entry">
<div class="p">With the ability to deploy and protect both Kubernetes clusters (multi-cloud and
                              on-premises) and Amazon ECS, Container Security ensures consistent security across
                              diverse
                              environments.</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Amazon EKS Integration</div>
</td>
<td class="entry">
<div class="p">Link your Amazon EKS Kubernetes clusters with your AWS cloud account to enhance risk
                              discovery, assessment, and mitigation with Cyber Risk Exposure Management (CREM).</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Vulnerability Scanning extended to support Amazon ECS</div>
</td>
<td class="entry">
<div class="p">Vulnerability scans have been extended to support Amazon ECS in addition to Kubernetes,
                              allowing you to take proactive measures to secure your environment.</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Cluster Inventory View</div>
</td>
<td class="entry">
<div class="p">Gain a clear and organized overview of your clusters' inventory, making it easier
                              to
                              manage and track resources effectively, including clusters, nodes, and pods.</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Policy Management and Event Viewing</div>
</td>
<td class="entry">
<div class="p">Effortlessly manage policies and rules, and monitor events all from the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
                              console, streamlining security operations and workflows.</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">XDR Detections and Investigation</div>
</td>
<td class="entry">
<div class="p">Detect, track, and investigate cross-layer threats and activities with Container
                              Security's Extended Detection and Response (XDR) capabilities.</div>
<div class="note">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">
<div class="p">XDR Detection and Investigation is available at no added cost during the pre-release
                                             preview but will become a separately licensed feature in the future. </div>
</div>
</td>
</tr>
</table>
</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Prioritized Vulnerability View</div>
</td>
<td class="entry">
<div class="p">Prioritize the remediation of the most important risks with Cyber Risk Exposure Management,
                              strengthening security posture by focusing on what matters most.</div>
</td>
</tr>
</tbody>
</table>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Tue, 15 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security-release</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Observed Attack Techniques offers visibility into container attack information</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oat-container-attack-info</link>
    <description><![CDATA[<div class="p">August 15, 2023—To facilitate the visibility of container attacks, the Observed Attack
               Techniques app has been updated to show all detected events with filter hits originating
               from
               container security point products. The app now lists the container name or ID under
               <b class="uicontrol">Associated Entity</b>, providing customers with immediate insight into which
               entity was targeted. Customers are able to search events by container name, in addition
               to the
               existing search criteria.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Observed Attack Techniques</b></span></div>]]></description>
    <pubDate>Tue, 15 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oat-container-attack-info</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Windows agent features improved OS update detection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-os-update</link>
    <description><![CDATA[<div class="p">August 18, 2023—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Windows agent now checks
               for update build revision changes every 10 minutes. If an operating system update
               is detected,
               the agent triggers an automatic scan of the endpoint. The new process ensures that
               your endpoints
               always remain up to date and secure, minimizing potential risk from vulnerabilities
               and enhancing
               overall security.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Fri, 18 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-os-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>User-defined security playbooks for CVEs with Global Exploit Activity are available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-playbooks-cves-exploit</link>
    <description><![CDATA[<div class="p">August 21, 2023—The Security Playbooks app made updates to the two CVEs with Global
               Exploit
               Activity playbook templates. It allows you to create the playbooks from scratch with
               a flexible
               workflow, while still allowing you to create the playbooks from a fully customizable
               template.</div><div class="p">The updated playbook templates provide the following new filtering options to help
               mitigate
               risks posed by highly-exploitable CVEs on your managed assets for more fine-grained
               control:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-s3r9gb__ul_jtm_yp4_kyb">
<li class="li">
<div class="p">Filter targets by more operating systems, vulnerability process status, and Trend
                     solutions
                     for prevention rules</div>
</li>
<li class="li">
<div class="p">Retrieve the number of assets targeted for the playbook right after the target
                     configuration</div>
</li>
<li class="li">
<div class="p">Notify recipients of playbook results by individual CVE or all CVEs</div>
</li>
</ul><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-cves-global-exploit-playbook#GUID-BF745E87-9F19-4B44-8C77-6B4B285B07A5">Manually create CVEs with Global Exploit Activity playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 21 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-playbooks-cves-exploit</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>New point-of-presence (PoP) site for Zero Trust Secure Access Internet Access available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pop-site-ztsa-internet-access</link>
    <description><![CDATA[<div class="p">August 28, 2023—Zero Trust Secure Access Internet Access has launched a new PoP site
               for the
               Internet Access Cloud Gateway in Israel in the AWS Middle East region.</div><div class="p">For details on the available PoP sites for the Internet Access Cloud Gateway, see
               <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 28 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pop-site-ztsa-internet-access</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Virtual Network Sensor</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor-whats-new</link>
    <description><![CDATA[<div class="p">August 28, 2023—Virtual Network Sensor (formerly called Network Inspector virtual
               appliance)
               is now officially launched. Users can download the Virtual Network Sensor image from
               Network
               Inventory to deploy the sensor in their environment. Currently, Virtual Network Sensor
               supports
               VMware ESXi version 6.5 and above, VMware vCenter, and Red Hat Enterprise Linux 9.2
               with KVM.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 28 Aug 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor-whats-new</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1169</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1169</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-9__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">September 25, 2023—Virtual Network Sensor version 1.0.1169 includes enhancements,
                  bug fixes, and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-9__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds support for deploying on Microsoft Hyper-V version 2016 or later.</div>
</li>
<li class="li">
<div class="p">This update adds support for hypersensitive mode.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Fri, 01 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1169</guid>
    <category>Network Security</category>
</item>
<item>
    <title>View Deep Security Device Control status from TrendAI Vision One Endpoint Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ds-device-control-endpoint-security</link>
    <description><![CDATA[<div class="p">September 4, 2023—Deep Security policies in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security now display
               the Device Control enabled/disabled status. To take advantage of this feature, ensure
               that your
               Deep Security Manager is updated to version 20.0.817 or later.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 04 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ds-device-control-endpoint-security</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Microsoft Purview Information Protection integration with Zero Trust Secure Access Internet Access</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ms-purview-ztsa-internet-access</link>
    <description><![CDATA[<div class="p">September 11, 2023—Zero Trust Secure Access Internet Access has extended its Data
               Loss
               Prevention capability by integrating with Microsoft Purview Information Protection.
               You can now
               synchronize your published sensitivity labels and add them into Data Loss Prevention
               rules to let
               Internet Access block protected files with sensitivity labels from being sent outside
               your
               organization.</div><div class="p">For details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adding-data-loss-prevention-rule#GUID-BED80320-70E5-47C4-9530-CC26073D469D-xcsqkx">Adding a data loss prevention rule</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div><div class="p"></div>]]></description>
    <pubDate>Mon, 11 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ms-purview-ztsa-internet-access</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access now supports Deep Discovery Analyzer integration</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-ddan-integration</link>
    <description><![CDATA[<div class="p">September 11, 2023—Internet Access on-premises gateways in Zero Trust Secure Access
               now offer
               integration with your existing Deep Discovery Analyzer appliances. In addition to
               cloud
               sandboxing, on-premises gateways can submit suspicious files to Deep Discovery Analyzer
               appliances for analysis after integration. See the settings of your Internet Access
               on-premises
               gateways to start using the feature.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 11 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-ddan-integration</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access adds update module feature to endpoint list</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-update-module</link>
    <description><![CDATA[<div class="p">September 11, 2023—Zero Trust Secure Access users can now update the Secure Access
               Modules
               deployed to endpoints directly from the endpoint list. Selecting Update module from
               the Manage
               module menu allows you to update modules on specified endpoints to the versions configured
               in
               Module Version Management. See the Endpoints tab in Secure Access Module to use the
               feature.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Module</b></span></div>]]></description>
    <pubDate>Mon, 11 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-update-module</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Asset graph improvements enhance effectiveness</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-graph-effectiveness</link>
    <description><![CDATA[<div class="p">September 11, 2023—Enhancements to the asset graph in Attack Surface Discovery provide
               you
               with greater context for improving your security posture.</div><div class="p">The asset graph now includes a symbol for the internet, helping you easily identify
               which
               assets are exposed to the internet.</div><div class="p">The asset detail screen for domains and IP addresses now also features an asset graph
               illustrating the relationships between internet-facing assets and other types of assets.
               The
               asset graph helps you better understand how domains and IP addresses are associated
               with
               internet-exposed devices.</div><div class="p">In addition, the asset graph now shows relationships associated with privileges, including
               user
               and group memberships, as well as how roles are assigned, to whom a role is assigned,
               and
               administrative devices and users. The visualization makes it easier to understand
               how an identity
               has administrative permissions to other identities or devices.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 11 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-graph-effectiveness</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Virtual Network Sensor supports hypersensitive mode</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-hypersensitive-mode</link>
    <description><![CDATA[<div class="p">September 25, 2023—The Virtual Network Sensor now supports hypersensitive mode. The
               detection
               mode is available after enabling it in Support Settings. For more information, see
               <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sensor-details#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-gqnz6n">Sensor Details</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 25 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-hypersensitive-mode</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Enhancements to Run Custom Script security playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-run-custom-script-playbooks</link>
    <description><![CDATA[<div class="p">September 25, 2023—You can now specify the operating systems to upload and run custom
               scripts
               for when configuring Action nodes for Run Custom Script Security Playbooks. The enhancements
               also
               facilitate selecting custom scripts that are added in the Response Management app.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 25 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-run-custom-script-playbooks</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Enhancements to Automated Response Playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-automated-response-playbooks</link>
    <description><![CDATA[<div class="p">September 25, 2023—In addition to Workbench alerts automatically triggering playbook
               execution, users now have the option to manually trigger the execution of Automated
               Response
               Playbook from Workbench.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-investigating-alert#GUID-C2C833E7-97B9-468F-8A12-E26563B0CEE2">Investigate an alert</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-alerts-workbench-insights#GUID-1722E7D9-6C28-4742-B3A2-A8E09FAA00C9">Alerts correlated in Workbench insights</a> in
               the Workbench documentation.</div><div class="p">Furthermore, the Automated Response Playbook now includes an additional automated
               response
               action: "Terminate processes". This enhancement enables users to automatically terminate
               any
               "unrated" target processes running on an endpoint.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-automated-response-playbooks#GUID-BED80320-70E5-47C4-9530-CC26073D469D-36">Manually create Automated Response Playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 25 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-automated-response-playbooks</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Customizable home page available in Platform Directory</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-home-page-platform-directory</link>
    <description><![CDATA[<div class="p">September 25, 2023—Besides the default Cyber Risk Overview home page, you can now
               set which
               app you want to land on after signing in to the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-platform-directory#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-7mbdxg">Platform Directory</a>.</div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Platform Directory</b></div>]]></description>
    <pubDate>Mon, 25 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-home-page-platform-directory</guid>
    <category>Platform Directory</category>
</item>
<item>
    <title>Manually modify asset criticality in Risk Insights</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-criticality-risk-insights</link>
    <description><![CDATA[<div class="p">September 25, 2023—Risk Insights apps calculate and display the criticality for each
               asset
               based on asset tags. If you think that the system-defined criticality is inaccurate
               or does not
               match the actual situation, you can manually assign a custom criticality to assets.
               In Attack
               Surface Discovery asset profiles and asset cards, you can now click <b class="uicontrol">Modify
                  Criticality</b> to select a custom criticality. You can also revert to using the
               system-defined criticality at any time.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 25 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-criticality-risk-insights</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Monitored Network Throughput widget now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-throughput-widget</link>
    <description><![CDATA[<div class="p">September 25, 2023—The Monitored Network Throughput widget, which provides an overview
               of the network traffic monitored by Virtual Network Sensor, is now available in Security
               Dashboard.  You can now view the 30-day average traffic volume, assess total bandwidth
               capacity, and track network traffic levels down to the minute both for individual
               appliances and across the network environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards</b></span></div>]]></description>
    <pubDate>Mon, 25 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-throughput-widget</guid>
    <category>Dashboards and Reports</category>
</item>
<item>
    <title>Security Dashboard gets new widget summarizing observed attack techniques</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-widget-summarize-oat</link>
    <description><![CDATA[<div class="p">September 25, 2023—To facilitate SOC analysts in quickly identifying the riskiest
               events within their company, the Security Dashboard has a new widget called <b class="wintitle">Observed Attack Techniques Summary</b>. </div><div class="p">This widget, summarizes the riskiest events within a given time range, assisting analysts
               in navigating towards the appropriate direction for further troubleshooting.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards</b></span></div>]]></description>
    <pubDate>Mon, 25 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-widget-summarize-oat</guid>
    <category>Dashboards and Reports</category>
</item>
<item>
    <title>Endpoint Sensor now supports additional Linux platforms</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-sensor-linux-plat</link>
    <description><![CDATA[<div class="p">September 27, 2023—Endpoint Sensor now supports a wider range of Linux platforms including
               Debian and SUSE, as well as several AArch64-based Linux systems such as Ubuntu 22.
               You can now
               view these additional platforms when deploying a new <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> agent in the Endpoint
               Inventory app.</div><div class="p">For details on supported Linux platforms, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-es-agent-sys-reqs#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-pmfhzc">Endpoint Sensor-only system requirements</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-swp-agent-sys-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-nw9a42">Server &amp; Workload Protection system requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Wed, 27 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-sensor-linux-plat</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Cloud Accounts provides Japanese language support</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-japanese-lang</link>
    <description><![CDATA[<div class="p">September 28, 2023—Cloud Accounts now supports Japanese language settings.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Thu, 28 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-japanese-lang</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Cloud Accounts public API now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-public-api</link>
    <description><![CDATA[<div class="p">September 28, 2023—Public API for Cloud Accounts now available on the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Automation Center. An API to download the Cloud Accounts AWS CloudFormation Template
               is planned for a future release.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Thu, 28 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-public-api</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Cloud Detections for AWS CloudTrail now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-detections-aws-cloudtrail</link>
    <description><![CDATA[<div class="p">September 28, 2023—Cloud Detections for AWS CloudTrail is now available as a pre-release
               feature which can be enabled in the Cloud Accounts app. This feature set deploys Cloud
               Audit Log Monitoring in your AWS account to get actionable insight into user, service,
               and resource activity with detection models identifying activity such as privilege
               escalation, password modification, attempted data exfiltration, and potentially unsanctioned
               MFA changes.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-features-permissions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-yfk7xr">AWS features and permissions</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Thu, 28 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-detections-aws-cloudtrail</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Cloud Accounts official release</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-official-release</link>
    <description><![CDATA[<div class="p">September 28, 2023—The Cloud Accounts app is no longer a pre-release feature and is
               now
               generally available. Cloud Accounts does not require any credit allocation and is
               always included
               as part of <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. However, some features managed by the Cloud Accounts app may require
               credits for use.</div><div class="p">Included with this release is integration with Server &amp; Workload Protection for AWS
               accounts.</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-wxignm__ul_khh_bsr_xyb">
<li class="li">
<div class="p">Adding new AWS accounts in the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console are now exclusively handled by
                     the Cloud Accounts app.</div>
</li>
<li class="li">
<div class="p">Existing AWS accounts connected to Cloud Accounts are automatically associated with
                     a Server
                     &amp; Workload Protection instance.</div>
</li>
<li class="li">
<div class="p">Existing AWS accounts within Server &amp; Workload Protection are automatically added
                     to and
                     can be managed from Cloud Accounts. Update existing AWS accounts from Server &amp; Workload
                     Protection to get enhanced visibility and protection features within their cloud
                     environments.</div>
</li>
</ul><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-opaf4f">Cloud Accounts</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Thu, 28 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-official-release</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Virtual Network Sensor supports Hyper-V deployment</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-hyper-v</link>
    <description><![CDATA[<div class="p">September 28, 2023—The Virtual Network Sensor now supports deployment on Hyper-V host
               systems.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deploy-network-sensor-hyper-v#GUID-BED80320-70E5-47C4-9530-CC26073D469D-7vdsiy">Deploy a Virtual Network Sensor with Hyper-V</a>.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-pf50pu__networkInventoryPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Thu, 28 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-hyper-v</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Network Inventory and Network Analytics provide Japanese language support</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inventory-japanese-support</link>
    <description><![CDATA[<div class="p">September 28, 2023—Network Inventory and Network Analytics reports now offer Japanese
               language support.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-5ocd76__networkInventoryPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Thu, 28 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inventory-japanese-support</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Virtual Network Sensor general release</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-general-release</link>
    <description><![CDATA[<div class="p">September 28, 2023—The Virtual Network Sensor is no longer a pre-release feature and
               now
               enters official release. Virtual Network Sensor comes with a 30-day free trial to
               allow users to
               evaluate the functionality and benefits. Once the trial period end, credits are automatically
               allocated based on usage.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-ri3zyn">Virtual Network Sensor</a>.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xnen8e__networkInventoryPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Thu, 28 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-general-release</guid>
    <category>Network Security</category>
</item>
<item>
    <title>TrendAI Vision One Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security-what-new</link>
    <description><![CDATA[<div class="p">September 29, 2023—<a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-fmf2si">Container Security</a>
               helps safeguard your containers throughout their entire life cycle. Container Security
               is
               accessible directly in the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console, offering an intuitive and seamless
               experience for our customers.</div><div class="table" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-coopfw__table_dw4_1zp_lyb">
<table border="1" class="tgroup">
<colgroup class="colspec" style="width: 25%;"></colgroup>
<colgroup class="colspec" style="width: 75%;"></colgroup>
<thead class="thead table-header-style">
<tr class="row">
<td class="entry">
<div class="p">Feature</div>
</td>
<td class="entry">
<div class="p">Description</div>
</td>
</tr>
</thead>
<tbody class="tbody">
<tr class="row">
<td class="entry">
<div class="p">Artifact Scanning</div>
</td>
<td class="entry">
<div class="p">Extended to support anti-malware scanning and used for admission control </div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Runtime Protection support</div>
</td>
<td class="entry">
<div class="p">Extended support provides you the visibility into any activity on your running containers
                              that violates your customizable set of rules, and the ability to mitigate issues</div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-coopfw__ul_lpt_jmt_1zb">
<li class="li">
<div class="p">Extended to support Amazon ECS, on both EC2 and Fargate, </div>
</li>
<li class="li">
<div class="p">Extended to support Amazon EKS on Fargate</div>
</li>
</ul>
</td>
</tr>
</tbody>
</table>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Fri, 29 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security-what-new</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>The Observed Attack Techniques API adds support for container data</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oat-api-container-data</link>
    <description><![CDATA[<div class="p">September 30, 2023—The <b class="wintitle" lang="en-us" xml:lang="en-us">Observed Attack Techniques</b> API has been updated to support container-related information such as threats or
               activities. SIEM apps and customers can now utilize the Observed Attack Techniques
               Pipeline endpoints to export events that trigger filters or container events. This
               enables threat and activity investigation related to container security within the
               exported events.</div><div class="p">For more information about the Observed Attack Techniques API, see <a class="xref" href="https://automation.trendmicro.com/xdr/api-v3#tag/Observed-Attack-Techniques-Pipeline" target="_blank">https://automation.trendmicro.com/xdr/api-v3#tag/Observed-Attack-Techniques-Pipeline</a></div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Observed Attack Techniques</b></span></div>]]></description>
    <pubDate>Sat, 30 Sep 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oat-api-container-data</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 1.0.9</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-9</link>
    <description><![CDATA[<section class="section" id="RN_2023-10_SG-FPS109-GUID-164586f5-b2cb-4e0d-a4f4-4d7a4bcdc2c7__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">October 19, 2023—Service Gateway: Forward Proxy Service Version 1.0.9 delivers key
                  enhancements, bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="RN_2023-10_SG-FPS109-GUID-164586f5-b2cb-4e0d-a4f4-4d7a4bcdc2c7__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update adds support for customizing the Service Gateway forward proxy service
                        allow list.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sun, 01 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-9</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1189</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1189</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-8__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">October 30, 2023—Virtual Network Sensor version 1.0.1189 includes enhancements, bug
                  fixes, and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-8__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds a new feature: Detection Exceptions.</div>
</li>
<li class="li">
<div class="p">This update enhances the appliance information screen in Network Inventory to include
                        the host platform (KVM, Hyper-V, etc.).</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sun, 01 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1189</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Service Gateway Firmware Version 2.0.22</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-22</link>
    <description><![CDATA[<section class="section" id="RN_2023-10_SG-Firmware2022-GUID-db3be639-47b5-48f3-8bc6-631cb0f4eef8__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">October 19, 2023—Service Gateway Firmware Version 2.0.22 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="RN_2023-10_SG-Firmware2022-GUID-db3be639-47b5-48f3-8bc6-631cb0f4eef8__ul_iwl_2z2_hzb">
<li class="li">
<div class="p">This update enhances the auto-update process to better prevent service
                        interruptions.</div>
</li>
<li class="li">
<div class="p">This update supports resetting the Service Gateway certificate through the settings
                        screen.</div>
</li>
<li class="li">
<div class="p">This update adds the CLISH command function to reduce redundant data.</div>
</li>
<li class="li">
<div class="p">This update adds the function to view all Service Gateway appliances in one list rather
                        than grouped by duration of connection.</div>
</li>
<li class="li">
<div class="p">This update enhances status notifications to improve the stability of Service Gateway
                        appliances.</div>
</li>
<li class="li">
<div class="p">This update supports notifications on storage and data usage.</div>
</li>
<li class="li">
<div class="p">This update adds the function to check available storage when installing services.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sun, 01 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-2-0-22</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Email Account Inventory provides central visibility and management of email accounts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-account-central-visibility</link>
    <description><![CDATA[<div class="p">October 9, 2023—Email Account Inventory now provides an overview of how well your
               organization’s email accounts are protected by Email Sensor and Cloud App Security
               and allows you
               to manage protection over the accounts.</div><div class="p">Email Account Inventory provides the following central features:</div><div class="p">
<ul class="ul" id="WhatsNew_2023-10-09_EmailSecOp_EAIOverview-GUID-91aa379f-c542-4e9f-99e8-a3900f996ad5__ul_spg_wqn_bzb">
<li class="li">Email Account Inventory provides an overview of your organization’s email account
                     inventory
                     and available actions to protect email accounts in your organization. If you have
                     not yet
                     enabled any email solutions, you can set up Email Sensor and Cloud App Security from
                     the
                     inventory.</li>
<li class="li">You can enable key features of Cloud App Security and configure policies for unprotected
                     accounts.</li>
<li class="li">You can conduct necessary investigations into suspicious account activity.</li>
</ul>
</div><div class="p">In addition, the sensor management functionality has moved from Email Account Inventory
               into a
               separate menu item.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Email Asset Inventory</b></span></div>]]></description>
    <pubDate>Mon, 09 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-account-central-visibility</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>TrendAI Vision One console now supports daylight saving time</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-daylight-saving-time</link>
    <description><![CDATA[<div class="p">October 9, 2023—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console now adjusts the displayed time according to
               daylight saving time, depending on your selected time zone.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Console Settings</b></span></div>]]></description>
    <pubDate>Mon, 09 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-daylight-saving-time</guid>
    <category>Administration</category>
</item>
<item>
    <title>Zero Trust Secure Access Internet Access supports Kerberos authentication with on-premises Active Directory servers</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-kerberos-ad-servers</link>
    <description><![CDATA[<div class="p">October 9, 2023—In addition to NTLM v2 authentication, Zero Trust Secure Access Internet
               access now supports Kerberos as an authentication service for single sign-on with
               on-premises
               Active Directory servers. Find and configure the new method in the Global Settings
               of
               <b class="uicontrol">Internet Access Configuration.</b></div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ntlm-kerberos-sso-ad#GUID-BED80320-70E5-47C4-9530-CC26073D469D-vez9y6">Configuring NTLM or Kerberos single
                  sign-on with Active Directory (on-premises)</a></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 09 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-kerberos-ad-servers</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Sensor only endpoints now removable in Endpoint Inventory</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sensor-only-removable-inventory</link>
    <description><![CDATA[<div class="p">October 13, 2023—You can now remove sensor only endpoints from Endpoint Inventory
               by
               selecting applicable endpoints and clicking the <b class="uicontrol">Remove Endpoint</b> button.
               Removing a sensor only endpoint does not uninstall the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> agent from the endpoint
               or stop the agent program sending information to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. Support for removing Standard
               Endpoint Protection and Server &amp; Workload Protection agents from the Endpoint Inventory
               screen is under development.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Fri, 13 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sensor-only-removable-inventory</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Incident Response Evidence Collection playbooks now require credits</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-incident-playbooks-credits</link>
    <description><![CDATA[<div class="p">October 16, 2023—With the official release of the Forensics app, the Incident Response
               Evidence Collection playbook now requires credits for evidence collection and uploading
               to the
               Forensics app. Users must first configure the data allowance in the Forensics app
               before setting
               up the playbook to collect and upload evidence to the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-ir-collection-playbooks#GUID-D4BC86BD-0A44-4443-B7EB-CA38EBE714F1">Create Incident Response Evidence Collection playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 16 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-incident-playbooks-credits</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Agent uninstall tool now available for download from Endpoint Inventory</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-uninstall-tool</link>
    <description><![CDATA[<div class="p">October 16, 2023—The <span class="tm">TrendAI™</span> uninstall tool is now available for download in Endpoint Inventory for both Windows
               and macOS endpoints. The tool allows for the uninstallation of the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent and related features:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-uj84we__ul_xcn_dnv_bzb">
<li class="li">
<div class="p">Standard Endpoint Protection Agent</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection Agent</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor</div>
</li>
</ul><div class="p">The tool is capable of uninstalling a single agent or multiple agents at once from
               the endpoint. Download the tool by going to<span class="menucascade"><b class="uicontrol">Endpoint Inventory</b> → <b class="uicontrol">Agent Installer</b> → <b class="uicontrol">Installer Package</b></span> and clicking the link to <b class="uicontrol">download the uninstall tool</b> at the bottom of the page. Downloaded tools are valid for seven days.</div><div class="note">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">
<div class="p">If you do not see the link, you might not have permission to perform this action.
                              Contact your system administrator.</div>
</div>
</td>
</tr>
</table>
</div><ul class="ul">
<li class="li">
<div class="p">To uninstall Windows agents, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-uninstall-windows-agents-tool#GUID-BED80320-70E5-47C4-9530-CC26073D469D-denwk5">Uninstall Windows agents with the tool</a>.</div>
</li>
<li class="li">
<div class="p">To uninstall macOS agents, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-uninstall-macos-agents-tool#GUID-BED80320-70E5-47C4-9530-CC26073D469D-2bkdx1">Uninstall macOS Agents with the
                        Tool</a></div>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 16 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-uninstall-tool</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Forensics has been officially launched</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-official-launched</link>
    <description><![CDATA[<div class="p">October 16, 2023—A new application, <b class="wintitle">Forensics</b>, has been officially launched. With Forensics, you can respond to security incidents,
               conduct compromise assessments, threat hunting, and monitoring.</div><div class="p">Forensics allows you to create workspaces. Within the workspace, you can isolate the
               scope of an incident and execute osqeury and YARA for quick triage and investigation.
               If you require more details about an incident, you can collect evidence. Evidence
               Collection gathers the digital evidence and uploads it to the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console.</div><div class="p">Forensics offers an evidence viewing and searching function, facilitating advanced
               investigations. As you progress through the investigation, you can add notes with
               important timestamps or create customized records in timelines. In other words, the
               Forensics timeline is your tool for creating a comprehensive attack chain report using
               the collected evidence records.</div><div class="p">Furthermore, you can use the Evidence Archive section of Forensics to manage all the
               evidence collected by Incident Response playbooks. Evidence packages can be added
               to the workspaces, used for generating evidence reports, and utilized for investigation
               at any time.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics#forensics_analysis">Forensics</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Forensics</b></span></div>]]></description>
    <pubDate>Mon, 16 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-official-launched</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Support for multiple custom filters in a custom model</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-multiple-custom-filters-model</link>
    <description><![CDATA[<div class="p">October 16, 2023—The Detection Model Management app has been updated to support multiple
               custom filters in a custom model, with a maximum limit of five custom filters per
               model. Users
               can configure the Workbench to trigger an alert based on two more criteria: when events
               defined by the custom filters occur, or when events defined by the custom filters
               occur in the
               specified order.</div><div class="p">Fore more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-configuring-custom-model#CreatingCustomModel">Configure a custom model</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Mon, 16 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-multiple-custom-filters-model</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>New risk events highlight potential attack paths for cloud assets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-event-highlight-attack-path-asset</link>
    <description><![CDATA[<div class="p">October 23, 2023—New risk events demonstrate potential attack paths that originate
               from the
               internet or potentially compromised cloud assets. These potential attack paths are
               visualized to
               help you identify and prioritize risks.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 23 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-event-highlight-attack-path-asset</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Asset graph visualizes cloud asset relationships</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-graph-cloud-relationships</link>
    <description><![CDATA[<div class="p">October 23, 2023—<a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-asset-profile#GUID-ca0252ca-a6c7-4b9e-b246-5e77be24c6c3">Cloud asset profiles</a> now feature an asset graph illustrating the relationships of
               cloud assets. The visualization showcases how identities access cloud resources, as
               well as
               traffic routing and other relationships, helping you to prioritize risks associated
               with your
               cloud assets.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 23 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-graph-cloud-relationships</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Attack Surface Discovery asset profiles available free for XDR customers</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asd-profiles-free-xdr</link>
    <description><![CDATA[<div class="p">October 23, 2023—Customers that have enabled XDR sensors can now access a free version
               of
               asset profiles in <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-attack-surface-discovery#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-kc8qmp">Attack Surface Discovery</a>, even if credits have not been allocated to Risk Insights
               capabilities. When viewing the profile of an endpoint, account or cloud asset in a
               Workbench
               alert, click <b class="uicontrol">View asset risk assessment in Attack Surface Discovery</b> to
               see the asset's risk assessment and asset profile in Attack Surface Discovery.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 23 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asd-profiles-free-xdr</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>AWS Italy region has new PoP site for Internet Access Cloud Gateway in Zero Trust Secure Access</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-italy-region-pop-site</link>
    <description><![CDATA[<div class="p">October 24, 2023—Zero Trust Secure Access has launched a new PoP site for Internet
               Access
               Cloud Gateway in the AWS Italy region. For details on available PoP sites for Internet
               Access
               Cloud Gateway, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div>]]></description>
    <pubDate>Tue, 24 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-italy-region-pop-site</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Network Inventory enhancements allow for detection exceptions and greater Virtual Network Sensor visibility</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inventory-great-visibility</link>
    <description><![CDATA[<div class="p">October 30, 2023—Users may now create and configure lists of detection exceptions,
               preventing
               network traffic detections that match specified criteria from appearing in detection
               logs. To use
               the feature, go to <span class="menucascade"><b class="uicontrol">Network Inventory</b> → <b class="uicontrol">Monitoring/Scanning</b> → <b class="uicontrol">Detection Exceptions</b></span>.</div><div class="p">Additionally, users can now view detailed information about each connected Virtual
               Network
               Sensor appliance, including system information and system settings, from the list
               of Virtual
               Network Sensors in Network Inventory.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 30 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inventory-great-visibility</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Case Management integration with Forensics</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management-forensics</link>
    <description><![CDATA[<div class="p">October 30, 2023—Case Management now offers integration with Forensics. This allows
               you to create a Forensics workspace specifically for endpoints included in a Workbench
               insight or alert. From there, you can perform quick responses such as isolation, Osquery,
               and YARA process scanning within the Forensics app. </div><div class="p">Additionally, you can gather advanced digital evidence from the endpoints in Forensics
               to conduct a more thorough analysis, identifying root causes and constructing an attack
               chain using the Forensics timeline.</div><div class="p">Once you establish the attack chain, you can add the timeline to a case to record
               the location of the results.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Forensics</b></span></div>]]></description>
    <pubDate>Mon, 30 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management-forensics</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Custom filter import and export</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filter-import-export</link>
    <description><![CDATA[<div class="p">October 30, 2023—The Detection Model Management app now supports the import and export
               of
               custom filters via YAML files. Users can now easily import custom filters from YAML
               files or
               export custom filters into YAML files as a ZIP file.</div><div class="p">Fore more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters#GUID-30038E42-0086-45BA-AB35-EAA8A2EAB6F5">Custom filters</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Mon, 30 Oct 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filter-import-export</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1207</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1207</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-7__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">November 28, 2023—Virtual Network Sensor version 1.0.1207 includes enhancements, bug
                  fixes, and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
</section>]]></description>
    <pubDate>Wed, 01 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1207</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Observed Attack Techniques supports filtering by data source</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oat-filter-data-source</link>
    <description><![CDATA[<div class="p">November 6, 2023—You can now filter security event information by data source in the
               Observed
               Attack Techniques app. Filtering by data source allows you to evaluate the individual
               data
               contribution of different <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> products.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Observed Attack Techniques</b></span></div>]]></description>
    <pubDate>Mon, 06 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oat-filter-data-source</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Threat and Exposure Management supports remediating and dismissing risk events</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-operations-dashboard-remediate-risk</link>
    <description><![CDATA[<div class="p">November 6, 2023—To better align <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> with common
               risk terminology and enhance your ability to reduce the Risk Index, you can now change
               the status
               of risk events in <b class="wintitle">Threat and Exposure Management</b>. In addition, you can now manually
               trigger a recalculation of the Risk Index and check for new risk events.</div><div class="p">Risk events for six of the eight risk factors can now be marked as one of the four
               following
               statuses:</div><ul class="ul" id="GUID-c16abfd3-b484-457e-ac4e-8bf32d9088db__ul_xgd_gtr_3zb">
<li class="li">
<div class="p"><b class="uicontrol">New</b></div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">In progress</b></div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Remediated</b></div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Dismissed</b></div>
</li>
</ul><div class="p">Remediated and dismissed risk events no longer contribute to your Risk Index.</div><div class="p">When changing the status of risk events, you can select from three levels of scope:
               the
               selected risk event, all instances of the risk event for the selected assets, or all
               instances of
               the risk event for all assets. If you dismiss all instances of a risk event, future
               instances of
               the risk event will not be generated.</div><div class="p">XDR detection-related risk events that have an associated workbench alert must still
               be managed via the <b class="uicontrol">Workbench</b> app. Development is ongoing to support the new risk event management framework for
               vulnerability-related risk events. In addition, a subsequent release will allow you
               to accept risk events, meaning they will still contribute to your Risk Index, but
               will not be displayed in <b class="wintitle">Risk Reduction Measures</b>. To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-reduction-measures#mfg_s5n_mwb">Risk Reduction Measures</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 06 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-operations-dashboard-remediate-risk</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>The Search app supports threat hunting queries from Cyborg Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-threat-hunting-queries-cyborg</link>
    <description><![CDATA[<div class="p">November 10, 2023—The Search app now supports threat hunting queries from Cyborg Security
               to
               facilitate identification of elusive IOAs in the environment. Moreover, users may
               view related
               intelligence reports to aid the understanding and resolution of cyber attacks.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-85__searchPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">XDR Data Explorer</b></span></div>]]></description>
    <pubDate>Fri, 10 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-threat-hunting-queries-cyborg</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Three security playbook templates merged and enhanced</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-playbook-templates-merged</link>
    <description><![CDATA[<div class="p">November 13, 2023—The “Run Custom Script,” “Samba vulnerability assessment,” and “Microsoft
               exchange vulnerability assessment” playbook templates have been consolidated into
               the new Endpoint Response Actions template, and their functionality has also been
               integrated into user-defined playbooks.</div><div class="p">To learn how to create a user-defined playbook, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-endpoint-response-playbooks#GUID-7416FC70-2F9A-4EDF-A586-B12CA6250389">Manually create Endpoint Response playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 13 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-playbook-templates-merged</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Cloud Accounts - AWS accounts automatically connect after stack deployment</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-aws-stack-deploy</link>
    <description><![CDATA[<div class="p">November 20, 2023—When adding a new AWS cloud account, the account automatically connects
               and
               registers to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> after stack deployment in AWS
               completes. Connecting a new AWS account no longer requires copying the role ARN to
               complete the
               process. The new process requires using the latest version of the stack template.</div>]]></description>
    <pubDate>Mon, 20 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-aws-stack-deploy</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Cloud Accounts supports deployment to AWS Organizations</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-aws-orgs</link>
    <description><![CDATA[<div class="p">November 20, 2023—Add your AWS Organization to easily connect all the AWS accounts
               in your
               organization or organizational unit (OU) to Cloud Accounts. For more information,
               see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-connecting-aws-accounts#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-lk13po">Connect and update AWS accounts</a>.</div>]]></description>
    <pubDate>Mon, 20 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-aws-orgs</guid>
    <category>Service Management</category>
</item>
<item>
    <title>New pricing model for Attack Surface Risk Management now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pricing-model-asrm</link>
    <description><![CDATA[<div class="p">November 20, 2023—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports a new pricing
               model for Attack Surface Risk Management (previously Risk Insights) decoupled from
               XDR
               entitlements. Credit usage for Attack Surface Risk Management apps is calculated based
               on the
               number of assessable desktops, servers, and connected cloud accounts. Each assessed
               desktop or
               server requires 20 credits, while each connected cloud account requires 8,000 credits.
               If you
               feel the number of assets discovered by <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> is
               inaccurate, you can manually override the number of assessed assets and your credit
               usage will be
               recalculated.</div><div class="p">If you previously purchased a Risk Insights license, you will retain your current
               pricing model
               until the license expires. If you previously allocated credits to use <b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b> and <b class="wintitle" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b>, you retain your current pricing model; however, if you disable and re-enable Attack
               Surface
               Risk Management, you will be migrated to the Attack Surface Risk Management pricing
               model.
               Regardless of the pricing model, you will retain access to <b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b>, <b class="wintitle" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b>, and <b class="wintitle" lang="en-us" xml:lang="en-us">Cloud Security Posture</b>.</div><div class="p">A 30-day free trial remains available for customers who have not previously started
               a trial of
               Risk Insights capabilities.</div><div class="p">For more details on licensing or credit usage for Attack Surface Risk Management,
               contact your
               sales representative.</div>]]></description>
    <pubDate>Mon, 20 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pricing-model-asrm</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Risk Insights renamed to Attack Surface Risk Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-renamed-asrm</link>
    <description><![CDATA[<div class="p">November 20, 2023—The Risk Insights app group has been renamed to Attack Surface Risk
               Management to align with the expanding scope of capabilities provided by the included
               apps. The
               renamed app group currently contains the <b class="wintitle" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b>, <b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b>, <b class="wintitle" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b>, and <b class="wintitle" lang="en-us" xml:lang="en-us">Cloud Security Posture</b> apps.</div>]]></description>
    <pubDate>Mon, 20 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-insights-renamed-asrm</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Graph View gives you contextual visibility over AWS-based assets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-graph-view-aws-assets</link>
    <description><![CDATA[<div class="p">November 20, 2023—<b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b> now provides new contextual visibility into your cloud assets and prioritized security
               risks —
               continuously and frictionlessly. The new Graph View shows more details about the resources
               deployed in your AWS environment, relationships between cloud assets, and risk scores
               for each
               asset.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 20 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-graph-view-aws-assets</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Gain new visibility over your AWS APIs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-visibility-aws-apis</link>
    <description><![CDATA[<div class="p">November 20, 2023—API Security provides new visibility over your attack surface by
               identifying challenges to securing your APIs. API Security displays an inventory of
               your REST
               and HTTP-based API collections from your AWS API gateways and any misconfigurations
               detected
               in your AWS environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 20 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-visibility-aws-apis</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Enable Agentless Vulnerability &amp; Threat Detection for Amazon EC2 instances</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulnerability-amazon-ec2</link>
    <description><![CDATA[<div class="p">November 20, 2023—Deploy Agentless Vulnerability &amp; Threat Detection in your AWS accounts
               to discover vulnerabilities in your Amazon EC2 instances with zero impact to your
               applications.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulnerability-threat#Untitled">Agentless Vulnerability &amp; Threat Detection</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 20 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulnerability-amazon-ec2</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Discover and assess internet-facing assets with Rescana</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-internet-facing-assets-rescana</link>
    <description><![CDATA[<div class="p">November 20, 2023—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> has traditionally
               discovered and assessed internet-facing assets via internal <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span> solutions. <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
               now supports a new data source for internet-facing assets—Rescana. If you are a Rescana
               customer, you can easily enable the data source by specifying the correct URL and
               API token for
               your Rescana account. If you disable the Rescana integration, <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> resumes using <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span> internal solutions for collecting data on internet-facing
               assets.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 20 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-internet-facing-assets-rescana</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Container Security – ARM64 CPUs now supported</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security-arm64-cpus</link>
    <description><![CDATA[<div class="p">November 30, 2023—Container Security now protects containers running on ARM CPUs with
               runtime
               security and runtime vulnerability scanning.</div>]]></description>
    <pubDate>Thu, 30 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security-arm64-cpus</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Container Security – Proxy support for Kubernetes clusters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security-proxy-kubernetes</link>
    <description><![CDATA[<div class="p">November 30, 2023—Container Security now supports proxy for Kubernetes clusters, providing
               a
               secure way to connect to the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> backend. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-proxy-support" target="_blank">Proxy support for Kubernetes clusters</a></div>]]></description>
    <pubDate>Thu, 30 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security-proxy-kubernetes</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Case Management now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management-available</link>
    <description><![CDATA[<div class="p">November 30, 2023—Case Management is now available for public preview in the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
               platform. Case Management enables you to assign priority and ownership to cases containing
               both
               individual and correlated alerts from Workbench, and streamlines the start of your
               threat
               investigation and incident response workflows.</div><div class="p">You can open cases directly from Workbench alerts or with any XDR playbook in Security
               Playbooks. In Forensics, you can use an existing case to automatically pull impacted
               endpoints
               into the related workspace. In addition, Case Viewer allows you to manage your cases
               while
               working in other apps.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management#case_management_main">Case Management</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Thu, 30 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management-available</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Playbook execution results retained for 180 days</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-playbook-180-days</link>
    <description><![CDATA[<div class="p">November 30, 2023—Starting now, execution results and any pending actions will be
               available
               on the <b class="uicontrol">Execution Results</b> tab for a period of 180 days. This change allows
               us to ensure the most relevant and recent data is always at your fingertips.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Thu, 30 Nov 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-playbook-180-days</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 2.0.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-2-0-0</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-44__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">December 20, 2023—Service Gateway Smart Protection Services Version 2.0.0 includes
                  enhancements, bug fixes, and security updates for Smart Protection Services hosted
                  on Service Gateway appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-44__ul_kw1_zq5_wzb">
<li class="li">
<div class="p">This update migrates the operating system of Smart Protection Services containers
                        from
                        CentOS 7.9 to Rocky Linux 9.2 to avoid vulnerability patching issues related to the
                        deprecation of CentOS.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Fri, 01 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-2-0-0</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-version-3-0-2</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-27__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">December 20, 2023—Service Gateway Local ActiveUpdate Service Version 3.0.2 provides
                  enhanced update management and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-27__ul_bqk_sq5_wzb">
<li class="li">
<div class="p">This update migrates the operating system of ActiveUpdate containers from CentOS 7.9
                        to
                        Alpine to avoid vulnerability patching issues related to the deprecation of CentOS.</div>
</li>
<li class="li">
<div class="p">This update adds support for ring deployment of updates to connected products.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Fri, 01 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-version-3-0-2</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-3-0-3</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-13__section_ar4_gq5_wzb">
<div class="p">December 20, 2023—Service Gateway Firmware Version 3.0.3 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-13__ul_n1h_3q5_wzb">
<li class="li">
<div class="p">This update migrates the Virtual Appliance operating system from CentOS 7.9 to Rocky
                        Linux 9.2 to avoid vulnerability patching issues related to the deprecation of
                        CentOS.</div>
</li>
<li class="li">
<div class="p">This update provides visibility into the number of active connections linked to each
                        Service Gateway appliance.</div>
</li>
<li class="li">
<div class="p">This update adds internal bug fixes for Service Gateway firmware.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Fri, 01 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-3-0-3</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Targeted Attack Detection officially released</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-tad-officially-released</link>
    <description><![CDATA[<div class="p">December 1, 2023—Targeted Attack Detection is out of preview, and now an officially
               released
               app. Targeted Attack Detection is free to use, so any <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> user can leverage the app
               to analyze Smart Feedback data to determine if your environment is under attack.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Targeted Attack Detection</b></span></div>]]></description>
    <pubDate>Fri, 01 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-tad-officially-released</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Vulnerability Assessment on Windows Server 2012/Windows Server 2012 R2 endpoints</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerability-assess-server-2012-r2</link>
    <description><![CDATA[<div class="p">December 4, 2023—Vulnerability Assessment now expands coverage for vulnerabilities
               affecting
               Windows Server 2012 and Windows Server 2012 R2 endpoints to help you identify more
               highly
               exploitable CVEs in your environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 04 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerability-assess-server-2012-r2</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Manually add IP addresses to discover internet-facing assets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-manual-ip-internet-assets</link>
    <description><![CDATA[<div class="p">December 4, 2023—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports manually
               adding seed IP addresses for discovering internet-facing assets in your organization.
               In the
               <b class="uicontrol">Internet-Facing Assets</b> section of <b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b>, click the <b class="uicontrol">Public IPs</b> tab and then click <b class="uicontrol">Add</b> to
               manually add up to 1,000 seed IP addresses. To view a list of added seed IP addresses,
               click
               <b class="uicontrol">View Manually Added IP Addresses</b>.</div><div class="p">The ability to add seed IP addresses is only available for customers using a <span class="tm">TrendAI™</span> solution as the data source for internet-facing assets and that do not have an active
               trial for Cyber Risk Exposure Management.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 04 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-manual-ip-internet-assets</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection Resources Gain Tagging</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-resources-gain-tagging</link>
    <description><![CDATA[<div class="p">December 8, 2023—Agentless Vulnerability &amp; Threat Detection resources now have tags.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Fri, 08 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-resources-gain-tagging</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Container Security supports management scope</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security-management-scope</link>
    <description><![CDATA[<div class="p">December 11, 2023—For customers that have updated to the Foundation Services release,
               Container Security now supports management scope.</div><div class="p">Permissions to view and manage Kubernetes clusters and Amazon ECS clusters can be
               assigned
               based on management scope for user roles. You can configure the management scope for
               each custom
               role in <b class="uicontrol">User Roles</b>.</div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">User Roles</b></span></div>]]></description>
    <pubDate>Mon, 11 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security-management-scope</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Enhance investigations with VirusTotal threat intelligence in Evidence Report view</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virustotal-threat-intelligence</link>
    <description><![CDATA[<div class="p">December 11, 2023—You can now right-click URLs, domains, IPs, or file SHA-1 and select
               “VirusTotal” to facilitate thorough investigation of possible threats in your environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Forensics</b></span></div>]]></description>
    <pubDate>Mon, 11 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virustotal-threat-intelligence</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Customize YARA and osquery task names</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-customize-yara-osquery</link>
    <description><![CDATA[<div class="p">December 11, 2023—During an investigation, users can run multiple rounds of osquery
               or YARA
               tasks to narrow down the affected endpoint scope. Task names can now be customized
               to easily
               distinguish between multiple rounds of task results.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Forensics</b></span></div>]]></description>
    <pubDate>Mon, 11 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-customize-yara-osquery</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Forensics workspaces provide quick link to related tasks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-workspaces-quick-link</link>
    <description><![CDATA[<div class="p">December 11, 2023—Workspaces in <b class="wintitle" lang="en-us" xml:lang="en-us">Forensics</b>
               now offer a quick link to all tasks related to the workspace. Click the <b class="uicontrol">Related
                  Tasks</b> button to go to a pre-filtered list in the <b class="uicontrol">Task List</b>
               tab where you can view the status and results of workspace-related tasks.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Forensics</b></span></div>]]></description>
    <pubDate>Mon, 11 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-workspaces-quick-link</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Forensics app now enriches evidence with TrendAI Smart Protection Network data</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-app-evidence-spn-data</link>
    <description><![CDATA[<div class="p">December 11, 2023—Powered by <span class="tm">TrendAI™</span> Smart Protection Network services such as Web
               Reputation Services, the Forensics app can now enrich network-related data collected
               as evidence.
               You can now view the score and corresponding risk level of certain URLs, IP addresses,
               and domain
               names that you collect and add to Forensics workspaces.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Forensics</b></span></div>]]></description>
    <pubDate>Mon, 11 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-app-evidence-spn-data</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Azure AD renamed to Microsoft Entra ID</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-azure-ad-renamed-entra-id</link>
    <description><![CDATA[<div class="p">December 15, 2023—Azure AD has been renamed to Microsoft Entra ID across all <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
               apps and features to align with Microsoft’s naming change. No app or feature functionality
               has
               been affected by the renaming.</div>]]></description>
    <pubDate>Fri, 15 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-azure-ad-renamed-entra-id</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Isolate and terminate Kubernetes containers</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-isolate-terminate-kubernetes</link>
    <description><![CDATA[<div class="p">Dec 15, 2023—Customers can now isolate or terminate potentially compromised Kubernetes
               pods
               when investigating threat incidents in Workbench, Observed Attack Techniques, and
               Search.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-t9pqnh__containerSecurityPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Fri, 15 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-isolate-terminate-kubernetes</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Accounts now previewing Azure subscription support</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-azure-subscription</link>
    <description><![CDATA[<div class="p">December 18, 2023—As a preview feature, Cloud Accounts now supports connecting Azure
               Subscriptions to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. Connecting your Azure Subscription allows <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to discover your Azure cloud assets and rapidly identify risks such as compliance
               and security best practice violations on your cloud infrastructure. Once connected,
               cloud accounts and assets from your Azure subscriptions are visible in the Cloud Risk
               Management and Attack Surface Discovery apps under Cyber Risk Exposure Management.
               For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adding-azure-subscription#GUID-BED80320-70E5-47C4-9530-CC26073D469D-d665kg">Connect a single Azure subscription</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 18 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-azure-subscription</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Automated Response Playbook enhancements</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-response-playbook-enhance</link>
    <description><![CDATA[<div class="p">December 18, 2023—The Automated Response Playbook has been enhanced to support a wider
               range
               of response actions, including user account actions such as disabling the user account,
               forcing sign out, and forcing password reset, and the ability to run custom scripts
               on
               endpoints.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 18 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-response-playbook-enhance</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Network Inventory supports Deep Discovery Inspector 6.7 with new central management features</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inventory-ddi-6-7</link>
    <description><![CDATA[<div class="p">December 18, 2023—Network Inventory now supports the following central management
               features
               for Deep Discovery Inspector version 6.7 and later.</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-8046hx__ul_yf4_s5r_vzb">
<li class="li">
<div class="p">Configure detection exceptions and packet capture settings.</div>
</li>
<li class="li">
<div class="p">Connect Deep Discover Inspector to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> using a Service Gateway.</div>
</li>
<li class="li">
<div class="p">Toggle SSH and hypersensitive settings.</div>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 18 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inventory-ddi-6-7</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Local user account support added to Zero Trust Secure Access</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-local-user-account-ztsa</link>
    <description><![CDATA[<div class="p">December 18, 2023—In addition to integration with third-party identity and access
               management
               providers, Zero Trust Secure access now supports the addition and maintenance of local
               user
               accounts. Administrators may import lists of local user emails to serve as the basis
               for local
               user accounts, or the accounts may be added manually.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Identity and Access Management</b></span></div>]]></description>
    <pubDate>Mon, 18 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-local-user-account-ztsa</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Manage all event rules in one place</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-manage-event-rules-one-place</link>
    <description><![CDATA[<div class="p">December 18, 2023—<b class="wintitle">Threat and Exposure Management</b> now features <b class="wintitle">Event Rule
                  Management</b>: a centralized location for you to manage risk event rules.</div><div class="p">When you mark a risk event as Dismissed, an event rule is created to prevent Attack
               Surface
               Risk Management from reporting future instances of the risk event in <b class="wintitle">Risk Reduction
                  Measures</b> and <b class="wintitle">All Risk Events</b>. The event rule also prevents
               the dismissed risk event from impacting your organization's Risk Index.</div><div class="p"><b class="wintitle">Event Rule Management</b> allows you to review and manage all dismissed event
               rules. If you remove a dismissed event rule, all new instances of the risk event are
               reported and
               contribute to your organization's Risk Index.</div>]]></description>
    <pubDate>Mon, 18 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-manage-event-rules-one-place</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Visualize your Azure asset relationships</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-visual-azure-asset-relationships</link>
    <description><![CDATA[<div class="p">December 18, 2023—The relationships of your Azure cloud assets can now be graphically
               illustrated in the <b class="uicontrol">Asset Graph</b> tab of <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-asset-profile#GUID-ca0252ca-a6c7-4b9e-b246-5e77be24c6c3">cloud asset profiles</a> in <b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 18 Dec 2023 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-visual-azure-asset-relationships</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1225</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1225</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-6__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">January 8, 2024—Virtual Network Sensor version 1.0.1225 includes enhancements, bug
                  fixes, and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-6__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds support for deploying on the AWS platform.</div>
</li>
<li class="li">
<div class="p">This update adds the CLI command <code class="cmdname">network-traffic</code> to capture and
                        collect network traffic for investigation.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 01 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1225</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-4</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-12__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">January 18, 2024—Service Gateway Firmware Version 3.0.4 provides enhanced security
                  and management capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-12__ul_qg3_wfz_c1c">
<li class="li">
<div class="p">This update removes some <dfn class="term">SSHOperator</dfn> objects to enhance the security of
                        Service Gateway appliance SSH connections.</div>
</li>
<li class="li">
<div class="p">This update enhances the performance of the API that collects service information
                        on
                        Service Gateway appliances, reducing CPU and memory usage.</div>
</li>
<li class="li">
<div class="p">This update adds a bug fix for configuring the Network Time Protocol using CLISH
                        commands.</div>
</li>
<li class="li">
<div class="p">This update adds a bug fix for registering Service Gateway appliances with configured
                        custom proxy servers to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 01 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-4</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Region deployment selection available for Cloud Accounts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-region-deployment-cloud-accounts</link>
    <description><![CDATA[<div class="p">January 8, 2024—Customers can now select which AWS regions to deploy the Agentless
               Vulnerability &amp; Threat Detection and Container Protection for Amazon ECS features
               under
               Cloud Accounts. By default, these features will deploy to all available regions. This
               feature
               requires updating to the latest version of the Cloud Accounts stack.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-opaf4f">Cloud Accounts</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 08 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-region-deployment-cloud-accounts</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Virtual Network Sensor supports new deployment features</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-new-deployment</link>
    <description><![CDATA[<div class="p">January 8, 2024—Virtual Network Sensor supports deploying to AWS cloud environments.
               Additionally, you can now specify a default password for KVM deployments within Network
               Inventory.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 08 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-new-deployment</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Master Administrators can opt in to all pre-release apps/services</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-master-admin-prerelease-opt</link>
    <description><![CDATA[<div class="p">January 8, 2024—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> has added
               an opt-in and opt-out mechanism in <b class="wintitle">Platform Directory</b> for Master
               Administrators to choose whether they want to view and try <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> pre-release apps/services
               available for the organization.</div><div class="p">After opting in, you can use all current and future pre-release apps/services at no
               added cost
               during the pre-release preview and will be notified at least 30 days before official
               release or
               any upcoming charge.</div><div class="p">For customers that were already using <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> prior to January 8, 2024, opting in is automatically enabled to ensure
               service continuity of previously opted-in apps/services. You must manually opt out
               if you do not
               want to use pre-release apps/services.</div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Platform Directory</b></div>]]></description>
    <pubDate>Mon, 08 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-master-admin-prerelease-opt</guid>
    <category>Platform Directory</category>
</item>
<item>
    <title>Support for terminating Amazon ECS containers</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-terminate-amazon-ecs-containers</link>
    <description><![CDATA[<div class="p">January 8, 2024—Customers can now terminate potentially compromised <a class="xref" href="https://aws.amazon.com/ecs/" target="_blank">Amazon Elastic Container Service</a> tasks while investigating threat incidents in Workbench, Observed Attack Techniques,
               or XDR Data Explorer.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Workbench</b></span></div>]]></description>
    <pubDate>Mon, 08 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-terminate-amazon-ecs-containers</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Filter query results of YARA and osquery tasks by status</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-filter-query-yara-osquery-status</link>
    <description><![CDATA[<div class="p">January 9, 2024—Query results for YARA and osquery tasks can now be filtered by status
               to
               provide a brief overview. Quickly find the reason for failed tasks by hovering over
               the status
               icon next to endpoint names.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Forensics</b></span></div>]]></description>
    <pubDate>Tue, 09 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-filter-query-yara-osquery-status</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>TrendAI Vision One Email and Collaboration Security official launch</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-collab-security-release</link>
    <description><![CDATA[<div class="p">January 15, 2024—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> provides a centralized and
               comprehensive solution for your email and collaboration security, offering a streamlined,
               single-console experience.</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-ek58we__ul_spf_h5l_c1c">
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-asset-inventory#GUID-DDC9D5B8-EEF2-4586-A77A-3696904EAF1F">Email Asset Inventory</a> provides centralized visibility combining your protection
                     managers with dedicated inventory views.</div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-ek58we__ul_qlf_bvl_c1c">
<li class="li">
<div class="p"><b class="uicontrol">Email account inventory</b>, managed by Cloud Email and Collaboration
                           Protection and Email Sensor, highlights noteworthy accounts which require further
                           investigation. You can also quickly review your Exchange Online and Gmail protection
                           status.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Email domain inventory</b>, managed by Cloud Email Gateway Protection,
                           provides domain information and your email gateway protection status.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Email server inventory</b> provides information about your email servers
                           managed by on-premises protection solutions including ScanMail for Microsoft Exchange
                           and
                           InterScan Messaging Security Virtual Appliance.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-sensor#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-ty8dvl">Email Sensor</a> provides centralized management for your email accounts allowing you to
                     enable or disable XDR detection and response. Enabling email sensor detection and
                     response
                     provides XDR capabilities for email accounts as well as providing cross-layered capabilities
                     covering identity, endpoint, network, and more.</div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-t34y1v">Cloud Email and Collaboration Protection</a> provides real-time protection to enhance
                     security with powerful enterprise-class threat and data protection control, including
                     protection against ransomware, phishing, Business Email Compromise (BEC), zero-day
                     and hidden
                     malware, unauthorized transmission of sensitive data, targeted attack user, and account
                     takeover. Cloud Email and Collaboration Protection integrates cloud-to-cloud with
                     the protected
                     applications and services, and leverage both inline and API integration to maintain
                     high
                     availability and administrative functionality, as well as auto-remediation based on
                     the latest
                     pattern updates on incoming, outgoing and internal messages. Cloud Email and Collaboration
                     Protection provides protection for the following cloud email and collaboration
                     applications:</div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-ek58we__ul_r3c_5xl_c1c">
<li class="li">
<div class="p">Microsoft Office 365 services (Exchange Online, SharePoint Online, OneDrive, Microsoft
                           Teams)</div>
</li>
<li class="li">
<div class="p">Google Workspace (Google Drive, Gmail)</div>
</li>
<li class="li">
<div class="p">Box</div>
</li>
<li class="li">
<div class="p">Dropbox</div>
</li>
</ul>
<div class="p">For customers with an existing Cloud App Security solution, update to Cloud Email
                     and
                     Collaboration Protection through the Product Instance app to seamlessly integrate
                     with <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to manage email and collaboration security within
                     one console, one platform. To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-update-cloud-app-security#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-3vo7xe">Update from Cloud App Security</a>.</div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-email-gateway-protection#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-rb1euq">Cloud Email Gateway Protection</a> provides email security at the gateway level through MX
                     record rerouting of inbound messages to block dangerous and unwanted emails before
                     they reach
                     your email servers. In addition to malware scanning, spam detection, and content filtering,
                     Cloud Email Gateway Protection also supports domain-based authentication such as
                     SPF/DKIM/DMARC, directory-based recipient verification, outbound DLP, and email encryption
                     -
                     all configurable through robust policy settings.</div>
<div class="p">For customers with an existing Trend Email Security solution, update to Cloud Email
                     Gateway
                     Protection to seamlessly integrate with <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to manage email gateway security
                     within one console, one platform. To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-update-trend-micro-email-security#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-h9zcxx">Update from TrendAI™ Email Security</a>.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 15 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-collab-security-release</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access Supports Mobile Agent Deployment on Devices With Custom MDM</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-mobile-agent-deployment</link>
    <description><![CDATA[<div class="p">January 15, 2024—The Zero Trust Secure Access Secure Access Module can now be deployed
               to mobile devices that are unmanaged or managed by an MDM solution using managed configuration.
               Users may now take advantage of Internet Access and Private Access features when enabled.
               For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deploying-sam-mobile-devices#GUID-BED80320-70E5-47C4-9530-CC26073D469D-qg0f0h">Enable Zero Trust Secure Access on mobile devices</a>. </div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Module</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Mobile Security</b> → <b class="uicontrol"><b class="wintitle" lang="en-us" xml:lang="en-us">Mobile Inventory</b></b></span></div>]]></description>
    <pubDate>Mon, 15 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-mobile-agent-deployment</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Security Configuration features enhanced email security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-config-email-security</link>
    <description><![CDATA[<div class="p">January 15, 2024—Cyber Risk Overview now better reflects the health of your connected
               email
               security products. The <b class="uicontrol">Email Security</b> section of the <b class="uicontrol">Security
                  Configuration</b> tab now supports <span class="ph" lang="en-us" xml:lang="en-us">Email Security</span> and shows the
               protection status and key feature adoption rates for your email domains.</div><div class="p">When examining email domain configuration status or <b class="wintitle">Key Feature Adoption
                  Rates</b>, clicking the number of domains that are not configured correctly takes you to
               <b class="wintitle" lang="en-us" xml:lang="en-us">Email Asset Inventory</b> for more detailed information.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 15 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-config-email-security</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Security Configuration supports network security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-config-network-security</link>
    <description><![CDATA[<div class="p">January 15, 2024—Cyber Risk Overview now provides you with an overview of your network
               layer
               configuration. The <b class="uicontrol">Network Security</b> section of the <b class="uicontrol">Security
                  Configuration</b> tab now displays the deployment status and key feature adoption rates
               for your connected <span class="ph" lang="en-us" xml:lang="en-us">Deep Discovery Inspector</span> appliances.</div><div class="p">When examining <b class="wintitle">Appliance Health</b>, <b class="wintitle">Software Version</b>, or
               <b class="wintitle">Key Feature Adoption and Configuration</b>, clicking the number of appliances
               that are not configured correctly leads you to the <b class="wintitle" lang="en-us" xml:lang="en-us">Reports</b> app to generate a detailed report.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 15 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-config-network-security</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Create Security Awareness Training training campaigns targeting at-risk users</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-training-campaigns-target-risk</link>
    <description><![CDATA[<div class="important" lang="en-us" xml:lang="en-us">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">
<div class="p">This is a "Pre-release" feature and is not considered an official release. Please
                              review the
                              <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pre-release-disclaimer#GUID-E9D0CBA8-F65E-409C-B197-F15BA2E021D0">Pre-release disclaimer</a>
                              before using the feature.</div>
</div>
</td>
</tr>
</table>
</div><div class="p">January 15, 2024—In addition to manually creating training campaigns for your users
               in the
               <b class="wintitle">Security Awareness Training</b> app, you can now also initiate campaigns from the
               <b class="wintitle">Attack Surface Discovery</b>, <b class="wintitle">Threat and Exposure Management</b>, and
               <b class="wintitle">Identity Posture</b> apps. Campaigns initiated from these three apps enable you
               to provide Security Awareness Training training focused specifically on at-risk users.</div><div class="p">When viewing domain accounts in <b class="wintitle">Attack Surface Discovery</b>, the context menu
               now includes the <b class="uicontrol">Create Training Campaign</b> option.</div><div class="p">In <b class="wintitle">Threat and Exposure Management</b>, the remediation steps for some types of risk
               events—such as phishing simulations indicating user accounts might be vulnerable to
               attack —
               now include links to create <b class="wintitle">Security Awareness Training</b> training.</div><div class="p">The <b class="wintitle">Identity Posture</b> app's <b class="wintitle">Identity Summary</b> screen
               for highly privileged identities and the highlighted exposure risk events in the
               <b class="uicontrol">Exposure</b> tab now also feature a <b class="uicontrol">Create Security Awareness Training
                  Training Campaign</b> button.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Awareness</b></span></div>]]></description>
    <pubDate>Mon, 15 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-training-campaigns-target-risk</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Security Dashboard adds five container-related widgets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-dashboard-container-widget</link>
    <description><![CDATA[<div class="p">January 15, 2024—To facilitate SOC analysts in quickly identifying container security
               risks within their environment, Security Dashboard has added the following five new
               widgets:
               <ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-57__ul_ssx_2yr_c1c">
<li class="li">
<div class="p">Top Clusters with Runtime Vulnerabilities/Events</div>
</li>
<li class="li">
<div class="p">Top Namespaces with Runtime Rule Violations</div>
</li>
<li class="li">
<div class="p">Top Runtime Policy Violations by Action</div>
</li>
<li class="li">
<div class="p">Top Trigger Runtime Rules by Violations</div>
</li>
<li class="li">
<div class="p">Top Unique CVEs by CVSS Rating</div>
</li>
</ul>
</div><div class="p">Find the new widgets in the Cloud category of the Security Dashboard widget catalog.
               Be aware that these widgets are only available for customers that have updated to
               the Foundation Services release. </div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards</b></span></div>]]></description>
    <pubDate>Mon, 15 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-dashboard-container-widget</guid>
    <category>Dashboards and Reports</category>
</item>
<item>
    <title>New Scan for Malware endpoint response action available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scan-malware-endpoint-response</link>
    <description><![CDATA[<div class="p">January 22, 2024—Users may now perform a one-time on-demand malware scan on one or
               more
               endpoints from context menus in Workbench, Endpoint Inventory, Search, and Observed
               Attack
               Techniques, allowing for a direct response to attacks while conducting further investigation.
               For
               more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scan-for-malware-task#GUID-BED80320-70E5-47C4-9530-CC26073D469D-44">Scan for Malware task</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Response Management</b></span></div>]]></description>
    <pubDate>Mon, 22 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scan-malware-endpoint-response</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Security Playbooks feature enhancements and user experience improvement</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-playbook-ux</link>
    <description><![CDATA[<div class="p">January 24, 2024—The Endpoint Response Actions playbooks and Incident Response Evidence
               Collection playbooks have been enhanced to support a broader range of IP formats for
               the playbook
               target. In addition to using a wildcard, you have the flexibility to use CIDR notation
               or specify
               an IP range from a starting IP address to an ending IP address.</div><div class="p">Additionally, the email notification content for user-defined Automated Response Playbooks
               has
               been improved to enhance the user experience.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Wed, 24 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-playbook-ux</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access and Internet Access now supports custom service status on individual endpoints</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-custom-service-status</link>
    <description><![CDATA[<div class="p">January 29, 2024—Zero Trust Secure Access now allows users to set the service status
               for
               Internet Access and Private Access on single endpoints. Users may choose to align
               the service
               status for the endpoint with the current global configuration or choose to never enable
               either
               service on selected endpoints. Configure endpoints from the endpoint list on the Secure
               Access
               Module screen.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Module</b></span></div>]]></description>
    <pubDate>Mon, 29 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-custom-service-status</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access now supports devices managed by custom MDM solutions or no MDM solution</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-custom-mdm-solutions</link>
    <description><![CDATA[<div class="p">January 29, 2024—In addition to Microsoft Intune-managed devices the Zero Trust Secure
               Access
               mobile module can now be deployed to all managed or unmanaged mobile devices, allowing
               you to
               secure more mobile endpoints. If you do not currently have an MDM solution, the mobile
               module
               supports deployment through Mobile Device Director. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deploying-sam-mobile-devices#GUID-BED80320-70E5-47C4-9530-CC26073D469D-qg0f0h">Deploying the Secure
                  Access Module to Mobile Devices</a>. </div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Module</b></span></div>]]></description>
    <pubDate>Mon, 29 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-custom-mdm-solutions</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access now supports local user groups</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-local-user-groups</link>
    <description><![CDATA[<div class="p"> January 29, 2024—Zero Trust Secure Access now supports local user account management
               both
               individually and by assigned groups. You may assign local users to one or more local
               user
               groups, allowing you to apply access rules by group. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-local-user-account-management#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-san92b">Local user account management</a>. </div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Identity and Access Management</b></span></div>]]></description>
    <pubDate>Mon, 29 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-local-user-groups</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Forensics highlights now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-highlights-available</link>
    <description><![CDATA[<div class="p">January 29, 2024—The new <b class="uicontrol">Highlights</b> section of the evidence report in <b class="wintitle" lang="en-us" xml:lang="en-us">Forensics</b> displays all the high-risk pieces of evidence found in the collected evidence. Use
               the <b class="uicontrol">Highlights</b> section as a starting point for your investigations.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Forensics</b></span></div>]]></description>
    <pubDate>Mon, 29 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-highlights-available</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Forensics workspace enhancements</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-workspace-enhance</link>
    <description><![CDATA[<div class="p">January 29, 2024—<b class="wintitle" lang="en-us" xml:lang="en-us">Forensics</b> now displays the following information about your endpoints in the Workspace view:
               </div><ul class="ul" id="WhatsNew_2024_01_29_forensics__ul_gdp_jsb_ncc">
<li class="li">
<div class="p">Latest risk score</div>
</li>
<li class="li">
<div class="p">Whether the endpoint is connected or not</div>
</li>
<li class="li">
<div class="p">whether the endpoint is managed or not</div>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Forensics</b></span></div>]]></description>
    <pubDate>Mon, 29 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-workspace-enhance</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Support to exclude specified endpoints from response actions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-exclude-endpoints-response-actions</link>
    <description><![CDATA[<div class="p">January 31, 2024—Users may now prevent critical endpoints from being affected by selected
               response actions triggered across <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. Add up to six exclusions to apply to lists of
               up to 100 endpoints by enabling the feature in Settings within Response management.
               To learn
               more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-exclude-endpoints#GUID-BED80320-70E5-47C4-9530-CC26073D469D-47">Exclude Specified Endpoints from Response Actions</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Response Management</b></span></div>]]></description>
    <pubDate>Wed, 31 Jan 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-exclude-endpoints-response-actions</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1235</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1235</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-5__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">February 5, 2024—Virtual Network Sensor version 1.0.1235 includes enhancements, bug
                  fixes, and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-5__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds a new feature: Send to sandbox is available for preview in limited
                        regions.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Thu, 01 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1235</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection supports cost tracking</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulnerability-cost-track</link>
    <description><![CDATA[<div class="p">February 7, 2024—You can now track the costs of <span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> by
               enabling AWS Cost Explorer. Update the <span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> stack to enable
               this capability. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deployment-costs#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-qneaw6">Agentless Vulnerability &amp; Threat Detection estimated deployment costs for AWS</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Wed, 07 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulnerability-cost-track</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Cloud Risk Management removes support for outdated standards</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-outdated-standards</link>
    <description><![CDATA[<div class="p">February 14, 2024—<b class="wintitle" id="GUID_515169e2_6670_4623_bf6d_1c44df21f919__idCloudPostureScreen">Cloud Risk Management</b> no longer
               supports the following compliance standards:</div><ul class="ul" id="GUID_515169e2_6670_4623_bf6d_1c44df21f919__ul_cnz_kfp_31c">
<li class="li">
<div class="p">CIS Amazon Web Services Foundations Benchmark v1.2.0</div>
</li>
<li class="li">
<div class="p">CIS Amazon Web Services Foundations Benchmark v1.3.0</div>
</li>
<li class="li">
<div class="p">CIS Amazon Web Services Foundations Benchmark v1.4.0</div>
</li>
<li class="li">
<div class="p">CIS Microsoft Azure Foundations Benchmark v1.1.0</div>
</li>
<li class="li">
<div class="p">CIS Google Cloud Platform Foundation Benchmark v1.2.0</div>
</li>
</ul><div class="p">These five standards are no longer accessible in filters, which prevents the creation
               of new
               reports and report configurations. You can no longer generate new PDF or CSV reports
               using
               existing report configurations that include any of the five standards. However, any
               PDF or CSV
               reports generated before support was ended remain available.</div><div class="p">Please update your report configurations to use the latest versions of CIS Benchmarks.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Misconfiguration and Compliance</b></span></div>]]></description>
    <pubDate>Wed, 14 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-outdated-standards</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Enhanced multi-layered asset management and new Asset Visibility Management app available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-management-visibility-app</link>
    <description><![CDATA[<div class="p">February 19, 2024—Besides the management scope for endpoints and containers that were
               introduced in 2023, <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> enhances
               the asset management capability to support more data assets, including mobile devices,
               accounts,
               cloud assets, network assets, and secure access assets. Large-sized customers that
               run multiple
               businesses or have the need to segregate asset data visibility for different teams
               can leverage
               this enhanced capability to achieve multi-tenancy management purposes within a single
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console.</div><div class="p">For customers to better organize assets of multiple layers in a centralized location,
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> launches a new app <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-visibility-management#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-djhgqy">Asset Visibility Management</a> for administrators to group data and <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> app assets into asset visibility
               scopes based on the corporate structure. The asset visibility scopes can then be assigned
               to user
               roles to determine which assets are visible or manageable to these roles in all applicable
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> apps that display the data of
               the selected assets.</div><div class="p">Only customers that have updated to the Foundation Services release have access to
               the app. If
               customers have configured scopes for endpoints and containers in <b class="uicontrol">User
                  Roles</b>, to achieve seamless migration, asset visibility scopes that include newly
               supported assets are automatically created and associated to the corresponding roles.
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> continues enhancing the asset
               visibility management capability with more asset coverage or granularity.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Service Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Asset Visibility Management</b></span></div>]]></description>
    <pubDate>Mon, 19 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-management-visibility-app</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Virtual Network Sensor supports deployment to Microsoft Azure cloud environments</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-azure-cloud</link>
    <description><![CDATA[<div class="p">February 19, 2024—Virtual Network Sensor supports deploying to Microsoft Azure cloud
               environments.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 19 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-azure-cloud</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Network Inventory now supports Asset Visibility Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inventory-asset-visibility</link>
    <description><![CDATA[<div class="p">February 19, 2024—Network Inventory now supports managing user role visibilty of connected
               Deep Discovery Inspector and Virtual Network Sensor devices with the Asset Visibility
               Management
               app. You can now manage the visibility of users within your organization to view your
               connected
               network security devices based on individual devices or groups created in Network
               Inventory.</div><div class="p"><span class="menucascade"><b class="uicontrol">Service Management</b> → <b class="uicontrol">Asset Visibility Management</b></span></div>]]></description>
    <pubDate>Mon, 19 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inventory-asset-visibility</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Network Inventory now supports creating groups for Deep Discovery Inspector and Virtual Network Sensor</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inventory-ddi-sensors</link>
    <description><![CDATA[<div class="p">February 19, 2024— Network Inventory now supports the ability to create groups for
               your
               connected Deep Discovery Inspector appliances and Virtual Network Sensors, as well
               as filter
               devices displayed using a tree view quick filter.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 19 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-inventory-ddi-sensors</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Manage risk events by risk factor in Threat and Exposure Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-events-factor-ops-dashboard</link>
    <description><![CDATA[<div class="p">February 19, 2024—You can now change the status of risk events when viewing them by
               risk
               factor in <b class="wintitle" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b>. This applies to all risk
               factor types except XDR Detections and Vulnerabilities. Development is ongoing to
               support
               these two risk factor types.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 19 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-events-factor-ops-dashboard</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Gain better visibility into the security configuration of cloud apps</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-configuration-cloud-apps</link>
    <description><![CDATA[<div class="p">February 19, 2024—The <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-app-profile#GUID-CFD284B5-6B28-425C-BF8F-B3F546C66CB2">cloud app profile screen</a> in <b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b> now displays the following additional
               information:</div><div class="p">
<ul class="ul" id="rbv_h5n_l1c__ul_dkw_lvn_l1c">
<li class="li">
<div class="p">The encryption ciphers used by the cloud app</div>
</li>
<li class="li">
<div class="p">The latest version of the communications protocol used by the app</div>
</li>
<li class="li">
<div class="p">Whether the cloud app uses a trusted certificate</div>
</li>
<li class="li">
<div class="p">Whether the cloud app allows for IP address access control</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 19 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-configuration-cloud-apps</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Cloud Email and Collaboration Protection supports turning off computer vision</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-turn-off-computer-vision</link>
    <description><![CDATA[<div class="p">February 23, 2024—In the Web Reputation filter, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span>
               allows you to control whether to use the computer vision techniques for phishing detection.
               Computer vision clicks suspicious URLs in emails to access web pages and apply AI-based
               image
               analysis to detect threats. Previously, computer vision was enabled as long as you
               turned on Web
               Reputation.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 23 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-turn-off-computer-vision</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access enables additional authentication to Private Access</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-add-auth-private-access</link>
    <description><![CDATA[<div class="p">February 26, 2024—Users may now require additional authentication to Private Access
               after
               authenticating on endpoints with the Secure Access Module. Enabling the new feature
               overrides
               the default behavior of authenticating users to Internet Access and Private access
               at the same
               time, allowing for the use of Private Access only on demand. For more Information,
               see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-secure-access-module#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-n3o9qy">Secure Access Module</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Module</b></span></div>]]></description>
    <pubDate>Mon, 26 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-add-auth-private-access</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Asset relationship visualizations emphasize risk management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-relationship-visualization</link>
    <description><![CDATA[<div class="p">February 26, 2024—In line with enhancements to the visualization of asset relationships
               in
               <b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b>, the asset graph feature
               in profile screens for <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-device-profile#GUID-4403D76A-3B0D-4AA8-9F9C-59E6EDCB649F">devices</a>, <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-account-profile#GUID-C6DA77AA-EFF9-4855-BD23-C4A2E2BBB997">accounts</a>, <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-domain-profile#GUID-3c5dab47-272b-41d6-a7a0-7145bafa65f5">domains</a>, and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ip-address-profile#GUID-507385bf-c3ff-461e-912d-40d5bd12ba40">IP addresses</a> has been renamed to Asset Risk Graph, while the graph view for <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-assets#GUID-e38fe112-b41e-4ea4-b453-a14df83cbf1d">cloud
                  assets</a> is now the <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-risk-graph#GUID-13e12b39-900b-4fe1-a316-01e7b7e1430e">Cloud Risk Graph</a>. Both of these features continue to provide valuable risk findings,
               helping you assess your organization's security posture.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 26 Feb 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-relationship-visualization</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 2.0.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-2-0-2</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-43__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 4, 2024—Service Gateway Smart Protection Services Version 2.0.2 includes enhancements,
                  bug fixes, and security updates for Smart Protection Services hosted on Service Gateway
                  appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-43__ul_qg3_wfz_c1c">
<li class="li">
<div class="p">This update adds an enhancement to provide the most recent time that the File
                        Reputation Services pattern was checked for updates.</div>
</li>
<li class="li">
<div class="p">This update enhances log processing frequency to reduce storage buffering.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Fri, 01 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-2-0-2</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1262</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1262</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-4__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 25, 2024—Virtual Network Sensor version 1.0.1262 includes enhancements, bug
                  fixes, and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-4__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds new CLI commands for troubleshooting.</div>
</li>
<li class="li">
<div class="p">This update adds support for disk size extension.</div>
</li>
<li class="li">
<div class="p">This update adds support for file response action.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Fri, 01 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1262</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-3-0-4</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-26__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 7, 2024—Service Gateway Local ActiveUpdate Service Version 3.0.4 provides enhanced
                  update management and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-26__ul_qg3_wfz_c1c">
<li class="li">
<div class="p">This update adds a bug fix for duplicate requests when downloading updates for
                        connected products.</div>
</li>
<li class="li">
<div class="p">This update adds an enhancement to reduce overall CPU usage.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Fri, 01 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-3-0-4</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-5</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-11__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 4, 2024—Service Gateway Firmware Version 3.0.5 provides enhanced security and
                  management capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-11__ul_qg3_wfz_c1c">
<li class="li">
<div class="p">This update adds support for restarting the appliance via the Service Gateway
                        Management app on the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console.</div>
</li>
<li class="li">
<div class="p">This update adds a bug fix for configuring the Network Time Protocol after upgrading
                        the Service Gateway appliance.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Fri, 01 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-5</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Endpoint Inventory updates Available Actions and adds new filters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-updates-filters</link>
    <description><![CDATA[<div class="p">March 4, 2024—The Available Actions quick filters have been updated with two new
               behaviors:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-i3y2dx__ul_sqk_lcd_q1c">
<li class="li">
<div class="p">If there are a total of zero (0) endpoints for an available action, Endpoint Inventory
                     now
                     hides the action, providing a cleaner interface.</div>
</li>
<li class="li">
<div class="p">The "Sensor disabled" Available Action now only includes endpoints which have the
                     <b class="b">Trend
                        Vision One</b> sensor installed but disabled by settings or policy.</div>
</li>
</ul><div class="p">Additionally, a new category of filters has been added for Sensor Maintenance Recommended.
               You
               can follow the recommended actions to resolve any issue the endpoints might have.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security Operations</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 04 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-updates-filters</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Case Management can now close inactive cases automatically</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management-close-inactive</link>
    <description><![CDATA[<div class="p">March 4, 2024—<a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management#case_management_main">Case Management</a> can now close cases that have not received updates for over 60 days.</div><div class="p">Three days before closing, Case Management sends a notification to remind the case
               owner to update the case.</div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Mon, 04 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management-close-inactive</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Container Security updates Runtime Security to ensure access to future, larger rule updates</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-security-rule-updates</link>
    <description><![CDATA[<div class="p">March 5, 2024—The Runtime Security scout component has been updated to allow for the
               download
               of larger Runtime Security rule files. Customers should upgrade clusters that are
               running scout
               versions older than 2.3.26 (template version 1.0.8 for ECS) to the latest available
               version to
               ensure that they have access to new Runtime Security rules as they become available.
               Older
               versions of scout continue to receive rules and your existing installations retain
               their
               protection, but they cannot be updated as frequently with new rules due to file size
               limitations.</div><div class="p">Instructions on upgrading Runtime Security: </div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-ipbd73__ul_v4n_kqw_s1c">
<li class="li">
<div class="p">For Kubernetes clusters: <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-security-faqs#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-d8xqgr">Upgrade
                        your Container Security deployment</a></div>
</li>
<li class="li">
<div class="p">For ECS clusters: <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-stack-update#GUID-BED80320-70E5-47C4-9530-CC26073D469D-c3r6ge">Upgrade
                        your Cloud Account Management stack</a></div>
</li>
</ul>]]></description>
    <pubDate>Tue, 05 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-security-rule-updates</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Risk Management to support latest Azure framework standard</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-azure-framework</link>
    <description><![CDATA[<div class="p">March 5, 2024—The Azure Well-Architected Framework compliance standard report and
               associated
               rule mappings in <b class="wintitle" lang="en-us" xml:lang="en-us">Cloud Security Posture</b> have been updated to
               conform with the latest version of the Azure Well-Architected Framework released in
               October 2023.
               In turn, the July 2022 version of the Azure Well-Architected Framework will no longer
               be
               available in <b class="wintitle" lang="en-us" xml:lang="en-us">Cloud Security Posture</b> from June 1, 2024. The
               removed version will no longer be accessible in filters, preventing the creation of
               new reports
               or report configurations with the outdated standard. This means that you will no longer
               be able
               to generate new PDF or CSV reports using report configurations that include the outdated
               compliance standard. However, any PDF or CSV reports already created remain available
               for
               download. <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span> recommends that you update your report
               configurations to use the latest version of the framework by June 1, 2024.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security Posture</b></span></div>]]></description>
    <pubDate>Tue, 05 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-azure-framework</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.38</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-38</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-79__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 11, 2024—ZTSA On-Premises Gateway Version 1.0.38 provides enhanced security
                  and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-79__section_ohl_2gm_gcc">
<h3 class="section-title">New Feature</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-79__ul_eld_hgm_gcc">
<li class="li">Supports bypass authentication by endpoint IPs in On-premises Gateways</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 11 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-38</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access enables selected private IP addresses to bypass authentication on cloud and on-premises gateways</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-bypass-authentication</link>
    <description><![CDATA[<div class="p">March 11, 2024—You may now allow endpoints to bypass user authentication on configured
               cloud
               and on-premises gateways. To bypass user authentication, endpoints must connect using
               a private
               IP address specified by the administrator. When connecting to the internet through
               an Internet
               Access gateway, endpoints using the specified private IP addresses are included as
               a user in the
               Internet Access user count for credit calculation. This feature is not available on
               the default
               cloud gateway when connecting outside of defined locations.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 11 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-bypass-authentication</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access now supports Wintun as a service mode for traffic forwarding on Windows Secure Access Modules</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-wintun-service-forwarding</link>
    <description><![CDATA[<div class="p">March 11, 2024—Zero Trust Secure Access has added support for the Wintun TUN adapter
               in the
               available service modes for traffic forwarding on Windows Secure Access Modules. Select
               the TUN
               (Wintun) service mode in the Secure Access Module global settings if your users' devices
               require
               greater traffic throughput. </div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Module</b></span></div>]]></description>
    <pubDate>Mon, 11 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-wintun-service-forwarding</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>View endpoint group names on the device list in Attack Surface Discovery</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-group-names-device-list-asd</link>
    <description><![CDATA[<div class="p">March 11, 2024—The Attack Surface Discovery device list now includes an endpoint group
               column
               to show the endpoint group name for each managed device. Use the “Endpoint group”
               filter to
               search for managed devices from specified endpoint groups.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 11 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-group-names-device-list-asd</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>DMARC Report Analysis available in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dmarc-report-analysis</link>
    <description><![CDATA[<div class="p">March 20, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> supports analyzing the DMARC
               reports for your managed domains. With the report analysis results, you can easily
               monitor trends and identify anomalies in emails sent on behalf of your managed
               domains.</div><div class="p"><span class="menucascade" id="concept_prd_5p1_51c__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Wed, 20 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dmarc-report-analysis</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Cloud Email and Collaboration Protection supports taking action based on email header fields</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-action-email-header</link>
    <description><![CDATA[<div class="p">March 22, 2024—In addition to specifying blocked email senders, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> allows you to define a list of blocked email header
               fields and specify the action to take on matching emails in Advanced Spam Protection.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 22 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-action-email-header</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Cloud Email and Collaboration Protection supports Dynamic URL scanning for Teams Chat</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-dynamic-url-scan-teams</link>
    <description><![CDATA[<div class="p">March 22, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> supports dynamic URL scanning for
               Teams Chat to further analyzes URLs posted in chats in real-time to detect phishing
               URLs.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 22 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-dynamic-url-scan-teams</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Cloud Email and Collaboration Protection supports Predictive Machine Learning Exception List</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-pml-exception-list</link>
    <description><![CDATA[<div class="p">March 22, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> allows you to define a list of
               SHA-1 hash values of files to exclude from scanning by <span class="tm">TrendAI™</span> Predictive Machine
               Learning.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 22 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-pml-exception-list</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Cloud Email and Collaboration Protection supports reporting emails to administrator-specified mailboxes</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-admin-specified-mailboxes</link>
    <description><![CDATA[<div class="p">March 22, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> provides you the option to allow
               your end users to report emails through its add-in to mailboxes you have specified.
               Administrators can easily access the reported emails to analyze, investigate, and
               take necessary
               actions.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 22 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-admin-specified-mailboxes</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 1.0.13</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-13</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-36__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 26, 2024—Service Gateway Forward Proxy Service Version 1.0.13 provides enhanced
                  security and network connectivity features.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-36__ul_exh_jbm_v1c">
<li class="li">
<div class="p">Add request information and error code to Squid access log</div>
</li>
<li class="li">
<div class="p">Fix vulnerabilities: Disable gopher/URN/FTP protocol</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 23 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-1-0-13</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.6</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-6</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-10__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 26, 2024—Service Gateway Firmware Version 3.0.6 provides enhanced security and
                  management capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-10__ul_wln_fbm_v1c">
<li class="li">
<div class="p">Add support for safe boot</div>
</li>
<li class="li">
<div class="p">Add support for port customization</div>
</li>
<li class="li">
<div class="p">Fix the error that caused the Clish Command "Configure route ipv4/ipv6.default" to
                        fail</div>
</li>
<li class="li">
<div class="p">Fix the error that caused the appliance audit log send failed issue when appliance
                        token changed</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 23 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-6</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.39</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-39</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-78__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 25, 2024—ZTSA On-Premises Gateway Version 1.0.39 provides enhanced security
                  and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-78__section_ohl_2gm_gcc">
<h3 class="section-title">New Feature</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-78__ul_eld_hgm_gcc">
<li class="li">Supports customizable ports for individual services in On-premises Gateway</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-39</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Cloud Accounts support for Google Cloud projects now available in pre-release preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-gcp-preview</link>
    <description><![CDATA[<div class="p">March 25, 2024—As a pre-release preview feature, Cloud Accounts now supports connecting
               Google Cloud (GCP) projects to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. Connecting your Google Cloud project allows <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to discover your cloud assets and rapidly identify risks such as compliance and security
               best practice violations on your cloud infrastructure. Once connected, cloud accounts
               and assets from your Google Cloud projects are visible in the Cloud Risk Management
               and Attack Surface Discovery apps under Cyber Risk Exposure Management. For more information,
               see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-google-cloud-projects#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xtgglv">Connect Google Cloud projects</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-gcp-preview</guid>
    <category>Service Management</category>
</item>
<item>
    <title>One more user account type available to support IdP-initiated only SSO</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-account-type-idp-only-sso</link>
    <description><![CDATA[<div class="p">March 25, 2024—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports mapping of user
               roles directly to groups defined in customers' identity providers, removing the need
               to add
               individual user and group accounts for all users to sign in to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adding-idp-only-saml-group-account#GUID-BED80320-70E5-47C4-9530-CC26073D469D-1sk1oh">Add an IdP-Only SAML Group Account</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">User Accounts</b></span></div>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-account-type-idp-only-sso</guid>
    <category>Administration</category>
</item>
<item>
    <title>Updated behavior for removed agents reconnecting to TrendAI Vision One</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-removed-agents-reconnecting</link>
    <description><![CDATA[<div class="p">March 25, 2024—After March 25, 2024, endpoints removed from Endpoint Inventory, whether
               by a
               user or by the inactive agent removal settings, automatically reconnect when powered
               on and
               reappear in the Endpoint Inventory. Endpoints removed before March 25, 2024, do not
               automatically
               reconnect.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-removed-endpoint-reconnects-faq#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-fz7a9n">What happens when a removed endpoint
                  reconnects to 
                  TrendAI Vision One™ Endpoint Security?</a></div>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-removed-agents-reconnecting</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Configure custom ports for Internet Access On-Premises Gateway services</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-custom-ports-gateway-services</link>
    <description><![CDATA[<div class="p">March 25, 2024—Users may now change the default ports for services such as data proxy,
               authentication proxy, and ICAP/ICAPS services configured on the Internet Access On-Premises
               Gateway. Configure custom ports from Service Gateway Management. For more information,
               see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-services#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-lcm39w">Service Gateway services</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-custom-ports-gateway-services</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>New PoP site serving the AWS Middle East and Africa region</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pop-site-serving-aws-mea</link>
    <description><![CDATA[<div class="p">March 25, 2024—Zero Trust Secure Access Internet Access now offers support for the
               AWS Middle
               East and Africa Region. Users in the region may configure their service FQDNs to reflect
               the new
               location.</div><div class="p">For more information on available PoP sites for the Internet Access Cloud
               Gateway, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pop-site-serving-aws-mea</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Connect Active Directory servers in Third-Party Integrations to add computers in Server &amp; Workload Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ad-servers-add-computers</link>
    <description><![CDATA[<div class="p">March 25, 2024—You may now add computers in <span class="ph" lang="en-us" xml:lang="en-us">Server &amp; Workload Protection</span> from Active Directory servers connected through <b class="wintitle" lang="en-us" xml:lang="en-us">Third-Party Integrations</b>. Configure your Active Directory server information just once without the need for
               adding a
               data center gateway. When adding computers, choose the new method or continue to add
               servers
               directly in <span class="ph" lang="en-us" xml:lang="en-us">Server &amp; Workload Protection</span>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ad-servers-add-computers</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Microsoft AKS now supported in Container Security and ASRM</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-microsoft-aks-asrm</link>
    <description><![CDATA[<div class="p">March 25, 2024—Container Security now supports Microsoft Azure AKS. Just add the cluster
               in the Container Security app and install the Helm script into AKS according to our
               installation steps. You can see AKS's Cluster, Node, and Pod appear in the Tree view
               on the left. inside. If the user uses the Map to Cloud Account function, relevant
               information will also appear in the Cyber Risk Exposure Management app.</div>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-microsoft-aks-asrm</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Customize columns in Attack Surface Discovery asset lists</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-customize-columns-lists</link>
    <description><![CDATA[<div class="p">March 25, 2024—You can now customize the columns displayed in asset lists for all
               asset types
               in <b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b>. Show or hide specific columns, and rearrange column order by dragging and dropping.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-customize-columns-lists</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>View data sources for discovered accounts in Attack Surface Discovery</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-sources-discovered-accounts</link>
    <description><![CDATA[<div class="p">March 25, 2024—The <b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b> accounts page now has a "Discovered by" column for both domain and service accounts
               to show
               the data source that has discovered the account. Use the "Discovered by" filter to
               search for
               accounts from the selected data source.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-sources-discovered-accounts</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Scan for vulnerabilities in your Amazon ECR and self-managed Kubernetes container images</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scan-amazon-ecr-kubernetes-images</link>
    <description><![CDATA[<div class="p">March 25, 2024—Agentless Vulnerability &amp; Threat Detection now supports vulnerability
               scanning on container images of your Amazon ECR container images when you enable the
               feature
               for your AWS accounts in Container Inventory. You can also enable Runtime Scanning
               for your
               Kubernetes clusters in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>—Container Security and enable to scan for
               vulnerabilities in related Kubernetes container images.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scan-amazon-ecr-kubernetes-images</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Use case management to communicate with the TrendAI managed services team</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-use-case-managed-services</link>
    <description><![CDATA[<div class="p">March 25, 2024—Managed XDR customers can use <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management#case_management_main">Case Management</a> to receive direct communication from the <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-managed-services#GUID-0A2ABE83-3A90-4705-B3A8-889A12F95549">TrendAI™ managed services</a> team to get incident alerts and recommended remediation actions.</div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Mon, 25 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-use-case-managed-services</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Google GCP GKE now supported in Container Security and ASRM</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gcp-gke-container-security</link>
    <description><![CDATA[<div class="p">March 27, 2024— Now Container Security can support Google GCP GKE. Just add Cluster
               in the
               Container Security app and install the Helm script into GKE according to our installation
               steps.
               You can see GKE's Cluster, Node, and Pod appear in the Tree view on the left. inside.
               If the user
               uses the Map to Cloud Account function, relevant information will also appear in the
               Attack
               Surface Risk Management app.</div>]]></description>
    <pubDate>Wed, 27 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gcp-gke-container-security</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>The TrendAI Vision One mobile app is now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mobile-app-available</link>
    <description><![CDATA[<div class="p">March 28, 2024—Your security on the go. Receive notifications and alerts, check your
               organization's Risk Index, and get a summary of the most recent Workbench alerts,
               all
               from your mobile device. <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-trend-vision-one-mobile#TrendVisionOneApp_ec4de117_fbb3_497d_8186_190c77a7605a">Learn more</a></div><div class="p">The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> mobile app is available in the <a class="xref" href="https://play.google.com/store/apps/details?id=com.trendmicro.mobilesoc" target="_blank">Google Play Store</a> and the <a class="xref" href="https://apps.apple.com/app/trend-vision-one/id6444749127" target="_blank">App Store (iPhone &amp; iPad)</a>.</div>]]></description>
    <pubDate>Thu, 28 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mobile-app-available</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Collect File and Submit for Sandbox Analysis response actions now support Virtual Network Sensor</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-collect-file-sandbox-response</link>
    <description><![CDATA[<div class="p">March 28, 2024—You can now perform Collect File and Submit for Sandbox Analysis response
               actions on Virtual Network Sensor agents. You can initiate response actions from the
               context or
               response menu and monitor task status in the Response Management app.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-actions-section#GUID-9254ED63-6714-4DD1-A9B8-29AD02028380">Response actions</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Response Management</b></span></div>]]></description>
    <pubDate>Thu, 28 Mar 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-collect-file-sandbox-response</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1278</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1278</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-3__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">April 29, 2024—Virtual Network Sensor version 1.0.1278 includes enhancements, bug
                  fixes, and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-3__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds support for deploying the Virtual Network Sensor on TippingPoint
                        TXE-series devices (software version 6.3 or later).</div>
</li>
<li class="li">
<div class="p">This update adds support for including device IP and hostname in network telemetry</div>
</li>
<li class="li">
<div class="p">This update adds integration with Cyber Risk Overview Security Configuration Overview
                        to monitor Virtual Network Sensor status and health.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 01 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1278</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.7</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-7</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-9__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">April 22, 2024—Service Gateway Firmware Version 3.0.7 includes enhancements, bug fixes,
                  and security updates for Service Gateway.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-9__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update supports the following virtual appliance specifications:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-9__ul_ulx_x4v_dbc">
<li class="li">
<div class="p">12 cores CPU, 16 GB memory, 500 GB storage</div>
</li>
<li class="li">
<div class="p">8 cores CPU, 12 GB memory, 200 GB storage</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">This update adds an enhancement to support an upcoming new service.</div>
</li>
<li class="li">
<div class="p">This update adds a bug fix for network issues caused by dual network cards.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 01 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-7</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Cloud Risk Management to Support New Public APIs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-public-apis</link>
    <description><![CDATA[<div class="p">March 28, 2024—Accounts and Template Scanner Public APIs for Cloud Risk Management
               now
               available on <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Automation Center. See the <a class="xref" href="https://automation.trendmicro.com/xdr/api-beta" target="_blank">Automation Center</a> for more information. </div>]]></description>
    <pubDate>Tue, 02 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-public-apis</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>TrendAI Vision One supports multi-factor authentication for console sign in and critical actions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mfa-sign-critical-actions</link>
    <description><![CDATA[<div class="p">April 8, 2024—For customers that have updated to the Foundation Services release,
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now offers the option to
               enable multi-factor authentication (MFA) for enhanced security. With MFA, users are
               required
               to provide multiple forms of verification before they can sign in to the console or
               perform
               response or IAM actions.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enable-confige-mfa#GUID-BED80320-70E5-47C4-9530-CC26073D469D-ljf14n">Enable and configure multi-factor authentication</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">User Accounts</b></span></div>]]></description>
    <pubDate>Mon, 08 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mfa-sign-critical-actions</guid>
    <category>Administration</category>
</item>
<item>
    <title>TrendAI Vision One File Security now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-file-security-initial</link>
    <description><![CDATA[<div class="p">April 8, 2024—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> File Security is a scanning service that can detect all types of malicious software
               (malware) including trojans, ransomware, spyware, and more.</div><div class="p">File Security offers the following features and enhancements:</div><div class="p">
<div class="table" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-y8mldp__table_ck3_ny1_1bc">
<table border="1" class="tgroup">
<colgroup class="colspec" style="width: 50%;"></colgroup>
<colgroup class="colspec" style="width: 50%;"></colgroup>
<thead class="thead table-header-style">
<tr class="row">
<td class="entry">Feature</td>
<td class="entry">Description</td>
</tr>
</thead>
<tbody class="tbody">
<tr class="row">
<td class="entry">
<div class="p">File Security Storage</div>
</td>
<td class="entry">
<div class="p">File Security Storage provides anti-malware scanning on files in cloud storage services
                                 such as Amazon Web Services (AWS). This means you can integrate automated scanning
                                 into your continuous integration and continuous delivery and deployment (CI/CD) pipeline.
                                 Then effortlessly detect all types of malware including viruses, trojans, spyware,
                                 and more.</div>
<div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-storage-scanning#trend_vision_one_fss">File Security
                                    Storage</a>.</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Enable Predictive Machine Learning (PML)</div>
</td>
<td class="entry">
<div class="p"><span class="tm">TrendAI™</span> Predictive Machine Learning (PML) uses advanced machine learning technology to correlate
                                 threat information and perform in-depth file analysis. You can enable PML in File
                                 Security SDK using command line parameters.</div>
<div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pml-file-security-sdk#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-bcvb1p">Predictive Machine Learning in File
                                    Security</a>.</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Unlimited file size</div>
</td>
<td class="entry">
<div class="p">You can now scan any size file. Previously, the file size limit was 1 GB.</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Credit usage</div>
</td>
<td class="entry">
<div class="p">File Security now requires credits to perform file scans. For more information, see
                                 <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-credit-req-for-apps-services#GUID-001E41E3-6F8A-499E-85E5-14A3DBD67C6C-2">Credit requirements for TrendAI Vision One™ solutions</a>.</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Enhanced region support</div>
</td>
<td class="entry">
<div class="p">File Security now supports <code class="codeph">ap-south-1</code>.</div>
</td>
</tr>
</tbody>
</table>
</div>
</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">File Security</b></span></div>]]></description>
    <pubDate>Mon, 08 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-file-security-initial</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Network Security supported in Executive Dashboard Security Configuration</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-security-execsecurity</link>
    <description><![CDATA[<div class="p">April 8, 2024—The Security Configuration index now supports Virtual Network Sensor
               visibility
               in the Network Security tab. You can view sensor deployment status and key feature
               adoption rate.
               For sensors not configured as expected, click the displayed number of sensors to drill
               down to
               the Reports app and generate reports with detailed information.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 08 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-security-execsecurity</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Claroty xDome supported as a new data source for Cyber Risk Exposure Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-medigate-data-source</link>
    <description><![CDATA[<div class="p">April 8, 2024—You may now integrate Claroty xDome as a data source in Cyber Risk Exposure
               Management to gain access to device information and vulnerabilities detected by Medigate.
               Connect your Claroty xDome account in Data Sources.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 08 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-medigate-data-source</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Accept reported risk events</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-accept-reported-risk-events</link>
    <description><![CDATA[<div class="p">April 8, 2024—In addition to the Dismissed and Remediated statuses, an Accepted status
               is now
               available for reported risk events in Threat and Exposure Management. Marking a risk
               event as
               Accepted indicates that you acknowledge the risk but are unable to remediate or mitigate
               it at this time. Risk events marked as Accepted still contribute to your Risk Index.
               Create accepted risk event rules when marking a risk event as Accepted to mark all
               current and future instances of the risk event as Accepted within a specified time
               period.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 08 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-accept-reported-risk-events</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Forensics now supports multi-factor authentication</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-mfa</link>
    <description><![CDATA[<div class="p">April 8, 2024—You can now request multi-factor authentication for evidence collection,
               osquery, and YARA rule scans in the Forensics app.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Forensics</b></span></div>]]></description>
    <pubDate>Mon, 08 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-mfa</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Forensics risk score for endpoints</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-risk-score</link>
    <description><![CDATA[<div class="p">April 8, 2024—The Forensics app now includes risk scores from Cyber Risk Exposure
               Management. Forensic investigators can prioritize endpoints with high risk scores
               when adding endpoints in a workspace. Once added, each endpoint risk score has a Detailed
               Profile for further investigation.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Forensics</b></span></div>]]></description>
    <pubDate>Mon, 08 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forensics-risk-score</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Multi-factor authentication now available for certain critical actions in Security Playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mfa-security-playbooks</link>
    <description><![CDATA[<div class="p">April 8, 2024—In order to increase the security of critical action use, you can now
               enable
               multi-factor authentication (MFA) for security playbooks operations. With MFA, users
               are
               required to provide multiple forms of verification before they can create, edit, or
               delete
               playbooks, approve pending actions, manually execute playbooks from either Security
               Playbooks
               or Workbench, or upload a new custom script from Security Playbooks. You can configure
               MFA
               settings in the User Accounts app.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enable-confige-mfa#GUID-BED80320-70E5-47C4-9530-CC26073D469D-ljf14n">Enable and configure multi-factor authentication</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 08 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mfa-security-playbooks</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Multi-factor authentication now available for certain response actions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mfa-response-actions</link>
    <description><![CDATA[<div class="p">April 8, 2024—In order to increase the security of critical action use, you can now
               enable
               multi-factor authentication (MFA) as a requirement to run certain response actions,
               including
               Collect File, Run Remote Custom Script, Start Remote Shell Session, and Submit for
               Sandbox
               Analysis, as well as to add a new custom script in Response Management. You can configure
               MFA
               settings in the User Accounts app.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enable-confige-mfa#GUID-BED80320-70E5-47C4-9530-CC26073D469D-ljf14n">Enable and configure multi-factor authentication</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Response Management</b></span></div>]]></description>
    <pubDate>Mon, 08 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mfa-response-actions</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Data for internet-facing assets now updated more frequently</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-internet-facing-assets-updated-freq</link>
    <description><![CDATA[<div class="p">April 15, 2022—Thanks to several backend improvements, data for your internet-facing
               assets
               are now updated more often. The increased update frequency allows you to better assess
               your
               attack surface in <b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b>, particularly
               after removing domains and IP addresses and renewing certificates, and improves the
               accuracy of
               risk events created in Threat and Exposure Management. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-internet-facing-assets#tsx_h22_pwb">Internet-Facing Assets</a>.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-45__idAttackSurfaceDiscoveryPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 15 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-internet-facing-assets-updated-freq</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Configure response action time-out settings</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-action-time-settings</link>
    <description><![CDATA[<div class="p">April 16, 2024—You can now specify the time-out setting for endpoint response actions.
               If
               left unspecified, the default setting is used. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-management-settings#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-kjh7m7">Response Management settings</a>.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-hwdzub__responseManagementPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Response Management</b></span></div>]]></description>
    <pubDate>Tue, 16 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-action-time-settings</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Cloud Email and Collaboration Protection launches Correlated Intelligence for email threat detection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-intelligence-threat-detection</link>
    <description><![CDATA[<div class="p">April 19, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> launches the Correlated
               Intelligence feature that can correlate the suspicious signals found across different
               engines (such as Advanced Spam Protection, Web Reputation) to enrich threat detection
               for email services. With Correlated Intelligence capabilities, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> also provide the reasons why an email is
               detected as a threat.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 19 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-intelligence-threat-detection</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Cloud Email and Collaboration Protection supports quishing detection for PDF attachments</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-quishing-pdf</link>
    <description><![CDATA[<div class="p">April 19, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> supports scanning QR codes in
               PDF files attached to emails to detect suspicious URLs. QR code scanning already
               supports attachments in the format of WEBP, JPG, PNG, BMP, TIFF, or GIF.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 19 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cemp-quishing-pdf</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Quishing detection widgets available in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-quishing-widgets</link>
    <description><![CDATA[<div class="p">April 19, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> displays quishing detection
               data in the Threat Detection dashboard for you to understand the QR code-based phishing
               email detections in your environment, including the quishing detections by email
               service, top 5 quishing email senders, top 5 quishing email recipients, and quishing
               detections by content type.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 19 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-quishing-widgets</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Cloud Email Gateway Protection provides granular log search for IP block list matching</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cegp-granular-ip-block-list</link>
    <description><![CDATA[<div class="p">April 19, 2024—When searching the mail tracking logs for mail traffic blocked due
               to IP
               block list matching, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> allows you to conduct
               more granular search by separately filtering for sender IPs found in the Blocked IP
               Address list and the Blocked Country/Region list.</div><div class="p"><span class="menucascade" id="concept_r4j_xzy_cbc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Fri, 19 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cegp-granular-ip-block-list</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Cloud Email Gateway Protection supports X-Header insertion for messages matching scan exceptions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cegp-x-header-insertion</link>
    <description><![CDATA[<div class="p">April 19, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> allows you to leverage the
               action "Insert X-Header" for messages matching scan exceptions in virus scan to meet
               your specific needs, for example, identify the specific scan exception for subsequent
               processing.</div><div class="p"><span class="menucascade" id="concept_v3s_qyy_cbc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Fri, 19 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cegp-x-header-insertion</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.40</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-40</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-77__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">April 22, 2024—ZTSA On-Premises Gateway Version 1.0.40 provides enhanced security
                  and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-77__section_ohl_2gm_gcc">
<h3 class="section-title">Enhancement</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-77__ul_eld_hgm_gcc">
<li class="li">Adopted Rocky Linux (v9) based container image for On-premises Gateway</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 22 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-40</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Assess language packages in ECR images for vulnerabilities</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ecr-images-for-vulnerabilities</link>
    <description><![CDATA[<div class="p">April 22, 2024—the Vulnerability Assessment service available in <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> now supports scanning language packages used in your ECR container images. For information
               on supported languages, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerability-assess-languages#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-86">Vulnerability Assessment supported language
                  packages</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 22 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ecr-images-for-vulnerabilities</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Threat and Exposure Management Weekly Digest terminated</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ops-dashboard-digest-terminated</link>
    <description><![CDATA[<div class="p">April 22, 2024—Threat and Exposure Management Weekly Digest has been terminated for
               subscribers,
               and the subscription entry for the weekly digest has been removed from
               <b class="uicontrol">Notifications</b>. Former subscribers can now receive n automatically
               generated weekly report based on the <b class="uicontrol">Risk Factors</b> template, providing a
               detailed picture of current organization risks. Settings for the weekly report can
               be managed
               in the <b class="uicontrol">Reports</b> app.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 22 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ops-dashboard-digest-terminated</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Custom filter query strings can now include regex for higher detection precision</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-query-strings-regex-precision</link>
    <description><![CDATA[<div class="p">April 22, 2024—You can now create and import custom filter queries including regex
               in Detection
               Model Management. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-using-regex-custom-filters#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-iqfjgq">Using regex in custom filters</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Mon, 22 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-query-strings-regex-precision</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Trend Threat Intelligence Feed is now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-threat-intelligence-feed</link>
    <description><![CDATA[<div class="p">April 29, 2024— Trend Threat Intelligence Feed continuously provides up-to-date information
               about emerging threats and threat actors. Leveraging the feed via API into your existing
               security
               infrastructure allows your organization to stay one step ahead of cyber threats and
               maintain a
               robust and adaptive security environment.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-tmthreat-intelligence-feed#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-6ta6la">Threat Intelligence Feed</a>.</div>]]></description>
    <pubDate>Mon, 29 Apr 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-threat-intelligence-feed</guid>
    <category>Threat Intelligence</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 2.0.1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-2-0-1</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-35__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">May 6, 2024—Service Gateway Forward Proxy Service Version 2.0.1 includes enhancements,
                  bug fixes, and security updates for the forward proxy service hosted on Service Gateway
                  appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-35__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update migrates the operating system of Forward Proxy Service containers from
                        CentOS 7.9 to Rocky Linux 9.3 to avoid vulnerability patching issues related to the
                        deprecation of CentOS.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Wed, 01 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-2-0-1</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Generic Caching Service 1.0.1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-generic-caching-service-1-0-1</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-49__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">May 6, 2024—Service Gateway Generic Caching Service Version 1.0.1 includes enhancements,
                  bug fixes, and security updates for the Generic Caching Service hosted on Service
                  Gateway appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-49__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update adds an internal enhancement for connections.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Wed, 01 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-generic-caching-service-1-0-1</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1286</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1286</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc-2__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">May 27, 2024—Virtual Network Sensor version 1.0.1286 includes enhancements, bug fixes,
                  and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc-2__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update enhances telemetry collection.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Wed, 01 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1286</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-3-0-5</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-25__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">May 13, 2024—Service Gateway Local ActiveUpdate Service Version 3.0.5 includes enhancements,
                  bug fixes, and security updates for the ActiveUpdate service hosted on Service Gateway
                  appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-25__ul_qg3_wfz_c1c">
<li class="li">
<div class="p">This update introduces the capability for XES to update patterns directly through
                        the
                        ActiveUpdate service.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Wed, 01 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-au-3-0-5</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.8</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-8</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-8__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">May 13, 2024—Service Gateway Firmware Version 3.0.8 includes enhancements, bug fixes,
                  and security updates for Service Gateway.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-8__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update introduces enhancements to the audit logs of Service Gateway virtual
                        appliances.</div>
</li>
<li class="li">
<div class="p">This update adds a new CLISH command to roll back the Service Gateway to the last
                        version.</div>
</li>
<li class="li">
<div class="p">This update addresses the security vulnerability CVE-2023-22652, which is a critical
                        buffer overflow vulnerability in the libeconf library.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Wed, 01 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-8</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.41</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-41</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-76__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">May 6, 2024—ZTSA On-Premises Gateway Version 1.0.41 provides enhanced security and
                  connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-76__section_ohl_2gm_gcc">
<h3 class="section-title">Enhancement</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-76__ul_eld_hgm_gcc">
<li class="li">Enhanced health check mechanism for the On-premises Gateway</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 06 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-41</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>CloudTrail log monitoring now supports deployment in AWS Control Tower environments</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloudtrail-aws-control-tower</link>
    <description><![CDATA[<div class="p">May 6, 2024 - The "Cloud Detections for AWS CloudTrail” feature under Vision One -
               XDR for
               Cloud has released a new template which supports deployment in multi-account AWS Control
               Tower
               environments.</div><div class="p"> To enable CloudTrail log monitoring for Control Tower, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-add-cloudtrail-control-tower#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-9lu8y0">Enable Cloud Detections for Control Tower (Log Archive account)</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 06 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloudtrail-aws-control-tower</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Network Security has been reorganized</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-security-reorganized</link>
    <description><![CDATA[<div class="p">May 6, 2024—The Monitoring/Scanning and Network Resources screen are now accessible
               from the
               navigation pane. Go to <span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-igyeyz__networkMSpath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Analysis Configuration</b></span> and choose <b class="wintitle" lang="en-us" xml:lang="en-us">Monitoring / Scanning</b> or <b class="wintitle" lang="en-us" xml:lang="en-us">Network Resources</b>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Analysis Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Monitoring / Scanning</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Analysis Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Resources</b></span></div>]]></description>
    <pubDate>Mon, 06 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-security-reorganized</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Cloud Risk Management Assessment officially released</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-assessment-released</link>
    <description><![CDATA[<div class="p">May 6, 2024—Cloud Risk Management Assessment is out of preview and now officially
               available. This
               feature is free for all <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> users, allowing you to scan your cloud assets and
               accounts—including AWS accounts, Azure subscriptions, and Google Cloud projects—against
               widely
               recognized standards and frameworks.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-assessment-intro#GUID-BED80320-70E5-47C4-9530-CC26073D469D-mgfcv4">Cloud Risk Management Assessment</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Assessment</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Assessment</b></span></div>]]></description>
    <pubDate>Mon, 06 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-assessment-released</guid>
    <category>Assessment</category>
</item>
<item>
    <title>Container Security proxy support for ECS instances</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-arm64-cpus-supported</link>
    <description><![CDATA[<div class="p">May 6, 2024—Container Security now supports proxy for Amazon ECS instances, providing
               a secure way to connect to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b></span></div>]]></description>
    <pubDate>Mon, 06 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-arm64-cpus-supported</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Network Sensor for TippingPoint available for pre-release preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-tippingpoint-preview</link>
    <description><![CDATA[<div class="p">May 6, 2024—Network Sensor for TippingPoint is now available for pre-release preview.
               The
               feature can be enabled on supported TippingPoint TXE-series appliances in <b class="wintitle" lang="en-us" xml:lang="en-us">Network Inventory</b>.</div><div class="p">Network Sensor for TippingPoint TXE-series appliances combines network intrusion detection
               prevention capabilities with in-depth visibility for unknown and targeted attacks
               even into
               encrypted network traffic. Combined with <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> detection and response capabilities,
               Network Sensor for TippingPoint helps create a complete network intrusion prevention
               solution.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-yk288o__networkInventoryPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b> → <b class="uicontrol">TippingPoint</b></span>.</div>]]></description>
    <pubDate>Mon, 06 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-tippingpoint-preview</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Get increased visibility into Risk Index fluctuations</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-index-fluctuations</link>
    <description><![CDATA[<div class="p">May 6, 2024—View daily point increases and decreases of the Risk Index along with
               contributing risk factors now by hovering on the Risk Index graph in Cyber Risk Overview.
               Coming in June, clicking through to Threat and Exposure Management will take you to
               in-depth details on daily contributing risk events. Details now available for the
               Risk Index in Cyber Risk Overview include a breakdown of the points each risk factor
               has added or subtracted from the Risk Index since the previous day. In June, you may
               view all daily contributing risk events, including those that were resolved or mitigated,
               organized by risk factor. Use the detailed information provided to better understand
               your security posture and help prioritize risks in your environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 06 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-index-fluctuations</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Assess vulnerabilities in Red Hat Enterprise Linux modules and containers</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-red-hat-linux-containers</link>
    <description><![CDATA[<div class="p">May 6, 2024—Vulnerability Assessment enhancements now allow the service to collect
               information on Red Hat Enterprise Linux 8 modules and Red Hat Enterprise Linux 9 containers.
               The expanded capabilities enable more comprehensive visibility and granular analysis,
               strengthening your container security and allowing you to more effectively prioritize
               risks. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerability-assessment-os#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-85">Vulnerability Assessment supported operating systems</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 06 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-red-hat-linux-containers</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Custom models now support Identity and Access Activity Data</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-models-identity-access-data</link>
    <description><![CDATA[<div class="p">May 6, 2024—You can now create custom models that include filters for Identity and
               Access
               Activity Data in Detection Model Management.</div><div class="p"> For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-configuring-custom-model#CreatingCustomModel">Configure a custom model</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Mon, 06 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-models-identity-access-data</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Cloud Risk Management to support Real-Time Posture Monitoring for AWS Accounts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-real-time-posture-monitoring-aws</link>
    <description><![CDATA[<div class="p">May 8, 2024—Cloud Risk Management now supports <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-real-time-threat-monitoring#RealTime_Threat_Monitoring">Real-Time Posture Monitoring</a> previously titled Real-Time Threat
               Monitoring (RTM) for AWS accounts connected through the Cloud Accounts app. You can
               enable
               Real-Time Posture Monitoring while connecting a new AWS account and organization or
               turn the
               feature on for existing AWS accounts or organizations.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Wed, 08 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-real-time-posture-monitoring-aws</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>TrendAI Vision One - Companion now supported in Observed Attack Techniques</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-companion-supported-oat</link>
    <description><![CDATA[<div class="p">May 8, 2024—Gain a better understanding of the events and executed commands detected
               in
               Observed Attack Techniques with the help of <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Companion.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-observed-attack-techniques#GUID-B626E45A-5383-4CDB-8459-2751E6E3DB52">Observed Attack Techniques</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Observed Attack Techniques</b></span></div>]]></description>
    <pubDate>Wed, 08 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-companion-supported-oat</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Network Security now supports direct synchronization of Suspicious Objects with Deep Discovery Inspector</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-security-direct-sync-ddi</link>
    <description><![CDATA[<div class="p">May 13, 2024—Connecting to <b class="wintitle" lang="en-us" xml:lang="en-us">Network Security</b> allows Deep
               Discovery Inspector version 6.7 SP1 and later to synchronization the Suspicious Object
               List
               directly with <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. The Suspicious Object List Synchronization service is no longer
               required to be enabled on your Service Gateway when connecting as a proxy or using
               the Service
               Gateway as a service source.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 13 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-security-direct-sync-ddi</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Campaign Intelligence has been updated to Threat Insights</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-campaign-intel-threat-insights</link>
    <description><![CDATA[<div class="p">May 13, 2024—<b class="uicontrol" lang="en-us" xml:lang="en-us">Threat Intelligence Hub</b> offers the following new
               features:
               <ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-91__ul_awh_g22_2bc">
<li class="li">
<div class="p">CVE threat intelligence: Search all trending curated CVEs that are enriched with
                        comprehensive content.</div>
</li>
<li class="li">
<div class="p">Threat categorization: Enhance the relevance of threat intelligence to your security
                        environment by viewing emerging threats and threat actors in separate tabs.</div>
</li>
<li class="li">
<div class="p">XDR &amp; Cyber Risk Exposure Management synergy: Leverage threat intelligence gathered
                        from various <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> apps for a more comprehensive look at how emerging threats and threat actors may
                        affect your own environment.</div>
</li>
</ul>
</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-threat-insights#GUID-8f0e5518-da96-4e66-9182-9d726997f237">Threat Intelligence Hub</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Threat Intelligence</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat Intelligence Hub</b></span></div>]]></description>
    <pubDate>Mon, 13 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-campaign-intel-threat-insights</guid>
    <category>Threat Intelligence</category>
</item>
<item>
    <title>Zero Trust Secure Access adds PoP site in AWS Spain region</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-aws-spain</link>
    <description><![CDATA[<div class="p">May 20, 2024—Zero Trust Secure Access Internet Access now offers support for the AWS
               Europe (Spain) region. Users in the region may configure their service FQDNs to reflect
               the new location. For more information on available PoP sites for the Internet Access
               Cloud Gateway, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 20 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-aws-spain</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Risk Event Response playbooks available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-reduction-playbooks</link>
    <description><![CDATA[<div class="p">May 20, 2024—Security Playbooks now includes Risk Event Response playbooks, a new
               feature designed to help you respond to new and ongoing risk events detected in your
               environment. You can set up the playbooks to respond to or send notifications about
               the risk events associated with all risk factors identified in Threat and Exposure
               Management, with the exception of XDR detection. For XDR detection related risk events,
               configure Automated Response Playbooks to enable automatic actions in response to
               high-priority alerts in Workbench.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-creating-risk-reduction-playbooks#GUID-E852DBEE-FB1F-4C87-891C-CE5D38274385">Manually create Risk Event Response playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 20 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-reduction-playbooks</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Asset Visibility Management expanded to include more asset types</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-visibility-management-expand</link>
    <description><![CDATA[<div class="p">May 21, 2024—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now extends its robust asset visibility capabilities to include
               more comprehensive data asset support. This update introduces more data asset types,
               including
               more network and cloud assets, as well as message data. Building on the existing management
               scope
               for endpoints, containers, mobile devices, accounts, unmanaged devices, Private Access
               Connectors
               and Internet Access Gateways, and web gateways, the latest update ensures that all
               critical data
               points are covered, providing a holistic view of the organization's asset landscape.
               This
               enhancement is particularly beneficial for large enterprises that require detailed,
               segmented
               visibility to manage multiple regions or teams effectively.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adding-asset-visibility-scope#GUID-BED80320-70E5-47C4-9530-CC26073D469D-a7anpf">Add an asset visibility scope</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Service Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Asset Visibility Management</b></span></div>]]></description>
    <pubDate>Tue, 21 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-visibility-management-expand</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Simplified risk overviews in Cyber Risk Overview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-simplified-risk-overviews</link>
    <description><![CDATA[<div class="p">May 27, 2024—To facilitate a higher-level overview, the Exposure, Attack, and Security
               Configuration Overview tabs in Cyber Risk Overview have been simplified to display
               current risk levels and risk scores for each category. In Risk Overview, view each
               category's contribution to the Risk Index at a glance, and get additional information
               about contributing risk factors and events from Risk Event Overview. Go to the tab
               for each risk category to quickly view the category's current risk level, and see
               contributing risk factors to more quickly prioritize risk reduction actions.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 27 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-simplified-risk-overviews</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Two-way sync supported between Case Management and ServiceNow</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-2way-case-management-servicenow</link>
    <description><![CDATA[<div class="p">May 27, 2024—Case Management now supports two-way sync of case status and priority
               changes with
               ServiceNow.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-config-case-management-ticket#serviceNow_CaseManagement">Configure ServiceNow ITSM to enable TrendAI Vision One™ for ServiceNow ticketing system</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Mon, 27 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-2way-case-management-servicenow</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Identity Posture now available in public preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identity-posture-preview</link>
    <description><![CDATA[<div class="p">May 28, 2024—Identity Posture, part of the Identity Security app group, is now in
               public preview. Discover enhanced identity management plus monitoring, reporting,
               and security controls. Protect your organization's identity infrastructure with the
               help of detailed information on identity attack surface, identity behaviors, attack
               detections, and more. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identity-posture#GUID-ddca03c9-4beb-4312-8cc0-466872e01da2">Identity Security Posture</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Identity Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Identity Security Posture</b></span></div>]]></description>
    <pubDate>Tue, 28 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identity-posture-preview</guid>
    <category>Identity Security</category>
</item>
<item>
    <title>Intrusion Prevention Configuration enhanced support for multiple SMS devices</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ipc-enhanced-support-SMS</link>
    <description><![CDATA[<div class="p">May 31, 2024—Customers can select which connected TippingPoint SMS to display for
               policy
               recommendations and configuration. Intrusion Prevention Configuration is supported
               on all
               connected SMS appliances. Information and policy tuning options for the SMS you select
               is
               displayed on the Policy Recommendations page.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-intrusion-prevention-configuration#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-kmd30a">Intrusion Prevention Configuration</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Intrusion Prevention Configuration</b></span></div>]]></description>
    <pubDate>Fri, 31 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ipc-enhanced-support-SMS</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Runtime Proxy Settings for Endpoint Security enables customizable proxy policies for endpoints</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-proxy-settings-policies</link>
    <description><![CDATA[<div class="p">May 31, 2024—Endpoint Security now includes Runtime Proxy Settings, enabling the ability
               to
               create and manage proxy policies with detailed settings which can be applied to different
               endpoint groups.</div><div class="p">Runtime Proxy Policies allow you to assign endpoint groups to connect to specific
               Service
               Gateways or different third-party proxies based on the needs of your environment.
               Additionally,
               you can now separately configure proxies for use during agent deployment and installation.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Fri, 31 May 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-proxy-settings-policies</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 2.0.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-201</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-34__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 4, 2024—Service Gateway Forward Proxy Service Version 2.0.2 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-34__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update adds a bug fix for the failure to show all connected products.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 01 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-forward-proxy-201</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 2.0.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-2-0-3</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-42__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 17, 2024—Service Gateway Smart Protection Services Version 2.0.3 includes enhancements,
                  bug fixes, and security updates for Smart Protection Services hosted on Service Gateway
                  appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-42__ul_qg3_wfz_c1c">
<li class="li">
<div class="p">This update adds a bug fix for the failure to show all connected products.</div>
</li>
<li class="li">
<div class="p">This update adds an internal enhancement to support updated ActiveUpdate pattern
                        versions.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 01 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-2-0-3</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.9</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-9</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-7__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 17, 2024—Service Gateway Firmware Version 3.0.9 delivers key enhancements, bug
                  fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-7__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update includes support for server load balancing on Service Gateway appliances
                        by
                        leveraging Direct Server Return (DSR).</div>
</li>
<li class="li">
<div class="p">This update provides a CLI command to check FQDN accessibility from the Service Gateway
                        appliance.</div>
</li>
<li class="li">
<div class="p">This update allows up to 5 NTP servers to be configured in the Service Gateway
                        appliance.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 01 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-firmware-version-3-0-9</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.43</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-43</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-75__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 3, 2024—ZTSA On-Premises Gateway Version 1.0.43 provides enhanced security and
                  connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-75__section_ohl_2gm_gcc">
<h3 class="section-title">New feature</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-75__ul_eld_hgm_gcc">
<li class="li">
<div class="p">IP Address groups can now be used in on-premise gateways. This allows the bypassing
                           of authentication and bandwidth controls.</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 03 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-43</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Integrate multiple MDM solutions with Mobile Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-multiple-mdm-solutions</link>
    <description><![CDATA[<div class="p">June 3, 2024—Mobile Security now supports integration with up to five separate third-party
               mobile device management (MDM) solutions. To increase visibility over your managed
               mobile devices, integrate additional MDM solutions by going to the MDM integration
               settings in Mobile Inventory and clicking <b class="uicontrol">Add MDM Solution</b>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Mobile Security</b> → <b class="uicontrol"><b class="wintitle" lang="en-us" xml:lang="en-us">Mobile Inventory</b></b></span></div>]]></description>
    <pubDate>Mon, 03 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-multiple-mdm-solutions</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>CIS Amazon EKS benchmark scanning now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cis-amazon-eks-benchmark-scan</link>
    <description><![CDATA[<div class="p">June 12, 2024—With <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> – Container Security, compliance scanning with CIS
               benchmarks in your EKS clusters is seamless. Assess and guarantee adherence to
               industry-leading security standards effortlessly, enhancing your Kubernetes security
               posture.</div><div class="p">To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-compliance-scanning#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-196t45">Compliance</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Mon, 03 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cis-amazon-eks-benchmark-scan</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Send to sandbox feature now available for Virtual Network Sensor</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sandbox-virtual-network-sensor</link>
    <description><![CDATA[<div class="p">June 3, 2024—The Virtual Network Sensor now supports automatically submitting file
               objects to a virtual sandbox for analysis as a pre-release feature.</div><div class="p">The "send to sandbox" feature can be enabled from the Network Inventory screen, with
               the
               analysis report available to view in the Sandbox Analysis app. File objects submitted
               by the
               Virtual Network Sensor to the sandbox using this feature do not require credits to
               use during the
               pre-release period.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 03 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sandbox-virtual-network-sensor</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Connect your Google Cloud Identity tenants as data sources in Cyber Risk Exposure Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gcp-tenants-asrm</link>
    <description><![CDATA[<div class="p">June 3, 2024—You can now connect your Google Cloud Identity tenants as data sources
               in Attack Surface Risk Management. Use the new source to gain better visibility into
               user and group data, user activity data, and potential account misconfigurations.
               For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-configuring-data-sources#GUID-0371C0A9-8F03-4EAF-9459-6411489CE495">Configure Cyber Risk Exposure Management data sources</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 03 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gcp-tenants-asrm</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Mean Time to Patch (MTTP) and Average Unpatched Time (AUT) widgets available in Security Dashboard</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mttp-aut-widgets</link>
    <description><![CDATA[<div class="p">June 3, 2024—The Mean Time to Patch (MTTP) and Average Unpatched Time (AUT) widgets
               in Cyber Risk Overview are now also available in Security Dashboard. Add the widgets
               to your custom dashboard to get a better picture of your overall vulnerability management
               status. More detailed information from Threat and Exposure Management can be found
               by clicking <b class="uicontrol">Go to app</b> in each widget.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards</b></span></div>]]></description>
    <pubDate>Mon, 03 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mttp-aut-widgets</guid>
    <category>Dashboards and Reports</category>
</item>
<item>
    <title>Service Gateway: Syslog Connector (On-Premises) Version 1.0.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-syslog-premises-1-0-5</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-50__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 13, 2023—Service Gateway: Syslog Connector (On-Premises) Version 1.0.5 delivers
                  key enhancements, bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-50__ul_yvn_4jd_1yb">
<li class="li">
<div class="p">This update adds the function to send alerts to the syslog server after a successful
                        connection test.</div>
</li>
<li class="li">
<div class="p">This update supports using base64 encoding within fields of the Observed Attack
                        Techniques log.</div>
</li>
</ul>
<div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>
</section>]]></description>
    <pubDate>Tue, 04 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-syslog-premises-1-0-5</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Automated Response Playbooks support IP address conditions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-playbooks-ip-conditions</link>
    <description><![CDATA[<div class="p">June 4, 2024—Automated Response Playbooks are enhanced to include <b class="uicontrol">IP address</b> as a condition in playbook settings in addition to <b class="uicontrol">Highlighted object risk</b>. With this enhancement, the playbooks can filter highlighted objects with their source
               IP address, destination IP address, peer IP address, and interested IP address, enabling
               more targeted response actions.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-automated-response-playbooks#GUID-BED80320-70E5-47C4-9530-CC26073D469D-36">Manually create Automated Response Playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Tue, 04 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-playbooks-ip-conditions</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Agentless Vulnerability and Threat Detection stack enhancements</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulnerability-stack</link>
    <description><![CDATA[<div class="p">June 10, 2024—Agentless Vulnerability &amp; Threat Detection now includes the following
               enhancements:
               <ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-34__ul_fhz_z3w_qbc">
<li class="li">
<div class="p">The Agentless Vulnerability stack has been split into common and  agentless components,
                        which reduces the quantity of IAM roles and policies required.</div>
</li>
<li class="li">
<div class="p">The deployed stack now has two version values, which are tracked separately.</div>
</li>
<li class="li">
<div class="p">To reduce costs, CloudWatch lambda log groups now have ERROR level logging, and scan
                        failures are optimized to reduce unnecessary retry count.</div>
</li>
<li class="li">
<div class="p">Resolved an issue in which CloudWatch log groups could not be deleted after
                        uninstalling.</div>
</li>
</ul>
</div><div class="p">When you upgrade to the new release, the contents of the agentless S3 buckets, including
               intermediate results, and s3 access logs, will be deleted. This has no impact on any
               scan results
               already send to Vision One. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deployment-costs#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-qneaw6">Agentless Vulnerability &amp; Threat Detection estimated deployment costs for AWS</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 10 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulnerability-stack</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Configure response action approval settings</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-action-approval</link>
    <description><![CDATA[<div class="p">June 12, 2024—You can now configure approval settings for specified response actions
               in the Response Management app.</div><div class="p">The approval settings you configure in the Response Management app do not affect those
               configured in the Managed Services or Security Playbooks app.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-management-settings#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-kjh7m7">Response Management settings</a>.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-va3p7r__responseManagementPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Response Management</b></span></div>]]></description>
    <pubDate>Wed, 12 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-action-approval</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Agentless Vulnerability and Threat Detection available in AWS UAE region</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulnerability-aws-uae</link>
    <description><![CDATA[<div class="p">June 13, 2024—Users of cloud services may now enable Agentless Vulnerability and Threat
               Detection (AVTD) from the AWS UAE region (me-central-1). Use the feature to conduct
               vulnerability scans on EBS volumes attached to EC2 instances as well as ECR images,
               and get greater visibility into your cloud asset-related security posture.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Thu, 13 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulnerability-aws-uae</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.44</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-44</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-74__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">June 17, 2024—ZTSA On-Premises Gateway Version 1.0.44 provides enhanced security and
                  connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-74__section_ohl_2gm_gcc">
<h3 class="section-title">New feature</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-74__ul_eld_hgm_gcc">
<li class="li">Suppports AI Service Access for public GenAI/LLM services protection</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 17 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-44</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Scanner Configuration for Agentless Vulnerability &amp; Threat Detection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulner-threat-detection</link>
    <description><![CDATA[<div class="p">June 18, 2024—The scanner configuration feature for Agentless Vulnerability &amp; Threat
               Detection settings in Cloud Accounts lets you select the resource types to include
               in your scans.
               Three resource types are available for AWS accounts: Elastic Block Store (EBS), Elastic
               Container Registry (ECR), and AWS Lambda.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-features-permissions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-yfk7xr">AWS features and permissions</a>.</div>]]></description>
    <pubDate>Mon, 17 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulner-threat-detection</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Accounts now supports ingestion of AWS Virtual Private Cloud (VPC) flow logs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-aws-vpc-flow</link>
    <description><![CDATA[<div class="p">June 17, 2024—Enable this feature to gather VPC flow logs from your AWS account for
               XDR
               analysis in the Search app. Flow logs are enhanced with asset meta data and noise
               is removed,
               delivering broader visibility into asset connectivity with suspicious IP addresses
               and
               anomalous behaviors.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-features-permissions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-yfk7xr">AWS features and permissions</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">XDR Data Explorer</b></span></div>]]></description>
    <pubDate>Mon, 17 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-aws-vpc-flow</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Introducing AI Service Access from Zero Trust Secure Access</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-service-ztsa</link>
    <description><![CDATA[<div class="p">June 17, 2024—Secure user access to public generative AI services through AI Service
               Access. Prevent sensitive data leakage, prompt injection, and more while allowing
               your users to take advantage of AI capabilities. Enable AI Service Access and get
               centralized management of public AI service usage in your organization, advanced content
               filtering to ensure you meet compliance requirements, and keep malicious responses
               from affecting your environment. Go to <span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol">Secure Access Overview</b></span> to deploy the feature.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 17 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-service-ztsa</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>View device hardware information in device asset profiles</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-device-hardware-info-profiles</link>
    <description><![CDATA[<div class="p">June 17, 2024—Device asset profiles in Attack Surface Discovery are now able to display
               discovered basic hardware specifications such as manufacturer, model, CPU, RAM, and
               disk size. Find discovered details under the basic category within  the device asset
               profile.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 17 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-device-hardware-info-profiles</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Mark vulnerability risk events as dismissed, accepted, or remediated</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-event-dismiss-accept-remediate</link>
    <description><![CDATA[<div class="p">June 17, 2024—As with risk events in other risk factors, you may now mark events in
               the vulnerabilities risk factor as remediated, dismissed, or accepted. The new workflow
               helps streamline the process of managing risk events and CVEs. To learn more about
               the statuses, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-assessment#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-nhuwwn">Risk assessment</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 17 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-event-dismiss-accept-remediate</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>More details on daily Risk Index fluctuation now available in Threat and Exposure Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-detail-daily-risk-index-fluctuation</link>
    <description><![CDATA[<div class="p">June 17, 2024—Detailed data on daily Risk Index fluctuations, including contributing
               risk factors, risk events, and assets, is now available in Threat and Exposure Management.
               Hover over the Risk Index graph and click <b class="uicontrol">View daily risk events</b> to see the point change from the previous day and a breakdown of how many points
               each risk factor contributed to the change. Drill down to see individual risk events
               and a detailed daily timeline showing expired, new, remediated, and dismissed event
               instances.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 17 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-detail-daily-risk-index-fluctuation</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Support for SUSE Linux added to Vulnerability Assessment</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-suse-linux-vulnerability-assess</link>
    <description><![CDATA[<div class="p">June 17, 2024—Vulnerability assessment has been enhanced to support SUSE Linux Enterprise
               Server 12 and SUSE Linux Enterprise Server 15. The newly supported systems enable
               more granular analysis and improved CVE prioritization. Use the enhancement to strengthen
               your endpoint security and more effectively prioritize risks. For more information,
               see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerability-assessment-os#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-85">Vulnerability Assessment supported operating systems</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 17 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-suse-linux-vulnerability-assess</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>More granular analysis results for DMARC reports available in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-granular-dmarc-reports</link>
    <description><![CDATA[<div class="p">June 19, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> allows you to view your DMARC report
               data by sending source, including email service, hostname, and IP address. Besides,
               the solution
               now presents more details from raw DMARC reports in a readable format, enabling you
               to quickly
               drill down and identify the threats.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-byjlk8__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Wed, 19 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-granular-dmarc-reports</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Notification enhancement in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notification-enhancement-cegp</link>
    <description><![CDATA[<div class="p">June 19, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> now supports HTML format for system
               notifications. You can select either predefined or custom style for HTML notifications.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-26ndnp__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Wed, 19 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notification-enhancement-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Cloud Email Gateway Protection supports quishing detection for PDF attachments</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cegp-quishing-pdf</link>
    <description><![CDATA[<div class="p">April 19, 2024—In addition to detect quishing by scanning the QR code images attached
               or in the email body, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> now supports quishing detection for PDF attachments after you have enabled submission
               of suspicious files with QR codes to Virtual Analyzer.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-csh34o__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Wed, 19 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cegp-quishing-pdf</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Transfer ownership of the Primary User Account</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-transfer-primary-user-account</link>
    <description><![CDATA[<div class="p">June 19, 2024—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now
               supports the transfer of the Primary User Account to a local account within the same
               business. </div><div class="p">This feature is accessible to all customers, whether or not they have updated to the
               Foundation
               Services release.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-transfer-primary-account#GUID-BED80320-70E5-47C4-9530-CC26073D469D-x4v0am">Transferring ownership of the Primary User
                  Account</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">User Accounts</b></span></div>]]></description>
    <pubDate>Wed, 19 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-transfer-primary-user-account</guid>
    <category>Administration</category>
</item>
<item>
    <title>TrendAI Vision One - Companion now explains Observed Attack Techniques events</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-companion-oat-events</link>
    <description><![CDATA[<div class="p">June 19, 2024—Gain a better understanding of the Observed Attack Techniques events
               detected in
               your environment with the help of <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Companion.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-companion#Companion">TrendAI™ Companion</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Observed Attack Techniques</b></span></div>]]></description>
    <pubDate>Wed, 19 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-companion-oat-events</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Support for moving user-reported emails to Junk Email folder in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-emails-junk-email-cecp</link>
    <description><![CDATA[<div class="p">June 21, 2024—To help automatically removing emails from end users' inboxes that they
               have
               reported as spam or phishing through the <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> add-in for
               Outlook, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> now provides the option to move these emails
               to the end users' Junk Email folder.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-emails-junk-email-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Anomaly detection by Correlated Intelligence in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-anomaly-intelligence-cecp</link>
    <description><![CDATA[<div class="p">June 21, 2024—In addition to detecting security risks, Correlated Intelligence in
               <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> now supports detecting anomalies that deviate from
               normal behaviors and may require your attention. <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span>
               also provides visibility of anomaly detections, which allows you to have a more comprehensive
               view of your security landscape.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-anomaly-intelligence-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Official release of Gmail (Inline Mode) in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gmail-inline-mode-cecp</link>
    <description><![CDATA[<div class="p">June 21, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> officially launches Inline
               Protection for Gmail to scan inbound and outbound emails before they are delivered
               to their
               destinations, with no MX record change required. This protection mode blocks threats
               before they
               can reach your users' mailboxes and prevents data leakage before it actually takes
               place.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gmail-inline-mode-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Classic scheduled reports accessible in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scheduled-reports-cecp</link>
    <description><![CDATA[<div class="p">June 21, 2024—For customers who have updated to <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span>,
               instead of going to the classic console to view your scheduled reports created there,
               <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> now enables you to access these reports directly from the
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scheduled-reports-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Approved URL list for Time-of-Click Protection in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-url-time-click-protection-cecp</link>
    <description><![CDATA[<div class="p">June 21, 2024—To prevent URLs from being rewritten by Time-of-Click Protection in
               Web
               Reputation, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> now supports defining a list of URLs that
               can bypass Time-of-Click Protection.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-url-time-click-protection-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Cloud Risk Management Terraform Template Scanner Now Supports the Cloud Formation Template Scanner Resources</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-terraform-template-scanner-resource</link>
    <description><![CDATA[<div class="p">June 24, 2024—Cloud Risk Management Terraform Template Scanner (TS) is now Generally
               Available
               with parity of coverage of the following resource types with Cloud Formation Template
               Scanner:</div><ol class="ol" id="concept_fbk_2cl_vbc__ol_h5r_rcl_vbc">
<li class="li">Autoscaling Group</li>
<li class="li">CF Stack</li>
<li class="li">CloudTrail</li>
<li class="li">Kinesis Stream</li>
<li class="li">Lambda Function</li>
<li class="li">SNS Topic</li>
<li class="li">SQS Queue</li>
<li class="li">API Gateway RestAPI</li>
<li class="li">ELBv2</li>
<li class="li">ES Domain</li>
<li class="li">Workspaces</li>
<li class="li">ELB Classic</li>
<li class="li">Redshift Cluster</li>
<li class="li">EMR Cluster</li>
<li class="li">ElacticCache</li>
<li class="li">EFS File System</li>
</ol>]]></description>
    <pubDate>Mon, 24 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-terraform-template-scanner-resource</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Secret scanning is now available in Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-secret-scanning</link>
    <description><![CDATA[<div class="p">June 25, 2024—Container Security now supports secret scanning for container images.
               Secret
               scanning identifies sensitive and confidential data, such as passwords and API keys,
               that have
               inadvertently been publicly exposed. You can define whether to allow images to be
               deployed based
               on their scan results and configure the validity period of scan results.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Tue, 25 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-secret-scanning</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>New detailed view in Case Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-detailed-case-management</link>
    <description><![CDATA[<div class="p">June 26, 2024—Case Management now offers a detailed view of each case, allowing you
               to retrieve your case information and track progress easily.</div><div class="p">The new detailed view includes:</div><ul class="ul" id="WhatsNew_2024_06_26_caseManagement_5a14fdcf_6cac_4062_895c_8687d83fb8d4__ul_rb5_txp_wbc">
<li class="li">
<div class="p">Case activity.</div>
</li>
<li class="li">
<div class="p">Notes and comments.</div>
</li>
<li class="li">
<div class="p">Attachments.</div>
</li>
<li class="li">
<div class="p">Execution results from Security Playbooks.</div>
</li>
</ul><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management#case_management_main">Case Management</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Wed, 26 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-detailed-case-management</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Scan for malware and secrets in Artifact Scanner</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-inventory-filter-page</link>
    <description><![CDATA[<div class="p">June 27, 2024—<span class="tm">TrendAI™</span> Artifact Scanner (TMAS) now supports artifact scanning for malware
               and secrets. This helps to identify and manage sensitive and confidential data that
               might have been inadvertently exposed, like passwords and API keys. You can also
               integrate TMAS secret scan results with <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Container Security runtime
               policies to prevent secrets from reaching production environments.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-artifact-scanner-cli#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-gyb3w0">Artifact Scanner CLI</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Thu, 27 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-inventory-filter-page</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Expanded search &amp; filtering for Container Protection vulnerabilities</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-search-filter-container-vulner</link>
    <description><![CDATA[<div class="p">June 25, 2024 – Container Protection's <b class="uicontrol">Vulnerabilities</b> tab now features
               advanced search capabilities and enhanced data presentation, including the addition
               of 'Image
               Name' and 'CVSS Score' in the Detail View. Streamline your security analysis with
               expanded
               filters like fuzzy matching, multi-select dropdowns, and time range selections, all
               sortable by
               severity and time metrics.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Thu, 27 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-search-filter-container-vulner</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Advanced search and filtering for Container Protection events</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adv-search-filter-container</link>
    <description><![CDATA[<div class="p">June 25, 2024 – Container Protection’s <b class="uicontrol">Events</b> tab now features
               comprehensive search and filtering enhancements, allowing you to filter by action,
               operation,
               kind, and mitigation, and includes fuzzy matching for policies and namespaces. Experience
               new
               controls with multi-select options for cluster names and a custom time range feature
               to optimize
               your workflow across Deployment/Continuous, Kubernetes Runtime, and ECS Runtime environments.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Thu, 27 Jun 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adv-search-filter-container</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1316</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1316</link>
    <description><![CDATA[<section class="section" id="reference_bfz_fp2_jcc__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">July 15, 2024—Virtual Network Sensor version 1.0.1316 includes enhancements, bug fixes,
                  and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_bfz_fp2_jcc__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds support for deploying on the Nutanix AHV platform.</div>
</li>
<li class="li">
<div class="p">This update adds support for deploying on the Google Cloud platform.</div>
</li>
<li class="li">
<div class="p">This update upgrades the firmware platform to address vulnerabilities.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 01 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-version-1-0-1316</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.10</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-ver-3010</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-6__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">July 15, 2024—Service Gateway Firmware Version 3.0.10 delivers key enhancements, bug
                  fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-6__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update fixes the OpenSSH vulnerability CVE-2024-6387.</div>
</li>
<li class="li">
<div class="p">This update adds support for exclamation marks when setting passwords for the custom
                        proxy using CLISH commands.</div>
</li>
<li class="li">
<div class="p">This update automatically disables Cloud Service Extension if Forward Proxy Service
                        is
                        detected to be running improperly after enabling Cloud Service Extension.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 01 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-ver-3010</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Google Cloud Identity integration official release</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gcp-identity-integrate-official</link>
    <description><![CDATA[<div class="p">July 1, 2024—Google Cloud Identity integration with <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> is now officially available.
               Seamlessly integrate with Google Cloud Identity to enhance your security visibility
               and response
               with streamlined access, management, and risk. Go to <span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span> to set up the integration.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identity-integration-gcp#GoogleCloudIDIntegration">Google Cloud Identity integration</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 01 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gcp-identity-integrate-official</guid>
    <category>Administration</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 2.0.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forward-ps-july</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-33__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">July 1, 2024—Service Gateway Forward Proxy Service Version 2.0.3 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-33__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update adds a bug fix for the null pointer exception and uses the default DNS
                        server configured in the Service Gateway appliance during DNS resolution.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 01 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-forward-ps-july</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Identity Inventory available in private preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identity-inventory-preview</link>
    <description><![CDATA[<div class="p">July 1, 2024—As part of the Identity Security app group, Identity Inventory offers
               comprehensive identity tracking and management features for both human and non-human
               identities as well as assigned entitlements and privileges. View summaries of groups,
               roles, and devices registered with your identity provider, and see the current status
               of passwords and conditional access certificates to ensure your security practices
               are up to date. To get started, grant read and write permissions to your Microsoft
               Entra ID tenant in <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Identity Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Identity Inventory</b></span></div>]]></description>
    <pubDate>Mon, 01 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identity-inventory-preview</guid>
    <category>Identity Security</category>
</item>
<item>
    <title>Enable runtime security and runtime scanning on multiple ECS clusters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enable-runtime-security-scanning</link>
    <description><![CDATA[<div class="p">July 1, 2024 – To improve the ECS cluster management in your AWS environment, <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
               Container Inventory now allows you to enable or disable runtime security and runtime
               scanning on
               multiple Amazon ECS clusters.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-inventory#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-1p3dd3">Inventory/Overview</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Mon, 01 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enable-runtime-security-scanning</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Custom filters now support AWS Virtual Private Cloud flow logs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-filter-aws-virtual-cloud</link>
    <description><![CDATA[<div class="p">July 1, 2024—Custom detection filters now support AWS VPC flow log activity under
               the
               CLOUD_ACTIVITY event type and the VPC_ACTIVITY_LOG event ID.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-activity-data#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-a3lbr9">Network activity data sources</a>
               and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-activity-data#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-90">Cloud activity data sources</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Mon, 01 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-filter-aws-virtual-cloud</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Container Security now provides Terraform support</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cs-terraform</link>
    <description><![CDATA[<div class="p">July 4, 2024 – Container Security now supports asset configuration and management
               with
               Terraform. For details, see the <a class="xref" href="https://registry.terraform.io/providers/trendmicro/vision-one/latest" target="_blank">Vision One provider</a> in the Terraform registry.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Thu, 04 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cs-terraform</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Container Inventory now features Filter, Search, and page view</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-inventory-filter-search</link>
    <description><![CDATA[<div class="p">July 4, 2024—The Container Inventory app now features filter and search functions
               to
               streamline the process to locate container services within the table view. Additionally,
               Container Inventory has implemented a page view, making it easier to navigate the
               list. These
               features encompass K8S elements such as Clusters, Nodes, Pods, and Containers, as
               well as ECS
               components including Clusters, Services, Tasks, and Containers.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-inventory#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-1p3dd3">Inventory/Overview</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Thu, 04 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-inventory-filter-search</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Get visibility into malicious traffic with XDR for Cloud VPC Flow Log Monitoring</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-cloud-vpc-flow-log-monitoring</link>
    <description><![CDATA[<div class="p">July 8, 2024–Threat detection for AWS VPC Flow Logs is now available as a feature
               of XDR for Cloud. Once VPC flow log monitoring is enabled, <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> automatically analyzes the logs for any traffic activity related to suspicious or
               malicious IP addresses, and also monitors for malicious activity such as brute force
               attacks, access to sensitive database ports, data exfiltration, and more. Additionally,
               you can also use VPC flow logs to seep for indicators of compromise (IOCs) via the
               Threat Intelligence app, leveraging <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span></span>'s threat intelligence feed or imported 3rd-party IOC sources.</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-vi6f7m__ul_evf_jcq_zbc">
<li class="li">
<div class="p">To enable VPC flow log monitoring, go to <span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>
</li>
<li class="li">
<div class="p">To view VPC flow logs, go to <span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">XDR Data Explorer</b></span></div>
</li>
<li class="li">
<div class="p">To view threat detections from VPC flow logs, go to <span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>
</li>
</ul>]]></description>
    <pubDate>Mon, 08 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-cloud-vpc-flow-log-monitoring</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Endpoint Inventory Enhancements</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-enhancements</link>
    <description><![CDATA[<div class="p">July 11, 2024—You can now customize the table in Endpoint Inventory by adjusting column
               width and the number of items displayed per page. Your settings are saved automatically
               for the next time you access Endpoint Inventory.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Thu, 11 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-enhancements</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Add phishing simulations as a data source</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-phishing-simulations-data-source</link>
    <description><![CDATA[<div class="p">July 12, 2024 – You can now add <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Phishing Simulations as a data source in the
               Threat and Exposure Management, which allows access to breach events from phishing
               simulations. For more
               information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-configuring-data-sources#GUID-0371C0A9-8F03-4EAF-9459-6411489CE495">Configurating data sources</a>. </div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Fri, 12 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-phishing-simulations-data-source</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.46</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-46</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-73__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">July 15, 2024—ZTSA On-Premises Gateway Version 1.0.46 provides enhanced security and
                  connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-73__section_ohl_2gm_gcc">
<h3 class="section-title">New feature</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-73__ul_eld_hgm_gcc">
<li class="li">Authentication proxy service for NTLM/Kerberos authentication supports High
                        Availability with load balancer.</li>
<li class="li">Authentication proxy service for NTLM/Kerberos authentication supports multiple
                        on-premises Active Directory servers as round-robin or failover High Availability.</li>
</ul>
</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-73__section_rxh_mgm_gcc">
<h3 class="section-title">Enhancement</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-73__ul_oqv_ngm_gcc">
<li class="li">Enhanced  handling of changes in on-premises gateway status: healthy, unhealthy</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 15 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-46</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Virtual Network Sensor supports deployment to Google Cloud</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-supports-google-cloud</link>
    <description><![CDATA[<div class="p">July 15, 2024—The Virtual Network Sensor can now be deployed to your Google Cloud
               environment.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-getting-started-with_005" target="_blank">Virtual Network Sensor deployment guides</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 15 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-supports-google-cloud</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Disable Zero Trust Secure Access pop-up notifications in Mac and Windows</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-disable-ztsa-pop-up-notifications</link>
    <description><![CDATA[<div class="p">July 15, 2024—Users can now turn off Private Access system alerts for blocked access
               attempts
               from Secure Access Module settings. While pop-ups are disabled, a complete log of
               blocked events
               remains accessible within the module.</div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol"> Secure access configuration</b></span></div><div class="p">For more Information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-secure-access-module-deploy-ztsa#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xj4dze">Secure Access Module deployment</a>.</div>]]></description>
    <pubDate>Mon, 15 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-disable-ztsa-pop-up-notifications</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access enhanced support for on-premises AD servers</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-enhanced-support-for-prem-ad</link>
    <description><![CDATA[<div class="p">July 15, 2024—The Zero Trust Internet Access On-Premises Gateway service now supports
               multiple on-premises AD server integrations for NTLMv2 or Kerberos authentication.</div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol"> Secure Access Configuration</b> → <b class="uicontrol"> Internet Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 15 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-enhanced-support-for-prem-ad</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Nutanix AHV platform now supported for Virtual Network Sensor</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ahv-support-virtual-network-sensor</link>
    <description><![CDATA[<div class="p">July 15, 2024—<span class="tm">TrendAI™</span> Virtual Network Sensor now extends its platform support to include
               Nutanix AHV.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-getting-started-with_005" target="_blank">Virtual Network Sensor deployment guides</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 15 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ahv-support-virtual-network-sensor</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Custom Tagging in Attack Surface Discovery</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-tagging-asd</link>
    <description><![CDATA[<div class="p">July 15, 2024—Create and use custom tags for your organization’s assets in Attack
               Surface
               Discovery for better asset management.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 15 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-tagging-asd</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>View and manage IPv6 addresses in Internet-Facing Assets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-manage-ipv6-addresses</link>
    <description><![CDATA[<div class="p">July 15, 2024—IPv6 addresses are now supported for Public IPs in the Internet-Facing
               Assets
               section of Attack Surface Discovery. View discovered IPv6 addresses and add IPv6 addresses
               belonging to your organization. IPv6 addresses must be added individually—IPv6 ranges
               are not
               supported.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 15 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-manage-ipv6-addresses</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Agentless Vulnerability and Threat Detection Lambda support</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-lambda-support</link>
    <description><![CDATA[<div class="p">July 15, 2024—Agentless Vulnerability and Threat Detection supports vulnerability
               scanning on AWS Lambda functions.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentless-vulnerability-threat#Untitled">Agentless Vulnerability &amp; Threat Detection</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 15 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-lambda-support</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Attack Surface Risk Management extend Vulnerability Assessment support to Oracle Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asrm-vulnerability-oracle</link>
    <description><![CDATA[<div class="p">July 15, 2024—Vulnerability Assessment has been enhanced to support Oracle Linux Server
               6,
               Oracle Linux Server 7, Oracle Linux Server 8, and Oracle Linux Server 9. The newly
               supported
               distributions enable more granular analysis and improved CVE prioritization. Use the
               enhancement
               to strengthen your endpoint security and more effectively prioritize risks.</div><div class="p"> For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerability-assessment-os#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-85">Vulnerability Assessment supported operating systems</a>.</div>]]></description>
    <pubDate>Mon, 15 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asrm-vulnerability-oracle</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Introducing Security Awareness Training</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-introducing-security-awareness</link>
    <description><![CDATA[<div class="p">July 15, 2024—Security Awareness Training is now in public preview as part of the
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> platform. Designed to help you create a more resilient and security-conscious workforce
               while proactively strengthening your organization’s security posture, the app offers
               two powerful features: 
               <ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-33__ul_snn_jfn_fcc">
<li class="li">
<div class="p">Training Campaigns: Educate your employees on how to best protect their privacy and
                        your valuable assets. Engaging training modules cover essential topics such as password
                        management, suspicious activity identification, and safe internet usage.</div>
</li>
<li class="li">
<div class="p">Phishing Simulations: Test and enhance your employees' ability to recognize phishing
                        attempts by simulating real-world phishing emails. Evaluate and improve awareness
                        and response to potential threats.</div>
</li>
</ul>Security Awareness Training training and simulation results impact the Cyber Risk
               Exposure Management risk score of your assessed users to help you get a better picture
               of your security posture. Gain insights into the Security Awareness Training levels
               of your employees, and use the data to identify areas for improvement, tailor your
               training programs, and define effective plans to enhance security practices within
               your organization. Empower your workforce with the knowledge necessary to stand as
               the first line of defense against security breaches.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Awareness</b></span></div>]]></description>
    <pubDate>Mon, 15 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-introducing-security-awareness</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Server &amp; Workload Protection Agent deployment script now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-swp-agent-deployment-script</link>
    <description><![CDATA[<div class="p">July 16, 2024—Endpoint Security now supports deploying the Server &amp; Workload Protection
               Agent to your endpoints using a deployment script. You can download the script from
               Endpoint Inventory. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-using-endpoint-deployment-script#GUID-81EE6C86-00F5-4C9F-B261-4DC4F17AC5D7">Deploy agents using the deployment script</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Tue, 16 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-swp-agent-deployment-script</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Updated recommendations for Container Security policies and rulesets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-updated-recommend-policies-rulesets</link>
    <description><![CDATA[<div class="p">July 16, 2024—The recommendations for creating policies and rulesets for Container
               Security
               have been updated, including instructions for testing rules that are set to terminate
               or
               isolate, and an updated list of rulesets. For more information, see the <a class="xref" href="https://success.trendmicro.com/dcx/s/solution/000295676?language=en_US" target="_blank">Business Success portal</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Tue, 16 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-updated-recommend-policies-rulesets</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Announcing TMAS v2.0+</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-announcing-tmas-v2-0</link>
    <description><![CDATA[<div class="p">July 17, 2024 – Announcing <span class="tm">TrendAI™</span> Artifact Scanner (TMAS) v2.0+ with enhanced support for
               custom scanner combinations including the newly released secrets scanner. Users can
               run
               scanners independently or together, ensuring comprehensive security coverage tailored
               to their
               specific needs. This version also provides a more intuitive and standardized result
               output.
               For all changes, read WHATS-NEW.md included with the binary.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Protection</b> → <b class="uicontrol"> Artifact Scanner</b></span></div>]]></description>
    <pubDate>Wed, 17 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-announcing-tmas-v2-0</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Endpoint Security Introduces Agent Installer Proxy Settings</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-es-intro-agent-installer-proxy</link>
    <description><![CDATA[<div class="p">July 17, 2024—Endpoint Security introduces Agent Installer Proxy settings, replacing
               previous proxy settings, to configure proxies for initial agent deployment, installation,
               and registration to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Wed, 17 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-es-intro-agent-installer-proxy</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Enable AI App Guard to protect your AI apps and files</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-app-shield-protect</link>
    <description><![CDATA[<div class="p">July 17, 2024—Standard Endpoint Protection offers AI App Guard, which helps identify
               suspicious or untrusted programs attempting to modify AI apps and associated files.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-behavior-monitoring-policy-rules#GUID-CC4398FE-380A-4810-A371-AAF0C066601A">Event Monitoring</a>.</div><div class="p">
<span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Standard Endpoint Protection</b> → <b class="uicontrol">Policies</b> → <b class="uicontrol">Policy Management</b></span></div>]]></description>
    <pubDate>Wed, 17 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-app-shield-protect</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Custom correlation rules for anomaly detection available in Correlated Intelligence in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-correlation-rules-ci-cecp</link>
    <description><![CDATA[<div class="p">July 19, 2024 – Besides the <span class="tm">TrendAI™</span> predefined correlation rules, administrators can add
               custom correlation rules based on predefined detection signals to accommodate anomaly
               detection
               requirements in their environment. Administrators can apply custom correlation rules
               into the
               Correlated Intelligence security filter of ATP policies for Exchange Online and view
               details
               about detected anomalies in the <b class="wintitle">Operations</b> screen.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 19 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-correlation-rules-ci-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Access grant enhancement to OneDrive, SharePoint Online, and Microsoft Teams in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-access-grant-enhancement-cecp</link>
    <description><![CDATA[<div class="p">July 19, 2024 – For OneDrive, SharePoint Online, and Microsoft Teams, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> enhances the access grant process to remove dependency on
               Azure Communication Services, which is scheduled to retire in the future. When granting
               access to
               the above-mentioned services, administrators do not need to manually grant <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> permissions to receive notifications from Microsoft upon
               any change to the files on these services.</div><div class="p">This enhancement is not available for the US and EU sites in this release.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 19 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-access-grant-enhancement-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Create Security Awareness Training training campaigns targeting at-risk users in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-training-campaign-cecp</link>
    <description><![CDATA[<div class="p">July 19, 2024 – Administrators can now initiate Security Awareness Training campaigns
               from the following
               Dashboard widgets to provide training focused specifically on at-risk users: <b class="wintitle">Top 5
                  Users with Account Takeover Risks</b>, <b class="wintitle">Top 5 High-Risk Email
                  Recipients</b>, and <b class="wintitle">Top 5 Spam and Graymail Recipients</b>. When viewing
               these users on the widgets, the available operations now include the <b class="uicontrol">Create Training
                  Campaign</b> option.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 19 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-training-campaign-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Add to Block List response action available in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-add-to-block-list-action-cecp</link>
    <description><![CDATA[<div class="p">July 19, 2024 – <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> offers the <b class="uicontrol">Add to Block
                  List</b> response action to the <span class="menucascade"><b class="uicontrol">Operations</b> → <b class="uicontrol">User-Reported Emails</b></span> screen. It allows administrators to add senders in the end user-reported emails to
               the Suspicious Object List of <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div><div class="p"><span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> also supports the following account-based response
               actions on the <b class="wintitle">Top 5 Users with Account Takeover Risks Dashboard</b> widget:
               Disable User Account, Force Sign Out, Force Password Reset, Add to Block List</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 19 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-add-to-block-list-action-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Search by action available for URL click tracking logs in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-searchbyaction-url-click-logs-cecp</link>
    <description><![CDATA[<div class="p">July 19, 2024 – <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> adds a new search criterion
               (<b class="uicontrol">Action: Restricted</b>) in URL click tracking logs. Using this criterion,
               administrators are able to filter out URLs with actions "Blocked", "Warned and accessed",
               and
               "Warned and stopped”.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 19 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-searchbyaction-url-click-logs-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Restrict API access with authorized IP addresses</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-restrict-api-access</link>
    <description><![CDATA[<div class="p">July 22, 2024—The API Keys app now enables you to define and manage a list of authorized
               IP
               addresses for accessing <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> APIs.
               This enhancement adds an extra layer of security, ensuring that only traffic from
               trusted sources
               can access the APIs.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-platform-api-keys#GUID-E88BBD1F-EA82-4490-9C7F-E141E3BEE8F4-2">API Keys</a> (available to both customers that have updated to the Foundation Services release
               and those
               that have not).</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">API Keys</b></span></div>]]></description>
    <pubDate>Mon, 22 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-restrict-api-access</guid>
    <category>Administration</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.48</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-48</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-72__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">July 29, 2024—ZTSA On-Premises Gateway Version 1.0.48 provides enhanced security and
                  connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-72__section_ohl_2gm_gcc">
<h3 class="section-title">New feature</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-72__ul_eld_hgm_gcc">
<li class="li">Supports reverse proxy mode in On-Premises Gateway for either private AI Service
                        Access or general internet access. </li>
<li class="li">Supports rate limit in On-Premises Gateway in reverse proxy mode for private AI
                        Service Access</li>
</ul>
</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-72__section_rxh_mgm_gcc">
<h3 class="section-title">Enhancement</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-72__ul_oqv_ngm_gcc">
<li class="li">
<div class="p">Refines healthy checking logic for On-Premises Gateway</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 29 Jul 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-48</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.7</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-307</link>
    <description><![CDATA[<section class="section" id="RN_2024_08_SGActiveUpdate307_3aa74517_2415_42cb_b9c8_eb6079e6f3cb__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">August 27, 2024—Service Gateway Local ActiveUpdate Service Version 3.0.7 includes
                  enhancements, bug fixes, and security updates for the ActiveUpdate service hosted
                  on Service Gateway appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="RN_2024_08_SGActiveUpdate307_3aa74517_2415_42cb_b9c8_eb6079e6f3cb__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds an internal enhancement to reduce replication of SIG files for
                        ActiveUpdate servers.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Thu, 01 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-307</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.6</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-306</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-24__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">August 6, 2024—Service Gateway Local ActiveUpdate Service Version 3.0.6 includes enhancements,
                  bug fixes, and security updates for the ActiveUpdate service hosted on Service Gateway
                  appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-24__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds the function to automatically discover and purge automatically
                        inspected update sources that have been unused for over 14 days.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Thu, 01 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-306</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 2.0.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-205</link>
    <description><![CDATA[<section class="section" id="RN_2024_08_SG_FPS205_dae523f1_3f0c_4c1a_8f2d_8e579e0fa3c0__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">October 21, 2024—Service Gateway Forward Proxy Service Version 2.0.5 delivers key
                  enhancements, bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="RN_2024_08_SG_FPS205_dae523f1_3f0c_4c1a_8f2d_8e579e0fa3c0__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update enhances the DNS policy to fix network instability.</div>
</li>
<li class="li">
<div class="p">This update reduces unnecessary PTR requests to improve network performance and reduce
                        latency.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Thu, 01 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-205</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 2.0.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-204</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-32__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">August 6, 2024—Service Gateway Forward Proxy Service Version 2.0.4 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-32__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds a fix for a 502 error when both the custom proxy and cloud proxy
                        are
                        configured.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Thu, 01 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-204</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.12</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-ver-3012</link>
    <description><![CDATA[<section class="section" id="RN_2024_08_SGFirmware3012_8e4ad945_645c_4cc7_bde1_512d8d8b4f77__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">August 27, 2024—Service Gateway Firmware Version 3.0.12 includes enhancements, bug
                  fixes, and security updates for Service Gateway.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="RN_2024_08_SGFirmware3012_8e4ad945_645c_4cc7_bde1_512d8d8b4f77__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds a bug fix for updating the DNS server using a CLISH command.</div>
</li>
<li class="li">
<div class="p">This update adds an audit log for the CLISH commands <code class="codeph">exit</code> and
                        <code class="codeph">logout</code>.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Thu, 01 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-ver-3012</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.11</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-ver-3011</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-5__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">August 6, 2024—Service Gateway Firmware Version 3.0.11 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-5__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds support for using <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> certificates and bearer tokens for
                        authentication when accessing service gateway appliance information.</div>
</li>
<li class="li">
<div class="p">This update adds an internal enhancement to block traffic.</div>
</li>
<li class="li">
<div class="p">This update updates the libssh library to fix the security vulnerability
                        CVE-2023-48795.</div>
</li>
<li class="li">
<div class="p">This update adds a fix for a 502 error when both the custom proxy and cloud proxy
                        are
                        configured.</div>
</li>
<li class="li">
<div class="p">This update fixes network issues when the gateway router address of an appliance
                        changes.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Thu, 01 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-ver-3011</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Protect private general and generative AI service applications using on-premises gateways in reverse proxy mode for Zero Trust Secure Access Internet and AI Service Access</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-protect-private-gen-ai</link>
    <description><![CDATA[<div class="p">August 1, 2024—Connected on-premises gateways in Zero Trust Secure Access Internet
               Access and AI Service Access can now operate in reverse proxy mode. With Internet
               Access, use reverse proxy mode to protect your general private applications using
               access control, threat protection, and data loss protection (DLP). With AI Service
               Access, use reverse proxy mode to protect your private generative AI services using
               AI Service Access and rate limiting rules, enabling content inspection, preventing
               prompt injection, and stopping potential denial-of-service attacks. Enable the new
               service mode in <b class="uicontrol">Internet Access and AI Service Access Configuration</b>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Thu, 01 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-protect-private-gen-ai</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.49</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-49a</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-71__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">August 2, 2024—ZTSA On-Premises Gateway Version 1.0.49 provides enhanced security
                  and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-71__section_ohl_2gm_gcc">
<h3 class="section-title">Enhancement</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-71__ul_eld_hgm_gcc">
<li class="li">
<div class="p">Fixed the performance issue when downloading files via HTTP/2</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Fri, 02 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-49a</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Add objects to Network Resources from the Workbench, Search, and Observed Attack Techniques apps</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__whats-new-add-network-resources-2</link>
    <description><![CDATA[<div class="p">August 2, 2024—You can now use the context menu to add IP addresses and domains to
               the
               Trusted Domain List, Trusted Service Source List, or Network Group List, enhancing
               future
               detections from connected Deep Discovery Inspector appliances and Virtual Network
               Sensors.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Analysis Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Resources</b></span></div>]]></description>
    <pubDate>Fri, 02 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__whats-new-add-network-resources-2</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Add objects to Network Resources from the Workbench, Search, and Observed Attack Techniques apps</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-add-network-resources</link>
    <description><![CDATA[<div class="p">August 2, 2024—You can now use the context menu to add IP addresses and domains to
               the
               Trusted Domain List, Trusted Service Source List, or Network Group List, enhancing
               future
               detections from connected Deep Discovery Inspector appliances and Virtual Network
               Sensors.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Analysis Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Resources</b></span></div>]]></description>
    <pubDate>Fri, 02 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-add-network-resources</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Trend Companion explains Observed Attack Techniques events in the Search app</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-companion-oat-events-search-app</link>
    <description><![CDATA[<div class="p">August 5, 2024—When using the Observed Attack Techniques search method in the Search
               app, you
               can learn more about the events detected in your environment with the help of Trend
               Companion.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-companion#Companion">TrendAI™ Companion</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">XDR Data Explorer</b></span></div>]]></description>
    <pubDate>Mon, 05 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-companion-oat-events-search-app</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Container Inventory features Kubernetes group management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-kubernetes-management</link>
    <description><![CDATA[<div class="p">August 7, 2024—Container Inventory allows users to organize their Kubernetes clusters
               into
               groups for enhanced control and streamlined management. Asset Visibility Scope supports
               this
               feature by allowing specific permissions to be assigned by groups, facilitating more
               efficient
               management of clusters.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-inventory#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-1p3dd3">Inventory/Overview</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol"> Container Security</b> → <b class="uicontrol"> Container Inventory</b></span></div>]]></description>
    <pubDate>Wed, 07 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-kubernetes-management</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>More granular security checks for approved senders in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-more-granular-security-checks-CEGG</link>
    <description><![CDATA[<div class="p">August 12, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> adds Bypass Checks for approved
               senders in Sender Filter Settings. This allows you to determine which scanning criteria
               in
               Connection Filtering and Spam Filtering policies you want to apply on emails from
               approved
               senders.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-dl1f49__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Mon, 12 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-more-granular-security-checks-CEGG</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Improved inline action process in quarantine digest notifications in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-improved-inline-action-process-CEGP</link>
    <description><![CDATA[<div class="p">August 12, 2024—When end users click an inline action link in the quarantine digest
               notification, they're prompted to confirm on a dedicated page. This extra step ensures
               that
               actions are only taken with end users’ explicit consent, preventing unexpected access
               during
               notification transmission. </div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-acf6p6__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Mon, 12 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-improved-inline-action-process-CEGP</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access adds PoP site in AWS US West (Oregon)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-aws-west-oregon</link>
    <description><![CDATA[<div class="p">August 12, 2024—Zero Trust Secure Access Internet Access now offers support for the
               AWS US
               West (Oregon) region. Users in the region may configure their service FQDNs to reflect
               the new
               location. For more information on available PoP sites for the Internet Access Cloud
               Gateway, see
               <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-92" target="_blank">Port and FQDN/IP address requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 12 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-aws-west-oregon</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Enhanced cloud risk management with new Cloud Security Posture dashboard</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-202408-cloud-overview-dashboard</link>
    <description><![CDATA[<div class="p">August 12, 2024—You can now access the new Cloud Security Posture dashboard, which
               provides a
               comprehensive summary of cloud assets. Additionally, the page previously known as
               "Cloud
               Posture Overview" has been renamed to "Compliance and Misconfiguration."</div><div class="p">The Cloud Security Posture dashboard offers detailed insights into related risk findings,
               including
               misconfiguration, compliance, vulnerability, threats, identity risk, and data posture.</div><div class="p">These updates ensure a more streamlined and informative experience, enabling you to
               quickly
               identify and address potential risks in your cloud environment.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-wfe8x8">About Cloud Risk Management</a>.</div><div class="p"><b class="uicontrol">Cyber Risk Exposure Management</b> &gt; <b class="uicontrol">Cloud Risk Management</b> &gt; <b class="uicontrol">Cloud Risk Management</b></div>]]></description>
    <pubDate>Mon, 12 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-202408-cloud-overview-dashboard</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Server &amp; Workload Protection and Endpoint Sensor now support Debian 12 Linux OS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-support-debian-12-linux-os</link>
    <description><![CDATA[<div class="p">August 15, 2024—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports deploying Server &amp; Workload Protection and Endpoint
               Sensor to Debian 12 endpoints.</div><div class="p">For details on supported Linux platforms, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Thu, 15 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-support-debian-12-linux-os</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Network Security introduces Network Overview dashboard</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-overview-dashboard</link>
    <description><![CDATA[<div class="p">August 15, 2024—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Network Security introduces a new page called Network
               Overview. This dashboard provides an at-a-glance perspective into your organization's
               network
               security posture, including an overview of the vulnerabilities reported by the different
               network
               products that <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> offers. </div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-security" target="_blank">Network Security</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Overview</b></span></div>]]></description>
    <pubDate>Thu, 15 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-overview-dashboard</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Automated anomaly detection with pre-defined correlation rules in Correlated Intelligence in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-automated-anomaly-detection-CECP</link>
    <description><![CDATA[<div class="p">August 18, 2024 – When administrators enable Correlated Intelligence while creating
               a new ATP
               policy, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> automatically applies all pre-defined
               correlation rules for anomaly detection. These rules are categorized into three levels
               of
               aggressiveness, allowing administrators to tailor the enforcement of these rules according
               to
               their organization's security needs and email service requirements.</div><div class="p">For existing ATP policies, administrators need to manually configure whether to apply
               all or
               partial pre-defined rules.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Sun, 18 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-automated-anomaly-detection-CECP</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Exchange Online protection enhancement with Microsoft 365 activity data in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-eo-m365-activity-data-CECP</link>
    <description><![CDATA[<div class="p">August 18, 2024 – <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> enhances its protection
               capabilities for Exchange Online by integrating user behavior analysis. Organizations
               that permit
               access to their Exchange Online data can further enable <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> to read activity data through the Microsoft Graph API and Office 365 Management API.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Sun, 18 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-eo-m365-activity-data-CECP</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Custom data period for one-time reports in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-data-period-for-reports-CECP</link>
    <description><![CDATA[<div class="p">August 18, 2024 – <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> provides administrators with the
               flexibility to select custom time frames, ranging from days to months, for generating
               data in
               one-time reports, in addition to the fixed data periods.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Sun, 18 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-data-period-for-reports-CECP</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>XDR for Cloud - AWS VPC Flow Logs and Cloud Response for AWS now support AWS Organization connections</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-more-support-aws-organizations</link>
    <description><![CDATA[<div class="p">August 19, 2024—The "XDR for Cloud - AWS VPC Flow Logs" and "Cloud Response for AWS"
               features
               can now be enabled and deployed to AWS Organization accounts in the Cloud Accounts
               app.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 19 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-more-support-aws-organizations</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Endpoint Inventory table enhancements</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-table-enhancements</link>
    <description><![CDATA[<div class="p">August 19, 2024—Endpoint Inventory introduces further enhancements to improve user
               experience. In addition to previous enhancements including adjustable column width,
               you can now
               click-and-drag columns to rearrange the table, and more columns support sorting. Your
               settings
               are automatically saved for the next time you access Endpoint Inventory.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 19 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-table-enhancements</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Correlated Intelligence for inbound email threat detection in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ci-phaseone-cegp</link>
    <description><![CDATA[<div class="p">August 21, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> launches the Correlated Intelligence policy rules for Inbound Protection that can
               correlate the suspicious signals found across different scanning criteria (such as
               Virus Scan and Spam Filtering) to enrich threat detection for email services. With
               Correlated Intelligence capabilities, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> also provides the reasons why an email is detected as a threat.</div><div class="p"><span class="menucascade" id="whatsnew_lhd_d3c_lcc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Wed, 21 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ci-phaseone-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>XDR detections for Gen-AI applications in Amazon Bedrock</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-cloud-genai-apps-amazon-bedrock</link>
    <description><![CDATA[<div class="p">August 21, 2024—XDR for Cloud now provides monitoring capabilities for detecting possible
               attacks on Gen-AI applications in Amazon Bedrock. XDR for Cloud monitors for attempted
               and
               unauthorized deletion of guardrails and knowledge bases, and tampering with logging.
               These
               detections require the XDR for Cloud - AWS CloudTrail feature to be enabled on your
               connected AWS
               accounts. If you have already enabled the feature, the new detection capabilities
               are enabled by
               default.</div><div class="p">To enable XDR for Cloud - AWS CloudTrail, go to <span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span> and update the deployment stack.</div><div class="p">To view the new detection models, go to <span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span>.</div>]]></description>
    <pubDate>Wed, 21 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-cloud-genai-apps-amazon-bedrock</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.50</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-50a</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-70__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">August 26, 2024—ZTSA On-Premises Gateway Version 1.0.50 provides enhanced security
                  and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-70__section_ogx_n4c_mcc">
<h3 class="section-title">New Feature</h3>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-70__ul_ovp_x4c_mcc">
<li class="li">Supports user-based private generative AI service protection.</li>
</ul>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-70__section_ohl_2gm_gcc">
<h3 class="section-title">Enhancement</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-70__ul_eld_hgm_gcc">
<li class="li">
<div class="p">Fixed the diagnostic page incorrectly displaying a long latency between an endpoint
                           and gateway.</div>
</li>
<li class="li">
<div class="p">Enhanced on-premises gateways to reuse their configurations after being
                           restarted.</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 26 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-50a</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>XDR for Cloud usage graph now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-cloud-usage-graph-now-available</link>
    <description><![CDATA[<div class="p">August 26, 2024—Cloud Accounts now features a detailed graph displaying your current
               and
               historical data ingestion for XDR for Cloud, enabling you to track the volume of data
               analyzed.
               To view the usage graph, go to <span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span> and click <b class="uicontrol">Credit Usage</b>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 26 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-cloud-usage-graph-now-available</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Endpoint-based attack prevention/detection rule application impact now displayed</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-based-attack</link>
    <description><![CDATA[<div class="p">August 26, 2024—Applying host-based attack prevention/detection rules now impacts
               asset risk scores in Cyber Risk Exposure Management. When host, or endpoint-based,
               attack prevention/detection rules are successfully applied to vulnerable assets, the
               risk score of the assets will be reduced. CVEs that have available attack prevention/detection
               rules will display an indicator in the corresponding entry on an asset's profile screen,
               allowing you to more easily see which vulnerabilities can be mitigated. To learn more,
               see<a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-attack-prevention#concept_knz_rhx_mcc">Attack prevention/detection rules</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 26 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-based-attack</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Vulnerability assessment coverage extended to Rocky Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vuln-assessment-rocky-linux</link>
    <description><![CDATA[<div class="p">August 26, 2024—Attack Surface Risk Management vulnerability assessment coverage now
               extends to Rocky Linux. Use the new capability to strengthen your endpoint security
               and more effectively prioritize risk. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerability-assessment-os#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-85">Vulnerability Assessment supported operating systems</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 26 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vuln-assessment-rocky-linux</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Automated High-Risk Account Response playbooks now available in public preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-high-risk-acct-response</link>
    <description><![CDATA[<div class="p">August 26, 2024—Security Playbooks has introduced a new playbook template: Automated
               High-Risk Account Response. This playbook enables users to manage accounts with high
               risk scores
               by taking specified response actions. In addition to the standard user account actions,
               the
               playbook has expanded its functionality to add these accounts to a dedicate restricted
               user group
               within Zscaler. This integration allows for specific Zscaler policies to be applied
               directly to
               the group.</div><div class="p">To utilize this feature, users must configure one or both Zscaler integrations within
               the
               Third-Party Integration app.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-high-risk-account-response#GUID-B9AF4D90-2451-4B2A-B072-AA43E32A2E26">Manually create Automated High-Risk Account Response playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 26 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-high-risk-acct-response</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>SCORM courses available for Security Awareness Training Training Campaigns</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scorm-courses-saa</link>
    <description><![CDATA[<div class="p">August 28 2024—In addition to the video-based courses offered in Security Awareness
               Training Training Campaigns, you can now also select Sharable Content Object Reference
               Model, or SCORM courses. SCORM allows for more interactivity and the potential to
               track progress. Choose between the two types of training content for your recipients
               to gain more flexibility in how you deliver training, helping to better engage and
               educate your users. Whether you prefer the structured format of SCORM or the visual
               appeal of videos, you can now tailor the training experience to best suit your needs.
               Start exploring the SCORM courses in your phishing training campaigns and enhance
               your organization's cyberSecurity Awareness Training.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Awareness</b></span></div>]]></description>
    <pubDate>Wed, 28 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scorm-courses-saa</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>New exceptions available for XDR for Cloud - AWS CloudTrail detections</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-exceptions-for-s3-buckets</link>
    <description><![CDATA[<div class="p">August 30, 2024—Detection Model Management now supports creating detection exceptions
               for your Amazon S3 buckets using the bucket name. Set the Match Criteria field type
               to cloud_identifier, select requestParameters.bucketName for the field, and provide
               the bucket name.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Fri, 30 Aug 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-exceptions-for-s3-buckets</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1363</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor-version-1363</link>
    <description><![CDATA[<section class="section" id="reference_i3p_zxf_hdc__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">September 23, 2024—Virtual Network Sensor version 1.0.1363 includes enhancements,
                  bug fixes, and security updates.</div>
</section>]]></description>
    <pubDate>Sun, 01 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor-version-1363</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1341</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor-ver-1-0-1341</link>
    <description><![CDATA[<section class="section" id="reference_gnh_kfh_pcc__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">August 26, 2024—Virtual Network Sensor version 1.0.1341 provides enhanced network
                  monitoring and threat detection capabilities.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_gnh_kfh_pcc__ul_zjp_nfh_pcc">
<li class="li">
<div class="p">This update adds the ability for Virtual Network Sensor to collect and send TCP telemetry
                        to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sun, 01 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor-ver-1-0-1341</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.13</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-ver-3013</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-4__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">September 24, 2024—Service Gateway Firmware Version 3.0.13 includes enhancements,
                  bug fixes, and security updates for Service Gateway.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-4__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds a bug fix for increasing storage for Service Gateway appliances deployed
                        with AWS.</div>
</li>
<li class="li">
<div class="p">This update corrects the invalid K8S certificate time caused by wrong RTC time on
                        the Service Gateway appliance.</div>
</li>
<li class="li">
<div class="p">This update enhances the iptables to accommodate a large number of ports.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sun, 01 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-ver-3013</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>New alert types: Case update summary and Case update for owners</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notifications-case-update</link>
    <description><![CDATA[<div class="p">September 2, 2024—The Notifications app now includes two new alert types: <b class="uicontrol">Case
                  update summary</b> and <b class="uicontrol">Case update for owners</b>. The
               <b class="uicontrol">Case update summary</b> alert periodically sends notifications to
               specified recipients with a summary of case updates, while the <b class="uicontrol">Case update for
                  owners</b> alert notifies owners every time a case update occurs. For
               <b class="uicontrol">Case update summary</b>, you can specify which case updates you want the
               summary to include.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notification-case-update-summary#GUID-BED80320-70E5-47C4-9530-CC26073D469D-7znewl">Configure notifications for case update summary</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notifications-case-update-for-owner#GUID-BED80320-70E5-47C4-9530-CC26073D469D-j4nxt0">Configure notifications for case update for owners</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Notifications</b></span></div>]]></description>
    <pubDate>Mon, 02 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notifications-case-update</guid>
    <category>Administration</category>
</item>
<item>
    <title>Network Sensor for TippingPoint general release</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-for-tp-ga</link>
    <description><![CDATA[<div class="p">September 2, 2024—Network Sensor for TippingPoint now enters official release and
               comes with
               a 30-day free trial to evaluate the functionality and benefits. After the trial period
               end,
               credits are automatically allocated based on usage.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enable-network-sensor-for-tp" target="_blank">Enabling Network Sensor for TippingPoint</a>.</div><div class="p"><span class="menucascade" id="concept_vxv_vr3_4cc__networkInventoryPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b> → <b class="uicontrol">TippingPoint</b></span>
</div>]]></description>
    <pubDate>Mon, 02 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-sensor-for-tp-ga</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.51</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-51</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-69__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">September 9, 2024—ZTSA On-Premises Gateway Version 1.0.51 provides enhanced security
                  and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-69__section_ocx_5mt_pcc">
<h3 class="section-title">Enhancement</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-69__ul_eld_hgm_gcc">
<li class="li">
<div class="p">Updated the IP geolocation database to the latest version.</div>
</li>
<li class="li">
<div class="p">Fixed the issue where the HTTPS connection  with the TLS handshake could fail in some
                           situations.</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 09 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-51</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Standard Endpoint Protection supports Windows 11 ARM64</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sep-supports-windows-11-arm64</link>
    <description><![CDATA[<div class="p">September 9, 2024—You can now deploy the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent with Standard Endpoint Protection on endpoints with the Windows
               11 ARM64 operating system.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 09 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sep-supports-windows-11-arm64</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Set parameters for risk event rules</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-set-parameters-risk-event-rules</link>
    <description><![CDATA[<div class="p">September 9, 2024—You may now set specific parameters for the risk event rules for
               certain risk event types in Threat and Exposure Management. Add IP addresses, apps,
               rules, or days of the week as conditions that must be met for the risk event rule
               to apply. Setting parameters allows for more granular control over when a risk event
               rule is triggered.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 09 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-set-parameters-risk-event-rules</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Anomaly detection with predefined correlation rules in Correlated Intelligence in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-anomaly-detection-riskai-cegp</link>
    <description><![CDATA[<div class="p">September 18, 2024—In addition to detecting security risks, Correlated Intelligence
               in <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b> now supports detecting anomalies that deviate from normal behaviors and may require
               your attention. Based on the organization’s security needs, administrators can enable
               all or partial predefined correlation rules at three levels of aggressiveness and
               apply the rules to detect anomalies in Correlated Intelligence policy.</div><div class="p"><span class="menucascade" id="concept_flb_lz2_qcc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Wed, 18 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-anomaly-detection-riskai-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Email recovery for deleted emails in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-Email-recovery-cegp</link>
    <description><![CDATA[<div class="p">September 18, 2024—<b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b> provides Email Recovery to retain emails marked for deletion for 14 days. This allows
               for restoration of emails that were mistakenly deleted before they are permanently
               purged, which helps ensure your business continuity and reduce the risk of data loss.</div><div class="p"><span class="menucascade" id="concept_l4x_rz2_qcc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Wed, 18 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-Email-recovery-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Detection signal customization for Correlated Intelligence in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-detection-signal-riskai-cecp</link>
    <description><![CDATA[<div class="p">September 20, 2024 – In addition to predefined detection signals for Correlated Intelligence,
               <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> allows administrators to define custom signals by using predefined conditions to
               meet specific security needs. These custom signals can then be incorporated into correlation
               rules, enhancing the detection capabilities of <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> within their unique environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 20 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-detection-signal-riskai-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Dashboard configuration checks for Correlated Intelligence in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dashboard-config-checks-riskai-cecp</link>
    <description><![CDATA[<div class="p">September 20, 2024 – The Configuration Health tab on the <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> Dashboard is updated to include checks related to Correlated Intelligence, providing
               administrators with a streamlined overview of their security configurations.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 20 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dashboard-config-checks-riskai-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Automatic recovery of false positive emails for Exchange Online and Gmail in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-recovery-fps-cecp</link>
    <description><![CDATA[<div class="p">September 20, 2024 – <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> utilizes detection and quarantine logs to identify false positive emails detected
               by Advanced Spam Protection, Web Reputation, and Correlated Intelligence. It then
               automatically reverses the Quarantine, Move to Junk Email folder, Move to Spam actions,
               delivering the emails directly to end users' inboxes. This feature functions without
               user intervention and is independent of whether Retro Scan &amp; Auto Remediate is activated
               by administrators in Advanced Spam Protection and Web Reputation settings.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 20 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-recovery-fps-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.52</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-52</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-68__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">September 23, 2024—ZTSA On-Premises Gateway Version 1.0.52 provides enhanced security
                  and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-68__section_ocx_5mt_pcc">
<h3 class="section-title">Enhancement</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-68__ul_eld_hgm_gcc">
<li class="li">
<div class="p">AI service access for Gemini has been enhanced due to protocol changes.</div>
</li>
<li class="li">
<div class="p">Fixed the "no log" issue in ICAP mode when the URL is empty.</div>
</li>
<li class="li">
<div class="p">Fixed the high CPU usage issue when the configured syslog server is unavailable.</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 23 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-premises-gateway-v-1-0-52</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>New alert type in the Notifications app: Newly discovered assets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notification-new-assets</link>
    <description><![CDATA[<div class="p">September 23, 2024—The Notifications app has been enhanced with a new alert feature
               that notifies customers of new assets detected in their environment, which could pose
               significant risks.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notifications-new-assets#GUID-BED80320-70E5-47C4-9530-CC26073D469D-hfql4r">Configuring notifications for newly
                  discovered assets</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Notifications</b></span></div>]]></description>
    <pubDate>Mon, 23 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notification-new-assets</guid>
    <category>Administration</category>
</item>
<item>
    <title>Run osquery and YARA rules tasks from the Search app</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-platformized-osquery-yara-092324</link>
    <description><![CDATA[<div class="p">September 23, 2024—You can now trigger osquery and YARA rules response tasks from
               the context menu in the Search app, providing you flexibility when investigating potential
               incidents. You can also upload response scripts, osquery queries, and YARA rules on
               the Response Scripts tab in Response Management.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-actions-section#GUID-9254ED63-6714-4DD1-A9B8-29AD02028380">Response actions</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Response Management</b></span></div>]]></description>
    <pubDate>Mon, 23 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-platformized-osquery-yara-092324</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Manage opt-in and opt-out settings for individual pre-release features from Platform Directory</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-individual-prerelease-features</link>
    <description><![CDATA[<div class="p">September 23, 2024—You can now opt in to and out of individual pre-release features
               from Platform Directory, allowing you more granular control over which features you
               want to experience before official release. You can manage which users have permission
               to opt in to and out of pre-release features from User Roles. </div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-platform-directory#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-7mbdxg">Platform Directory</a>.</div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Platform Directory</b></div>]]></description>
    <pubDate>Mon, 23 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-individual-prerelease-features</guid>
    <category>Platform Directory</category>
</item>
<item>
    <title>Scan select AWS resources for malware</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scan-for-malware</link>
    <description><![CDATA[<div class="p">September 23, 2024—Agentless Vulnerability &amp; Threat Detection now supports malware
               scanning of AWS EBS, ECR, and Lambda resources. After enabling the feature for your
               connected AWS accounts in Cloud Accounts, Agentless Vulnerability &amp; Threat Detection
               begins scanning daily for threats like viruses, Trojans, spyware, and more. Get remediation
               options and metadata for performing threat hunting queries by examining associated
               risk events in <b class="uicontrol">Threat and Exposure Management</b>.</div><div class="p">Anti-malware scanning is disabled by default. Enabling anti-malware scanning increases
               your AWS operational costs. To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deployment-costs#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-qneaw6">Agentless Vulnerability &amp; Threat Detection estimated deployment costs for AWS</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 23 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scan-for-malware</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>See time-critical alerts for vulnerabilities in Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-time-critical-linux</link>
    <description><![CDATA[<div class="p">September 23, 2024—Time-critical vulnerability alerts now support Linux to give you
               more visibility into your organization’s security posture. Check alerts In Cyber Risk
               Overview to see which operating systems are affected by the vulnerability. View mitigation
               options for all supported operating systems, and if supported, mitigation actions
               are automatically detected after you apply them.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 23 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-time-critical-linux</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>CIS Kubernetes benchmark scanning now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cis-kubernetes-scanning-whatsnew</link>
    <description><![CDATA[<div class="p">September 24, 2024—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> – Container Security now supports compliance scanning with <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cis-kubernetes-benchmark-recs#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-85etqc">CIS benchmarks</a> in your Kubernetes clusters. Assess and guarantee adherence to industry-leading security
               standards effortlessly, enhancing your Kubernetes security posture.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-compliance-scanning#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-196t45">Compliance</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Protection</b></span></div>]]></description>
    <pubDate>Tue, 24 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cis-kubernetes-scanning-whatsnew</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Endpoint security policies now available for preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-security-policies-preview</link>
    <description><![CDATA[<div class="p">September 30, 2024—Endpoint security policies allow you to implement policy-based
               management of agent settings from a centralized location. Currently, you can use endpoint
               security policies to manage Endpoint Sensor settings, with more features coming soon;
               such as the state-of-the-art Deepfake Detector Technology and adjustable monitoring
               levels designed to optimize your security posture with advanced inspection tools such
               as the Network Content Inspection Engine.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security Policies</b></span></div>]]></description>
    <pubDate>Mon, 30 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-security-policies-preview</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Server &amp; Workload Protection and Endpoint Sensor now support SUSE Linux Enterprise Server 15 (AWS ARM-based Graviton 2)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-server-workload-suse-15-arm</link>
    <description><![CDATA[<div class="p">September 30, 2024—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports deploying Server &amp; Workload Protection and Endpoint
               Sensor to SUSE Linux Enterprise Server 15 (AWS ARM-based Graviton 2) endpoints.</div><div class="p">For details on supported Linux platforms, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 30 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-server-workload-suse-15-arm</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Server &amp; Workload Protection and Endpoint Sensor now support Ubuntu 24.04 64-bit (x86-64) Linux OS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-server-workload-ubuntu-24</link>
    <description><![CDATA[<div class="p">September 30, 2024—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports deploying Server &amp; Workload Protection and Endpoint
               Sensor to Ubuntu 24.04 64-bit (x86-64) endpoints.</div><div class="p">For details on supported Linux platforms, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 30 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-server-workload-ubuntu-24</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>New APIs available for Cloud Risk Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-checks-profiles-api</link>
    <description><![CDATA[<div class="p">September 30, 2024—The “Checks and Profiles” public APIs for Cloud Risk Management
               is now available on the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Automation Center. For more information, visit the <a class="xref" href="https://automation.trendmicro.com/xdr/home" target="_blank">Automation Center</a>.</div>]]></description>
    <pubDate>Mon, 30 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-checks-profiles-api</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Role-based targets in security playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-playbooks-role-based-targets</link>
    <description><![CDATA[<div class="p">September 30, 2024—Security playbooks now reflect the asset visibility scope of the
               user role that created them, targeting only the assets within that scope. This helps
               the organization with different asset visibility scopes to manage their security playbooks
               effectively.</div><div class="p">If the creator's user role is deleted, the playbook becomes deactivated until another
               user reactivates it by editing or enabling the playbook. Upon reactivation, the playbook
               applies to targets within the asset visibility scope of the user who reactivated it.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 30 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-playbooks-role-based-targets</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Enhanced endpoint filtering for Automated Response Playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-endpoint-filtering-playbooks</link>
    <description><![CDATA[<div class="p">September 30, 2024—Automated Response Playbooks now provide additional endpoint conditions,
               including endpoint name, endpoint type, and operating system, to filter targeted endpoints
               for the playbook.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-automated-response-playbooks#GUID-BED80320-70E5-47C4-9530-CC26073D469D-36">Manually create Automated Response Playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 30 Sep 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-endpoint-filtering-playbooks</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Send to sandbox for Virtual Network Sensor officially released</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-send-sandbox-vns-official-release</link>
    <description><![CDATA[<div class="p">October 1, 2024—The send to sandbox feature for Virtual Network Sensor is now officially
               released. Send to sandbox is a paid feature and requires 2000 credits for every 500
               Mbps of traffic scanned.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Tue, 01 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-send-sandbox-vns-official-release</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Enhanced Owner Assignment in Workbench and Case Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__enhanced-owner-assignment-wb-case-2</link>
    <description><![CDATA[<div class="p">October 4, 2024—Case Management and Workbench now support assigning SAML groups and
               IdP-only SAML groups as alert and case owners respectively.</div><div class="p">For detailed information and limitations, see the online help for <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-trend-vision-one-cases#trend_vision_one_cases_926303f6_e321_4b67_9391_bbfdbce05efe">Case Management</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-assigning-alerts#GUID-BED80320-70E5-47C4-9530-CC26073D469D-30">Workbench</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Fri, 04 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__enhanced-owner-assignment-wb-case-2</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Enhanced Owner Assignment in Workbench and Case Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-owner-assignment-wb-case</link>
    <description><![CDATA[<div class="p">October 4, 2024—Case Management and Workbench now support assigning SAML groups and
               IdP-only SAML groups as alert and case owners respectively.</div><div class="p">For detailed information and limitations, see the online help for <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-trend-vision-one-cases#trend_vision_one_cases_926303f6_e321_4b67_9391_bbfdbce05efe">Case Management</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-assigning-alerts#GUID-BED80320-70E5-47C4-9530-CC26073D469D-30">Workbench</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Fri, 04 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-owner-assignment-wb-case</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Define the structure of your organization with Asset Group Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-asset-group-management-preview</link>
    <description><![CDATA[<div class="p">October 8, 2024—The new Asset Group Management app is now available in public preview.
               In Asset Group Management, you can create groups of assets, designate tag values for
               the new Asset group tag, and assign a tag value to each asset group. By enabling you
               to analyze and manage specific subsets of assets, asset groups streamline your asset
               management and provide a foundation for powerful new features on the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> platform.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-group-management#assetGroupManagement_fc5b85cc_4d94_4130_8ca8_db240f272caf">Asset Group Management</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Service Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Asset Group Management</b></span></div>]]></description>
    <pubDate>Tue, 08 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-asset-group-management-preview</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Endpoint Inventory page view enhancements</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-oct-enhancements</link>
    <description><![CDATA[<div class="p">October 8, 2024—Endpoint Inventory now features two new features to enhance navigating
               the inventory list.</div><ul class="ul" id="concept_e3s_gqb_zcc__ul_opp_jqb_zcc">
<li class="li">
<div class="p">You can now navigate between pages by typing the exact page you want to view with
                     the page navigation input box.</div>
</li>
<li class="li">
<div class="p">If your organization has more than 200 endpoints in your inventory, you can increase
                     the per page view to 500 and 1000 endpoints per page.</div>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Tue, 08 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-oct-enhancements</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>View Risk Subindex per asset group in Cyber Risk Exposure Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-view-risk-subindex-per-asset-group</link>
    <description><![CDATA[<div class="p">October 8, 2024—Cyber Risk Overview now supports the ability to view and compare the
               Risk Index for specific subsets of assets. For example, you can monitor risk per business
               unit, region, information system, and more to determine which subset requires attention.
               To see the Risk Subindex, you must first build an asset grouping structure in <b class="uicontrol">Asset Group Management</b> and allocate tag values to assets groups of either "Attack Surface Discovery" or
               "Tag Inventory App". For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-overview" target="_blank">Risk Overview</a>.</div><div class="p"><span class="menucascade" id="_2024_10_08_view_risk_subindex_GUID_3552e934_6a7c_4e08_9707_670e562029b8__idExecutiveDashboardPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Tue, 08 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-view-risk-subindex-per-asset-group</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Container Image Scanning now viewable from the TrendAI Vision One console</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-container-image-scanning</link>
    <description><![CDATA[<div class="p">October 9, 2024—Container Security now supports access to detailed results and statistics
               for scanned artifacts on the Container Image Scanning page from the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console. View the scan results of registry image artifacts for vulnerabilities, malware,
               and secrets within your continuous integration (CI) or continuous delivery (CD) pipeline.
               </div><div class="p">For information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-image-scanning#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-3xmzgm">Container Image Scanning</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Protection</b></span></div>]]></description>
    <pubDate>Wed, 09 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-container-image-scanning</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.53</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-53</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-67__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">October 10, 2024—ZTSA On-Premises Gateway Version 1.0.53 provides enhanced security
                  and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-67__section_vx3_ygf_bdc">
<h3 class="section-title">Enhancement</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-67__ul_eld_hgm_gcc">
<li class="li">
<div class="p">Enhanced the message incomplete issue in some scenarios of ICAP REQMOD requests.</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Thu, 10 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-53</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Create cluster-managed policies in Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-cluster-managed-policies</link>
    <description><![CDATA[<div class="p">October 9, 2024—You can now interact directly with the Kubernetes API to create and
               manage Container Security cluster-managed policies and rulesets within your Kubernetes
               clusters. This integration facilitates seamless deployment of Container Security policies
               and rulesets with your GitOps workflows.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cluster-managed-policies#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-6mq5rr">Cluster-managed policies</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Inventory</b></span></div>]]></description>
    <pubDate>Thu, 10 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-cluster-managed-policies</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Accounts now supports excluding accounts when connecting AWS organizations</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-exclusion-aws-orgs</link>
    <description><![CDATA[<div class="p">October 14, 2024—You can now specify accounts to exclude when connecting or updating
               AWS Organizations in the Cloud Accounts app. This feature can be used to exclude certain
               accounts from being monitored by <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>, or to allow connecting excluded accounts individually to set up feature and account
               configurations different from the organization.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 14 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-accounts-exclusion-aws-orgs</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Proxy support for TippingPoint Network Sensor</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-proxy-support-for-xns-for-tp</link>
    <description><![CDATA[<div class="p">October 16, 2024—Network Inventory now supports the option to connect your TippingPoint
               Network Sensor to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> through a proxy. This configuration option is available only when you enable TippingPoint
               Network Sensor.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enable-network-sensor-for-tp" target="_blank">Enabling Network Sensor for TippingPoint</a>.</div><div class="p"><span class="menucascade" id="concept_tmk_t4w_tcc__networkInventoryPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b> → <b class="uicontrol">TippingPoint</b></span>
</div>]]></description>
    <pubDate>Wed, 16 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-proxy-support-for-xns-for-tp</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.54</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-54</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-66__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">October 21, 2024—ZTSA On-Premises Gateway Version 1.0.54 provides enhanced security
                  and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-66__section_dpy_mms_bdc">
<h3 class="section-title">New Features</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-66__ul_sb5_nms_bdc">
<li class="li">
<div class="p">Support to configure components update for the on-premises gateway.</div>
</li>
<li class="li">
<div class="p">Support for the Amazon Bedrock public AI service on advanced content inspection.</div>
</li>
</ul>
</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-66__section_vx3_ygf_bdc">
<h3 class="section-title">Enhancement</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-66__ul_eld_hgm_gcc">
<li class="li">
<div class="p">Increased the timeout value of the WRS query for the on-premises gateway. </div>
</li>
<li class="li">
<div class="p">Enhanced the gateway on the HTTPS handshake procedure with client certificate.</div>
</li>
<li class="li">
<div class="p"> Enhanced AI Service Access content inspection due to protocol change in public AI
                           services.</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 21 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-54</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Quarantined email preview enhancement in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-quarantine-preview-enhance-cegp</link>
    <description><![CDATA[<div class="p">October 21, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now supports enabling quarantined email preview in quarantine digest templates. This
               feature allows administrators to decide whether end users can preview quarantined
               emails in quarantine digests. The quarantine digest preview supports inline actions
               for improved user interaction, including options to deliver emails or approve senders.</div><div class="p">Additionally, enhancements are also made to allow end users and administrators to
               view HTML-rendered email content in the End User Console or the Quarantine Query Details
               screen.</div><div class="p"><span class="menucascade" id="concept_m2d_gmw_bdc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Mon, 21 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-quarantine-preview-enhance-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.14</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3014</link>
    <description><![CDATA[<div class="p">October 21, 2024—Service Gateway Firmware Version 3.0.14 includes enhancements, bug
               fixes, and security updates for Service Gateway.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-1rx50r__GUID-09957805-70E7-401F-A691-F587FCE2CB8B-2_ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update adds support for deploying the Service Gateway virtual appliance on the
                     Nutanix AHV (QCOW2) platform.</div>
</li>
<li class="li">
<div class="p">This update ensures additional route configurations remain persistent after a Service
                     Gateway reboot or upgrade.</div>
</li>
<li class="li">
<div class="p">This update provides a workaround for the SG-APL log rotation failure issue.</div>
</li>
<li class="li">
<div class="p">This update increases the password complexity requirements.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 21 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3014</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Cloud Risk Management includes Cloud Infrastructure Entitlement Management (CIEM)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-includes-ciem</link>
    <description><![CDATA[<div class="p">October 21, 2024—Get central visibility of your cloud entitlements and related risks
               in Cloud Risk Management. With over 200 different types of cloud resources currently
               available, cloud operations and security teams are increasingly challenges by the
               complexity of cloud infrastructure entitlement management. </div><div class="p">A dedicated entitlements tab in Cloud Security Posture now gives users centralized
               visibility into cloud identities and related risks. Take action and focus remediation
               efforts based on prioritized risks, including risky identity types, identity misconfigurations,
               and potential attack paths. To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-conformityentitlements#concept_b33_ks1_ddc">Entitlements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Cloud Security Posture</b></span></div>]]></description>
    <pubDate>Mon, 21 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-includes-ciem</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Assess for and view all CVEs in Cyber Risk Exposure Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-view-all-cves</link>
    <description><![CDATA[<div class="p">October 21, 2024—The Detected Vulnerabilities widget in Exposure Overview now displays
               CVEs by impact level, including detected low-impact CVEs. New widgets in Threat and
               Exposure Management allow you to filter CVEs by high, medium, and low impact. To learn
               more about how CVE impact scores are calculated, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cve-impact-score#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-nebuvz">Vulnerability impact score</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 21 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-view-all-cves</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>View All CVEs for Containers, Cloud VMs, and Serverless Functions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-all-cves-cloud</link>
    <description><![CDATA[<div class="p">October 21, 2024—Cyber Risk Exposure Management prioritizes the most critical vulnerabilities
               across your entire attack surface, allowing you to focus your remediation efforts.
               However, visibility into lower impact CVEs is now available for containers, cloud
               VMs, and serverless functions, providing you the vulnerability information you needs
               for compliance or internal audits. View lower impact CVEs in the Vulnerabilities section
               of Threat and Exposure Management or Exposure Overview in Cyber Risk Overview.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 21 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-all-cves-cloud</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Four more predefined conditions available in Correlated Intelligence in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-more-conditions-for-ci-cecp</link>
    <description><![CDATA[<div class="p">October 25, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> supports four more predefined conditions for defining custom detection signals in
               Correlated Intelligence. The conditions check the Reply-To domain activity, the Reply-To
               address activity, the URL domain registration age in email, and the sender address
               for anomaly detection in the customer’s environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 25 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-more-conditions-for-ci-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Enhanced Correlated Intelligence monitoring for existing ATP policies in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-ci-policy-monitoring-cecp</link>
    <description><![CDATA[<div class="p">October 25, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> enhances the monitoring of Correlated Intelligence detections without disrupting
               your email flow. This update automatically enables the Correlated Intelligence filter
               for policies where this filter is currently disabled, allowing you to keep track of
               Correlated Intelligence detections seamlessly while maintaining smooth email operations.
               Specifically,</div><ul class="ul" id="concept_kf2_p4w_bdc__ul_wvv_44t_1dc">
<li class="li">
<div class="p">For existing policies without Correlated Intelligence enabled, the action for Security
                     Risks is set to <b class="uicontrol">Pass</b>, and “All pre-defined rules” is selected for anomalies with the action set to <b class="uicontrol">Pass</b>.</div>
</li>
<li class="li">
<div class="p">For existing policies with Correlated Intelligence enabled, no changes are made to
                     the action for Security Risks. However, if “Specified pre-defined rules” was selected
                     for anomalies with no rules specified, it is changed to “All pre-defined rules” with
                     the action set to <b class="uicontrol">Pass</b>.</div>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 25 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-ci-policy-monitoring-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Automatic recovery of false positive emails marked for deletion in Exchange Online and Gmail in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-recovery-emails-deletion-cecp</link>
    <description><![CDATA[<div class="p">October 25, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> extends its capabilities to identify false positive emails detected by Advanced Spam
               Protection, Web Reputation, and Correlated Intelligence, and then automatically restore
               false positive emails marked for deletion in end users’ “Recoverable Items &gt; Deletions”
               folder in Exchange Online and the “Trash” folder in Gmail.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 25 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-recovery-emails-deletion-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Access token re-creation for Dropbox and Google Drive service accounts in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-access-token-recreation-cecp</link>
    <description><![CDATA[<div class="p">October 25, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> provides an option for administrators to re-create access tokens for the Dropbox
               and Google Drive service accounts when the current tokens become invalid or you want
               to refresh the existing token.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 25 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-access-token-recreation-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Identity Posture Assessment now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identity-posture-assessment</link>
    <description><![CDATA[<div class="p">October 28, 2024—Cyber Risk Assessment is introducing Identity Posture Assessment,
               a new complimentary feature for all users. This feature allows you to scan your organization's
               identity-related assets to detect the assets that might be exposed to attack and identify
               risk events that most put your assets at risk.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identity-posture-assess#GUID-BED80320-70E5-47C4-9530-CC26073D469D-g9kg2k">Identity Posture Assessment</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Assessment</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Assessment</b></span></div>]]></description>
    <pubDate>Mon, 28 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identity-posture-assessment</guid>
    <category>Assessment</category>
</item>
<item>
    <title>Find recommended trusted domains and service sources in Network Analysis Configuration</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-recommend-trusted-domains</link>
    <description><![CDATA[<div class="p">October 28, 2024—Attack Surface Discovery, part of Cyber Risk Exposure Management,
               is able to analyze your network and recommend domains and IP addresses to add as assets.
               You many now use this process to discover recommended domains and service sources
               to add to the Trusted Domains and Trusted Service Sources lists in Network Resources.
               Click <b class="uicontrol">Add Recommendations</b> in the corresponding tab to discover the assets and choose whether to add them to
               a trusted list.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Analysis Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Resources</b></span></div>]]></description>
    <pubDate>Mon, 28 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-recommend-trusted-domains</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Cloud Risk Management moving to Cloud Security app group</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-move</link>
    <description><![CDATA[<div class="p">October 28, 2024—On December 2nd, 2024, Cloud Risk Management will be fully relocated
               to the new Cloud Security app group, where you can get a unified view of your cloud
               resources and security. Until that date, you may access Cloud Risk Management from
               within the Cyber Risk Exposure Management app group or in the new Cloud Security app
               group.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Mon, 28 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-move</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>New security dashboard template: Cyber Insurance</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-dashboard-template</link>
    <description><![CDATA[<div class="p">October 28, 2024—Streamline your insurance application process with our new Cyber
               Insurance security dashboard template. This template summarizes critical cybersecurity
               data required by insurance carriers, aggregating essential security control metrics
               to help businesses effectively demonstrate their cybersecurity posture.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards</b></span></div>]]></description>
    <pubDate>Mon, 28 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-dashboard-template</guid>
    <category>Dashboards and Reports</category>
</item>
<item>
    <title>Version control policies now available for preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-version-control-preview</link>
    <description><![CDATA[<div class="p">October 31, 2024—Version control policies for Trend Endpoint Security provides policy-based
               management of agent and component updates in a centralized location. Additionally,
               <span class="tm">TrendAI™</span> delivers enhanced stability of the Trend Endpoint Agent through selective testing
               and staged rollouts, reducing risks and ensuring compatibility with your security
               environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Version Control Policies</b></span></div>]]></description>
    <pubDate>Thu, 31 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-version-control-preview</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>CIS OpenShift benchmark scanning now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-cis-openshift-scanning</link>
    <description><![CDATA[<div class="p">October 31, 2024—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> – Container Security now supports compliance scanning with <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-openshift-1-6-0-recommendations#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-2ryrxs">CIS benchmarks</a> in your Red Hat OpenShift clusters. Assess and guarantee adherence to industry-leading
               security standards effortlessly, enhancing your OpenShift security posture.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-compliance-scanning#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-196t45">Compliance</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Protection</b></span></div>]]></description>
    <pubDate>Thu, 31 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-cis-openshift-scanning</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Risk Management Events and Groups Public APIs now available on TrendAI Vision One Automation Center</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-events-groups-apis</link>
    <description><![CDATA[<div class="p">October 31, 2024—You can now access the new Cloud Risk Management public APIs for
               Events and Groups through the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> <a class="xref" href="https://automation.trendmicro.com/xdr/home" target="_blank">Automation Center</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security Posture</b> → <b class="uicontrol">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Thu, 31 Oct 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-events-groups-apis</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Service Gateway: Generic Caching Service 1.0.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-102</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-48__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">November 18, 2024—Service Gateway Generic Caching Service 1.0.2 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-48__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update adds an enhancement to the Service Gateway's ability to collect metrics
                        on the Generic Caching Service.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Fri, 01 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-102</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1393</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor-version-1393</link>
    <description><![CDATA[<section class="section" id="reference_zdx_myf_hdc__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">November 6, 2024—Virtual Network Sensor version 1.0.1393 includes enhancements, bug
                  fixes, and security updates for the Virtual Network Sensor.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_zdx_myf_hdc__ul_zjp_nfh_pcc">
<li class="li">
<div class="p">Virtual Network Sensor supports connecting to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> using a Service Gateway as a proxy. The connection option can be selected from Network
                        Inventory during deployment or from the connection settings menu.</div>
</li>
<li class="li">
<div class="p">Custom proxies for Virtual Network Sensor can now be configured from Network Inventory
                        during deployment or from the connection settings menu.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Fri, 01 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor-version-1393</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Extended Audit Log Query Period in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-extended-audit-log-query-cegp</link>
    <description><![CDATA[<div class="p">November 6, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> now allows administrators to query audit logs retained for up to 180 days, instead
               of the previous 30 days.</div><div class="p"><span class="menucascade" id="concept_f1c_m42_hdc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Wed, 06 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-extended-audit-log-query-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.55</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-55</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-65__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">November 11, 2024—ZTSA On-Premises Gateway Version 1.0.55 provides enhanced security
                  and connectivity features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-65__section_fbx_1ms_3dc">
<h3 class="section-title">Enhancements</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-65__ul_lzw_bms_3dc">
<li class="li">
<div class="p">Improved performance for HTTP/2 traffic.</div>
</li>
<li class="li">
<div class="p">Enhanced the authentication redirection handling for special requests like css/font/js.</div>
</li>
<li class="li">
<div class="p">Fixed the service abnormality if there is an IPv6 address in the X-Forwarded-For header.</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 11 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-55</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>You can now move Kubernetes clusters between groups in Container Inventory</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-move-kubernetes-clusters</link>
    <description><![CDATA[<div class="p">November 13, 2024—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Container Security now enables you to move Kubernetes clusters between groups in
               Container Inventory. This facilitates more efficient management of your clusters.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-inventory#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-1p3dd3">Inventory/Overview</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol"> Container Security</b> → <b class="uicontrol">Container Inventory</b></span></div>]]></description>
    <pubDate>Wed, 13 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-move-kubernetes-clusters</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Runtime Malware Scanning now available in Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-malware-scanning</link>
    <description><![CDATA[<div class="p">November 13, 2024—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Container Security now offers Runtime Malware Scanning to help you detect malicious
               software in your production containers. This new feature provides scheduled malware
               scans of running containers and threat detection to identify malware in your production
               environment. With this release, Container Security ensures comprehensive security
               coverage throughout your container lifecycle by actively monitoring for both vulnerabilities
               and malware threats in production workloads.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-security-scanning-kubernete#GUID-BED80320-70E5-47C4-9530-CC26073D469D-6eetgq">Enable Runtime Security and scanning features</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol"> Container Security</b></span></div>]]></description>
    <pubDate>Wed, 13 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-malware-scanning</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Risk Management Embedded Rules Knowledge Base Now Available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-embedded-rules</link>
    <description><![CDATA[<div class="p">November 14, 2024—You can now access the resolution information for failing
               misconfiguration rules within the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Cloud Risk Management console. For more
               information, see: <a class="xref" href="https://automation.trendmicro.com/xdr/home" target="_blank">Automation Center</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security Posture</b> → <b class="uicontrol">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Thu, 14 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-embedded-rules</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Enhanced reports with anomaly detection information in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-reports-ariskai-cecp</link>
    <description><![CDATA[<div class="p">November 15, 2024—Administrators can now choose to include anomaly detections in both
               one-time and scheduled reports. The report will show the total number of anomalies
               detected by Correlated Intelligence, provide a summary of these anomalies for each
               supported service, and highlight the top 5 senders and recipients of emails containing
               anomalies.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 15 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-reports-ariskai-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Access token re-creation with a different admin for collaboration services in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-token-recreate-different-admin-cecp</link>
    <description><![CDATA[<div class="p">November 15, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> enhances the access token re-creation process for Box, Dropbox, and Google Drive.
               Previously, access tokens can only be re-created using the same administrator of the
               current service account. Customers now are able to re-create access tokens with a
               different administrator, which is particularly useful when there are changes in team
               members.</div><div class="p">To ensure that quarantined files can be managed by the new administrator, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> also provides a guide to help customers transfer all existing quarantined files from
               the original administrator’s quarantine folder to the new administrator’s folder.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 15 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-token-recreate-different-admin-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Automatic recovery of false positive emails in Exchange Online (inline mode) and Gmail (inline mode) in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-recovery-3-cecp</link>
    <description><![CDATA[<div class="p">November 15, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> enhances its automatic recovery capabilities to identify false positive emails in
               Exchange Online (inline mode) and Gmail (inline mode). It then automatically reverses
               the Quarantine action, delivering these emails directly to end users’ inboxes.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 15 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-recovery-3-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.56</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gw-v-1-0-56</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-64__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">November 18, 2024—ZTSA Gateway Version 1.0.56 provides enhanced security and connectivity
                  features.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-64__section_xs2_wf4_jdc">
<h3 class="section-title">New Features</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-64__ul_mm2_4g4_jdc">
<li class="li">
<div class="p">Supports on-premises gateway integration with SPN Proxy to reduce the number of FQDNs
                           for firewall exceptions. </div>
</li>
<li class="li">
<div class="p">Support Anthropic/Claude public AI Service on advanced content inspection.</div>
</li>
</ul>
</div>
</section><section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-64__section_dl1_xf4_jdc">
<h3 class="section-title">Enhancements</h3>
<div class="p">
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-64__ul_dqz_1g4_jdc">
<li class="li">
<div class="p">Fixed the file scanning issue in ICAP mode with media/stream content.</div>
</li>
<li class="li">
<div class="p">Fixed the discovered faulty server certificate not being uploaded in certain conditions.</div>
</li>
<li class="li">
<div class="p">Enhanced the cache reloading mechanism after the AU update is completed.</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 18 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gw-v-1-0-56</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Custom tagging available for TrendAI Vision One resources deployed to AWS Cloud Accounts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-tagging-for-aws-accounts</link>
    <description><![CDATA[<div class="p">November 18, 2024—You can now add custom tags to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> resources deployed to your AWS accounts using the Cloud Accounts app. Use custom
               tags help support cost tracking, automation, and other downstream workflows that rely
               on AWS tags. The feature supports tagging resources deployed using CloudFormation.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 18 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-tagging-for-aws-accounts</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Pay-as-you-go billing now available for TrendAI Vision One cloud security solutions via AWS Marketplace</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-payg-now-available</link>
    <description><![CDATA[<div class="p">November 18, 2024—Pay only for what you use with consumption-based billing, available
               for customers who purchase a <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> pay-as-you-go contract from AWS Marketplace. The following offerings currently support
               pay-as-you-go, in addition to credits:
               <ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-6hkpgo__ul_lds_sxn_kdc">
<li class="li">
<div class="p">Cloud Risk Management</div>
</li>
<li class="li">
<div class="p">Container Security</div>
</li>
<li class="li">
<div class="p">File Security Storage</div>
</li>
</ul>
</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pay-as-you-go#PAYG_GUID_5461a4aa_2a57_4c36_9b8d_2da02c11e7a7">Pay-as-you-go</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">TrendAI™ Flex Licensing</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Platform Usage and Credits</b></span></div>]]></description>
    <pubDate>Mon, 18 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-payg-now-available</guid>
    <category>Administration</category>
</item>
<item>
    <title>Zero Trust Secure Access on-premises gateway supports consolidated FQDN for Smart Protection Network services</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-ztsa-prem-spn-consolidated-fqdn</link>
    <description><![CDATA[<div class="p">November 18, 2024—The Zero Trust Secure Access - Internet Access On-premises Gateway
               now integrates the Smart Protection Network Proxy for SPN-related service connections.
               This reduces the number of FQDN items required for firewall exceptions. For more details
               refer to <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-exception-requirements-for#GUID-778BDEF9-D1F1-4FB1-BF6E-BFBC46D00FEF">Firewall exception requirements for TrendAI Vision One™ </a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 18 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-ztsa-prem-spn-consolidated-fqdn</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Custom filters now support Email and Collaboration Activity logs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters-email-collab</link>
    <description><![CDATA[<div class="p">November 18, 2024—Create custom detection filters with the MESSAGE_ACTIVITY event
               type and COLLABORATION_ACTIVITY event ID to enhance email and collaboration activity
               detections.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-activity-data#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-91">Email and collaboration activity data sources</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Mon, 18 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters-email-collab</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>TrendAI Vision One - XDR for Cloud extends detection and response capabilities to Amazon Security Lake</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-for-cloud-amazon-security-lake</link>
    <description><![CDATA[<div class="p">November 25, 2024—XDR for Cloud now integrates with Amazon Security Lake, allowing
               customers to send their Security Lake data to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. Connect <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to your Amazon Security Lake to forward your CloudTrail Logs, VPC Flow Logs, WAF
               Logs, EKS Audit Logs, Route53 Resolver Query Logs, and SecurityHub Findings. Get actionable
               insight into your environment with XDR detection models that alert you about malicious
               and suspicious activity happening in your cloud resources, services, and network.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 25 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-for-cloud-amazon-security-lake</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Alibaba Cloud is now a supported cloud provider in Cyber Risk Exposure Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-alibaba-supported-cloud-provider</link>
    <description><![CDATA[<div class="p">November 25, 2024—Alibaba Cloud is now a supported service provider for cloud assets
               in Cyber Risk Exposure Management and Cloud Security, enhancing your Cloud Risk Management
               monitoring capabilities. To monitor Alibaba Cloud accounts, add your Alibaba Cloud
               account in Cloud Accounts.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div><div class="p"></div>]]></description>
    <pubDate>Mon, 25 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-alibaba-supported-cloud-provider</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Close related Workbench alerts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-close-related-workbench-alerts</link>
    <description><![CDATA[<div class="p">November 25, 2024—When closing a case associated with an insight, users can close
               all Workbench alerts for the insight. These related alerts can inherit the case findings
               if they do not already have findings. Alerts with existing findings keep those findings.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Workbench</b> → <b class="uicontrol">All Alerts</b></span></div>]]></description>
    <pubDate>Mon, 25 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-close-related-workbench-alerts</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Endpoint Sensor Agent firewall exceptions added</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-exceptions-2024-11-29</link>
    <description><![CDATA[<div class="p">November 29, 2024—Firewall exceptions were added for Endpoint Sensor Agents in all
               regions.</div><div class="p">New firewall exceptions:</div><ul class="ul" id="concept_pfy_jcw_mdc-2__ul_nwx_ncw_mdc">
<li class="li">
<div class="p">files.trendmicro.com</div>
</li>
<li class="li">
<div class="p">ipv6-iaus.trendmicro.com</div>
</li>
<li class="li">
<div class="p">ipv6-iaus.activeupdate.trendmicro.com</div>
</li>
<li class="li">
<div class="p">iaus.activeupdate.trendmicro.com</div>
</li>
<li class="li">
<div class="p">iaus.trendmicro.com</div>
</li>
</ul><div class="p">For more information see the firewall exceptions for your region: </div><ul class="ul" id="concept_pfy_jcw_mdc-2__ul_jvp_tcw_mdc">
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-americas-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-w5u3ny">Americas</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-australia-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-p68lat">Australia</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-europe-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-39yqlm">Europe</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-india-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-pcp8xx">India</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-japan-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-h9fiel">Japan</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-uae-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-f8rxzy">Middle East and Africa</a></div>
</li>
</ul>]]></description>
    <pubDate>Fri, 29 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-exceptions-2024-11-29</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Server &amp; Workload Protection now supports CPU usage control for Linux agents</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-server-workload-cpu-usage-control</link>
    <description><![CDATA[<div class="p">November 29, 2024—CPU usage control is now available for Server &amp; Workload Protection
               agents version 20.0.1-4540 and later. Use the feature to limit the impact of Anti-Malware
               Scans and Activity Monitoring on your endpoint or server processing resources.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-configure-cpu-usage-control#task_qnc_hcb_ndc">Configure CPU usage control</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Server &amp; Workload Protection</b> → <b class="uicontrol">Computers</b></span></div>]]></description>
    <pubDate>Fri, 29 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-server-workload-cpu-usage-control</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Cloud Risk Management Configurations &amp; Reports Public API Now Available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-reports-public-api-now-available</link>
    <description><![CDATA[<div class="p">November 29, 2024—You can now access the new Cloud Risk Management public APIs for
               Configurations
               &amp; Reports through the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> <a class="xref" href="https://automation.trendmicro.com/xdr/home" target="_blank">Automation Center</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Cloud Security Posture</b></span></div>]]></description>
    <pubDate>Fri, 29 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-reports-public-api-now-available</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Standard Endpoint Protection, Server &amp; Workload Protection, and Endpoint Sensor now support Windows 11 (24H2)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-endpoint-support-win-11-24h2</link>
    <description><![CDATA[<div class="p">November 29, 2024—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports Windows 11 (24H2) for <span class="ph" lang="en-us" xml:lang="en-us">Standard Endpoint Protection</span>, <span class="ph" lang="en-us" xml:lang="en-us">Server &amp; Workload Protection</span>, and <span class="ph" lang="en-us" xml:lang="en-us">Endpoint Sensor</span>-only deployments.</div><div class="p">For details on supported Windows platforms, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>. </div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security → Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Fri, 29 Nov 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-endpoint-support-win-11-24h2</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.8</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-308</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-23__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">December 3, 2024—Service Gateway Local ActiveUpdate Service Version 3.0.8 includes
                  enhancements, bug fixes, and security updates for the ActiveUpdate service hosted
                  on Service Gateway appliances.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-23__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update enhances stability to prevent the download process from hanging.</div>
</li>
<li class="li">
<div class="p">This update upgrades aiohttp to the latest version to address vulnerabilities CVE-2023-49081,
                        CVE-2023-49082, and BDSA-2024-5281.</div>
</li>
<li class="li">
<div class="p">This update improves the stability of product update downloads in Local ActiveUpdate.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sun, 01 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-308</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.16</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3016</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-2__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">December 16, 2024—Service Gateway Firmware Version 3.0.16 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-2__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update introduces enhancements to the audit logs of Service Gateway virtual appliances.</div>
</li>
<li class="li">
<div class="p">This update includes new CLI commands to support enhanced Internet Access configuration.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sun, 01 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3016</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.15</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3015</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-3__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">December 3, 2024—Service Gateway Firmware Version 3.0.15 includes enhancements, bug
                  fixes, and security updates for Service Gateway.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-3__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update enables the Service Gateway to support Simple Network Management Protocol
                        (SNMP).</div>
</li>
<li class="li">
<div class="p">This update allows Nutanix to support two images of different sizes.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sun, 01 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3015</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Server &amp; Workload Protection firewall exceptions added</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-exceptions-mea-12-02-2024</link>
    <description><![CDATA[<div class="p">December 2, 2024—Firewall exceptions were added for Server &amp; Workload Protection in
               the Middle East and Africa region.</div><div class="p">New firewall exceptions:</div><ul class="ul" id="RN_FirewallExceptions_MEA_2024_12_2_a7ec0dd0_02d0_41ca_bd07_9a85f4363aae__ul_f5g_rzd_yxb">
<li class="li">
<div class="p">workload.ae-1.cloudone.trendmicro.com</div>
</li>
<li class="li">
<div class="p">agents.workload.ae-1.cloudone.trendmicro.com</div>
</li>
<li class="li">
<div class="p">&lt;agents-001 through agents-010&gt;.workload.ae-1.cloudone.trendmicro.com</div>
</li>
<li class="li">
<div class="p">agent-comm.workload.ae-1.cloudone.trendmicro.com</div>
</li>
<li class="li">
<div class="p">dsmim.workload.ae-1.cloudone.trendmicro.com</div>
</li>
<li class="li">
<div class="p">relay.workload.ae-1.cloudone.trendmicro.com</div>
</li>
<li class="li">
<div class="p">xdr-resp-ioc.workload.ae-1.cloudone.trendmicro.com</div>
</li>
<li class="li">
<div class="p">gateway.workload.ae-1.cloudone.trendmicro.com</div>
</li>
<li class="li">
<div class="p">gateway-control.workload.ae-1.cloudone.trendmicro.com</div>
</li>
</ul><div class="p">For more information, see the firewall exceptions for your region: </div><ul class="ul" id="RN_FirewallExceptions_MEA_2024_12_2_a7ec0dd0_02d0_41ca_bd07_9a85f4363aae__ul_jvp_tcw_mdc">
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-uae-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-f8rxzy">Middle East and Africa</a></div>
</li>
</ul>]]></description>
    <pubDate>Sun, 01 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-exceptions-mea-12-02-2024</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Standard Endpoint Protection firewall exceptions added</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-exceptions-2024-12-02</link>
    <description><![CDATA[<div class="p">December 2, 2024—Firewall exceptions were added for Standard Endpoint Protection in
               all regions.</div><div class="p">New firewall exceptions:</div><ul class="ul">
<li class="li">
<div class="p">aurd-test2.activeupdate.trendmicro.com</div>
</li>
<li class="li">
<div class="p">support-connector-api.manage.trendmicro.com</div>
</li>
<li class="li">
<div class="p">support-connector-service.manage.trendmicro.com</div>
</li>
<li class="li">
<div class="p">supportconnectorpacks.manage.trendmicro.com</div>
</li>
<li class="li">
<div class="p">rpcollectedthings.blob.core.windows.net</div>
</li>
</ul><div class="p">For more information see the firewall exceptions for your region: </div><ul class="ul" id="concept_pfy_jcw_mdc__ul_jvp_tcw_mdc">
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-americas-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-w5u3ny">Americas</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-australia-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-p68lat">Australia</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-europe-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-39yqlm">Europe</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-india-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-pcp8xx">India</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-japan-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-h9fiel">Japan</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-uae-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-f8rxzy">Middle East and Africa</a></div>
</li>
</ul>]]></description>
    <pubDate>Sun, 01 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-exceptions-2024-12-02</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.57</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-57</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-63__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">December 2, 2024—Zero Trust Secure Access On-premises Gateway Version 1.0.57 includes
                  optimization for local cache mechanisms.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-63__ul_n5c_fdp_4dc">
<li class="li">Optimized the local cache mechanism in peak hours for better user/group information
                     handling.</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 02 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-57</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>XDR for Cloud - VPC Flow Log Monitoring now supports AWS region me-south-1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vpc-flow-log-supports-me-south-1</link>
    <description><![CDATA[<div class="p">December 2, 2024—XDR for Cloud - VPC Flow Log Monitoring extends AWS VPC Flow Log
               monitoring support to the me-south-1 region. Deploy VPC Flow Log Monitoring in this
               region to leverage advanced capabilities to analyze network traffic and enhance threat
               detection.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 02 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vpc-flow-log-supports-me-south-1</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Server &amp; Workload Security SAP Scanner feature now uses TrendAI Vision One credits</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sap-scanner-uses-credits</link>
    <description><![CDATA[<div class="p">December 2, 2024—You can now allocate credits to enable SAP Scanner for <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Endpoint Security (Pro). You can view your current credit balance in the Platform
               Usage and Credits app to help estimate future credit usage. Additionally, all existing
               SAP Scanner licenses are automatically converted to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> credits upon updating from Cloud One Endpoint &amp; Workload Security to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Server &amp; Workload Security.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Server &amp; Workload Protection</b></span></div>]]></description>
    <pubDate>Mon, 02 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sap-scanner-uses-credits</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Automated tagging for security resources deployed to your AWS environment</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-automated-tagging-resources-aws</link>
    <description><![CDATA[<div class="p">December 2, 2024—Automated tagging is now available for resources deployed to your
               AWS account by the Cloud Accounts app. Resources deployed by the Cloud Accounts app
               have the "TrendMicroProduct" tag added. You can use these tags to track resources
               and costs from the Cloud Accounts features. To add the tags to an existing connection,
               update your AWS account resource stack.</div><div class="p">For more information, see .<a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-rf9kyn">Resources deployed in AWS environments</a></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 02 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-automated-tagging-resources-aws</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Standard Endpoint Protection Exception Lists now features Rule Exceptions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-standard-endpoint-rule-exceptions</link>
    <description><![CDATA[<div class="p">December 3, 2024—Standard Endpoint Protection now supports adding detection exceptions
               based on Rule IDs to exclude specified rules from Anti-Malware Scans, Behavior Monitoring,
               and Suspicious Connection.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Standard Endpoint Protection</b></span></div>]]></description>
    <pubDate>Tue, 03 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-standard-endpoint-rule-exceptions</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>New Widgets added to Security Posture Dashboard under Cloud Risk Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-widgets-added-cp</link>
    <description><![CDATA[<div class="p">December 4, 2024—We've added four new widgets in the Security Dashboard for Cloud
               Risk Management
               app under <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-overview-dashboard" target="_blank">Cloud Security Posture</a>, for a quick view of your
               overall Cloud Risk Management. The new widgets are:  Protection,  Potential Attack
               Path,
               Security Posture, and Compliance. </div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b></span><span class="menucascade"><b class="uicontrol">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Wed, 04 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-widgets-added-cp</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Context menu for highlighted objects</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-highlighted-objects-context-menu</link>
    <description><![CDATA[<div class="p">December 4, 2024—Workbench users can access response actions and detailed profiles
               from the context menu on the Highlighted Objects tab.</div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Wed, 04 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-highlighted-objects-context-menu</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Email warning banner available for Anomaly Detection by Correlated Intelligence in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-warning-banner-riskai-cecp</link>
    <description><![CDATA[<div class="p">December 6, 2024—Besides the Add-in for Outlook for end user feedback, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> provides an option in ATP policy configuration for administrators to add a warning
               banner at the top of incoming anomalous emails detected by Correlated Intelligence
               predefined correlation rules. This serves as another approach for end users to report
               emails to <span class="tm">TrendAI™</span> as false positives or false negatives to help improve threat detection. The banner
               also provides a rationale for the warning to advise end users on exercising caution
               when interacting with the message.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 06 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-warning-banner-riskai-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Two more predefined detection signals available for Correlated Intelligence in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-riskai-signals-private-cecp</link>
    <description><![CDATA[<div class="p">December 6, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> supports two predefined detection signals that incorporates social graph data between
               senders and recipients for anomaly detection in Correlated Intelligence. The signals
               check for the newly observed sender addresses and domains based on recipients within
               the last 30 days to help anomaly detection in the customer’s environment.</div><div class="p">These detection signals are not available in all regions.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 06 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-riskai-signals-private-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>DLP expression performance check in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dlp-expression-perf-check-cecp</link>
    <description><![CDATA[<div class="p">December 6, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> conducts a performance check on custom expressions for Data Loss Prevention (DLP)
               to ensure that they have suitable matching performance. When administrators create
               and save an expression, the back-end conducts a performance check. Based on the results,
               the system either confirms that the expression can be saved successfully or displays
               a warning advising the administrator to review and update the expression before saving
               again.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 06 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dlp-expression-perf-check-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Enhanced third-party ticketing and notification options in Case Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-third-party-ticketing-conf</link>
    <description><![CDATA[<div class="p">December 6, 2024—Case Management now offers granular control over third-party ticketing
               system integration and notification settings at the individual case level. </div><div class="p">You can configure case-specific ServiceNow ticket destinations and customize notification
               channels through webhooks and email, enabling bi-directional synchronization between
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> cases and external ticketing systems.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Fri, 06 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-third-party-ticketing-conf</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Boost brand visibility with BIMI in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-bimi-support-cegp</link>
    <description><![CDATA[<div class="p">December 9, 2024—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> enhances your DMARC enforcement with Brand Indicators for Message Identification
               (BIMI), allowing you to display your brand’s logo in recipient inboxes. Administrators
               can verify if their published BIMI records are correctly set up and active, or they
               can create a BIMI record and preview it in the administrator console before publishing
               it in DNS. This feature helps increase your brand visibility and builds customer trust.</div><div class="p"><span class="menucascade" id="concept_xvv_lz3_ndc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Mon, 09 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-bimi-support-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>AI-generated incident investigation reports</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-incident-investigation-reports</link>
    <description><![CDATA[<div class="p">December 9, 2024—Generate comprehensive PDF reports for true-positive Workbench cases
               that originate from Workbench Insights. </div><div class="p">Companion can now generate PDF reports that include Workbench Insights summaries,
               threat activity timelines, actions taken, and recommendations to help security teams
               quickly understand and communicate investigation findings.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Mon, 09 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-incident-investigation-reports</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Sync Cyber Risk Exposure Management case information with ServiceNow</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sync-case-information-servicenow</link>
    <description><![CDATA[<div class="p">December 9, 2024—You can now use Case Management to synchronize Cyber Risk Exposure
               Management case information into ServiceNow. When creating a ticket profile for the
               <b class="b"><span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> for ServiceNow Ticketing System</b>, select "Cyber Risk Exposure Management case" from the <b class="b">Case type</b> list. Then, when users open a case in Threat and Exposure Management, they can select
               the ticket profile to synchronize the case with ServiceNow. </div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-config-case-management-ticket#serviceNow_CaseManagement">Configure ServiceNow ITSM to enable TrendAI Vision One™ for ServiceNow ticketing system</a>.</div><div class="p">
<div class="note" id="WhatsNew_2024_12_09_sync_attack_surface_risk_management_case_information_with_servicenow_61332cd8_ecee_402b_98ce_9f781b3307bf__note_e1h_gkf_pdc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">To use this feature, you must install or upgrade to <a class="xref" href="https://store.servicenow.com/sn_appstore_store.do#!/store/application/193655b8db862010dfad85184b96190f/2.1.21?referer=%2Fstore%2Fsearch%3Flistingtype%3Dallintegrations%25253Bancillary_app%25253Bcertified_apps%25253Bcontent%25253Bindustry_solution%25253Boem%25253Butility%25253Btemplate%25253Bgenerative_ai%25253Bsnow_solution%26q%3Dtrend%2520micro&amp;sl=sh" target="_blank">TrendAI Vision One™ Connector</a> 2.2 or later in ServiceNow.</div>
</td>
</tr>
</table>
</div>
</div><div class="p"><span class="menucascade" id="WhatsNew_2024_12_09_sync_attack_surface_risk_management_case_information_with_servicenow_61332cd8_ecee_402b_98ce_9f781b3307bf__caseManagementPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Mon, 09 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sync-case-information-servicenow</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>New taskstatus command available for remote shell</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-remote-shell-taskstatus-command</link>
    <description><![CDATA[<div class="p">December 9, 2024—The Start Remote Shell Session response action now supports the <code class="codeph">taskstatus</code> command, which allows you to view the status of the response tasks created in the
               current remote shell session.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-start-remote-shell-session-task#GUID-767E7FDE-CC74-4425-8EC0-0E3ED86F4185">Start remote access (formerly shell) session task</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Response Management</b></span></div>]]></description>
    <pubDate>Mon, 09 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-remote-shell-taskstatus-command</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Case Management now supports Cyber Risk Exposure Management cases</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__case-management-supports-asrm-cases-2</link>
    <description><![CDATA[<div class="p">November 29—To streamline your risk reduction workflows, in Case Management you can
               now assign priority and ownership to cases containing risk events from Threat and
               Exposure Management. When you open a case in Threat and Exposure Management, you can
               choose which third-party ticketing system, webhook channel, or email address to notify.</div><div class="p"><span class="menucascade" id="case_management_supports_attack_surface_risk_management_cases_0ed2c8bf_0164_4f9b_9b6e_f721755d0607-2__idRiskInsightsPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div><div class="p"><span class="menucascade" id="case_management_supports_attack_surface_risk_management_cases_0ed2c8bf_0164_4f9b_9b6e_f721755d0607-2__caseManagementPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Mon, 09 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__case-management-supports-asrm-cases-2</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Create new cases or assign risk events to existing cases directly in Cyber Risk Exposure Management apps</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-cases-asrm</link>
    <description><![CDATA[<div class="p">December 9, 2024—Resolving risk events is an important task for security operations
               team members and IT operations. In large organizations, many individuals are involved
               in risk mitigation tasks, Requiting team members to leverage Case Management for more
               efficient collaboration. Now in Threat and Exposure Management, users can create new
               cases or assign risk events to existing cases. Cases can be closed after marking risk
               event statuses as risk mitigated, dismissed or accepted. All tasks related to the
               case can be viewed and managed from Case Management.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 09 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-cases-asrm</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Case Management now supports Cyber Risk Exposure Management cases</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management-supports-asrm-cases</link>
    <description><![CDATA[<div class="p">November 29—To streamline your risk reduction workflows, in Case Management you can
               now assign priority and ownership to cases containing risk events from Threat and
               Exposure Management. When you open a case in Threat and Exposure Management, you can
               choose which third-party ticketing system, webhook channel, or email address to notify.</div><div class="p"><span class="menucascade" id="case_management_supports_attack_surface_risk_management_cases_0ed2c8bf_0164_4f9b_9b6e_f721755d0607__idRiskInsightsPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div><div class="p"><span class="menucascade" id="case_management_supports_attack_surface_risk_management_cases_0ed2c8bf_0164_4f9b_9b6e_f721755d0607__caseManagementPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Mon, 09 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-case-management-supports-asrm-cases</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Related Observed Attack Techniques event suggestions for Workbench Insights</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oat-event-suggestions-for-insights</link>
    <description><![CDATA[<div class="p">December 9, 2024—Companion now suggests related Observed Attack Techniques events
               when you are working with Workbench Insights. This feature helps SOC analysts conduct
               more thorough investigations by identifying and incorporating relevant events.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Observed Attack Techniques</b></span></div>]]></description>
    <pubDate>Mon, 09 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oat-event-suggestions-for-insights</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>MITRE TTP notifications in Workbench</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-mitre-notifications</link>
    <description><![CDATA[<div class="p">December 9, 2024—Workbench alerts now include MITRE tactics, techniques, and procedures
               (TTP) notifications. </div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Mon, 09 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-mitre-notifications</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Workbench Companion suggests noteworthy insights</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-companion-insights</link>
    <description><![CDATA[<div class="p">December 9, 2024—Companion uses machine learning to identify noteworthy or false-positive
               Workbench insights and proactively recommend a guided workflow for investigation and
               remediation.</div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Mon, 09 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-companion-insights</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>AI-powered case summaries</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-powered-case-summaries</link>
    <description><![CDATA[<div class="p">December 9, 2024—You can now use Companion to generate summaries of open cases that
               include case activities, updates, and findings. </div><div class="p">This feature streamlines case handoffs between analysts by consolidating information
               into concise summaries, helping SOC teams keep consistent case documentation and improve
               collaboration efficiency.</div>]]></description>
    <pubDate>Mon, 09 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-powered-case-summaries</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Container Security firewall exceptions added</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-release-note-12-10-2024</link>
    <description><![CDATA[<div class="p">December 10, 2024—Firewall exceptions were added for Container Security in all regions.
               Some outdated exceptions were also removed to maintain optimal firewall configurations.</div><div class="p">New firewall exceptions:</div><ul class="ul" id="RN_FirewallExceptions_2024_12_10_ba10be29_c30a_4189_9203_bc23b42db4cf__ul_itg_1hx_qdc">
<li class="li">
<div class="p">vcs-storage-&lt;region&gt;.xdr.trendmicro.com</div>
</li>
<li class="li">
<div class="p">upload.artifactscan.&lt;region&gt;.cloudone.trendmicro.com</div>
</li>
<li class="li">
<div class="p">report.artifactscan.&lt;region&gt;.cloudone.trendmicro.com</div>
</li>
</ul><div class="p">The following firewall exceptions are no longer needed and should be removed:</div><ul class="ul" id="RN_FirewallExceptions_2024_12_10_ba10be29_c30a_4189_9203_bc23b42db4cf__ul_bgg_43x_qdc">
<li class="li">
<div class="p">URLs ending in <code class="codeph">amazonaws.com</code></div>
</li>
<li class="li">
<div class="p">raw.githubusercontent.com</div>
</li>
</ul><div class="p">For more information and specific URLs, see the firewall exceptions for your region:
               <ul class="ul" id="RN_FirewallExceptions_2024_12_10_ba10be29_c30a_4189_9203_bc23b42db4cf__ul_cpr_s3x_qdc">
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-americas-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-w5u3ny">Americas</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-australia-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-p68lat">Australia</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-europe-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-39yqlm">Europe</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-india-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-pcp8xx">India</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-japan-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-h9fiel">Japan</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-singapore-all-global#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xdfemt">Singapore</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-uae-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-f8rxzy">Middle East and Africa</a></div>
</li>
</ul>
</div>]]></description>
    <pubDate>Tue, 10 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-release-note-12-10-2024</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.58</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-58</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-62__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">December 11, 2024—Zero Trust Secure Access On-premises Gateway Version 1.0.58 includes
                  enhanced AI service access, improved domain matching logic, and various bug fixes.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-62__ul_vk3_dts_pdc">
<li class="li">Enhanced AI Service Access on content inspection for Bedrock GenAI service.</li>
<li class="li">Enhanced the domain/URL matching logic in certain features.</li>
<li class="li">Fixed the scan process crash issue in high-end spec with more vCPU allocated.</li>
<li class="li">Fixed the WRS query failure issue for specific long URLs.</li>
<li class="li">Trimmed the UPN from authentication token before retrieving the user group info by
                     the UPN.</li>
<li class="li">Fixed the OOM issue when carrying out Predictive Machine Learning scanning of archive
                     files with lots of child files.</li>
</ul>
</section>]]></description>
    <pubDate>Wed, 11 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-58</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>TrendAI Vision One public APIs available to retrieve email assets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-public-apis-get-email-assets</link>
    <description><![CDATA[<div class="p">December 13, 2024—You can now use the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> RESTful APIs to get managed email accounts, email domains, and email servers from
               Email Asset Inventory.</div><div class="p">For more information, see <a class="xref" href="https://automation.trendmicro.com/xdr/api-v3/#tag/Email-Asset-Inventory" target="_blank">TrendAI Vision One™ Automation Center</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Email Asset Inventory</b></span></div>]]></description>
    <pubDate>Fri, 13 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-public-apis-get-email-assets</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access -Internet Access new PoP site in Oracle Colombia region</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-ztsa-columbia-pop-site</link>
    <description><![CDATA[<div class="p">December 13, 2024 - Zero Trust Secure Access Internet Access now supports the Oracle
               Colombia Central (Bogota) region. Users in the region may configure their service
               FQDNs to reflect the new location. </div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ports-and-urls-used-_002" target="_blank">Port and FQDN/IP address requirements</a></div>]]></description>
    <pubDate>Fri, 13 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-ztsa-columbia-pop-site</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Public APIs for Container Security now available on TrendAI Vision One Automation Center</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-public-apis-container-security</link>
    <description><![CDATA[<div class="p">December 15, 2024—Public APIs for <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Container Security are now available on the
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Automation Center. See the <a class="xref" href="https://automation.trendmicro.com/xdr/home" target="_blank">Automation
                  Center</a> for more information.</div>]]></description>
    <pubDate>Sun, 15 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-public-apis-container-security</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Send to Sandbox support for TippingPoint Network Sensor files</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-send-sandbox-tp-xns</link>
    <description><![CDATA[<div class="p">December 16, 2024—TippingPoint Network Sensor now supports the sending of files to
               the Sandbox Analysis app. When TippingPoint Network Sensor is enabled in conjunction
               with Send to Sandbox, the sandbox analysis will result in additional charged credits.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 16 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-send-sandbox-tp-xns</guid>
    <category>Network Security</category>
</item>
<item>
    <title>View all response actions taken on playbook targets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-view-all-response-actions</link>
    <description><![CDATA[<div class="p">December 17, 2024—If the action taken on a playbook target is In progress, Successful,
               or Unsuccessful, you can click <b class="uicontrol">View All Actions on the Target</b> in <b class="uicontrol">Action Details</b> to view a comprehensive list of all response actions on the target within the Response
               Management app. This enhancement enables more accurate and timely decision-making,
               such as revoking an action (if applicable).</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-action-details#GUID-387C4D60-1F8E-4A7A-A345-196EF9365E8D">Action details</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Tue, 17 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-view-all-response-actions</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Automated Response Playbooks: time-bound execution, enhanced filtering, and improved email notifications</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-time-bound</link>
    <description><![CDATA[<div class="p">December 17, 2024—Automated Response Playbooks have been enhanced with several new
               features. You can now set playbooks to execute automatically only during specified
               periods, providing greater control over when actions are taken. Additionally, the
               playbooks offer new options in the <b class="uicontrol">IP address</b> condition, allowing for more precise filtering of targeted endpoints by including
               both <b class="uicontrol">Server IP</b> and <b class="uicontrol">Client IP</b> options.</div><div class="p">Email notifications for manual approval and execution results have also been improved.
               These notifications now include associated Workbench alert information, giving you
               more context and details about the actions being taken. This enhancement ensures that
               you are better informed and can make more timely and accurate decisions.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-automated-response-playbooks#GUID-BED80320-70E5-47C4-9530-CC26073D469D-36">Manually create Automated Response Playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Tue, 17 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-time-bound</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Virtual Network Sensor Firewall Exception added</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-12-19-2024-vns</link>
    <description><![CDATA[<div class="p">December 19, 2024—Virtual Network Sensor firewall exception added for customers with
               "Send to Sandbox" feature enabled.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_lrn_qxg_tdc__ul_itq_fyg_tdc">
<li class="li">
<div class="p">grid-global.trendmicro.com</div>
</li>
</ul><div class="p">The following pre-existing firewall exceptions are only required for customers with
               "Send to Sandbox" enabled:</div><ul class="ul" id="concept_lrn_qxg_tdc__ul_zgq_ryg_tdc">
<li class="li">
<div class="p">api.ddcloud.trendmicro.com</div>
</li>
<li class="li">
<div class="p">api.en.ddcloud.trendmicro.com</div>
</li>
<li class="li">
<div class="p">api.me-central-1.uae.ddcloud.trendmicro.com</div>
</li>
</ul><div class="p">The following firewall for Japan region was updated:</div><ul class="ul" id="concept_lrn_qxg_tdc__ul_n2f_hyg_tdc">
<li class="li">
<div class="p">"api-ni.xdr.trendmicro.com.jp" has been changed to "api-ni.xdr.trendmicro.co.jp"</div>
</li>
</ul><div class="p">For more information and specific URLs, see the firewall exceptions for your region:
               <ul class="ul" id="concept_lrn_qxg_tdc__ul_cpr_s3x_qdc">
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-americas-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-w5u3ny">Americas</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-australia-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-p68lat">Australia</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-europe-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-39yqlm">Europe</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-india-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-pcp8xx">India</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-japan-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-h9fiel">Japan</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-singapore-all-global#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xdfemt">Singapore</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-uae-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-f8rxzy">Middle East and Africa</a></div>
</li>
</ul>
</div>]]></description>
    <pubDate>Thu, 19 Dec 2024 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-12-19-2024-vns</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1419</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor-101419</link>
    <description><![CDATA[<section class="section" id="concept_nsw_txt_12c__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">January 8, 2025—Virtual Network Sensor version 1.0.1419 includes enhancements, bug
                  fixes, and security updates.</div>
</section>]]></description>
    <pubDate>Wed, 01 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-network-sensor-101419</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Updated Syslog CEF log header values for Workbench and Observed Attack Techniques</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-updated-syslog-log-header-values</link>
    <description><![CDATA[<div class="p">January 6, 2025—To align with trademarking requirements, <dfn class="term">Vision One</dfn> will update to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> in the header values for CEF keys <b class="uicontrol">Header (Device Product)</b> and <b class="uicontrol">Header (Name)</b> in Syslog connector (on-premises/SaaS) <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cef-workbench-logs#GUID-f0879ac6-bbb5-4f64-9cc1-393e093d63f1">Workbench logs</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cef-observed-attack-techniques-logs#GUID-b2537bb6-1974-4e28-8c80-83e3f88bfb8d">Observed Attack Techniques logs</a> on January 20, 2025.</div><div class="p">For more information, see <a class="xref" href="https://success.trendmicro.com/en-US/solution/KA-0018604" target="_blank">Modification of CEF header values - TrendAI Vision One™</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 06 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-updated-syslog-log-header-values</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Identity Inventory supports Active Directory (on-premises)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identity-supports-active-directory</link>
    <description><![CDATA[<div class="p">January 6, 2025—Identity Inventory, part of the Identity Security app group, now supports
               Active Directory (on-premises) as an IdP. Connect your Active Directory server to
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> and enable read and write permissions to begin syncing your Active Directory identity
               data and getting more visibility into the identities in your environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Identity Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Identity Inventory</b></span></div>]]></description>
    <pubDate>Mon, 06 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identity-supports-active-directory</guid>
    <category>Identity Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent January 2025 update - Windows</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-january-2025</link>
    <description><![CDATA[<div class="p">January 8, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202501 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_nyn_ftq_g2c__ul_u41_55q_g2c">
<li class="li">
<div class="p">Web Service Communicator (WSC) plug-in version 1.1.05066</div>
</li>
<li class="li">
<div class="p">Service communication manager (VOM) plug-in version 1.2.0.640</div>
</li>
<li class="li">
<div class="p">Endpoint sensor version 1.2.0.5827</div>
</li>
<li class="li">
<div class="p">Vulnerability assessment version 1.0.0.3743</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 14.0.14260</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.2.1390</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="concept_nyn_ftq_g2c__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<div class="p">The following features and support enhancements </div>
<ul class="ul" id="concept_nyn_ftq_g2c__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection now supports Windows Server 2025</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection now supports Windows Server 2025</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_nyn_ftq_g2c__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Enhanced data collection for Vulnerability Assessment</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection now queues packets to process packets in sequence, improving
                           performance</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection includes updates to improve spyware prevention features</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection firewall events now include the username information
                           when possible. This feature is in pre-release preview and is not available in all
                           regions.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_nyn_ftq_g2c__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixed an issue with Standard Endpoint Protection where GUID synchronization fails
                           to trigger</div>
</li>
<li class="li">
<div class="p">Fixed an issue with Server &amp; Workload Protection where enabling Advanced TLS Traffic
                           Inspection sometimes caused agent connectivity issues</div>
</li>
<li class="li">
<div class="p">The update package includes several bug fixes for included component and module updates</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Security updates</b></div>
<ul class="ul" id="concept_nyn_ftq_g2c__ul_vc1_yyq_g2c">
<li class="li">
<div class="p">The update package includes updates to third-partly libraries for Server &amp; Workload
                           Protection</div>
</li>
<li class="li">
<div class="p">The update package includes several security enhancements for included component and
                           module updates</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="concept_nyn_ftq_g2c__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: January 8, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: January 15, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: January 22, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 08 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-january-2025</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent January 2025 - Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-linux-agent-january-2025</link>
    <description><![CDATA[<div class="p">January 8, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202501 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following component and module updates:</div><ul class="ul" id="concept_zsh_4jr_g2c__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.1.0.6462</div>
</li>
<li class="li">
<div class="p">Endpoint sensor version 3.0.0.5375</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.2.1390</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="concept_zsh_4jr_g2c__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<div class="p">The following features and support enhancements </div>
<ul class="ul" id="concept_zsh_4jr_g2c__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Server &amp; Workload Protection Activity Monitoring now supports hypersensitive mode
                           on Linux platforms to provide improved MITRE coverage</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_zsh_4jr_g2c__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Updates CACert</div>
</li>
<li class="li">
<div class="p">Enhances data collection feature of Cyber Risk Exposure Management module</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection now queues packets to process packets in sequence, improving
                           performance</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection firewall events now include the username information
                           when possible. This feature is in pre-release preview and is not available in all
                           regions.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_zsh_4jr_g2c__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixed an issue with Server &amp; Workload Protection where enabling Advanced TLS Traffic
                           Inspection sometimes caused agent connectivity issues</div>
</li>
<li class="li">
<div class="p">The update package includes several bug fixes for included component and module updates</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Security updates</b></div>
<ul class="ul" id="concept_zsh_4jr_g2c__ul_vc1_yyq_g2c">
<li class="li">
<div class="p">The update package includes updates to third-partly libraries for Server &amp; Workload
                           Protection</div>
</li>
<li class="li">
<div class="p">The update package includes several security enhancements for included component and
                           module updates</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="concept_zsh_4jr_g2c__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: January 8, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: January 15, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: January 22, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 08 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-linux-agent-january-2025</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent January 2025 update - macOS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-macos-agent-january-2025</link>
    <description><![CDATA[<div class="p">January 8, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202501 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_tqx_3jr_g2c__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.2.503</div>
<ul class="ul" id="concept_tqx_3jr_g2c__ul_gyr_bkr_g2c">
<li class="li">
<div class="p">ws_communicator.app</div>
</li>
<li class="li">
<div class="p">XBCAgent.app</div>
</li>
<li class="li">
<div class="p">PreCheck.app</div>
</li>
<li class="li">
<div class="p">SilentInstaller.app</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">Endpoint sensor version 1.2.503</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 3.5.7952</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="concept_tqx_3jr_g2c__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<div class="p">The following features and support enhancements </div>
<ul class="ul" id="concept_tqx_3jr_g2c__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Version control policies now supports macOS endpoint agents</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_tqx_3jr_g2c__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">The update package includes several bug fixes for included component and module updates</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="concept_tqx_3jr_g2c__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: January 8, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: January 15, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: January 22, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 08 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-macos-agent-january-2025</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Runtime Malware Scanning now supports more mitigations</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wnruntime-malware-scan-mitigation</link>
    <description><![CDATA[<div class="p">January 9, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now provides mitigation for malware scanning, including <code class="codeph">isolate</code> and <code class="codeph">terminate</code> options in Container Security. You can configure these options in <span class="menucascade"><b class="uicontrol">Container Protection</b> → <b class="uicontrol">Policies</b> → <b class="uicontrol">Runtime</b></span>.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-kubernetes-protection-policies#GUID-BED80320-70E5-47C4-9530-CC26073D469D-s34m28">Managing Kubernetes protection
                  policies</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Protection</b></span></div>]]></description>
    <pubDate>Thu, 09 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wnruntime-malware-scan-mitigation</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>DLP policy enhancement for Exchange Online in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-header-dlp-cecp</link>
    <description><![CDATA[<div class="p">January 10, 2025—Data Loss Prevention policy now supports scanning email header fields
               in addition to email subject, body, and attachment as scan targets for Exchange Online.
               You can also apply DLP policies to incoming messages in addition to "Sent messages
               only" and "All messages."</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 10 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-header-dlp-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Two more predefined detection signals available for Correlated Intelligence in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-riskai-social-graph-signals-cecp</link>
    <description><![CDATA[<div class="p">January 10, 2025—Besides the existing recipient-based social graph related detection
               signals, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</span> adds two more predefined detection signals of this type. The signals check for the
               newly observed sender addresses and domains based on companies within the last 30
               days to help anomaly detection in the customer’s environment.</div><div class="p">These detection signals are not available in all regions.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 10 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-riskai-social-graph-signals-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.16.816</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-zero-trust-module-macos-version-816</link>
    <description><![CDATA[<div class="p">January 13, 2025—Zero Trust Secure Access module for macOS version 2.16.816 provides
               enhanced security and management capabilities.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_kky_brr_g2c__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_kky_brr_g2c__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Enhances the onboarding process for macOS 15</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 13 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-zero-trust-module-macos-version-816</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.18.1037</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-zero-trust-module-windows-1037</link>
    <description><![CDATA[<div class="p">January 13, 2025—Zero Trust Secure Access module for Windows version 2.18.1037 provides
               enhanced security and management capabilities.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_kxp_wmr_g2c__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_kxp_wmr_g2c__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Adds <code class="codeph">www.recaptcha.net</code> to whitelist when authentication method is browser-based</div>
</li>
<li class="li">
<div class="p">Cleans WebView2 user data folder when Zero Trust Secure Access module starts</div>
</li>
<li class="li">
<div class="p">Eliminates use of <code class="codeph">tasklist.exe</code> in Private Access</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_kxp_wmr_g2c__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixed issue creating repeating requests for multi-factor authentication (MFA)</div>
</li>
<li class="li">
<div class="p">The update package includes several fixes for known or reported bugs</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 13 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-zero-trust-module-windows-1037</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.59</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-59</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-61__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">January 13, 2025—Zero Trust Secure Access On-premises Gateway Version 1.0.59 includes
                  enhanced machine learning integration, AI service updates, and performance improvements.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-61__ul_udl_p2r_ydc">
<li class="li">Enhanced Predictive Machine Learning integration to support Office with Macro files.</li>
<li class="li">Updated content inspection for Copilot AI service due to protocol change.</li>
<li class="li">Show a blocking page to an endpoint for traffic forwarded by the SA module either
                     with an invalid authentication token or without an authentication token.</li>
<li class="li">Improved performance for downloading large files in a slow network environment.</li>
<li class="li">Fixed the core dump issue caused by non-RFC compliant HTTP/2 traffic.</li>
<li class="li">Fixed the potential memory leak in ICAP mode.</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 13 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-59</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Custom correlation rules for anomaly detection available in Correlated Intelligence in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-correlation-rules-cegp</link>
    <description><![CDATA[<div class="p">January 13, 2025—Besides the <span class="tm">TrendAI™</span> predefined correlation rules, administrators can add custom correlation rules based
               on predefined detection signals to accommodate anomaly detection requirements in their
               environment. Administrators can apply custom correlation rules into the Correlated
               Intelligence policy and view details about detected anomalies in policy events logs.
               Furthermore, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</span> offers flexibility by enabling administrators to select all or specific predefined
               correlation rules to detect suspicious emails and possibly unwanted emails.</div><div class="p"><span class="menucascade" id="concept_crq_1cv_ydc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Mon, 13 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-correlation-rules-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Trigger additional response actions from the context menu</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-context-menu-response-actions</link>
    <description><![CDATA[<div class="p">January 13, 2025—You can now trigger the following restorative response actions on
               the corresponding targets from Attack Surface Discovery, Endpoint Inventory, Workbench,
               Observed Attack Techniques, and the Search app via the context menu:
               <ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-fhq138__ul_t24_r4p_ydc">
<li class="li">
<div class="p">Resume Container on isolated containers</div>
</li>
<li class="li">
<div class="p">Restore Connection on isolated endpoints</div>
</li>
<li class="li">
<div class="p">Enable User Account on disabled user accounts</div>
</li>
<li class="li">
<div class="p">Remove from Zscaler Restricted User Group on added user accounts</div>
</li>
</ul>
</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-actions-section#GUID-9254ED63-6714-4DD1-A9B8-29AD02028380">Response actions</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Response Management</b></span></div>]]></description>
    <pubDate>Mon, 13 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-context-menu-response-actions</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Enhanced risk assessment for SaaS applications</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-saas-application-risk-assessment</link>
    <description><![CDATA[<div class="p">January 13, 2025—The <b class="uicontrol">Applications</b> tab in <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b> now displays apps organized into three separate categories: public cloud apps, connected
               SaaS apps, and local apps. The new categories apply across all ASRM apps. Public cloud
               apps include all apps your users visit, ranked by reputation. Local apps detected
               on endpoints and analyzed according to sanctioned status and risk level. Connecting
               the SaaS apps managed by your organization allows for further risk assessment and
               analysis to enhance your SaaS security posture management.</div><div class="p">
<span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 13 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-saas-application-risk-assessment</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows server version 2.30.1037</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-winserver-v-2-30-1037</link>
    <description><![CDATA[<div class="p">January 14, 2026—The latest version of the Zero Trust Secure Access Module for Windows
               has been released. It contains new features, enhancements and resolved issues.</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_bzq_kks_yhc__ul_h5v_rms_yhc">
<li class="li">
<div class="p">Added a Private Notification toggles in <span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol">Customization Setting</b> → <b class="uicontrol">Secure Access Module Notification</b></span></div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_bzq_kks_yhc__ul_zgz_1ns_yhc">
<li class="li">
<div class="p">Prevents the creation of duplicate network adapters when Private Access is disabled</div>
</li>
<li class="li">
<div class="p">Ensures Internet Access does not enter bypass mode when a network adapter is disabled.</div>
</li>
<li class="li">
<div class="p">Added "Broadcom" into the list of supported antivirus vendors in the Device Posture
                     Profile.</div>
</li>
<li class="li">
<div class="p">Update the copyright year to 2026.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_bzq_kks_yhc__ul_ctd_4ns_yhc">
<li class="li">
<div class="p">Fixed an issue where the browser displayed sign-in page if a proxy variable was assigned
                     to a different proxy twice in a PAC file.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where the sign-in pop-up appeared in the incorrect user's session in
                     multi-user environments.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where the Internet Access diagnostic page displayed "not connected"
                     and the subsequent connections bypassed the proxy after the PAC file was modified.</div>
<div class="p">Fixed issues found in versions 2.29.1043 and 2,29.1047.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 14 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-winserver-v-2-30-1037</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Alibaba Cloud support in Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-alibaba-cloud-support</link>
    <description><![CDATA[<div class="p">January 16, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports Alibaba Cloud ACK in Container Security. Add an Alibaba cluster in <span class="menucascade"><b class="uicontrol">Container Inventory</b> → <b class="uicontrol">Kubernetes</b> → <b class="uicontrol">Alibaba Cloud ACK</b></span> to see the ACK cluster, node, and pod information. Use the Map to Cloud Account function
               to enable Cyber Risk Exposure Management.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-connect-alibaba-ack-clusters#GUID-BED80320-70E5-47C4-9530-CC26073D469D-bvi33o">Connecting Alibaba Cloud ACK clusters</a>.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-cuqxua__conSecInventoryScreen"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Inventory</b></span></div>]]></description>
    <pubDate>Thu, 16 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-alibaba-cloud-support</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>TrendAI Vision One achieves ISO 20243 compliance</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-iso-20243-compliance</link>
    <description><![CDATA[<div class="p">January 17, 2025—We are pleased to announce that <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> has achieved ISO 20243 compliance.</div><div class="p">ISO 20243 is an internationally recognized standard aimed at mitigating risks associated
               with maliciously tainted and counterfeit products. By meeting these stringent requirements,
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> ensures the delivery of reliable and secure solutions to our customers.</div>]]></description>
    <pubDate>Fri, 17 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-iso-20243-compliance</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Use Global Search to search detections, assets, and vulnerabilities across the TrendAI Vision One platform</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-global-search</link>
    <description><![CDATA[<div class="p">January 20, 2025—Click the search bar at the top of the screen in the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console and type a keyword to search detections, assets, and vulnerabilities across
               the platform. This enhancement gives an overview of the information you need from
               apps across <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> all in one convenient place.</div>]]></description>
    <pubDate>Mon, 20 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-global-search</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Sync MDR case information with ServiceNow</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ServiceNow-MDR-case</link>
    <description><![CDATA[<div class="p">January 20, 2025—Managed Services users can now synchronize MDR case information with
               ServiceNow. To create a ticket profile, go to <span class="menucascade"><b class="uicontrol">Third-Party Integration</b> → <b class="uicontrol"><span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> for ServiceNow Ticketing System</b></span> and select "MDR case" as the case type. Then go to <span class="menucascade"><b class="uicontrol">XDR Threat Investigation</b> → <b class="uicontrol">Managed Services</b> → <b class="uicontrol">Settings</b> → <b class="uicontrol">Cross-App Management</b></span>, enable automatic creation of ServiceNow tickets when MDR cases are created, and
               select the ticket profile to synchronize the case with ServiceNow.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 20 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ServiceNow-MDR-case</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Hotfix for Linux agents - Jan 21, 2025</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-hotfix-linux-agents-jan-21-2025</link>
    <description><![CDATA[<div class="p">January 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202501 hotfix addresses the following component and
               module updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_elm_1cc_g2c__ul_iv1_3mr_g2c">
<li class="li">
<div class="p">Agent program services package 1.1.0.6583</div>
</li>
</ul><div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div><ul class="ul" id="concept_elm_1cc_g2c__ul_aml_hcc_g2c">
<li class="li">
<div class="p">Fixes an issue where updating the agent program services package failed when updating
                     from versions 1.1.0.5803 and earlier.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 21 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-hotfix-linux-agents-jan-21-2025</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agents now support Windows Server 2025.</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agents-windows-server-2025</link>
    <description><![CDATA[<div class="p">January 21, 2025—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports deploying to Windows Server 2025 endpoints.</div><div class="p">For more details about supported platforms, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Tue, 21 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agents-windows-server-2025</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Improved support for custom rules</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-import-custom-rules-v1console</link>
    <description><![CDATA[<div class="p">January 23, 2026—An improvement to custom rule support for Container Security runtime
               protection allows you to import custom rules through the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console to apply them to the Container Security policy.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-import-custom-rules-console-v1cs#concept_bmq_4vz_13c">Import custom rules in the console</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b></span></div>]]></description>
    <pubDate>Thu, 23 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-import-custom-rules-v1console</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>File Security Storage for AWS auto-cleans out-of-date Lambda versions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-autocleans-outdated-lambda</link>
    <description><![CDATA[<div class="p">January 28, 2026—File Security Storage now includes an auto-cleanup feature that removes
               older Lambda versions. You must redeploy your Client Stack to enable this feature
               as it requires additional IAM permissions. </div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-aws-autocleanup-older-lambda#concept_ltn_k3k_13c">Enable auto-cleanup of older Lambda versions</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">File Security</b> → <b class="uicontrol">File Security Storage</b></span></div>]]></description>
    <pubDate>Tue, 28 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-autocleans-outdated-lambda</guid>
    <category>File Security</category>
</item>
<item>
    <title>CIS Benchmark scanning for Amazon EKS version 1.5.0 now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-cis-amazon-eks1-5-0</link>
    <description><![CDATA[<div class="p">January 29, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports compliance scanning for both <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-eks-1-5-0-recommendations#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-ojhk39">CIS benchmarks</a> for Amazon EKS versions 1.4.0 and 1.5.0 for your EKS clusters. You can now select
               which supported benchmark version will be used for each cluster type.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-compliance-scanning#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-196t45">Compliance</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Protection</b></span></div>]]></description>
    <pubDate>Wed, 29 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-cis-amazon-eks1-5-0</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Multiple process image file exclusion lists</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-multiple-process-image-file</link>
    <description><![CDATA[<div class="p">January 31, 2025—In <b class="wintitle" lang="en-us" xml:lang="en-us">Server &amp; Workload Protection</b>, the process image file list is now part of the inheritance exclusion list, and applies
               to real-time exclusions. The setting is available through <b class="wintitle" lang="en-us" xml:lang="en-us">Server &amp; Workload Protection</b> &gt; <b class="uicontrol">Policies</b> &gt; <b class="uicontrol">Anti-Malware</b> &gt; <b class="uicontrol">Exclusions</b>.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-overview-section-policy-editor#Overview_section_of_the_policy_editor">Overview section of the policy editor</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Server &amp; Workload Protection</b></span></div>]]></description>
    <pubDate>Fri, 31 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-multiple-process-image-file</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>New APIs available for Cloud Risk Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-apis-for-cloud-posture</link>
    <description><![CDATA[<div class="p">January 31, 2025—The Cloud Risk Management “Communication Settings" and "Checks” public
               APIs are now available on the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Automation Center. For more information, visit the <a class="xref" href="https://automation.trendmicro.com/xdr/changelog/" target="_blank">TrendAI Vision One™ Automation Center</a>.</div>]]></description>
    <pubDate>Fri, 31 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-apis-for-cloud-posture</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Automated cluster registration in Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-auto-cluster-registration</link>
    <description><![CDATA[<div class="p">January 31, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now offers automated cluster registration so that you can add many Kubernetes clusters
               without a repetitive installation flow. Automated cluster registration allows you
               to use a single <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> API Key to register all your Container Security clusters, which helps automate the
               deployment of Container Security protection.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-obtain-apikey-auto-cluster-reg#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-9yfp5p">Obtain an API key for automated cluster registration</a>.</div><div class="p"><span class="menucascade" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-8oi7v6__conSecInventoryScreen"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Inventory</b></span></div>]]></description>
    <pubDate>Fri, 31 Jan 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-auto-cluster-registration</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.17</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3017</link>
    <description><![CDATA[<section class="section" id="reference_c3s_dxw_k2c__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">February 19, 2024—Service Gateway Firmware Version 3.0.17 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_c3s_dxw_k2c__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update introduces bug fixes for predefined iptables rules that were incorrectly
                        configured.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 01 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3017</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>XDR for Cloud - AWS VPC Flow Logs officially released</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vpc-flow-logs-official-release</link>
    <description><![CDATA[<div class="p">February 1, 2025—The Cloud Detections for AWS VPC Flow Logs feature, part of <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - XDR for Cloud, is officially released as a paid feature to all users. Additionally,
               the daily log ingestion limit is removed. XDR for Cloud - AWS VPC Flow Logs requires
               allocating credits to use.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Sat, 01 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vpc-flow-logs-official-release</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Reduced credit requirement for TrendAI Vision One - XDR for Cloud</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-reduced-credits-xdr-for-cloud</link>
    <description><![CDATA[<div class="p">February 1, 2025—The credit usage requirement for <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - XDR for Cloud has been reduced from 62 credits to 3 credits per GB of data ingested.
               For existing customers who have already allocated credits to the solution, the additional
               credits are automatically returned to your credit balance.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Sat, 01 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-reduced-credits-xdr-for-cloud</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Risk Management releases CIS Azure Foundations Benchmark 6.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cis-azure-foundations-benchmark-6</link>
    <description><![CDATA[<div class="p">February 03, 2026—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Cloud Risk Management has released the following new compliance standard: </div><div class="p"><b class="b">CIS Foundations Benchmarks. - CIS Azure Foundations Benchmark v6.0.0</b>: Cloud Risk Management has updated the CIS Azure compliance standard to the latest
               version to meet the Center of Internet Security (CIS) Foundations Benchmarks for Microsoft
               Azure. You can now filter Checks and download Compliance Reports to ensure your cloud
               environment complies with the latest CIS Foundations Benchmarks. - CIS Azure Foundations
               Benchmark v6.0.0. </div><div class="p"><b class="b">Deprecation Notice</b>: We've also deprecated CIS Azure Foundations Benchmark v4.1.0 for removal on <b class="b">April 27 2026</b>. It will no longer be accessible in the filters, preventing the creation of new reports
               or report-configurations with this outdated benchmark. If any existing report configurations
               include deprecated compliance standards, it will not be possible to generate new PDF/CSV
               reports. However, the list of previously generated PDF/CSV reports remains available.
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Cloud Risk Management recommends updating your report configurations to use the latest
               versions of CIS Azure Foundations Benchmark before <b class="b">April 27 2026</b>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Misconfiguration and Compliance</b></span>
</div>]]></description>
    <pubDate>Mon, 03 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cis-azure-foundations-benchmark-6</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1100</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201100</link>
    <description><![CDATA[<div class="p">February 5, 2025—Mobile Security for Business app version 2.0.1100 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-V2W3X4Y5-Z6U7-8901-VWXY-ZA2345678901__ul_v2w_3xy_z4a">
<li class="li">
<div class="p">Fixes an issue where Web Reputation does not work properly.</div>
</li>
<li class="li">
<div class="p">Fixes incorrect notification wording for scheduled and manual scans.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 05 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201100</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Attack Surface Risk Management is now Cyber Risk Exposure Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-crem</link>
    <description><![CDATA[<div class="p">February 7, 2025—<span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span> is expanding capabilities to deliver more value. Attack Surface Risk Management is
               now Cyber Risk Exposure Management (CREM), emphasizing proactive risk identification,
               assessment, and mitigation. With current cutting-edge capabilities, CREM allows you
               to continuously monitor entry points, prioritize mitigation actions based on impact,
               and predict future threats to neutralize risks before they materialize.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Fri, 07 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-crem</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.27.381</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-v-2-27-381</link>
    <description><![CDATA[<div class="p">February 9, 2026—The latest version of the Zero Trust Secure Access Module for macOS
               has been released. It contains new features, enhancements, and resolved issues.</div><div class="p"><b class="uicontrol">New Features</b><ul class="ul" id="whatsnew_csj_mn1_23c__ul_ah5_wn1_23c">
<li class="li">
<div class="p">Added Private Access Notification toggle in <span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol">Customization Settings</b> → <b class="uicontrol">Secure Access Module Notification</b></span>.</div>
</li>
<li class="li">
<div class="p">Added a "Do not show this message again" checkbox to the sign-in pop up.</div>
</li>
</ul>
</div><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_csj_mn1_23c__ul_bvh_cp1_23c">
<li class="li">
<div class="p">Updated the copyright year to 2026.</div>
</li>
<li class="li">
<div class="p">Enhanced stability of ZTSA Mac.</div>
</li>
<li class="li">
<div class="p">Enhanced debug logging information.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_csj_mn1_23c__ul_nwd_b41_23c">
<li class="li">
<div class="p">Fixed an issue where Internet Access page UI incorrectly displayed disconnected status
                     in proxy mode.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where switching the Internet Access traffic mode from Tunnel (VPN)
                     to Proxy in the <span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span> console would fail.</div>
</li>
</ul>]]></description>
    <pubDate>Sun, 09 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-v-2-27-381</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Email Sensor test drive for targeted attack testing</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-sensor-simulation</link>
    <description><![CDATA[<div class="p">February 10, 2025—Email and Collaboration Security now offers a test drive function
               for Email Sensor. This feature allows customers to target specific mailboxes and simulate
               attacks on them. It helps customers understand the value of <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> related functions, including XDR and Cyber Risk Exposure Management capabilities.</div><div class="p"><span class="menucascade"><b class="uicontrol">Email and Collaboration Security</b> → <b class="uicontrol">Email and Collaboration Sensor</b> → <b class="uicontrol">Email Test Drive</b></span></div>]]></description>
    <pubDate>Mon, 10 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-sensor-simulation</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Network Resources now features configurable profiles</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-resources-profiles</link>
    <description><![CDATA[<div class="p">February 10, 2025—You can now create Network Resource Profiles to manage and assign
               different sets of Network Resource Lists to your connected network security devices.
               The feature enables designating lists for devices across different regions, groups,
               or segments in your organization.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Analysis Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Resources</b></span></div>]]></description>
    <pubDate>Mon, 10 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-resources-profiles</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Power BI integration with TrendAI Vision One</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-power-bi-integration</link>
    <description><![CDATA[<div class="p">February 10, 2025—Microsoft Power BI can now be integrated with <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to access and analyze data directly from the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> platform via APIs.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-microsoft-power-bi-integration#GUID-BED80320-70E5-47C4-9530-CC26073D469D-69">Microsoft Power BI integration</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 10 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-power-bi-integration</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>TrendAI Vision One Compliance Management now available in public preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-comp-mgmt-public-preview</link>
    <description><![CDATA[<div class="p">February 12, 2025—Compliance Management is now in public preview as part of the <span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span> platform. With Compliance Management, you can monitor and track your organization's
               pass rate for selected frameworks and standards, as well as view the recommended remediation
               actions to reduce security risks from misconfigurations.</div><div class="p">The app offers the following effective features:</div><div class="p">
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-27__ul_yg4_srp_32c">
<li class="li">
<div class="p">Enhanced user experience: The left navigation panel allows you to quickly switch between
                        compliance frameworks and standards</div>
</li>
<li class="li">
<div class="p">Compliance Summary and Analysis widget: A detailed analysis of your organization's
                        compliance posture, along with a quick and effective overview of your pass and fail
                        rates to facilitate audits and remediation</div>
</li>
<li class="li">
<div class="p">Compliance monitoring by asset group: Filters allow you to drill down on each asset
                        group and view pass rates across different security layers and over time</div>
</li>
<li class="li">
<div class="p">Compliance Management Overview Report: A quick summary of all monitored frameworks
                        and standards with AI-generated recommendations for remediation actions</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Governance &amp; Risk Compliance</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Compliance Management</b></span></div>]]></description>
    <pubDate>Wed, 12 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-comp-mgmt-public-preview</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Credit allocation status now viewable in Endpoint Inventory</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-credit-allocation-viewable</link>
    <description><![CDATA[<div class="p">February 14, 2025—You can now view the credit allocation status of your endpoints
               in Endpoint Inventory. You can use the filter function to quickly find which endpoints
               have enable advanced features requiring credit allocation. Clicking <b class="uicontrol">Manage Allocation</b> in Credits &amp; Billing opens Endpoint Inventory with the filter applied.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Fri, 14 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-credit-allocation-viewable</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Enhanced domain management for reports in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-domain-mgnt-for-reports-cegp</link>
    <description><![CDATA[<div class="p">February 18, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now allows administrators to configure report settings and view generated reports
               only for the domains they have permission to manage. This enhancement ensures that
               email traffic and threat detection data in reports are accessible only to authorized
               administrators, providing better control and security.</div><div class="p"><span class="menucascade" id="concept_tmn_jvz_j2c__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 18 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-domain-mgnt-for-reports-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Company logo customization available for time-of-click protection in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-company-logo-custom-time-click-cegp</link>
    <description><![CDATA[<div class="p">February 18, 2025—You can now upload your company logo to replace the default <span class="tm">TrendAI™</span> logo when configuring the blocking and warning redirect pages for time-of-click protection.
               End users will see the customized logo when they encounter a blocked or warning page
               after clicking a potentially malicious URL. This enhancement strengthens your brand
               presence and provides a seamless and familiar experience for your users in security
               alerts.</div><div class="p"><span class="menucascade" id="concept_ldv_brz_j2c__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 18 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-company-logo-custom-time-click-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>New tokens in notifications and stamps for detections by Correlated Intelligence in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-riskai-tokens-cegp</link>
    <description><![CDATA[<div class="p">February 18, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now includes two new tokens - %CI_RULE_NAME% and %CI_RULE_DESC%, that administrators
               can use in email notifications for policy matches and in stamps inserted into the
               message body. These tokens help identify which security risks or anomalies have been
               detected by Correlated Intelligence, providing clearer and more detailed information
               in your email security alerts.</div><div class="p"><span class="menucascade" id="concept_lwz_vvz_j2c__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 18 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-riskai-tokens-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>&quot;Add disclaimer&quot; available for BEC detection in Advanced Spam Protection for Exchange Online in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-add-disclaimer-asp-for-eo-cecp</link>
    <description><![CDATA[<div class="p">February 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> adds the "Add disclaimer" action for BEC detections to the Advanced Spam Protection
               security filter of ATP policies for Exchange Online and Exchange Online (Inline Mode).</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-add-disclaimer-asp-for-eo-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Log Retrieval API to support Gmail (Inline Mode) in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-log-retrieval-api-gmail-inline-cecp</link>
    <description><![CDATA[<div class="p">February 21, 2025—Beside Gmail, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> extends the Log Retrieval API to allow administrators to get security event logs
               of the Gmail (Inline Mode) service.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-log-retrieval-api-gmail-inline-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Scam detection widgets available in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scam-detection-widgets-cecp</link>
    <description><![CDATA[<div class="p">February 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> displays scam detection data in the Threat Detection dashboard to help you understand
               scam email detections in your environment. Scams often involve deceptive emails designed
               to trick recipients into providing sensitive information or transferring money. The
               dashboard includes detailed insights such as scam detections by email service, the
               top 5 scam email senders, and the top 5 scam email recipients. This information helps
               you identify and mitigate potential threats more effectively.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scam-detection-widgets-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Two more conditions available for detection signal customization in Correlated Intelligence in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-two-riskai-conditions-cecp</link>
    <description><![CDATA[<div class="p">February 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> adds two more conditions for defining custom detection signals for anomalies in Correlated
               Intelligence. These conditions define the number of days within a 30-day period that
               communication from a sender or sender's domain is considered abnormal on a company-wide
               basis.</div><div class="p">These conditions are not available in all regions.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-two-riskai-conditions-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Enhanced user management for Exchange Online access granting in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-mgnt-for-eo-provision-cecp</link>
    <description><![CDATA[<div class="p">February 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> allows adding or removing users after being granted access to Exchange Online with
               the "Synchronize selected users" option. Previously, this option did not support user
               synchronization, making user updates impossible after access was granted. The enhanced
               user management feature lets administrators review synchronized users and make necessary
               adjustments, providing greater control and flexibility. This ensures that new users
               receive <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> protection and allows easier removal of unavailable users.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-mgnt-for-eo-provision-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Introducing Data Posture</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-introducing-data-posture</link>
    <description><![CDATA[<div class="p">February 21, 2025—Data Posture is a comprehensive system designed to help you understand
               your organization’s overall data risk and identify cloud assets with the riskiest
               sensitive data. Data Posture employs continuous monitoring and risk assessment protocols
               to identify potential vulnerabilities and unauthorized access attempts. By integrating
               both native and third-party scanning technologies, Data Posture provides a comprehensive
               security solution for cloud-based data.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-posture#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-nx1q77">Data Security Posture</a>.</div>]]></description>
    <pubDate>Fri, 21 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-introducing-data-posture</guid>
    <category>Data Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.60</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-60</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-60__GUID-22e4fa92_661e_42dd_a6a0_0db3b04d0be4">
<div class="p">February 24, 2025—Zero Trust Secure Access On-premises Gateway Version 1.0.60 includes
                  enhancements for FTP over HTTP protocol support and bug fixes.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-60__ul_hhf_zgd_m2c">
<li class="li">Added FTP over HTTP protocol support for tools like PowerShell and Curl.</li>
<li class="li">Added OCSP stapling support for server certificate verification.</li>
<li class="li">Fixed a crash that occurred during large file downloads.</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 24 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-60</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1102</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201102</link>
    <description><![CDATA[<div class="p">February 24, 2025—Mobile Security for Business app version 2.0.1102 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-U1V2W3X4-Y5T6-7890-UVWX-YZ1234567890__ul_u1v_2wx_y3z">
<li class="li">
<div class="p">Renames the feature "Internet Access" to "Internet Access and AI Service Access"</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 24 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201102</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1432</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201432</link>
    <description><![CDATA[<div class="p">February 24, 2025—Mobile Security for Business app version 2.0.1432 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-K1L2M3N4-O5J6-7890-KLMN-OP1234567890__ul_k1l_2mn_o3p">
<li class="li">
<div class="p">Renames the feature "Internet Access" to "Internet Access and AI Service Access"</div>
</li>
<li class="li">
<div class="p">Fixes an issue where Web Reputation does not work on Chromebooks.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 24 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201432</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Logical operators available for custom detection models</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-logical-operators-detection-models</link>
    <description><![CDATA[<div class="p">February 24, 2025—<b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                  Management</b> now supports logical operators (AND, OR) when creating custom detection models with
               multiple filters. </div><div class="p">The new logical operators let you specify whether alerts trigger when all filters
               meet their thresholds (AND) or when any filter meets its threshold (OR).</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-configuring-custom-model#CreatingCustomModel">Configure a custom model</a>.</div><div class="p"><span class="menucascade" id="WhatsNew_2025_02_24_DMM_detection_models_af8a95ed_5df9_4cbe_a600_542f18c59ba2__customModelsPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Custom models</b></span></div>]]></description>
    <pubDate>Mon, 24 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-logical-operators-detection-models</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Enhanced Recommendation Scan for Server &amp; Workload Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-enhanced-reco-scan</link>
    <description><![CDATA[<div class="p">February 24, 2025—The enhanced recommendation scan improves upon the classic recommendation
               scan by optimizing efficiency, reliability, and accuracy when identifying security
               rules for Intrusion Prevention, Integrity Monitoring, and Log Inspection. Based on
               your system's required security rules, the scan delivers recommendations with optimized
               performance and fewer limitations. Whether run manually or scheduled for automated
               scanning, enhanced recommendation scan can apply recommended rules for regular protection
               with minimal disruption and reduced strain on system resources.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-reco-scan#ersoverview">Enhanced recommendation scan</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Server &amp; Workload Protection</b></span></div>]]></description>
    <pubDate>Mon, 24 Feb 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-enhanced-reco-scan</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 2.0.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-2-0-4</link>
    <description><![CDATA[<section class="section" id="reference_u1p_v1d_52c__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 24, 2025—Service Gateway Smart Protection Services Version 2.0.4 includes enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_u1p_v1d_52c__ul_qg3_wfz_c1c">
<li class="li">
<div class="p">This update upgrades components to address identified vulnerabilities, enhancing overall
                        security.</div>
</li>
<li class="li">
<div class="p">This update adds accumulated bug fixes for Smart Protection Services.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 01 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-2-0-4</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.18</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3018</link>
    <description><![CDATA[<section class="section" id="reference_y4x_p5c_52c__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 24, 2025—Service Gateway Firmware Version 3.0.18 delivers key enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_y4x_p5c_52c__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update upgrades components to address identified vulnerabilities, enhancing overall
                        security.</div>
</li>
<li class="li">
<div class="p">This update adds accumulated bug fixes for Service Gateway firmware.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Sat, 01 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3018</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Endpoint Inventory agent removal features now support all TrendAI Vision One Endpoint Security agents</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-removal-security-agents</link>
    <description><![CDATA[<div class="p">March 3, 2025—Endpoint removal is now handled by Endpoint Inventory and applies to
               all <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent deployments, including Standard Endpoint Protection and Server
               &amp; Workload Protection. You can automate the removal of disconnected agents using the
               inactive agent removal settings in Endpoint Settings.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 03 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-removal-security-agents</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>AI Security Posture Management Now Available in Preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-spm-now-available</link>
    <description><![CDATA[<div class="p">March 5, 2025—Introducing AI Security Posture Management (AI-SPM) in preview. You
               can now proactively protect your AI system from threats, minimize your data exposure,
               and reduce the overall risks of your AI infrastructure with comprehensive monitoring
               using AI SPM.</div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Wed, 05 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-spm-now-available</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.17.920</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-2-17-920</link>
    <description><![CDATA[<div class="p">March 10, 2025—Zero Trust Secure Access module for macOS version 2.17.920 provides
               enhanced security and management capabilities.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_j2j_cll_s2c__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_j2j_cll_s2c__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Supports ZTNP connector resilience</div>
</li>
<li class="li">
<div class="p">Supports displaying endpoint connector information in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span></div>
</li>
<li class="li">
<div class="p">Improved debug log collecting</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 10 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-2-17-920</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.20.1043</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-2-20-1043</link>
    <description><![CDATA[<div class="p">March 10, 2025—Zero Trust Secure Access module for Windows version 2.20.1043 provides
               enhanced security and management capabilities.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_f4k_f2l_s2c__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_f4k_f2l_s2c__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Supports ZTNP connector resilience</div>
</li>
<li class="li">
<div class="p">Supports displaying endpoint connector information in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span></div>
</li>
<li class="li">
<div class="p">Supports common proxy in the PAC file (using neither cloud gateway proxy or on-premises
                           gateway proxy)</div>
<div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pac-file-configuration#GUID-BED80320-70E5-47C4-9530-CC26073D469D-kv7t5o">PAC file configuration</a></div>
</li>
<li class="li">
<div class="p">ZTSA no longer modifies the system manual proxy setting when Internet Access is enabled</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_f4k_f2l_s2c__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixed issue where after disabling Internet Access in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>, the feature might re-enable and redirect traffic to Internet Access Gateway</div>
</li>
<li class="li">
<div class="p">Fixed issue of multiple firewall allow rules after updating</div>
</li>
<li class="li">
<div class="p">Fixed an issue where sign-in popup fails to appear when additional users attempt to
                           sign in to Windows Server</div>
</li>
<li class="li">
<div class="p">Fixed issue where after Private Access connects, connection status displays disconnected
                           in details page</div>
</li>
<li class="li">
<div class="p">Update includes various other bug and performance issue fixes</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 10 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-2-20-1043</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.61</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-61</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-59__GUID-22e4fa92_661e_42dd_a6a0_0db3b04d0be4">
<div class="p">March 10, 2025—Zero Trust Secure Access On-premises Gateway Version 1.0.61 includes
                  enhancements for AI service support and bug fixes.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-59__ul_hhf_zgd_m2c">
<li class="li">Supports Github Copilot public AI Service on advanced content inspection.</li>
<li class="li">Supports DeepSeek public AI Service on advanced content inspection.</li>
<li class="li">Fixed the access problem for the request url with long length of cookies.</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 10 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-61</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector Version 2.35.0.3338</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-35-0-3338</link>
    <description><![CDATA[<section class="section" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-v5d50c__GUID-22e4fa92_661e_42dd_a6a0_0db3b04d0be4">
<div class="p">March 10, 2024—ZTSA PA Connector provides enhanced security connectivity and management
                  capabilities.</div>
<div class="p">This update includes the following changes:</div>
</section><section class="section" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-v5d50c__section_g3f_t21_q2c">
<h3 class="section-title">New Features</h3>
<div class="p">
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-v5d50c__ul_bmb_w21_q2c">
<li class="li">Added new CLI commands to optimize memory and disk usage on the connector.</li>
</ul>
</div>
</section><section class="section" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-v5d50c__section_pzz_xgd_m2c">
<h3 class="section-title">Enhancements</h3>
<div class="p">
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-v5d50c__ul_smc_y21_q2c">
<li class="li">Enhanced the resource optimization mechanism to ensure connector stability.</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Mon, 10 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-35-0-3338</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Create custom filters using pre-built templates</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters-templates</link>
    <description><![CDATA[<div class="p">March 10, 2025—Detection Model Management now provides pre-built templates to help
               you create custom filters more efficiently.</div><div class="p">Filter templates serve as starting points that you can customize to detect specific
               events in your environment. Each template comes with predefined settings and queries
               that you can modify according to your security needs, making easier to implement detection
               rules without starting from scratch.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-use-template-create-custom-filter#create_custom_filter_template_37a2e57b_f3b7_4141_96d3_822f911d4afc">Use a template to create a custom filter</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Custom filters</b></span></div>]]></description>
    <pubDate>Mon, 10 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters-templates</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1113</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201113</link>
    <description><![CDATA[<div class="p">March 11, 2025—Mobile Security for Business app version 2.0.1113 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-T0U1V2W3-X4S5-6789-TUVW-XY0123456789__ul_t0u_1vw_x2y">
<li class="li">
<div class="p">Labels scans as scheduled or on-demand on the scan history screen.</div>
</li>
<li class="li">
<div class="p">Fixes an issue where WhatsApp does not work properly when both VPN and Web Reputation
                     are enabled.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 11 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201113</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1438</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101438</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-57__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 3, 2025—Virtual Network Sensor version 1.0.1438 includes enhancements, bug fixes,
                  and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-57__ul_d2y_xhb_r2c">
<li class="li">
<div class="p">This update provides visibility of client and server hostnames in network telemetry.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Fri, 14 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101438</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1434</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201434</link>
    <description><![CDATA[<div class="p">March 14, 2025—Mobile Security for Business app version 2.0.1434 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-J0K1L2M3-N4I5-6789-JKLM-NO0123456789__ul_j0k_1lm_n2o">
<li class="li">
<div class="p">Labels scans as scheduled or on-demand on the scan history screen.</div>
</li>
</ul>]]></description>
    <pubDate>Fri, 14 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201434</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Office 365 renamed to Microsoft 365 with new support for SaaS Security Posture Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-office-365-rename-sspm</link>
    <description><![CDATA[<div class="p">March 16, 2025—The Office 365 Cyber Risk Exposure Management data source has been
               renamed to Microsoft 365 to reflect Microsoft's official renaming. Additionally, new
               data types are being collected to support SaaS Security Posture Management features,
               including misconfigurations and compliance violation detections. The new data helps
               reduce your organization's risk exposure and provides mitigation guidance through
               related risk events to help secure your SaaS environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Sun, 16 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-office-365-rename-sspm</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.20.1045</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-2-20-1045</link>
    <description><![CDATA[<div class="p">March 18, 2025—Zero Trust Secure Access module for Windows version 2.20.1045 provides
               enhanced security and management capabilities.</div><div class="important" id="concept_p2t_sll_s2c__note_uhk_vll_s2c">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">
<div class="p">This update is for the Australia region only.</div>
</div>
</td>
</tr>
</table>
</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_p2t_sll_s2c__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_p2t_sll_s2c__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixed issue where after updating, the module fails to launch the default browser to
                           sign-in when using browser-based authentication</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Tue, 18 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-2-20-1045</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Cloud Email Gateway Protection integration with Domain Verification under Administration</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-domain-verification-integrate-cegp</link>
    <description><![CDATA[<div class="p">March 19, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now integrates with the domain verification feature in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. Domains added in <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> will automatically appear in the <b class="wintitle">Domain Verification</b> screen under <b class="uicontrol">Administration</b>. This integration also allows administrators to verify domains in either <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> or <b class="wintitle">Domain Verification</b>, with the verification results applying to both locations.</div><div class="p"><span class="menucascade" id="concept_anx_5ct_q2c__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Wed, 19 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-domain-verification-integrate-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Cloud Email Gateway Protection audit logs available in Audit Logs under Administration</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-audit-logs-integration-cegp</link>
    <description><![CDATA[<div class="p">March 19, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now sends its audit logs to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. Administrators can filter and view these logs alongside other <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> audit logs in a centralized location - the <b class="wintitle">Audit Logs</b> screen under <b class="uicontrol">Administration</b>.</div><div class="p">Please note that the Audit Log screen in <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> will be available for six months before it is permanently deleted.</div><div class="p"><span class="menucascade" id="concept_bd1_zbt_q2c__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Wed, 19 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-audit-logs-integration-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent March 2025 update - Windows</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-march-2025-update-windows</link>
    <description><![CDATA[<div class="p">March 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202503 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_brg_stc_s2c__ul_u41_55q_g2c">
<li class="li">
<div class="p">Service communication manager (VOM) plug-in version 1.2.0.715</div>
</li>
<li class="li">
<div class="p">Agent installer (Endpoint Basecamp) version 1.1.0.513</div>
</li>
<li class="li">
<div class="p">Endpoint sensor version 1.2.0.5987</div>
</li>
<li class="li">
<div class="p">Vulnerability assessment version 1.0.0.3799</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery version 1.0.0.3794</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 14.0.14320</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2.4960</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="concept_brg_stc_s2c__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_brg_stc_s2c__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Agent installer package now supports local updates for Endpoint Sensor</div>
</li>
<li class="li">
<div class="p">Enhancements made to Vulnerability Assessment data collection and performance</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery now includes the following configurations when collecting
                           information: joined domain, screen lock, installed and activated Endpoint detection
                           &amp; response</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection Application Control feature supports SHA-256 suspicious
                           object type from Suspicious Object Management </div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection improves SAP scan performance on Window platforms by
                           implementing a caching mechanism and reducing unnecessary operations to achieve faster
                           scan completion times</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection includes new dsa_scan argument <code class="codeph">scanLargeFile</code> to support scanning files larger than 2GB, allowing efficient management of large
                           files</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection adds device control syslog for sending events to syslog
                           server directly by request</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_brg_stc_s2c__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixed an issue with the VDI idle mode not detecting system proxy changes</div>
</li>
<li class="li">
<div class="p">Fixed an issue with VDI refresh device ID not reloading the service communication
                           manager (VOM)</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - fixed AMSP service stop or crash issue</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - fixed issue where the network driver might crash when
                           stopping if the <cite class="cite">Windows base filtering engine</cite> service is not running</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - fixed issue where CSV files larger than 4KB might be
                           incorrectly classified by SAP Scanner</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - fixed performance issues in TLS 1.3 caused by unsupported
                           protocols</div>
</li>
<li class="li">Server &amp; Workload Protection - fixed article link issues when certificate-related
                        error events are generated</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="concept_brg_stc_s2c__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: March 5, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: March 12, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: March 19, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Fri, 21 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-march-2025-update-windows</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent March 2025 - Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-march-2025-linux</link>
    <description><![CDATA[<div class="p">March 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202503 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_ic3_3cl_s2c__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.2.0.323</div>
</li>
<li class="li">
<div class="p">Endpoint sensor version 3.0.0.5732</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2.4961</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="concept_ic3_3cl_s2c__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<div class="p">The following features and support enhancements </div>
<ul class="ul" id="concept_ic3_3cl_s2c__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Version Control Policies adds support for managing Server &amp; Workload Protection kernel
                           support updates as a pre-release feature</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_ic3_3cl_s2c__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Server &amp; Workload Protection - fixed issue where CSV files larger than 4KB might be
                           incorrectly classified by SAP Scanner</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - fixed performance issues in TLS 1.3 caused by unsupported
                           protocols</div>
</li>
<li class="li">
<div class="p">The update package includes several bug fixes for included component and module updates</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Security updates</b></div>
<ul class="ul" id="concept_ic3_3cl_s2c__ul_vc1_yyq_g2c">
<li class="li">
<div class="p">Update CACert</div>
</li>
<li class="li">
<div class="p">The update package includes several security enhancements for included component and
                           module updates</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="concept_ic3_3cl_s2c__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: January 8, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: January 15, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: January 22, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Fri, 21 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-march-2025-linux</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent March 2025 update - macOS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-march-2025-update-macos</link>
    <description><![CDATA[<div class="p">March 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202503 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_gwp_ryc_s2c__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.2.509</div>
<ul class="ul" id="concept_gwp_ryc_s2c__ul_gyr_bkr_g2c">
<li class="li">
<div class="p">ws_communicator.app</div>
</li>
<li class="li">
<div class="p">XBCAgent.app</div>
</li>
<li class="li">
<div class="p">PreCheck.app</div>
</li>
<li class="li">
<div class="p">SilentInstaller.app</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">Endpoint sensor version 1.2.509</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 3.5.7976</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="concept_gwp_ryc_s2c__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_gwp_ryc_s2c__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Update Data Detection and Response status</div>
</li>
<li class="li">
<div class="p">Update copyright to 2025</div>
</li>
<li class="li">
<div class="p">Support <cite class="cite">List all mounted drives</cite> command</div>
</li>
<li class="li">
<div class="p">Integrate with iCore 3.3.1022</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_gwp_ryc_s2c__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">The update package includes several bug fixes for included component and module updates</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="concept_gwp_ryc_s2c__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: March 5, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: March 12, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: March 19, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Fri, 21 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-march-2025-update-macos</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>User import for synchronized user list for Exchange Online in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-import-for-synced-user-list-cecp</link>
    <description><![CDATA[<div class="p">March 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> includes the import function in the Synchronized User List for Exchange Online global
               settings. This enhancement further simplifies user management by allowing administrators
               to synchronize multiple users to <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> at once.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-import-for-synced-user-list-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Correlated Intelligence available for Gmail in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gmail-support-ci-cecp</link>
    <description><![CDATA[<div class="p">March 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> extends Correlated Intelligence to Gmail service protection. Administrators can configure
               Correlated Intelligence settings in ATP policies for Gmail. This helps find security
               risks and anomalies in their Gmail emails using predefined and custom correlation
               rules and detection signals.</div><div class="p">The warning banner feature is not available for Gmail.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gmail-support-ci-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Increased scam detection visibility in Dashboard in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scam-detection-visibility-cecp</link>
    <description><![CDATA[<div class="p">March 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> adds the scam detection statistics into the Overall Threat Detections section in
               Dashboard, and also introduces a new widget regarding scam detections to display the
               number of scam email messages detected by different security filters during a selected
               time period.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scam-detection-visibility-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Confirmation email for end user email reporting in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-eu-feedback-confirm-email-cecp</link>
    <description><![CDATA[<div class="p">March 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> provides a sending acknowledgement email option in Email Reporting settings. This
               option lets administrators choose if they want to send a confirmation email to end
               users when they report emails through either the add-in for Outlook or the warning
               banner inserted in their emails.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-eu-feedback-confirm-email-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>New --distro flag for Artifact Scanner</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-distro-flag-tmas</link>
    <description><![CDATA[<div class="p">March 21, 2025—<span class="tm">TrendAI™</span> Artifact Scanner (TMAS) now supports the new <code class="codeph">--distro</code> flag, which allows you to specify OS distribution details for file and directory
               artifacts. This ensures accurate vulnerability matching for open-source RPM (Red Hat
               Package Manager) files that sometimes do not include OS information.</div><div class="p">For more information, see the <code class="codeph">WHATS-NEW.md</code> file included with the binary and the <code class="codeph">--distro</code> flag information in <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-artifact-scanner-cli#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-gyb3w0">Artifact Scanner CLI</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Fri, 21 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-distro-flag-tmas</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.62</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-62</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-58__GUID-22e4fa92_661e_42dd_a6a0_0db3b04d0be4">
<div class="p">March 24, 2025—Zero Trust Secure Access On-premises Gateway Version 1.0.62 includes
                  enhancements for FTP protocol support.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-58__ul_hhf_zgd_m2c">
<li class="li">Support access control &amp; content inspection for FTP protocol as FTP forward proxy.</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 24 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-62</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector Version 2.35.0.3343</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-35-0-3343</link>
    <description><![CDATA[<div class="p">March 24, 2025—Zero Trust Secure Access Private Access Connector Version 2.35.0.3343
               provides enhanced security and management capabilities.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-exfxko__ul_yc2_yqt_52c">
<li class="li">
<div class="p">Optimized the mechanism to ensure the stability of the connector.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 24 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-35-0-3343</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.9</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-309</link>
    <description><![CDATA[<section class="section" id="reference_y5f_yxc_52c__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 24, 2025—Service Gateway Local ActiveUpdate Service Version 3.0.9 includes enhancements,
                  bug fixes, and security updates.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul" id="reference_y5f_yxc_52c__ul_wln_fbm_v1c">
<li class="li">
<div class="p">This update introduces the ability to export pattern information. This function is
                        not available in all regions.</div>
</li>
<li class="li">
<div class="p">This update upgrades components to address identified vulnerabilities, enhancing overall
                        security.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 24 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-309</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Zero Trust Secure Access on-premises gateway supports FTP protocol for internet access control</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-ftp-proxy</link>
    <description><![CDATA[<div class="p">March 24, 2025—Zero Trust Secure Access Internet Access Service on-premises gateway
               now supports FTP proxy to inspect FTP traffic with access control and content scanning.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 24 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-ftp-proxy</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Guided Exclusions now available for CREM users</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-guided-exclusions-now-available</link>
    <description><![CDATA[<div class="p">March 24, 2025—Cloud Risk Exposure Management (CREM) users will now be able to exclude
               resources in use by all <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> products to avoid conflicts during rule scanning. </div><div class="p">The <b class="uicontrol">Guided Exclusions</b> option under Cloud Risk Management is enabled by default for all CREM customers with
               Agentless Vulnerability and Threat Detection for AWS resources and will no longer
               affect the compliance scores. You can include them by deselecting the default option.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-managing-preferences#GUID-BED80320-70E5-47C4-9530-CC26073D469D-20">Managing preferences</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Mon, 24 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-guided-exclusions-now-available</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>New names for Cyber Risk Exposure Management capabilities coming starting March 30</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-crem-app-names-prenotice</link>
    <description><![CDATA[<div class="p">March 24, 2025—The Cyber Risk Exposure Management navigation menu will be updated
               beginning March 30, 2025, with new categories and capability names. The new names
               better highlight the current features available and give you a preview of more features
               coming soon to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. Here's what you can expect on April 1:</div><div class="p">
<div class="table" id="concept_wsr_s25_t2c__table_pk3_jg5_t2c">
<h4 class="table-title">New feature names and categories for Cyber Risk Exposure Management capabilities</h4>
<table border="1" class="tgroup">
<colgroup class="colspec" style="width: 50%;"></colgroup>
<colgroup class="colspec" style="width: 50%;"></colgroup>
<thead class="thead table-header-style">
<tr class="row">
<td class="entry">
<div class="p">Previous names</div>
</td>
<td class="entry">
<div class="p">Names starting March 30, 2025</div>
</td>
</tr>
</thead>
<tbody class="tbody">
<tr class="row">
<td class="entry">
<div class="p">Cyber Risk Overview</div>
</td>
<td class="entry">
<div class="p">Cyber Risk Overview</div>
</td>
</tr>
<tr class="row">
<td class="entry" colspan="2" style="text-align: center;">
<div class="p">Continuous Risk Management</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Atack Surface Discovery</div>
</td>
<td class="entry">
<div class="p">Attack Surface Discovery</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Threat and Exposure Management</div>
</td>
<td class="entry">
<div class="p">Threat and Exposure Management</div>
</td>
</tr>
<tr class="row">
<td class="entry"> </td>
<td class="entry">
<div class="p">Vulnerability Management (preview)</div>
</td>
</tr>
<tr class="row">
<td class="entry" colspan="2" style="text-align: center;">
<div class="p">Cyber Attack Prediction</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Attack Path Prediction</div>
</td>
<td class="entry">
<div class="p">Attack Path Prediction</div>
</td>
</tr>
<tr class="row">
<td class="entry"> </td>
<td class="entry">
<div class="p">Targeted Attack Prediction (coming soon)</div>
</td>
</tr>
<tr class="row">
<td class="entry" colspan="2" style="text-align: center;">
<div class="p">Security Posture Management</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Cloud Security Posture</div>
</td>
<td class="entry">
<div class="p">Cloud Security Posture</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Identity Posture</div>
</td>
<td class="entry">
<div class="p">Identity Security Posture</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Data Security</div>
</td>
<td class="entry">
<div class="p">Data Security Posture</div>
</td>
</tr>
<tr class="row">
<td class="entry" colspan="2" style="text-align: center;">
<div class="p">Cyber Governance, Risk, &amp; Compliance</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Compliance Management</div>
</td>
<td class="entry">
<div class="p">Compliance Management</div>
</td>
</tr>
<tr class="row">
<td class="entry"> </td>
<td class="entry">
<div class="p">Cyber Risk Quantification (coming soon)</div>
</td>
</tr>
<tr class="row">
<td class="entry" colspan="2" style="text-align: center;">
<div class="p">Security Awareness Training Training</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Phishing Simulations</div>
</td>
<td class="entry">
<div class="p">Phishing Simulations</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Training Campaigns</div>
</td>
<td class="entry">
<div class="p">Training Campaigns</div>
</td>
</tr>
</tbody>
</table>
</div>
</div><div class="p">For information on how you can purchase a Cyber Risk Exposure Management entitlement
               and take advantage of these expanded capabilities, contact your sales representative.</div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b></div>]]></description>
    <pubDate>Mon, 24 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-crem-app-names-prenotice</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Create custom filters based on Search queries</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-search-app-custom-filters</link>
    <description><![CDATA[<div class="p">March 24, 2025—You can now create custom filters based on Search queries for monitoring
               of suspicious events. Combine multiple custom filters into custom detection models
               to facilitate the threat hunting process for your organization.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filter-query-format#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-89">Filter query format</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">XDR Data Explorer</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Mon, 24 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-search-app-custom-filters</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>New pricing packages for Cyber Risk Exposure Management coming April 1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crem-pricing-prenotice</link>
    <description><![CDATA[<div class="p">March 25, 2025—Starting April 1, 2025, new pricing packages will be introduced for
               Cyber Risk Exposure Management capabilities. Users who have not preselected a pricing
               package will automatically switch to the Cyber Risk Exposure Management - Core package
               (20 credits per assessed desktop or server), which allows you to use the following
               capabilities without limitations:
               <ul class="ul" id="concept_ddp_q4b_52c__ul_fm1_bpb_52c">
<li class="li">
<div class="p">Cyber Risk Overview (formerly Cyber Risk Overview)</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery</div>
</li>
<li class="li">
<div class="p">Threat and Exposure Management (formerly Threat and Exposure Management)</div>
</li>
<li class="li">
<div class="p">Identity Security Posture (formerly Identity Posture)</div>
</li>
</ul>
</div><div class="p">Upgrade to the Cyber Risk Exposure Management - Essentials package (50 credits per
               assessed desktop or server) to use the following capabilities without limitations:
               <ul class="ul" id="concept_ddp_q4b_52c__ul_xc4_zpb_52c">
<li class="li">
<div class="p">Cyber Risk Overview (formerly Cyber Risk Overview)</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery</div>
</li>
<li class="li">
<div class="p">Threat and Exposure Management (formerly Threat and Exposure Management)</div>
</li>
<li class="li">
<div class="p">Identity Security Posture (formerly Identity Posture)</div>
</li>
<li class="li">
<div class="p">Attack Path Prediction</div>
</li>
<li class="li">
<div class="p">Security Awareness Training Training</div>
</li>
<li class="li">
<div class="p">Compliance Management</div>
</li>
</ul>
</div><div class="p">Enable cloud account assessment (1,000 credits per 500 cloud resources up top a maximum
               of 8,000 credits) to include your cloud assets in your available Cyber Risk Exposure
               Management capabilities.</div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b></div>]]></description>
    <pubDate>Tue, 25 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crem-pricing-prenotice</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Changes to desktop, server, and cloud account assessment override coming to Cyber Risk Exposure Management April 1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-override-removal-crem-prenotice</link>
    <description><![CDATA[<div class="p">March 25, 2025—The current feature allowing users to override the number of assessed
               desktops, servers, and cloud accounts will be disabled on April 1. If you are are
               currently using the override feature, your credits will continue to be calculated
               according to the asset override total until May 1. During that time, add the desktops
               or servers you don't wish to assess to the Exception List in Attack Surface Discovery.
               For cloud accounts you don't wish to assess, disable Cyber Risk Exposure Management
               for the account in Cloud Accounts. After May 1, your credit requirements will be based
               on the actual number of discovered assets that have not been added to the Exception
               List or for which Cyber Risk Exposure Management is enabled. Contact your sales representative
               if you have any questions.</div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b></div>]]></description>
    <pubDate>Tue, 25 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-override-removal-crem-prenotice</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Export case list</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-export-case-list</link>
    <description><![CDATA[<div class="p">March 25, 2025—In Case Management, you can now export case log data as a comma-separated
               value (CSV) file. After export, access and download the file from <b class="uicontrol">Reports Exported from <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Apps</b> under <b class="uicontrol">Generated Reports</b> in Reports.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Tue, 25 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-export-case-list</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Server &amp; Workload Protection firewall exceptions added</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-march-31-2025-fqdn-exceptions-added</link>
    <description><![CDATA[<div class="p">March 31, 2025—Server &amp; Workload Protection firewall exceptions have been added to
               all regions. Ensure your firewall is up to date with the latest Firewall EIP Blocks,
               as older Deep Security and Cloud One EIP Block addresses might no longer be valid.</div><div class="p">For more information see the firewall exceptions for your region: </div><ul class="ul" id="concept_mjr_tmx_52c__ul_jvp_tcw_mdc">
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-americas-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-w5u3ny">Americas</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-australia-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-p68lat">Australia</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-europe-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-39yqlm">Europe</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-india-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-pcp8xx">India</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-japan-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-h9fiel">Japan</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-uae-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-f8rxzy">Middle East and Africa</a></div>
</li>
</ul>]]></description>
    <pubDate>Mon, 31 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-march-31-2025-fqdn-exceptions-added</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Template Scanner API now supports Terraform HCLtemplates for CREM users</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-api</link>
    <description><![CDATA[<div class="p">March 31, 2025—Cloud Risk Exposure Management (CREM) users will now be able to scan
               Terraform HCL (<code class="codeph">.tf</code>) templates with the latest API directly by scanning a <code class="codeph">.zip</code> file of HCL templates. as opposed to converting the Terraform HCL (<code class="codeph">.tf</code>) templates into HCL plan (<code class="codeph">.json</code>) files before scanning. Additionally, you can now use the <code class="codeph">cloudPosture/scanTemplateArchive</code> endpoint to POST a ZIP file containing your Terraform templates to be scanned. For
               more information, see <a class="xref" href="https://automation.trendmicro.com/xdr/api-beta/#tag/Template-scanner/paths/~1beta~1cloudPosture~1scanTemplateArchive/post" target="_blank">the Template Scanner API documentation</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Mon, 31 Mar 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-api</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1449</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101449</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-55__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 31, 2025—Virtual Network Sensor version 1.0.1449 includes enhancements, bug
                  fixes, and security updates.</div>
</section>]]></description>
    <pubDate>Tue, 01 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101449</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1448</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101448</link>
    <description><![CDATA[<section class="section" id="GUID-09957805-70E7-401F-A691-F587FCE2CB8B-56__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">March 24, 2025—Virtual Network Sensor version 1.0.1448 provides enhanced network monitoring
                  and threat detection capabilities.</div>
</section>]]></description>
    <pubDate>Tue, 01 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101448</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.19</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3-0-19</link>
    <description><![CDATA[<section class="section" id="reference_qzr_jgv_1fc__GUID-3A481E02-9073-4F55-B437-517CA325F21D">
<div class="p">April 21, 2025—Service Gateway Firmware Version 3.0.19 includes enhancements, bug
                  fixes, and security updates for Service Gateway.</div>
<div class="p">This update includes the following changes:</div>
<ul class="ul">
<li class="li">
<div class="p">This update integrates Mobile Security with the Service Gateway, allowing traffic
                        from Mobile Agents to be routed through the Forward Proxy Service to authorized FQDNs.</div>
</li>
<li class="li">
<div class="p">This update enhances the protection of sensitive data in Service Gateway service settings,
                        preventing exposure and unauthorized access.</div>
</li>
<li class="li">
<div class="p">This update adds accumulated bug fixes for Service Gateway firmware.</div>
</li>
</ul>
</section>]]></description>
    <pubDate>Tue, 01 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3-0-19</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>New frameworks and features added</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-comp-mgmt-2025-04-01</link>
    <description><![CDATA[<div class="p">April 1, 2025—This release introduces new compliance frameworks including CMMC Levels
               1, 2, and 3 Version 2.13, ISO/IEC 27001:2022, and PCI DSS v4.0.1, along with enhanced
               features such as asset group pass rates, tagged and untagged asset pass rates, PDF
               compliance reports, and support for custom frameworks to improve compliance management
               and audit readiness.</div><div class="p">Frameworks added:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xjeddz__ul_ccf_ffz_52c">
<li class="li">
<div class="p">CMMC Level 1 Version 2.13</div>
</li>
<li class="li">
<div class="p">CMMC Level 2 Version 2.13</div>
</li>
<li class="li">
<div class="p">CMMC Level 3 Version 2.13</div>
</li>
<li class="li">
<div class="p">ISO/IEC 27001:2022</div>
</li>
<li class="li">
<div class="p">PCI DSS v4.0.1</div>
</li>
</ul><div class="p">Additional features included:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xjeddz__ul_dcf_ffz_52c">
<li class="li">
<div class="p">Asset group pass rates by framework or standard: Gain visibility on each asset group
                     pass rate based on your selected frameworks to target improvements for better overall
                     compliance performance.</div>
</li>
<li class="li">
<div class="p">Tagged and untagged asset pass rates: View the pass rate for tagged and untagged assets
                     to ensure that all assets meet compliance standards.</div>
</li>
<li class="li">
<div class="p">PDF reports of your organization's pass rate for each selected framework: View actionable
                     and comprehensive recommendations and analysis generated by AI, and simplify the audit
                     preparation process with easy-to-share reports.</div>
</li>
<li class="li">
<div class="p">Custom frameworks: Tailor frameworks to specific industry requirements and ensure
                     more relevant and effective compliance checks, greatly reducing the need for manual
                     compliance audits.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 01 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-comp-mgmt-2025-04-01</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Compliance Management official release</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-comp-mgmt-release</link>
    <description><![CDATA[<div class="p">April 1, 2025—Compliance Management is now officially released and includes the following
               exciting features:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-26__ul_qyj_3gz_52c">
<li class="li">
<div class="p">New supported frameworks: CMMC Level 1 Version 2.13, CMMC Level 2 Version 2.13, CMMC
                     Level 3 Version 2.13, ISO/IEC 27001:2022, and PCI DSS v4.0.1.</div>
</li>
<li class="li">
<div class="p">Asset group pass rates by framework or standard: Gain visibility on each asset group
                     pass rate based on your selected frameworks to target improvements for better overall
                     compliance performance.</div>
</li>
<li class="li">
<div class="p">Tagged and untagged asset pass rates: View the pass rate for tagged and untagged assets
                     to ensure that all assets meet compliance standards.</div>
</li>
<li class="li">
<div class="p">PDF reports of your organization’s pass rate for each selected framework: View actionable
                     and comprehensive recommendations and analysis generated by AI, and simplify the audit
                     preparation process with easy-to-share reports.</div>
</li>
<li class="li">
<div class="p">Custom frameworks: Tailor frameworks to specific industry requirements and ensure
                     more relevant and effective compliance checks, greatly reducing the need for manual
                     compliance audits.</div>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Governance &amp; Risk Compliance</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Compliance Management</b></span></div>]]></description>
    <pubDate>Tue, 01 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-comp-mgmt-release</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Security Awareness Training Campaign playbooks now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-awareness-playbook</link>
    <description><![CDATA[<div class="p">April 1, 2025—Security Playbooks is introducing a new playbook template: Security
               Awareness Training Campaign. This type of playbook is designed to enhance your organization's
               security posture by creating targeted security awareness training campaigns for user
               accounts identified in account compromise and XDR detection risk events.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-awareness-playbooks#task_yjn_sny_52c">Manually create Security Awareness Training Campaign playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Tue, 01 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-awareness-playbook</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.21.1023</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-2-21-1023</link>
    <description><![CDATA[<div class="p">April 7, 2025—Zero Trust Secure Access module for Windows version 2.21.1023 provides
               enhanced security and management capabilities.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_wvq_wlg_cfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_wvq_wlg_cfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixed issue where in Private Access diagnostics page the round-trip time (RTT) test
                           always fails</div>
</li>
<li class="li">
<div class="p">Fixed issue where after Private Access connect the NRPT rules are not set up</div>
</li>
<li class="li">
<div class="p">Fixed issue where <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> shows ZTSA uninstall failed although uninstall process was successful</div>
</li>
<li class="li">
<div class="p">(JP region only) Fixed issue so some management traffic uses the proxy configured
                           by "Primary Custom Proxy Settings" in both <b class="uicontrol">Agent Installer Proxy Settings</b> and <b class="uicontrol">Runtime Proxy Policy Settings</b></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 07 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-2-21-1023</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.18.26</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-2-18-26</link>
    <description><![CDATA[<div class="p">April 7, 2025—Zero Trust Secure Access module for macOS version 2.18.26 provides enhanced
               security and management capabilities.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_lvp_jlg_cfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_lvp_jlg_cfc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Improved debug log collecting</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_lvp_jlg_cfc__ul_xzd_plg_cfc">
<li class="li">
<div class="p">Fixed issue where in Private Access diagnostics page the round-trip time (RTT) test
                           always fails</div>
</li>
<li class="li">
<div class="p">Fixed issue where Internet Access is enabled for a short time while bypass key is
                           activated</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 07 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-2-18-26</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.63</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-63</link>
    <description><![CDATA[<div class="p">April 7, 2025—Zero Trust Secure Access On-premises Gateway Version 1.0.63 delivers
               enhancements and optimizations.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-sov4pw__ul_cb5_z5z_w2c">
<li class="li">Support local prompt injection service for an on-premise gateway.</li>
<li class="li">Optimized disk usage when scanning large files that are being transferred.</li>
</ul>]]></description>
    <pubDate>Mon, 07 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-63</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector Version 2.35.0.3345</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-35-0-3345</link>
    <description><![CDATA[<div class="p">April 7, 2025—Zero Trust Secure Access Private Access Connector Version 2.35.0.3345
               provides enhanced security and management capabilities.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-3rkyo5__ul_ssv_15z_w2c">
<li class="li">Added a fix for SSH vulnerability.</li>
<li class="li">Fixed a bug in the dpid restart CLI command that caused the process to restart as
                  the root user .</li>
</ul>]]></description>
    <pubDate>Mon, 07 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-35-0-3345</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>AWS Organizations deployment now supports multiple Organizational Units</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-multiple-organizational-units</link>
    <description><![CDATA[<div class="p">April 7, 2025—We are pleased to announce that the AWS Organizations deployment in
               Cloud Accounts now supports deployment to multiple Organizational Units (OUs) simultaneously.
               This enhancement streamlines the process, allowing for more efficient and scalable
               management of your AWS resources. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-connect-aws-organization#GUID-BED80320-70E5-47C4-9530-CC26073D469D-6re3yq">Connect an AWS Organization</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 07 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-multiple-organizational-units</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Microsoft Defender for Endpoint logs now supported in custom filters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mde-logs-custom-models</link>
    <description><![CDATA[<div class="p">April 7, 2025—You can now include Microsoft Defender for Endpoint logs in custom filters
               and models to enhance your organization’s event detection capabilities and Workbench
               alert generation, providing you with even more comprehensive security insights.</div><div class="p"> For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-configuring-custom-model#CreatingCustomModel">Configure a custom model</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Mon, 07 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mde-logs-custom-models</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Asset tagging for endpoints and container clusters now supported</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-asset-tags</link>
    <description><![CDATA[<div class="p">April 7, 2025—Asset tagging for endpoints and container clusters is now supported.
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> can now enrich your custom tags with asset activity and detection data, allowing
               you to leverage Search and Detection Model Management.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">XDR Data Explorer</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Mon, 07 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-asset-tags</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Integration of TrendAI Vision One with Google Security Operations SIEM</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-google-secops-siem</link>
    <description><![CDATA[<div class="p">April 7, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now integrates with Google Security Operations (<span class="ph" lang="en-us" xml:lang="en-us">Google SecOps</span>) SIEM. This integration facilitates efficient data sharing, enabling <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to send alerts, event data, container vulnerabilities, activity data, and audit logs
               to <span class="ph" lang="en-us" xml:lang="en-us">Google SecOps</span>. Configure data feeds in Google SecOps to ingest this data and enhance your security
               telemetry analysis.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-google-secops#task_ycg_pdc_n2c">Google Security Operations SIEM integration</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 07 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-google-secops-siem</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Enhanced data transfer configuration for Splunk HEC connector</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-splunk-hec-connector</link>
    <description><![CDATA[<div class="p">April 7, 2025—The Splunk HEC connector introduces granular data selection based on
               asset tags. You can now specify which data gets transferred by choosing relevant tags,
               providing greater control and flexibility over the data shared with Splunk Cloud.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-splunk-hec-connector-configuration#splunk_hec_connector">Splunk HEC connector configuration</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 07 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-splunk-hec-connector</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Project Centric View now available for CREM Cloud Risk Management users</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-project-centric-view-available</link>
    <description><![CDATA[<div class="p">April 8, 2025—You can now view your resources and risk events grouped by <b class="uicontrol">Project</b> defined automatically in your Cloud Projects and adjusted manually through cloud
               platform accounts, cloud platform tags, and <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> tags. You can also define new Projects based on conditions based on Asset name, Asset
               type, Provider, Region, Location, Account Name, and Cloud Provider Asset Tags. For
               more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-project-centric-overview#AISPMCIEM_0cc8d3d7_a38c_4ec5_b206_83ea23659116-2">Projects View</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security Posture</b></span></div>]]></description>
    <pubDate>Tue, 08 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-project-centric-view-available</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent April 2025 update - Windows</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-april-2025-update</link>
    <description><![CDATA[<div class="p">April 9, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202504 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_v1h_cdg_cfc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.1.0.5274</div>
</li>
<li class="li">
<div class="p">Service communication manager (VOM) plug-in version 1.2.0.824</div>
</li>
<li class="li">
<div class="p">Endpoint sensor version 1.2.0.6152</div>
</li>
<li class="li">
<div class="p">Vulnerability assessment version 1.0.0.3824</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 14.0.14492</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2.7600</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="concept_v1h_cdg_cfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<div class="p">The following features and support enhancements </div>
<ul class="ul" id="concept_v1h_cdg_cfc__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">New <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent console configurable with Endpoint Security Policies</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection Web Reputation Service supports integration with the
                           <span class="tm">TrendAI™</span> Toolbar for Enterprise browser extension. Integration with the browser extension
                           is planned to be configurable using Endpoint Security Policies by the end of May 2025.</div>
</li>
<li class="li">
<div class="p">Dynamic Intelligence Mode added to Server &amp; Workload Protection allows the agent to
                           automatically adjust monitoring levels based on analyzing detected threats, user behavior,
                           and system context.</div>
</li>
<li class="li">
<div class="p">The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent can now be installed through connected Deep Security Agents.</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection now supports HTTP2 for inbound traffic scanning</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_v1h_cdg_cfc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Web Service Communicator now merged with Service communication manager (VOM)</div>
</li>
<li class="li">
<div class="p">Add new telemetry processes for Service communication manager (VOM)</div>
</li>
<li class="li">
<div class="p">Enhanced data collection for Vulnerability Assessment</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates feature descriptions in Endpoint Sensor policy
                           settings screen to improve user experience</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Adds application version information in Application
                           Control detection logs for methods matched in the Application Reputation List</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enhances self-protection capability for Standard Endpoint
                           Protection Windows Security Agent program folder</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enhances Predictive Machine Learning module for suspicious
                           Anti-malware Scan Intervace (AMSI) even detections</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enhances "blue screen of death" (BSOD) loop prevention
                           monitoring mechanism</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates Behavior Monitoring Core Service module to version
                           2.98.2101</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates Behavior Monitoring Core Drive module to version
                           2.98.2100</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enhancements to program update process to prevent excessive
                           network bandwidth usage</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_v1h_cdg_cfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixed an issue where user was unable to remove <span class="tm">TrendAI™</span> Cloud Endpoint Telemetry Service</div>
</li>
<li class="li">
<div class="p">Fixed MQTT huge log size issue</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where adding SHA-256 suspicious objects
                           in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> might prevent <span class="tm">TrendAI™</span> Apex One as a Service from upgrading to Standard Endpoint Protection.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where emails were not sent to policy
                           owner for policy owner updates</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where the updated <span class="tm">TrendAI™</span> Apex One group name might now appear in Standard Endpoint Protection Product Status
                           view</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue that might prevent Standard Endpoint
                           Protection from deploying components to integrated <span class="tm">TrendAI™</span> products</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where Application Control criteria processing
                           might cause high CPU usage and impact endpoint performance</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where Data Loss Prevention might not
                           function properly for 7-Zip compressed files</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where after updating the agent, the endpoint
                           might display the Security Agent console unexpectedly</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where updating the Suspicious Object
                           lists might cause the Apex One NT Listener service (<code class="codeph">TmListen.exe</code>) to consume a large amount of CPU resources and impact endpoint performance</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where virus and malware file path processing
                           might cause the system to display spaces in the detection file path as ASCII codes
                           for the associated detection logs on the Log Query screen</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where the <span class="tm">TrendAI™</span> Apex One web console might prevent users from viewing the predefined port lists in
                           Firewall Policy Rules</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where a "blue screen of death" (BSOD)
                           error might occur on endpoints when the <span class="tm">TrendAI™</span> Unauthorized Change Prevention Service is enabled and users attempt to save Microsoft
                           Office files through network drives</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixed an issue that could cause the service process
                           to crash under specific timing conditions</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixed a performance issue impacting the PureStorage
                           solution environment</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixed an issue where PowerPoint might cause a crash
                           when the endpoint wakes up from Hibernate mode</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixed an issue to avoid a corrupted registry causing
                           a "blue screen of death" (BSOD) issue</div>
</li>
<li class="li">
<div class="p">The update package includes several bug fixes for included component and module updates</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Security updates</b></div>
<ul class="ul" id="concept_v1h_cdg_cfc__ul_vc1_yyq_g2c">
<li class="li">
<div class="p">The update package includes several security enhancements for included component and
                           module updates</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="concept_v1h_cdg_cfc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: April 9, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: April 16, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: April 23, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 09 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-april-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent April 2025 update - Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-linux-agent-april-2025-update</link>
    <description><![CDATA[<div class="p">April 9, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202504 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_s2n_znx_bfc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.2.0.408</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 3.0.0.5996</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2.7600</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="concept_s2n_znx_bfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<div class="p">The following features and support enhancements </div>
<ul class="ul" id="concept_s2n_znx_bfc__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Dynamic Intelligence Mode added to Server &amp; Workload Protection allows the agent to
                           automatically adjust monitoring levels based on analyzing detected threats, user behavior,
                           and system context.</div>
</li>
<li class="li">
<div class="p">The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent can now be installed through connected Deep Security Agents.</div>
</li>
<li class="li">
<div class="p">Endpoint response supports listing mounted devices</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection now supports HTTP2 for inbound traffic scanning</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_s2n_znx_bfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixed an issue with Server &amp; Workload Protection where Linux Anti-malware engine might
                           crash when certain patterns are not loaded into the system</div>
</li>
<li class="li">
<div class="p">Fixed an issue with Server &amp; Workload Protection where scheduled scan is triggered
                           at the wrong time when "Enable agent to trigger scheduled scans for malware" is enabled</div>
</li>
<li class="li">
<div class="p">Other bug fixes are included for the agent program services package</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="concept_s2n_znx_bfc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: April 9, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: April 16, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: April 23, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 09 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-linux-agent-april-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent April 2025 update - macOS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-macos-agent-april-2025-update</link>
    <description><![CDATA[<div class="p">April 9, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202504 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="concept_gb1_qjg_cfc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.2.509</div>
<ul class="ul" id="concept_gb1_qjg_cfc__ul_gyr_bkr_g2c">
<li class="li">
<div class="p">ws_communicator.app</div>
</li>
<li class="li">
<div class="p">XBCAgent.app</div>
</li>
<li class="li">
<div class="p">PreCheck.app</div>
</li>
<li class="li">
<div class="p">SilentInstaller.app</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">Endpoint sensor version 1.2.509</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 3.5.7996</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="concept_gb1_qjg_cfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_gb1_qjg_cfc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Update Data Detection and Response status</div>
</li>
<li class="li">
<div class="p">Copyright update to 2025</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates feature descriptions in Endpoint Sensor policy
                           settings screen to improve user experience</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Adds application version information in Application
                           Control detection logs for methods matched in the Application Reputation List</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates Behavior Monitoring Core Service module to version
                           2.98.2101</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates Behavior Monitoring Core Drive module to version
                           2.98.2100</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enhancements to program update process to prevent excessive
                           network bandwidth usage</div>
</li>
<li class="li">
<div class="p">Enables agent to send real-time scan status to Standard Endpoint Protection</div>
</li>
<li class="li">
<div class="p">Updates the iCore module to support the millisecond format in detection logs</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_gb1_qjg_cfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where adding SHA-256 suspicious objects
                           in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> might prevent <span class="tm">TrendAI™</span> Apex One as a Service from upgrading to Standard Endpoint Protection.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where emails were not sent to policy
                           owner for policy owner updates</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where the updated <span class="tm">TrendAI™</span> Apex One group name might now appear in Standard Endpoint Protection Product Status
                           view</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue that might prevent Standard Endpoint
                           Protection from deploying components to integrated <span class="tm">TrendAI™</span> products</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where virus and malware file path processing
                           might cause the system to display spaces in the detection file path as ASCII codes
                           for the associated detection logs on the Log Query screen</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixed an issue where the <span class="tm">TrendAI™</span> Apex One web console might prevent users from viewing the predefined port lists in
                           Firewall Policy Rules</div>
</li>
<li class="li">
<div class="p">The update package includes several bug fixes for included component and module updates</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Security updates</b></div>
<ul class="ul" id="concept_gb1_qjg_cfc__ul_vc1_yyq_g2c">
<li class="li">
<div class="p">The update package includes several security enhancements for included component and
                           module updates</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="concept_gb1_qjg_cfc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: April 9, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: April 16, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: April 23, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 09 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-macos-agent-april-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Tag Management in Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-tag-management-v1cs</link>
    <description><![CDATA[<div class="p">April 9, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports adding custom tags to your clusters in Container Security using Tag
               Management. You can assign tags to specific assets to gain visibility across all <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> applications and keep your assets organized. </div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-tag-management#tagManagement_d92045b8_7480_4afe_810f_e913515a47ea">Tag Management</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Wed, 09 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-tag-management-v1cs</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Remote shell command drivelist</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-remote-shell-drivelist</link>
    <description><![CDATA[<div class="p">April 9, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Sensor introduces a new command in the remote shell, <code class="codeph">drivelist</code>. This command lists detailed drive information across Windows, Linux, and macOS platforms.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Response Management</b></span></div>]]></description>
    <pubDate>Wed, 09 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-remote-shell-drivelist</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>NSA/CISA Kubernetes Hardening Guidance now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-nsa-cisa-kub-guidance</link>
    <description><![CDATA[<div class="p">April 11, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports compliance scanning for NSA/CISA Kubernetes Hardening Guidance for Kubernetes
               clusters in Container Security. Assess and guarantee adherence to industry-leading
               security standards effortlessly, enhancing your Kubernetes security posture.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-compliance-scanning#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-196t45">Compliance</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Protection</b></span></div>]]></description>
    <pubDate>Fri, 11 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-nsa-cisa-kub-guidance</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>SHA-256 Support Added to Suspicious Object Actions for Endpoint Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-so-actions-sha256</link>
    <description><![CDATA[<div class="p">April 11, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agents now support "Log" and "Block" actions for File SHA-256 objects
               within the Suspicious Object List. This enhances threat response capabilities by allowing
               direct action on SHA-256 hashes identified as suspicious across Windows, Mac, and
               Linux platforms.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-suspicious-object-management#GUID-9D202DC9-3092-4502-85BA-CA8C63A52E69">Suspicious Object Management</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Threat Intelligence</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Suspicious Object Management</b></span></div>]]></description>
    <pubDate>Fri, 11 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-so-actions-sha256</guid>
    <category>Threat Intelligence</category>
</item>
<item>
    <title>TrendAI Vision One Business Resilience report available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-business-resilience-report</link>
    <description><![CDATA[<div class="p">April 11, 2025—The quarterly <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Business Resilience report is now available for organizations that have had <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> entitlements for at least 90 days. The current report offers detailed insights on
               how <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> solutions have contributed to your cybersecurity goals from January 1 to March 31
               of this year. The report includes information on your business's attack surface, security
               operations efficiency, detections by security later, and more. To view your report
               and access a PDF version you can send to stakeholders, go to <span class="menucascade"><b class="uicontrol">Dashboards and Reports</b> → <b class="uicontrol">Reports</b> → <b class="uicontrol">Generated Reports</b> → <b class="uicontrol"><span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Security Value Reports</b></span>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Reports</b></span></div>]]></description>
    <pubDate>Fri, 11 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-business-resilience-report</guid>
    <category>Dashboards and Reports</category>
</item>
<item>
    <title>AWS Well-Architected Framework compliance standards update for CREM Cloud Risk Management Users</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-standards-update</link>
    <description><![CDATA[<div class="p">April 14, 2025—We've updated the AWS Well-Architected Framework compliance standard
               report and the associated rule mappings by adding the latest version of the Framework,
               released in March 2025.</div><div class="important" id="concept_ogy_msh_y2c__note_ntn_hvh_y2c">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">
<ul class="ul" id="concept_ogy_msh_y2c__ul_x2w_4jr_z2c">
<li class="li">
<div class="p">Effective from June 1, 2025, the <cite class="cite">AWS Well-Architected Framework (updated October 2023) compliance standard</cite> will no longer be available. You will not be able to access the standard in the filters
                                    and create new reports or generate reports with existing configurations with the old
                                    standard. But you will have access to old PDF/CSV reports.</div>
</li>
<li class="li">
<div class="p">We recommend updating your report configurations to use the latest versions of the
                                    AWS Well-Architected Framework by June 1, 2025 to avoid any disruptions in your reports
                                    generation and compliance scores.</div>
</li>
</ul>
</div>
</td>
</tr>
</table>
</div><div class="p"><span class="menucascade" id="concept_ogy_msh_y2c__cloudPostureSecuritypath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Mon, 14 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-standards-update</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Real-Time Posture Monitoring now available for Google Cloud projects</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-RTPM-for-GCP</link>
    <description><![CDATA[<div class="p">April 14, 2025—CREM Cloud Risk Management now supports Real-Time Posture Monitoring
               previously titled Real-Time Monitoring (RTM) for Google Cloud projects connected through
               the Cloud Accounts app. You can enable Real-Time Posture Monitoring while creating
               a new Google Cloud project or turn the feature on for existing projects or organizations.
               For details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-realtime-threat-monitor#Real_Time_Threat_Monitoring_Settings__RTPM-for-gcp">RTPM for Google Cloud</a>.</div><div class="p"><span class="menucascade" id="concept_ogq_gwh_y2c__cloudPostureSecuritypath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Mon, 14 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-RTPM-for-GCP</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Network analytics report in Workbench insights</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-analytics-wb-insights</link>
    <description><![CDATA[<div class="p">April 14, 2025—Workbench insights now have a insight-level network analytics report.</div><div class="p">The network analytics report shows network correlations between the objects included
               in a Workbench insight. The report provides comprehensive analytics to help you monitor,
               manage, and identify the abnormal network traffic in your environment. <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-analytics-report#GUID-44E4D7FA-43D5-408E-8F3F-20DE8491B961">Learn more</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b> → <b class="uicontrol">Workbench Insights</b></span></div>]]></description>
    <pubDate>Mon, 14 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-analytics-wb-insights</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Install TrendAI Vision One Endpoint Security agent via Deep Security Agent</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-install-v1-agent-via-dsa</link>
    <description><![CDATA[<div class="p">April 15, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Server &amp; Workload Protection can now install <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent via Deep Security Agent. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-install-agent-via-deep-security" target="_blank">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-install-agent-via-deep-security</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Server &amp; Workload Protection</b></span></div>]]></description>
    <pubDate>Tue, 15 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-install-v1-agent-via-dsa</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Upcoming AWS account scanning enhancements for CREM Cloud Risk Management users</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-scanning-enhancements-crem</link>
    <description><![CDATA[<div class="p">April 15, 2025—As a part of our commitment to improving customer experience, we will
               release significant system enhancements for AWS cloud account scanning. These enhancements
               will be rolled out gradually over the next several months.</div><div class="p">Some upcoming enhancements allow for more thorough and accurate scanning of account
               resources and verification, which may change the display of particular data with existing
               inconsistencies.</div><div class="p"><span class="menucascade" id="concept_fnq_bxx_z2c__cloudPostureSecuritypath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Tue, 15 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-scanning-enhancements-crem</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1121</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201121</link>
    <description><![CDATA[<div class="p">April 16, 2025—Mobile Security for Business app version 2.0.1121 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-S9T0U1V2-W3R4-5678-STUV-WX9012345678__ul_s9t_0uv_w1x">
<li class="li">
<div class="p">Fixes an issue where the app cannot load the login page when Private Access is enabled.</div>
</li>
<li class="li">
<div class="p">Fixes an issue where websites cannot be accessed occasionally when Internet Access
                     is enabled.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 16 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201121</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Cyber Risk Index algorithm version 3.0 to be released May 5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cyber-risk-index-update-preview</link>
    <description><![CDATA[<div class="p">April 17, 2025—Version 3.0 of the Cyber Risk Index algorithm will be released on May
               5, 2025. The updated algorithm expands your organization's ability to clearly visualize
               cyber risk and efficiently prioritize mitigation and remediation efforts using refined
               risk score calculations, more precise risk identification, and a broader risk scope.
               Enhancements include a new risk factor and new risk events, weight and impact adjustments,
               incorporation of new data sources, and refinements that give you more visibility into
               significant sources of risk.</div><div class="p">Updates to the Cyber Risk Index algorithm may cause your Cyber Risk Index to rise
               or drop. Any fluctuations that coincide with the algorithm update are likely due to
               the update rather than an ongoing attack or system issue.</div><div class="p">To prevent unnecessary index fluctuations and ensure consistent standards, <span class="tm">TrendAI™</span> avoids updating the Cyber Risk Index algorithm unless absolutely necessary to accommodate
               product enhancements and the changing cyber threat landscape. The last Cyber Risk
               Index algorithm update, version 2.0, occurred January 24, 2024.</div><div class="p">To learn more about version 3.0 of the Cyber Risk Index algorithm, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cyber-risk-index-version-3#concept_ycr_qtb_y2c">May 5, 2025 - Cyber Risk Index algorithm version 3.0</a></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Thu, 17 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cyber-risk-index-update-preview</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Approved sender list for Correlated Intelligence in email service protection in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-approved-sender-list-for-ci-cecp</link>
    <description><![CDATA[<div class="p">April 18, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> allows configuring the approved sender list to exclude specific senders from Correlated
               Intelligence scanning in ATP policy configuration for Exchange Online, Exchange Online
               (Inline Mode), and Gmail.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 18 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-approved-sender-list-for-ci-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Correlated Intelligence available for Exchange Online (Inline Mode) in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ci-for-exchange-inline-cecp</link>
    <description><![CDATA[<div class="p">April 18, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> extends Correlated Intelligence to Exchange Online (Inline Mode) service protection.
               Administrators can configure Correlated Intelligence settings in ATP policies for
               Exchange Online (Inline Mode). This helps find security risks and anomalies in employees'
               emails using predefined and custom correlation rules and detection signals.</div><div class="p">The warning banner feature is not available for Exchange Online (Inline Mode).</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 18 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ci-for-exchange-inline-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Customizable email reporting acknowledgments in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-euq-email-customization-cecp</link>
    <description><![CDATA[<div class="p">April 18, 2025—Administrators can customize the acknowledgment emails sent to end
               users when they report emails. This allows for personalized messages, enhancing communication
               and user experience when reporting false positive and false negative emails.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 18 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-euq-email-customization-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Enhanced reporting with scam and DLP detections in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-report-has-scam-dlp-cecp</link>
    <description><![CDATA[<div class="p">April 18, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> allows administrators to create reports that include detections related to Data Loss
               Prevention (DLP) and scams. This enhancement provides administrators with comprehensive
               insights into potential data breaches and scam activities, improving overall security
               monitoring and response.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 18 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-report-has-scam-dlp-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.64</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-64</link>
    <description><![CDATA[<div class="p">April 21, 2025—Zero Trust Secure Access On-premises Gateway Version 1.0.64 delivers
               new features and enhancements.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-8kruol__ul_qkv_wq3_1fc">
<li class="li">Support the public IP address as a rule target in Internet Access and AI Service Access
                  rules.</li>
<li class="li">Support custom URL category-based traffic exceptions in Internet Access and AI Service
                  Access rules.</li>
<li class="li">Support tenancy restriction for GitHub Enterprise.</li>
<li class="li">Enhanced the HTTP/2 protocol handling to support some non-RFC compliant traffic.</li>
<li class="li">Fixed the timeout issue in proxy mode for large file uploading.</li>
</ul>]]></description>
    <pubDate>Mon, 21 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-64</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Detection signal customization for Correlated Intelligence in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ci-signal-customization-cegp</link>
    <description><![CDATA[<div class="p">April 21, 2025—In addition to predefined detection signals for Correlated Intelligence,
               <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> allows administrators to define custom signals by using predefined conditions to
               meet specific security needs. These custom signals can then be incorporated into correlation
               rules, enhancing the detection capabilities of <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> within the customer’s unique environment.</div><div class="p"><span class="menucascade" id="concept_lvq_kb3_y2c__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Mon, 21 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ci-signal-customization-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Enhanced Management and Regional Support for Phishing Simulation Integration in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-phishing-simulation-cegp</link>
    <description><![CDATA[<div class="p">April 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now offers enhanced management capabilities for third-party phishing simulation integrations.
               Administrators can manage approved service providers and their corresponding sending
               IP addresses directly through the administrator console, allowing <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> to bypass scans for phishing simulation emails from approved third-party service
               providers.</div><div class="p">Additionally, this feature now supports phishing simulation integration for the Japan
               site.</div><div class="p"><span class="menucascade" id="concept_wqg_tb3_y2c__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Mon, 21 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-phishing-simulation-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1126</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201126</link>
    <description><![CDATA[<div class="p">April 21, 2025—Mobile Security for Business app version 2.0.1126 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-R8S9T0U1-V2Q3-4567-RSTU-VW8901234567__ul_r8s_9tu_v0w">
<li class="li">
<div class="p">Fixes an issue where the app shows that a website is blocked but does not actually
                     block it.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 21 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201126</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Support for Microsoft Defender logs in custom detection filters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ms-defender-support-cdf</link>
    <description><![CDATA[<div class="p">April 25, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports Microsoft Defender logs in custom detection models.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="RN_2025_04_25_tp_dm_microsoft__ul_xmd_jys_cfc">
<li class="li">Active Directory (AD) Reconnaissance Activities</li>
<li class="li">Bloodhound Post-Exploitation Tool</li>
<li class="li">Command Line Used for Possible Overpass-The-Hash</li>
<li class="li">DLL Search Order Hijack</li>
<li class="li">Event Log Cleared</li>
<li class="li">Executable Loaded an Unexpected DLL</li>
<li class="li">File Backups Were Deleted</li>
<li class="li">File Dropped and Launched from Remote Location</li>
<li class="li">Hacktool in a PowerShell Script was Prevented from Executing via AMSI</li>
<li class="li">Malicious File Uploaded to Storage Account</li>
<li class="li">Malware Prevented</li>
<li class="li">Malware in a Command Line was Prevented from Executing</li>
<li class="li">Microsoft Defender Antivirus Tampering</li>
<li class="li">Microsoft Defender has Detected a Malware</li>
<li class="li">Possible Sideload Stealer Activity</li>
<li class="li">Process Memory Dump</li>
<li class="li">Process Related to Possible AD Reconnaissance</li>
<li class="li">Security Software was Disabled</li>
<li class="li">Sticky Keys Binary Hijack Detected</li>
<li class="li">Successful Logon Using Overpass-the-Hash with Potentially Stolen Credentials</li>
<li class="li">Suspected Delivery of Gootkit Malware</li>
<li class="li">Suspected Overpass-the-Hash Attack</li>
<li class="li">Suspicious Azure Role Assignment Detected</li>
<li class="li">Suspicious Key Vault Recovery Detected</li>
<li class="li">Suspicious Lsass Process Access</li>
<li class="li">Suspicious PowerShell Command Line</li>
<li class="li">Suspicious Script Launched</li>
<li class="li">Suspicious Sequence of Exploration Activities</li>
<li class="li">Windows Defender AV Detected</li>
</ul><div class="p">To help you test the new feature, we added custom detection filters to the <a class="xref" href="https://github.com/trendmicro/tm-v1-detection-models/tree/main/tm-v1-sigma-rules/third_party_logs/Microsoft/Microsoft%20Defender%20for%20Endpoint" target="_blank">tm-v1-detection-models GitHub repository</a>. You can import these detection models to your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> environment to test the new integration.</div><div class="p">For more information about custom detection filters, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters#GUID-30038E42-0086-45BA-AB35-EAA8A2EAB6F5">Custom filters</a></div>]]></description>
    <pubDate>Fri, 25 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ms-defender-support-cdf</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Support for Fortinet logs in custom detection filters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fortinet-logs-support-cdf</link>
    <description><![CDATA[<div class="p">April 25, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports Fortinet logs in custom detection models.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="RN_2025_04_25_tpi_cdf_fortinet_4acf3987_a71f_4090_a920_b1d0286eec95__ul_jzk_c1t_cfc">
<li class="li">
<div class="p">DHCP Client Blocked Log</div>
</li>
<li class="li">
<div class="p">File Reported Infected by Inline Block (Warning)</div>
</li>
<li class="li">
<div class="p">IP Pool PBA Block Exhausted</div>
</li>
<li class="li">
<div class="p">MIME Data Reported Infected by Inline Block (Warning)</div>
</li>
<li class="li">
<div class="p">Scan Error - Traffic Blocked</div>
</li>
<li class="li">
<div class="p">SSH Channel Is Blocked</div>
</li>
<li class="li">
<div class="p">SSH Connection Is Blocked Because Host-key Is Not Trust</div>
</li>
<li class="li">
<div class="p">SSH Shell Command Is Detected</div>
</li>
<li class="li">
<div class="p">SSL Connection Is Blocked Due To Its SSL Negotiation</div>
</li>
<li class="li">
<div class="p">SSL Connection Is Blocked Due To Server Certificate And SNI Mismatched</div>
</li>
<li class="li">
<div class="p">SSL Connection Is Blocked Due To Unable To Retrieve Server's Certificate</div>
</li>
<li class="li">
<div class="p">Traffic Blocked As ICAP Server Found Infection</div>
</li>
<li class="li">
<div class="p">VoIP SCCP Call Blocked</div>
</li>
<li class="li">
<div class="p">VoIP SIP Blocked</div>
</li>
<li class="li">
<div class="p">Web Content Banned Activity Found</div>
</li>
</ul><div class="p">To help you test the new feature, we added custom detection filters to the <a class="xref" href="https://github.com/trendmicro/tm-v1-detection-models/tree/main/tm-v1-sigma-rules/third_party_logs/fortinet/Fortigate/Firewall" target="_blank">tm-v1-detection-models GitHub repository</a>. You can import these detection models to your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> environment to test the new integration.</div><div class="p">For more information about custom detection filters, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters#GUID-30038E42-0086-45BA-AB35-EAA8A2EAB6F5">Custom filters</a></div>]]></description>
    <pubDate>Fri, 25 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fortinet-logs-support-cdf</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Enhanced Threat Intelligence Feed</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-threat-intelligence-feed</link>
    <description><![CDATA[<div class="p">April 28, 2025—Proactively gain a more comprehensive, sophisticated understanding
               of the evolving threat landscape through the enhanced Threat Intelligence Feed. The
               feed contains additional contextual information including threat report names, campaigns,
               intrusion sets, malware, tools, targeted industries, targeted countries, and common
               vulnerability and exposures (CVEs).</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-tmthreat-intelligence-feed#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-6ta6la">Trend Threat Intelligence Feed</a>.</div><div class="p"><span class="menucascade" id="WhatsNew_2025_04_28_enhanced_threat_intelligence_feed_b7cb5116_1348_4578_9146_f99fbff683be__campaignIntelPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Threat Intelligence</b></span></div>]]></description>
    <pubDate>Mon, 28 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-threat-intelligence-feed</guid>
    <category>Threat Intelligence</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1128</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201128</link>
    <description><![CDATA[<div class="p">April 30, 2025—Mobile Security for Business app version 2.0.1128 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-Q7R8S9T0-U1P2-3456-QRST-UV7890123456__ul_q7r_8st_u9v">
<li class="li">
<div class="p">Optimizes the network access mechanism to accelerate internet access.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 30 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201128</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1444</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201444</link>
    <description><![CDATA[<div class="p">April 30, 2025—Mobile Security for Business app version 2.0.1444 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-I9J0K1L2-M3H4-5678-IJKL-MN9012345678__ul_i9j_0kl_m1n">
<li class="li">
<div class="p">Optimizes the network access mechanism to accelerate internet access.</div>
</li>
<li class="li">
<div class="p">Updates the End-User License Agreement to the latest version.</div>
</li>
<li class="li">
<div class="p">Fixes an issue where the agent status on the console does not update when the app
                     is uninstalled from the personal profile when Microsoft Intune or Other MDM serves
                     as the MDM.</div>
</li>
<li class="li">
<div class="p">Fixes app crashes that occur when users tap the scan button.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 30 Apr 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201444</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Introducing Azure management group deployment</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-azure-management-group-deployment</link>
    <description><![CDATA[<div class="p">May 1, 2025—You can now connect your Azure Management Group to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>, which allows you to connect all the subscriptions in your Management Group simultaneously.
               The Management Group deployment feature is now available in public preview.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adding-azure-management-group#add_an_azure_management_group_e436362f_87fc_4bd6_9785_1c8b6ba131a6">Connect an Azure management group</a>.</div><div class="p"><span class="menucascade" id="concept_wdq_slx_2fc__cloudAccountsAzurepath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Azure</b></span></div>]]></description>
    <pubDate>Thu, 01 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-azure-management-group-deployment</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>New agent console experience</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-agent-console-experience</link>
    <description><![CDATA[<div class="p">May 1, 2025—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now features a new agent console with a more modern and consistent
               user experience. Additionally, you can use Endpoint Security Policies to manage agent
               console features such as customizable notifications and alerts for your endpoint users.</div>]]></description>
    <pubDate>Thu, 01 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-agent-console-experience</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>CIS Google Kubernetes Engine (GKE) Benchmark scanning now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-gke-1-7-0</link>
    <description><![CDATA[<div class="p">May 1, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports compliance scanning with <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cis-gke17-recs#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-qwo6y7">CIS Google Kubernetes Engine (GKE) Benchmark</a> v1.7.0 in your GKE clusters. Assess and guarantee adherence to industry-leading security
               standards effortlessly, enhancing your Kubernetes security posture.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-compliance-scanning#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-196t45">Compliance</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Protection</b></span></div>]]></description>
    <pubDate>Thu, 01 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-gke-1-7-0</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>New custom detection filters for Citrix logs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-detection-filters-for-citrix</link>
    <description><![CDATA[<div class="p">May 20, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports custom detection filters for Citrix. Try these detection filters to
               enhance Citrix log analysis:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-64__ul_gjq_lxs_jfc">
<li class="li">
<div class="p">Blocked Critical Severity Firewall Rules</div>
</li>
<li class="li">
<div class="p">Blocked High Severity Firewall Rules</div>
</li>
<li class="li">
<div class="p">Blocked Medium Severity Firewall Rules</div>
</li>
<li class="li">
<div class="p">Blocked Low Severity Firewall Rules</div>
</li>
<li class="li">
<div class="p">Not Blocked Critical Severity Firewall Rules</div>
</li>
<li class="li">
<div class="p">Not Blocked High Severity Firewall Rules</div>
</li>
<li class="li">
<div class="p">Not Blocked Medium Severity Firewall Rules</div>
</li>
<li class="li">
<div class="p">Not Blocked Low Severity Firewall Rules</div>
</li>
<li class="li">
<div class="p">Transformed Critical Severity Firewall Rules</div>
</li>
<li class="li">
<div class="p">Transformed High Severity Firewall Rules</div>
</li>
<li class="li">
<div class="p">Transformed Medium Severity Firewall Rules</div>
</li>
<li class="li">
<div class="p">Transformed Low Severity Firewall Rules</div>
</li>
</ul><div class="p"><a class="xref" href="https://github.com/trendmicro/tm-v1-detection-models/tree/main/tm-v1-sigma-rules/third_party_logs" target="_blank">Download these custom detection filters from GitHub</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Detection Model Management</b></span></div>]]></description>
    <pubDate>Thu, 01 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-detection-filters-for-citrix</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Zero Trust Secure Access Internet Access supports NTLM v2 authentication</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-internet-access-ntlm-v2</link>
    <description><![CDATA[<div class="p">Zero Trust Secure Access Internet Access now supports transparently authenticating
               end users on
               your on-premises Active Directory server using the NTLM v2 protocol, with an Internet
               Access
               On-Premises Gateway acting as the authentication proxy server.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-global-settings-for-ztsa#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-fv24sp">Global settings</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Fri, 02 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-internet-access-ntlm-v2</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Filter cases by who created or closed them</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cm-created-closed</link>
    <description><![CDATA[<div class="p">May 2, 2025—New Created by and Closed by fields and filters in Case Management allow
               you to view cases based on whether they were opened or closed by a security playbook,
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> user, or third-party ticketing system. With these fields, you can easily assess the
               effectiveness of automation and analyst performance for reporting accuracy and informed
               operational decisions. </div><div class="p"><span class="menucascade"><b class="uicontrol">Workflow and Automation</b> → <b class="uicontrol">Case Management</b></span></div>]]></description>
    <pubDate>Fri, 02 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cm-created-closed</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.22.1036</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-2-22-1036</link>
    <description><![CDATA[<div class="p">May 5, 2025—This update includes security enhancements, bug fixes, and feature releases
               as detailed in the following notes.</div><div class="p">Version 2.22.1036</div><ul class="ul" id="concept_ox1_y1z_lfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="concept_ox1_y1z_lfc__ul_hdc_cbz_lfc">
<li class="li">
<div class="p">Supports installation in restricted environments where direct internet access is blocked
                           and only proxy connections are allowed. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-secure-access-module-restr-envir#GUID-BED80320-70E5-47C4-9530-CC26073D469D-at0exl">Deploy Zero Trust Secure Access Module in restricted environment</a>.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_ox1_y1z_lfc__ul_cmv_nbz_lfc">
<li class="li">
<div class="p">Upgrade .NET SDK to version 8.0.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_ox1_y1z_lfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixed issue where ZTSA retries the login page indefinitely when authentication server
                           is down.</div>
</li>
<li class="li">
<div class="p">Fixed issue where Private Access gets stuck in "connecting" state when netsh.exe crashes.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Known bugs or issues</b></div>
<ul class="ul" id="concept_ox1_y1z_lfc__ul_mpt_tbz_lfc">
<li class="li">
<div class="p">Sign-in fails when enabling single sign-on using NTLM authentication. For more information,
                           see <a class="xref" href="https://success.trendmicro.com/en-US/solution/KA-0019741" target="_blank">https://success.trendmicro.com/en-US/solution/KA-0019741</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Sun, 04 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-2-22-1036</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.20.68</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-v2-20-68</link>
    <description><![CDATA[<div class="p">June 2, 2025—The latest version of the Zero Trust Secure Access Module for macOS has
               been released.</div><ul class="ul">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul">
<li class="li">
<div class="p">Displays a system notification when Private Access is disconnected.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Resolved issues</b></div>
<ul class="ul">
<li class="li">
<div class="p">After updates, Zero Trust Secure Access would still show the sign-in popup window.</div>
</li>
<li class="li">
<div class="p">When Mac device was shut down and rebooted a few times, the Zero Trust Secure Access
                           would display a blank UI.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 05 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-v2-20-68</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.19.44</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-2-19-44</link>
    <description><![CDATA[<div class="p">May 5, 2025—This update includes security enhancements, bug fixes, and feature releases
               as detailed in the following notes.</div><div class="p">Version 2.19.44</div><ul class="ul" id="concept_l4c_31z_lfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_l4c_31z_lfc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Improved debug log collecting</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="concept_l4c_31z_lfc__ul_xzd_plg_cfc">
<li class="li">
<div class="p">Fixed issue where users cannot access an internal app using Private Access if there
                           are more than 100 internal apps.</div>
</li>
<li class="li">
<div class="p">Fixed issue where disabling Internet Access in certain steps caused UI issues and
                           crashes.</div>
</li>
<li class="li">
<div class="p">Fixed issue where auto proxy discovery is turned on after uninstalling.</div>
</li>
<li class="li">
<div class="p">Fixed issue where some logs were not complete.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 05 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-2-19-44</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector Version 2.36.0.3401</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-36-0-3401</link>
    <description><![CDATA[<div class="p">May 5, 2025—Zero Trust Secure Access Private Access Connector Version 2.36.0.3401
               delivers new features and resolved issues.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-f457q9__ul_ofy_zqg_2fc">
<li class="li">Allow users to select a keyboard layout when accessing Web-RDP internal applications
                  through the User Portal.</li>
<li class="li">Fixed the issue of an incorrect connected module count on the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console caused by ZTNP resilience.</li>
<li class="li">Fixed the DNS issue when querying FQDNs.</li>
</ul>]]></description>
    <pubDate>Mon, 05 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-36-0-3401</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Cloud Risk Management firewall exceptions added</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-may-5-cloud-risk-management-fqdn</link>
    <description><![CDATA[<div class="p">May 5, 2025—Cloud Risk Management firewall exceptions have been added to all regions
               for Real-Time Posture Monitoring.</div><div class="p">For more information see the firewall exceptions for your region: </div><ul class="ul" id="concept_zmh_hxn_ffc__ul_jvp_tcw_mdc">
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-americas-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-w5u3ny">Americas</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-australia-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-p68lat">Australia</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-europe-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-39yqlm">Europe</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-india-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-pcp8xx">India</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-japan-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-h9fiel">Japan</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-uae-all-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-f8rxzy">Middle East and Africa</a></div>
</li>
</ul>]]></description>
    <pubDate>Mon, 05 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-may-5-cloud-risk-management-fqdn</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Introducing XDR for Cloud - Azure Activity Logs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-azure-activity-logs</link>
    <description><![CDATA[<div class="p">May 5, 2025—XDR for Cloud is now available for Azure environments, with support for
               Azure Activity Logs in public preview. Enable cloud detections for Azure Activity
               Logs in your Azure subscription to gain actionable insights into user, service, and
               resource activity. Detection models identify suspicious and malicious activities such
               as privilege escalation, attempted data exfiltration, critical resource and service
               disruption, and more.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-azure-features-permissions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-blrjwv">Azure features and permissions</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 05 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-azure-activity-logs</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Hide sensitive data in Runtime Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-hide-sensitive-data-runtime</link>
    <description><![CDATA[<div class="p">May 6, 2025—You can now hide sensitive data in the Runtime Security feature in Container
               Security. This enhancement stops sensitive data leaks within your Runtime Security
               events, safeguarding your critical information. Concealing sensitive data within these
               events bolsters your data security and reduces the chances of unauthorized access
               to confidential information.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-security-scanning-kubernete#GUID-BED80320-70E5-47C4-9530-CC26073D469D-6eetgq">Enable Runtime Security and scanning features</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Inventory</b></span></div>]]></description>
    <pubDate>Mon, 05 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-hide-sensitive-data-runtime</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Custom parameters supported for all risk events</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crem-custom-parameters</link>
    <description><![CDATA[<div class="p">May 5, 2025—When creating new rules for risk events or managing risk events in Event
               Rule Management, you can now set up to five custom parameters for a rule. Available
               parameters include IP address matches, users, devices, time and date, and more. When
               all parameters for a rule are met, the rule automatically marks the associated risk
               event as Remediated, Accepted, or Dismissed. You can add, edit, or remove parameters
               for your event rules at any time in Event Rule Management.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 05 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crem-custom-parameters</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Schema changes for container vulnerability logs in HEC and S3 connectors</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-schema-changes-tpi</link>
    <description><![CDATA[<div class="p">May 5, 2025—We are announcing minor schema changes for container vulnerability logs
               in Third-Party Integration Splunk HEC and AWS S3 connectors. These changes are designed
               to facilitate Splunk in capturing event time from container vulnerability logs by
               placing the event time fields at the beginning of the logs. Users who have enabled
               container vulnerability logs in their AWS S3 Bucket connector may also be impacted
               by these changes.</div><div class="p">For more information, see <a class="xref" href="https://success.trendmicro.com/en-US/solution/KA-0019589" target="_blank">Schema changes for Container Vulnerability logs in AWS S3 and Splunk HEC Connectors
                  in TrendAI Vision One™</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 05 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-schema-changes-tpi</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Bi-directionally sync cases with Jira Cloud tickets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-sync-cm-jira</link>
    <description><![CDATA[<div class="p">May 5, 2025—Install the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Connector app and configure the Jira Cloud ticket profile to enable Jira integration
               with Case Management. See <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-jira-cloud-integration#task_tpy_jk3_y2c">Jira Cloud integration (for Case Management)</a> for details.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 05 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-sync-cm-jira</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection supports Windows vulnerability scanning</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__avtd-supports-windows-2</link>
    <description><![CDATA[<div class="p">May 7, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> now supports the scanning of resources running Windows instances. For a list of specific
               supported Windows versions, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-supported-operating-systems#concept_g5b_yjf_2fc">Agentless Vulnerability &amp; Threat Detection supported operating systems and language
                  packages</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Fri, 09 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__avtd-supports-windows-2</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection supports Windows vulnerability scanning</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-supports-windows</link>
    <description><![CDATA[<div class="p">May 7, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> now supports the scanning of resources running Windows instances. For a list of specific
               supported Windows versions, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-supported-operating-systems#concept_g5b_yjf_2fc">Agentless Vulnerability &amp; Threat Detection supported operating systems and language
                  packages</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Fri, 09 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-supports-windows</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Application discovery is available for Zero Trust Secure Access Private Access</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-app-discovery-ztsa-private-access</link>
    <description><![CDATA[<div class="p">Application discovery identifies domains and IP addresses accessed over the past 14
               days,
               helping you determine which internal applications are being used in your organization's
               network. To facilitate the configuration of access rules, this feature also identifies
               users who have accessed the internal applications and recommends the most likely user
               groups.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Private Access Configuration</b></span></div>]]></description>
    <pubDate>Wed, 14 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-app-discovery-ztsa-private-access</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Support for Microsoft Defender for Endpoint logs in custom detection filters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-mde-logs</link>
    <description><![CDATA[<div class="p">May 15, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports Microsoft Defender for Endpoint logs in custom detection filters.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_kgz_4kf_vfc__ul_olm_qkf_vfc">
<li class="li">
<div class="p">Backup Deletion</div>
</li>
<li class="li">
<div class="p">Base64 Encoded PE File in Command Line</div>
</li>
<li class="li">
<div class="p">Clearing of System Logs </div>
</li>
<li class="li">
<div class="p">Detect Torrent Usage</div>
</li>
<li class="li">
<div class="p">Hiding a Java Class File</div>
</li>
<li class="li">
<div class="p">HTA Startup Persistence</div>
</li>
<li class="li">
<div class="p">Suspicious Bitlocker Encryption</div>
</li>
<li class="li">
<div class="p">Suspicious Image Load Related to IcedId</div>
</li>
<li class="li">
<div class="p">Turning Off System Restore</div>
</li>
</ul><div class="p">The related custom detection filters have been added to the <a class="xref" href="https://github.com/trendmicro/tm-v1-detection-models/tree/main/tm-v1-sigma-rules/third_party_logs/Microsoft/Microsoft%20Defender%20for%20Endpoint" target="_blank">tm-v1-detection-models GitHub repository</a>. You can import these detection filters to your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> environment to test the new integration.</div><div class="p">For more information about custom detection filters, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-creating-custom-filter#CreatingCustomFilter">Create a custom filter</a>.</div>]]></description>
    <pubDate>Thu, 15 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-mde-logs</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Azure activity log custom filters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-azure-activity-log-custom-filters</link>
    <description><![CDATA[<div class="p">May 15, 2025—Create and manage custom filters using the Azure activity log when the
               event type is cloud activity. This option empowers security teams to focus detection
               on specific activities and behaviors in the Azure cloud infrastructure.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters#GUID-30038E42-0086-45BA-AB35-EAA8A2EAB6F5">Custom filters</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol"> Detection Model Management</b> → <b class="uicontrol"> Custom Filters</b></span></div>]]></description>
    <pubDate>Thu, 15 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-azure-activity-log-custom-filters</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Filter insights by event time</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-filter-insights-event-time</link>
    <description><![CDATA[<div class="p">May 16, 2025—Workbench now supports filtering insights by event time. This addition
               allows you to quickly isolate relevant events and correlate events within a defined
               period.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insights#GUID-86CD9AB6-4CAD-4E08-B948-FA2373A1C555__GUID-1B4C75D4-D403-4C7D-A980-25FB78E01ED7">Workbench insights</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">XDR Threat Investigation</b> → <b class="uicontrol"> Workbench</b></span></div>]]></description>
    <pubDate>Fri, 16 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-filter-insights-event-time</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1479</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-1479</link>
    <description><![CDATA[<div class="p">May 19, 2025</div><div class="p">This update includes enhancements, bug fixes, and security updates for the Virtual
               Network Sensor including:
               <ul class="ul" id="whatsnew_xkt_gvr_3fc__ul_h12_mvr_3fc">
<li class="li">
<div class="p">This update adds support for QUIC protocol with Virtual Network Sensor.</div>
</li>
<li class="li">
<div class="p">This update adds support for new Virtual Network Sensor FQDNs.</div>
</li>
</ul>
</div>]]></description>
    <pubDate>Mon, 19 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-1479</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Customize inactivity and max session timeout</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-customize-timeouts</link>
    <description><![CDATA[<div class="p">May 19, 2025—Inactivity timeout and max session timeout can now be customized in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. This gives organizations the flexibility to comply with regulatory standards and
               meet internal security policy requirements.</div><div class="p">The default timeouts for these settings are based on industry best practices:
               <ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-svzvwp__ul_nxj_b1s_hfc">
<li class="li">Inactivity timeout: 15 minutes</li>
<li class="li">Max session timeout: 8 hours</li>
</ul>
</div><div class="p">For more details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-console-settings#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-zigioe">Console Settings</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Console Settings</b></span></div>]]></description>
    <pubDate>Mon, 19 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-customize-timeouts</guid>
    <category>Administration</category>
</item>
<item>
    <title>Least privileges automatically assigned to the StackSets permission execution role</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-least-priv-auto-assigned</link>
    <description><![CDATA[<div class="p">May 19, 2025—The CloudFormation template for File Security Storage automatically reduces
               the required StackSets execution role permissions to the minimum necessary for the
               role.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">File Security</b></span></div>]]></description>
    <pubDate>Mon, 19 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-least-priv-auto-assigned</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Workbench Insight Progression Update playbooks now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insight-progress-update</link>
    <description><![CDATA[<div class="p">May 19, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now offers Workbench Insight Progression Update playbooks to automatically notify
               stakeholders when insights are generated or updated—ensuring timely visibility into
               threat developments. These playbooks can open or update cases and send email notifications
               with key insight details. Each notification and case can include a Generative AI-generated
               summary of the Workbench insight, providing clear and contextual information to support
               faster, more informed responses.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-insight-progression-update#task_gg3_ggd_3fc">Manually create Workbench Insight Progression Update playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 19 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insight-progress-update</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Enhanced risk event filtering for Risk Event Response playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-event-asset-types</link>
    <description><![CDATA[<div class="p">May 19, 2025—Risk Event Response playbooks now support filtering by asset type to
               better target relevant risk events—except for the risk events associated with account
               compromise. Users can specify the asset type when configuring the playbook target
               and condition settings.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-creating-risk-reduction-playbooks#GUID-E852DBEE-FB1F-4C87-891C-CE5D38274385">Manually create Risk Event Response playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 19 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-risk-event-asset-types</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Enhanced security check management for approved senders in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-approved-sender-bypass-check-cegp</link>
    <description><![CDATA[<div class="p">May 20, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> extends its Bypass Checks for approved senders in Sender Filter Settings. In addition
               to the existing Connection Filtering and Spam Filtering criteria, this enhancement
               allows administrators to determine whether to apply security risks and anomalies scanning
               on emails from approved senders. This provides a more comprehensive and robust security
               framework, ensuring that even approved senders are subject to advanced threat detection
               and mitigation.</div><div class="p"><span class="menucascade" id="whatsnew_qvt_qpp_3fc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 20 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-approved-sender-bypass-check-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Endpoint Security Policies can now manage deployment of the TrendAI Toolbar for Enterprise browser extension to Windows endpoints</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-security-browser-extension</link>
    <description><![CDATA[<div class="p">May 20, 2025—Endpoint Security Policies now include the option to deploy the <span class="tm">TrendAI™</span> Toolbar for Enterprise browser extension to Windows endpoints with the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent installed. The <span class="tm">TrendAI™</span> Toolbar for Enterprise browser extension provides enhanced security capabilities
               including blocking URLs and domains added to your Suspicious Object List. The browser
               extension supports Chrome and Microsoft Edge browsers on Windows.</div><div class="p">To deploy the toolbar, enable the feature in Endpoint Security Policies. For more
               information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies-browser-extension#concept_zdk_mw5_hfc">Browser Extension</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security Policies</b></span></div>]]></description>
    <pubDate>Tue, 20 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-security-browser-extension</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Enhanced file scanning with Virtual Analyzer nominated by Correlated Intelligence in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ci-file-nomination-tova-cegp</link>
    <description><![CDATA[<div class="p">May 20, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> allows administrators to decide whether to send files that are identified as suspicious
               by Correlated Intelligence to Virtual Analyzer for further analysis. Administrator
               can also specify the security level for configured actions based on Virtual Analyzer’s
               scan results. This feature enhances file scanning robustness, ensuring more thorough
               threat detection and improved security.</div><div class="p"><span class="menucascade" id="whatsnew_mcm_bqp_3fc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 20 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ci-file-nomination-tova-cegp</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Minimum password length updated to 12 characters for enhanced security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-password-length-enhanced-security</link>
    <description><![CDATA[<div class="p">May 21, 2025—The minimum password length for <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> user accounts increases from 8 characters to 12 characters to align with Payment
               Card Industry Data Security Standard (PCI DSS) requirements and industry best practices.
               This change helps strengthen access control and protect against brute-force attacks.</div><div class="p">Existing passwords with less than 12 characters are still allowed for login, but newly
               created user accounts and updated passwords are required to meet the new minimum password
               length of 12 characters.</div><div class="p"><span class="menucascade"><b class="uicontrol"><span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span></b> → <b class="uicontrol">Account Settings</b></span></div>]]></description>
    <pubDate>Wed, 21 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-password-length-enhanced-security</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Replacement with text or file available for password-protected files in Malware Scanning detection in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-more-action-pswd-prtc-files-cecp</link>
    <description><![CDATA[<div class="p">May 23, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> includes the “Replace with text/file” action for detecting password-protected files
               in Malware Scanning for Exchange Online and Exchange Online (Inline Mode). This enhancement
               allows administrators to replace password-protected files in emails with the preconfigured
               text or file.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 23 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-more-action-pswd-prtc-files-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Correlated Intelligence available for Gmail (Inline Mode) in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gmail-inline-support-ci-cecp</link>
    <description><![CDATA[<div class="p">May 23, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> extends Correlated Intelligence to Gmail (Inline Mode) service protection. Administrators
               can configure Correlated Intelligence settings in ATP policies for Gmail (Inline Mode).
               This helps find security risks and anomalies in employees' emails using predefined
               and custom correlation rules and detection signals.</div><div class="p">The warning banner feature is not available for Gmail (Inline Mode).</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 23 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-gmail-inline-support-ci-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Enhanced attachment password guessing with AI capabilities in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-attachment-pswd-guess-withai-cecp</link>
    <description><![CDATA[<div class="p">May 23, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> improves the attachment password guessing feature by integrating AI. This enhancement
               uses contextual inference from email content to attempt to find passwords, facilitating
               the detection of malicious payloads in attached files.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 23 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-attachment-pswd-guess-withai-cecp</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Email and Collaboration Protection audit logs available in TrendAI Vision One</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cecp-audit-logs-tov1</link>
    <description><![CDATA[<div class="p">May 23, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> sends its audit logs to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. Administrators can filter and view these logs alongside other <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> audit logs in a centralized location - the Audit Logs screen under Administration.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Audit Logs</b></span></div>]]></description>
    <pubDate>Fri, 23 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cecp-audit-logs-tov1</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Helm Chart 3.0.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-3-0-0</link>
    <description><![CDATA[<div class="p">May 26, 2025—The 3.0.0 Helm Chart introduces changes that are essential for accessing
               new functionalities and improving performance. Only <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> users are supported for this version and future releases.</div><div class="p"> This release also includes a minor update to your Helm value overrides and firewall
               settings required when upgrading from <code class="codeph">cloudone-container-security-helm</code>. See <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-upgrade-helm-cloud-one#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-hgc8nc">Upgrade Helm chart from Trend Cloud One to TrendAI Vision One™</a> for more information.</div><div class="p"><b class="uicontrol">References</b></div><div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.0.0" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.0.0</a></div>]]></description>
    <pubDate>Mon, 26 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-3-0-0</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Introducing Data Policy and Data Inventory</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-data-policy-inventory</link>
    <description><![CDATA[<div class="p">May 26, 2025—Data Policy and Data Inventory are now in public preview as part of the
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> platform. These additions to the Data Security group expand visibility of your sensitive
               and business-critical data to on-prem and hybrid environments, and provide a quick
               way for you to identify devices and files that are at risk.</div><ul class="ul" id="WhatsNew_2025_05_26_introducing_data_policy_ccafb345_9684_4c85_8710_8769495c8e43__ul_ytd_qrn_3fc">
<li class="li">
<div class="p">With Data Policy, you can create data policies that define the network locations where
                     sensitive data resides, including the ability to specify which file types to monitor.
                     </div>
</li>
<li class="li">
<div class="p"><span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> uses data policies to create a catalog of files and assets with sensitive data in
                     the network locations, which you can then view in Data Inventory. From there, you
                     can identify and action risks to prevent data leakage before it happens.</div>
</li>
</ul><div class="p">These new features provide a comprehensive approach to identifying and securing sensitive
               data, helping your organization maintain robust data protection and compliance across
               your network infrastructure. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-policy-overview#data_policy_dff0e8d4_f3ca_44a7_b8e7_5530ab86415b">Data Policy</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-inventory#data_inventory_5d933020_b7b2_41fd_a553_ea661243e57a">Data Inventory</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Data Security</b> → <b class="uicontrol"> Data Policy </b></span></div><div class="p"><span class="menucascade"><b class="uicontrol">Data Security</b> → <b class="uicontrol"> Data Inventory</b></span></div>]]></description>
    <pubDate>Mon, 26 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-data-policy-inventory</guid>
    <category>Data Security</category>
</item>
<item>
    <title>Data Detection and Response now available in Workbench</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-detection-response-wb</link>
    <description><![CDATA[<div class="p">May 26, 2025—Data Detection and Response capabilities have been extended to Workbench.
               This update includes new features to help you safeguard your sensitive data:</div><ul class="ul" id="WhatsNew_2025_05_26_data_detection_and_response_now_available_in_workbench_640f5cb4_3668_4459_b0f8_f23d6fab6fda__ul_rq4_ykd_mfc">
<li class="li">
<div class="p"><b class="b">Workbench alerts:</b> Track and investigate potential sensitive data leakage with timely notifications.</div>
</li>
<li class="li">
<div class="p"><b class="b">Data lineage graph:</b> Visualize how sensitive data is shared or transmitted within your environment.</div>
</li>
</ul><div class="p">To leverage these features, enable Data Security and create data policies to specify
               which network locations to monitor. Enhance your data protection strategy with these
               advanced tools, now available in Workbench.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-lineage" target="_blank">Data Lineage</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol"> Workbench</b></span></div>]]></description>
    <pubDate>Mon, 26 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-detection-response-wb</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Data Detection and Response now available in Observed Attack Techniques</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-detection-response-oat</link>
    <description><![CDATA[<div class="p">May 26, 2025—Data Detection and Response capabilities have been extended to Observed
               Attack Techniques. This enhancement brings powerful new features to improve your data
               security:</div><ul class="ul" id="WhatsNew_2025_05_26_data_detection_and_response_now_available_in_observed_attack_techniques_62fe5853_df42_4086_9ad6_ebefe1fa956e__ul_cj3_4ld_mfc">
<li class="li">
<div class="p"><b class="b">Data lineage:</b> Visualize the flow and transformation of data within your organization.</div>
</li>
<li class="li">
<div class="p"><b class="b">Data risk:</b> Use Data Detection and Response detection filters to identify potential risks for
                     data collection and exfiltration.</div>
</li>
</ul><div class="p">To take advantage of these new features, enable Data Security and create at least
               one data policy in your organization.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__sensitive-data-events-oat-2" target="_blank">View sensitive data events in Observed Attack Techniques</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol"> Observed Attack Techniques</b></span></div>]]></description>
    <pubDate>Mon, 26 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-detection-response-oat</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1448</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201448</link>
    <description><![CDATA[<div class="p">May 27, 2025—Mobile Security for Business app version 2.0.1448 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-H8I9J0K1-L2G3-4567-HIJK-LM8901234567__ul_h8i_9jk_l0m">
<li class="li">
<div class="p">Supports web reputation checks on websites accessed in Microsoft Edge.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 27 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201448</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Manual scanning available for Agentless Vulnerability &amp; Threat Detection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-manual-scanning</link>
    <description><![CDATA[<div class="p">May 29, 2025—You can now conduct manual scans for vulnerabilities and malware on connected
               cloud accounts that have Agentless Vulnerability &amp; Threat Detection enabled. To trigger
               a manual scan, go to Cloud Security Posture and click <b class="uicontrol">Scan</b> next to the Agentless Vulnerability &amp; Threat Detection entry in the <b class="uicontrol">Available features</b> widget. To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-manual-scan#task_zbt_tyk_lfc">Scan manually for vulnerabilities and malware</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security Posture</b></span></div>]]></description>
    <pubDate>Thu, 29 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-manual-scanning</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Support for Forcepoint logs in custom detection filters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-forcepoint</link>
    <description><![CDATA[<div class="p">May 30, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports Forcepoint logs in custom detection filters.</div><div class="p">This update includes the following changes:
               <ul class="ul" id="whatsnew_ewx_hmf_vfc__ul_tjj_jmf_vfc">
<li class="li">
<div class="p">Alert Server Active Alert Queue Full</div>
</li>
<li class="li">
<div class="p">Connection Allowed</div>
</li>
<li class="li">
<div class="p">Connection Closed Abnormally</div>
</li>
<li class="li">
<div class="p">Connection Closed</div>
</li>
<li class="li">
<div class="p">Connection Discarded</div>
</li>
<li class="li">
<div class="p">Firewall Authentication New Configuration Successfully Installed</div>
</li>
<li class="li">
<div class="p">Firewall DHCP Reply Received</div>
</li>
<li class="li">
<div class="p">Firewall DHCP Request Received</div>
</li>
<li class="li">
<div class="p">Firewall IPsec Information</div>
</li>
<li class="li">
<div class="p">Firewall New IPsec VPN Connection</div>
</li>
<li class="li">
<div class="p">Firewall New Route Based VPN Connection</div>
</li>
<li class="li">
<div class="p">Firewall Protocol Agent Transport Protocol Violation</div>
</li>
<li class="li">
<div class="p">Firewall Related Connection</div>
</li>
<li class="li">
<div class="p">Firewall Synchronization Receiving Sync Messages</div>
</li>
<li class="li">
<div class="p">Firewall Synchronization State Sync Failed to Receive</div>
</li>
<li class="li">
<div class="p">Firewall System Security Policy Reload</div>
</li>
<li class="li">
<div class="p">Free Disk Space on Server Reached Alert Threshold</div>
</li>
<li class="li">
<div class="p">IKE Invalid Exchange Type</div>
</li>
<li class="li">
<div class="p">IKE Invalid KE Payload</div>
</li>
<li class="li">
<div class="p">IKE Invalid Next Payload</div>
</li>
<li class="li">
<div class="p">IKE Invalid Protocol ID</div>
</li>
<li class="li">
<div class="p">IKE Invalid Syntax</div>
</li>
<li class="li">
<div class="p">IKE No Proposal Chosen</div>
</li>
<li class="li">
<div class="p">IKE Rejected Message</div>
</li>
<li class="li">
<div class="p">IKE Retry Limit Reached</div>
</li>
<li class="li">
<div class="p">IKE SA Deleted</div>
</li>
<li class="li">
<div class="p">IKE SA Initiator Done</div>
</li>
<li class="li">
<div class="p">IKE SA Responder Done</div>
</li>
<li class="li">
<div class="p">IKE SA Responder Failed</div>
</li>
<li class="li">
<div class="p">IKE Starting Initiator Negotiation</div>
</li>
<li class="li">
<div class="p">IKE Starting Responder Negotiation</div>
</li>
<li class="li">
<div class="p">IKE Timeout</div>
</li>
<li class="li">
<div class="p">IKE Traffic Selector Unacceptable</div>
</li>
<li class="li">
<div class="p">IPSEC ESP SA Look-up Failure</div>
</li>
<li class="li">
<div class="p">IPsec SA Deleted</div>
</li>
<li class="li">
<div class="p">IPsec SA Initiator Done</div>
</li>
<li class="li">
<div class="p">IPsec SA Responder Done</div>
</li>
<li class="li">
<div class="p">Management Server Sign-in Failed</div>
</li>
<li class="li">
<div class="p">System Cluster-Protocol Event</div>
</li>
<li class="li">
<div class="p">System Policy Applied</div>
</li>
<li class="li">
<div class="p">System Policy Loaded</div>
</li>
</ul>
</div><div class="p">The related custom detection filters have been added to the <a class="xref" href="https://github.com/trendmicro/tm-v1-detection-models/tree/main/tm-v1-sigma-rules/third_party_logs/Forcepoint" target="_blank">tm-v1-detection-models GitHub repository</a>. You can import these detection filters to your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> environment to test the new integration.</div><div class="p">For more information about custom detection filters, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-creating-custom-filter#CreatingCustomFilter">Create a custom filter</a>.</div>]]></description>
    <pubDate>Fri, 30 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-forcepoint</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>New proxy support for Runtime Malware Scanning</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-runtime-malware-proxy</link>
    <description><![CDATA[<div class="p">May 30, 2025—Runtime Malware Scanning now supports HTTP, HTTPS, and sock5 proxy in
               Container
               Security. You can assign proxy settings while creating clusters in Container Inventory
               or when
               installing Helm chart. </div><div class="p">For information about creating new clusters or installing Helm chart, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-kubernetes-clusters#GUID-BED80320-70E5-47C4-9530-CC26073D469D-n5thl2">Kubernetes clusters</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-supported-helm-versions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-1pm24d">Supported Helm versions</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Inventory</b></span></div>]]></description>
    <pubDate>Fri, 30 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-runtime-malware-proxy</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Runtime Secret Scanning now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-runtime-secret-scanning</link>
    <description><![CDATA[<div class="p">May 31, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports Runtime Secret Scanning in Container Security. Enable Runtime Secret
               Scanning to detect secrets in your containers, ensuring that any exposures in production
               containers are detected quickly.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-security-scanning-kubernete#GUID-BED80320-70E5-47C4-9530-CC26073D469D-6eetgq">Enable Runtime Security and scanning features</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Inventory</b></span></div>]]></description>
    <pubDate>Sat, 31 May 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-runtime-secret-scanning</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.23.1042</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-20250602-v2-33-1042</link>
    <description><![CDATA[<div class="p">June 2, 2025—The latest version of the Zero Trust Secure Access Module for Windows
               has been released.</div><ul class="ul">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul">
<li class="li">
<div class="p">During OOBE (Out-of-Box Experience) mode, Zero Trust Secure Access bypasses all traffic.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul">
<li class="li">
<div class="p">Shows system notification when Private Access is disconnected.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Resolved issues</b></div>
<ul class="ul">
<li class="li">
<div class="p">When WMI (Windows Management Instrumentation) was corrupt in Windows, the Zero Trust
                           Secure Access UI was unable to display.</div>
</li>
<li class="li">
<div class="p">When NTLM is enabled and Forward Proxy Service was installed on the Service Gateway,
                           Zero Trust Secure Access failed to sign-in.</div>
</li>
<li class="li">
<div class="p">A sign-in pop-up window constantly appeared even if Internet Access was connected.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 02 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-20250602-v2-33-1042</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Pay-as-you-go billing for XDR for Cloud now available on AWS Marketplace</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-xdr-cloud-payg</link>
    <description><![CDATA[<div class="p">June 2, 2025—XDR for Cloud is now available with hourly pay-as-you-go billing via
               AWS Marketplace. You can now choose between allocating credits and using consumption-based
               pay-as-you-go billing for your XDR for Cloud usage.</div><div class="p">To get started with pay-as-you-go, purchase a <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> pay-as-you-go contract on AWS Marketplace. For existing subscribers, you can simply
               switch between billing models for XDR for Cloud in Credits &amp; Billing.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pay-as-you-go#PAYG_GUID_5461a4aa_2a57_4c36_9b8d_2da02c11e7a7">Pay-as-you-go</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">TrendAI™ Flex Licensing</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Platform Usage and Credits</b></span></div>]]></description>
    <pubDate>Mon, 02 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-xdr-cloud-payg</guid>
    <category>Administration</category>
</item>
<item>
    <title>Support for Microsoft Defender for Endpoint logs in custom detection filters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-mde-0602</link>
    <description><![CDATA[<div class="p">June 2, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports Microsoft Defender for Endpoint logs in custom detection filters.</div><div class="p">This update includes the following changes:
               <ul class="ul" id="whatsnew_vmy_g4f_vfc__ul_zzb_j4f_vfc">
<li class="li">
<div class="p">Suspicious Behavior by cmd.exe Observed</div>
</li>
<li class="li">
<div class="p">USB Drive Letter Changed</div>
</li>
<li class="li">
<div class="p">USB Drive Mounted</div>
</li>
<li class="li">
<div class="p">USB Drive Unmounted</div>
</li>
<li class="li">
<div class="p">User Account Added to Local Group</div>
</li>
<li class="li">
<div class="p">User Account Created</div>
</li>
<li class="li">
<div class="p">User Account Deleted</div>
</li>
<li class="li">
<div class="p">User Account Modified</div>
</li>
<li class="li">
<div class="p">User Account Removed from Local Group</div>
</li>
<li class="li">
<div class="p">LSASS Process Memory Write</div>
</li>
<li class="li">
<div class="p">Post-exploitation Tool Detected</div>
</li>
<li class="li">
<div class="p">SmartScreen Exploit Warning</div>
</li>
<li class="li">
<div class="p">SmartScreen URL Warning</div>
</li>
<li class="li">
<div class="p">SmartScreen User Override</div>
</li>
<li class="li">
<div class="p">Attempt to Tamper with Microsoft Defender XDR</div>
</li>
<li class="li">
<div class="p">Connection to Untrusted Wi-Fi Network</div>
</li>
<li class="li">
<div class="p">Get Clipboard Data</div>
</li>
<li class="li">
<div class="p">High Severity Alert</div>
</li>
<li class="li">
<div class="p">Registry Auto-Start Service</div>
</li>
<li class="li">
<div class="p">Remote Desktop Connection</div>
</li>
<li class="li">
<div class="p">Security Group Deleted</div>
</li>
</ul>
</div><div class="p">The related custom detection filters have been added to the <a class="xref" href="https://github.com/trendmicro/tm-v1-detection-models/tree/main/tm-v1-sigma-rules/third_party_logs/Microsoft/Microsoft%20Defender%20for%20Endpoint" target="_blank">tm-v1-detection-models GitHub repository</a>. You can import these detection filters to your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> environment to test the new integration.</div><div class="p">For more information about custom detection filters, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-creating-custom-filter#CreatingCustomFilter">Create a custom filter</a>.</div>]]></description>
    <pubDate>Mon, 02 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-mde-0602</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>EventBridge sync for File Security Storage CloudFormation template</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-eventbridge-sync-for-fss</link>
    <description><![CDATA[<div class="p">June 2, 2025—Users now have an installation option that turns on the scanning of buckets
               by
               default if they have EventBridge enabled or does not turn on the scanning of any bucket
               when
               setting up their CloudFormation template.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">File Security</b> → <b class="uicontrol">File Security Storage</b></span></div>]]></description>
    <pubDate>Mon, 02 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-eventbridge-sync-for-fss</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access adds PoP site in Google Cloud Taiwan</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-gcp-taiwan</link>
    <description><![CDATA[<div class="p">June 2, 2025—Zero Trust Secure Access Internet Access now supports the Google Cloud
               Taiwan region. Users in the region may configure their service FQDNs to reflect the
               new location. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol">Secure Access Configuration</b> → <b class="uicontrol">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 02 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-gcp-taiwan</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Internet Access rules allow for destination location filtering</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-destination-filtering-ia-rules</link>
    <description><![CDATA[<div class="p">June 2, 2025—You can now filter your internet access rules based on the destination.
               This
               enables you to enhance security by blocking specific countries and regions, or restricting
               access to URLs based on geographic location. </div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-internet-access-rule#GUID-BED80320-70E5-47C4-9530-CC26073D469D-5oxu51__GUID-71E6E7FF-D420-465A-9CFA-86F8BA5BE094">Create an internet access rule</a>. </div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access </b> → <b class="uicontrol">Rules</b> → <b class="uicontrol">Internet Access</b></span></div>]]></description>
    <pubDate>Mon, 02 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-destination-filtering-ia-rules</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.65</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-65</link>
    <description><![CDATA[<div class="p">June 3, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.65 is now
               available.</div><section class="section" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-s1f9qj__section_obz_xpr_kfc">
<h3 class="section-title">New Features</h3>
<div class="p">
<ul class="ul">
<li class="li">
<div class="p">Support destination geolocation-based traffic filtering for internet access control.</div>
</li>
<li class="li">
<div class="p">Support mobile based device posture checking for internet access control.</div>
</li>
</ul>
</div>
</section><section class="section" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-s1f9qj__section_pd1_dqr_kfc">
<h3 class="section-title">Enhancements</h3>
<div class="p">
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-s1f9qj__ul_bvh_2qr_kfc">
<li class="li">
<div class="p">Improved WRS query handling for private IP destinations in on-premises gateway</div>
</li>
<li class="li">
<div class="p">Optimized memory usage in the on-premises gateway</div>
</li>
<li class="li">
<div class="p">Integrated the latest prompt injection detection service for the on-premises gateway
                           with AI.</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Tue, 03 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v-1-0-65</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>New macOS Support for Vulnerability Assessment</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dvass-macos-support</link>
    <description><![CDATA[<div class="p">June 3, 2023—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Vulnerability Assessment now includes support for macOS. This enhancement allows
               you to:
               <ul class="ul" id="concept_pq5_zlq_nfc__ul_o5f_cmq_nfc">
<li class="li">Detect known Common Vulnerabilities and Exposures (CVEs) in macOS applications and
                     operating systems.</li>
<li class="li">Automatically enable Vulnerability Assessment on macOS endpoints with the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent installed.</li>
<li class="li">Connect additional third-party data sources for increased visibility into vulnerabilities
                     in macOS assets.</li>
</ul>This update ensures comprehensive vulnerability management across all major operating
               systems, enhancing your organization's security posture. To learn more about supported
               macOS versions and applications, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerability-assessment-os#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-85">Vulnerability Assessment supported operating systems</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dvass-macos-applications#reference_grf_31l_nfc">Vulnerability Assessment supported macOS applications</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Tue, 03 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dvass-macos-support</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent June 2025 update - Windows</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-june-2025-update</link>
    <description><![CDATA[<div class="p">June 4, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202506 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_v2n_rjt_vfc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.1.0.5544</div>
</li>
<li class="li">
<div class="p">Service communication manager (VOM) plug-in version 1.2.0.987</div>
</li>
<li class="li">
<div class="p">Endpoint sensor version 1.2.0.6320</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery version 1.0.0.3854</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2.12290</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_v2n_rjt_vfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_v2n_rjt_vfc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Network Content Inspection Engine for Endpoint Sensor can now operate alongside the
                           Standard Endpoint Protection version of Network Content Inspection Engine</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery enhances data collection of hardware and network information</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Adds support for .jsp file extension</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Allows iAU to duplicate full pattern if incremental
                           version is not available</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Web Reputation by default enables use of Server Name
                           Indication (SNI) queries when determining the risk level of a website</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Enhancements to information of results from Process
                           Memory Scan deduplications.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_v2n_rjt_vfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixed an issue preventing Endpoint Sensor from updating Network Content Inspection
                           Engine pattern updates when deployed to agents with Standard Endpoint Protection features
                           installed</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fix issue causing agent crash on x86 systems if only
                           Web Reputation is enabled</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fix issue causing agent to not update using <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> version control policies</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fix system hang issue when AMSP attempts to write logs</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fix potential crash issue during SSL handshake</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_v2n_rjt_vfc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: June 4, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: June 11, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: June 18, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 04 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-june-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent June 2025 update - Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-linux-agent-june-2025-update</link>
    <description><![CDATA[<div class="p">June 4, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202506 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_i2w_rnt_vfc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.2.0.744</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 3.0.0.6437</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2.12010</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_i2w_rnt_vfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_i2w_rnt_vfc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Update CACert</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor supports .jsp file extension</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Adds support for .jsp file extension</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Web Reputation by default enables use of Server Name
                           Indication (SNI) queries when determining the risk level of a website</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_i2w_rnt_vfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixes bugs for agent program and Endpoint Sensor</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: fix issue where agent reports 5102 Protection Module
                           Deployment Failed with "no such file or directory" when version control policy is
                           enabled</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fix potential crash issue during SSL handshake</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_i2w_rnt_vfc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: June 4, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: June 11, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: June 18, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 04 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-linux-agent-june-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent June 2025 update - macOS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-macos-agent-june-2025-update</link>
    <description><![CDATA[<div class="p">June 4, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202506 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_mhv_tmt_vfc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.2.521</div>
<ul class="ul" id="whatsnew_mhv_tmt_vfc__ul_gyr_bkr_g2c">
<li class="li">
<div class="p">ws_communicator.app</div>
</li>
<li class="li">
<div class="p">XBCAgent.app</div>
</li>
<li class="li">
<div class="p">PreCheck.app</div>
</li>
<li class="li">
<div class="p">SilentInstaller.app</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">Endpoint sensor version 1.2.520</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_mhv_tmt_vfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_mhv_tmt_vfc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Agent now supports Data Vulnerability </div>
</li>
<li class="li">
<div class="p">Agent now supports Incident Response for macOS</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_mhv_tmt_vfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Update includes several bug fixes to the agent program and Endpoint Sensor</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_mhv_tmt_vfc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: June 4, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: June 11, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: June 18, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 04 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-macos-agent-june-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector Version 2.37.0.1734</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-37-0-1734</link>
    <description><![CDATA[<div class="p">June 5, 2025—Improved System Stability and Performance Enhancements include fixes
               for memory leaks, relay server tunnel disconnects, and added metrics for relay connection
               status</div><section class="section" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-rl1ld9__section_isw_wmv_nfc">
<h3 class="section-title">Resolved Issues</h3>
<div class="p">
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-rl1ld9__ul_ygk_ymv_nfc">
<li class="li">
<div class="p">Fixed memory leaks that occurred with the dPID process responsible for Access Rule
                           enforcement.</div>
</li>
<li class="li">
<div class="p">Fixed frequent relay server tunnel disconnects caused by improper session cleanup.
                           </div>
</li>
<li class="li">
<div class="p">Additional metrics to track the status of the relay connection.</div>
</li>
<li class="li">
<div class="p">Minor bug fixes</div>
</li>
</ul>
</div>
</section>]]></description>
    <pubDate>Thu, 05 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-37-0-1734</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>New custom detection filters for Microsoft logs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-cdf-microsoft-logs</link>
    <description><![CDATA[<div class="p">June 5, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> supports new custom detection filters for Microsoft.</div><div class="p">Try these detection filters to enhance Microsoft log analysis:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-63__ul_zcg_g52_4fc">
<li class="li">
<div class="p">Possible theft of passwords and other sensitive web browser information</div>
</li>
<li class="li">
<div class="p">Backdoor Detected</div>
</li>
<li class="li">
<div class="p">Backdoor Prevented</div>
</li>
<li class="li">
<div class="p">BloodHound Process Detection</div>
</li>
<li class="li">
<div class="p">CertUtil Remote Download</div>
</li>
<li class="li">
<div class="p">Hacktool Detected</div>
</li>
<li class="li">
<div class="p">Hacktool Prevented</div>
</li>
<li class="li">
<div class="p">Malware Detected</div>
</li>
<li class="li">
<div class="p">Ransomware Prevented</div>
</li>
<li class="li">
<div class="p">Remote exfiltration activity</div>
</li>
<li class="li">
<div class="p">Suspicious Hacking Tool Detected</div>
</li>
<li class="li">
<div class="p">Unwanted Software Prevented</div>
</li>
<li class="li">
<div class="p">Unwanted Software Detected</div>
</li>
<li class="li">
<div class="p">Wevtutil Clear Windows Event Logs</div>
</li>
<li class="li">
<div class="p">Windows Network Sniffing</div>
</li>
<li class="li">
<div class="p">AMSI Script Detection</div>
</li>
<li class="li">
<div class="p">Possible ongoing hands-on-keyboard activity (Cobalt Strike)</div>
</li>
</ul><div class="p">Download these custom detection filters from <a class="xref" href="https://github.com/trendmicro/tm-v1-detection-models/tree/main/tm-v1-sigma-rules/third_party_logs" target="_blank">GitHub</a>. For more information see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters#GUID-30038E42-0086-45BA-AB35-EAA8A2EAB6F5">Custom filters</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">XDR Threat Investigation</b> → <b class="uicontrol">Detection Model Management</b></span></div>]]></description>
    <pubDate>Thu, 05 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-cdf-microsoft-logs</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1495</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101495</link>
    <description><![CDATA[<div class="p">June 09, 2025—Virtual Network Sensor version 1.0.1495  includes enhancements, bug
               fixes, and security updates.</div><div class="p">This update includes the following change:</div><ul class="ul" id="whatsnew_bdh_kpv_tfc__ul_d2y_xhb_r2c">
<li class="li">
<div class="p">This update adds support for simulating the APT28 attack.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 09 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101495</guid>
    <category>Network Security</category>
</item>
<item>
    <title>AI-recommended events for enhanced Workbench insight correlation</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-events-wb-insight-correlation</link>
    <description><![CDATA[<div class="p">June 9, 2025—Workbench now intelligently surfaces AI-recommended events related to
               endpoints within an existing insight. These recommendations help you:</div><ul class="ul" id="whatsnew_hpf_rvn_mfc__ul_m5w_zvn_mfc">
<li class="li">
<div class="p">Discover related activity that may not have been initially included in the insight.</div>
</li>
<li class="li">
<div class="p">Add relevant events directly to the insight for further correlation.</div>
</li>
</ul><div class="p">This feature can give you a more complete and accurate picture of a potential incident
               and accelerate your investigation by uncovering hidden connections and suspicious
               activity that might otherwise go unnoticed.</div><div class="p"><span class="menucascade"><b class="uicontrol">XDR Threat Detection</b> → <b class="uicontrol"> Workbench</b></span></div>]]></description>
    <pubDate>Mon, 09 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-events-wb-insight-correlation</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Real-Time Posture Monitoring now available for Azure Subscriptions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-RTPM-for-Azure-Cloud</link>
    <description><![CDATA[<div class="p"> June 10, 2025—CREM Cloud Risk Management now supports Real-Time Posture Monitoring
               previously titled Real-Time Monitoring (RTM) for Azure subscriptions connected through
               the Cloud Accounts app. You can enable Real-Time Posture Monitoring while creating
               a new Azure subscription or turn the feature on for existing subscription or organizations.
               For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-realtime-threat-monitor#Real_Time_Threat_Monitoring_Settings">Real-Time Posture Monitoring settings</a></div><div class="p"><span class="menucascade" id="concept_j42_zp2_4fc__cloudPostureSecuritypath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Tue, 10 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-RTPM-for-Azure-Cloud</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Helm Chart 3.0.1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-3-0-1</link>
    <description><![CDATA[<div class="p">June 13, 2025—The 3.0.1 Helm Chart release includes a minor update to your Helm value
               overrides and firewall settings required when upgrading from <code class="codeph">cloudone-container-security-helm</code>. See <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-upgrade-helm-cloud-one#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-hgc8nc">Upgrade Helm chart from Trend Cloud One to TrendAI Vision One™</a> for more information.</div><div class="p">Detailed release notes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-2xrpsw__ul_wzt_1zp_xfc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-2xrpsw__ul_t3k_czp_xfc">
<li class="li">
<div class="p">Malware scanning supports ARM64 architecture.</div>
</li>
<li class="li">
<div class="p">Send Kubernetes events when authentication token is expired or invalid.</div>
</li>
<li class="li">
<div class="p">Automatically clean up all Container Security custom resources when uninstalling Helm
                           Chart.</div>
</li>
<li class="li">
<div class="p">Support for installing container images in a registry with no "project". The <code class="codeph">images.defaults.project</code> field is not handled correctly when empty.</div>
</li>
</ul>
</li>
<li class="li"><b class="uicontrol">Upgrade instructions</b><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-2xrpsw__ul_yxd_fzp_xfc">
<li class="li">
<div class="p">Sample upgrade command:
                           <pre class="codeblock" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-2xrpsw__codeblock_dfc_4pb_qfc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.0.1.tar.gz </pre>
</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-2xrpsw__ul_ocq_tdq_xfc">
<li class="li"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.0.1" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.0.1</a></li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Fri, 13 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-3-0-1</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 2.0.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-2-0-5</link>
    <description><![CDATA[<div class="p">June 16, 2025—Service Gateway Smart Protection Services Version 2.0.5 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_xqn_t1h_rfc__ul_qg3_wfz_c1c">
<li class="li">
<div class="p">This update resolves integration issues between sg-gcs (Generic Cache Service) and
                     other system components.</div>
</li>
<li class="li">
<div class="p">This update automatically removes outdated files during patch installation to ensure
                     a clean deployment environment.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 16 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-2-0-5</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.20</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3-0-20</link>
    <description><![CDATA[<div class="p">June 16, 2025—Service Gateway Firmware Version 3.0.20 includes enhancements, bug fixes,
               and security updates for Service Gateway.</div><div class="p">This update includes the following changes:</div><ul class="ul">
<li class="li">
<div class="p">This update upgrades the appliance base OS to Rocky Linux 9.5, addressing several
                     known security vulnerabilities.</div>
</li>
<li class="li">
<div class="p">This update upgrades MicroK8s to version 1.30, along with updated container images,
                     to ensure improved orchestration and compatibility.</div>
</li>
<li class="li">
<div class="p">This update modifies default OVA settings to use RHEL 7 OS type and VMXNET3 NIC for
                     better compatibility with VMware platforms.</div>
</li>
<li class="li">
<div class="p">This update introduces a new PML scan setting in File Security Virtual Appliance (FSVA)
                     to enhance scan configuration flexibility.</div>
</li>
<li class="li">
<div class="p">This update addresses various issues to enhance overall system reliability and correctness.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 16 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3-0-20</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Customized timeout RBAC permissions update</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-timeout-rbac-update</link>
    <description><![CDATA[<div class="p">June 16, 2025—To provide proper Role-Based Access Control (RBAC) for console settings,
               only “Master Administrator” and “Operator" can edit pre-defined roles. "Endpoint Administrator"
               and "Email Administrator" can still view the <b class="uicontrol">Console Settings</b> page, but no longer have the permissions required to make changes to it.</div><div class="p">For more details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-console-settings#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-nw6k3u" target="_blank">Console Settings</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Console Settings</b></span></div>]]></description>
    <pubDate>Mon, 16 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-timeout-rbac-update</guid>
    <category>Administration</category>
</item>
<item>
    <title>Helm Chart 3.0.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-3-0-2</link>
    <description><![CDATA[<div class="p">June 16, 2025—The 3.0.2 Helm Chart release includes a minor update to your Helm value
               overrides and firewall settings required when upgrading from <code class="codeph">cloudone-container-security-helm</code>. See <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-upgrade-helm-cloud-one#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-hgc8nc">Upgrade Helm chart from Trend Cloud One to TrendAI Vision One™</a> for more information.</div><div class="p">Detailed release notes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-lyvjqc__ul_aky_ldq_xfc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-lyvjqc__ul_dqq_ndq_xfc">
<li class="li">Switched communication protocol used by internal components to communicate with backend.</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-lyvjqc__ul_b2x_qdq_xfc">
<li class="li">
<div class="p">Sample upgrade command:
                           <pre class="codeblock" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-lyvjqc__codeblock_dfc_4pb_qfc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.0.2.tar.gz</pre>
</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-lyvjqc__ul_lf1_wdq_xfc">
<li class="li"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.0.2" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.0.2</a></li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 16 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-3-0-2</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Container Security Helm chart upgrade</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-helm-chart-upgrade</link>
    <description><![CDATA[<div class="p">June 16, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports a new version of Helm chart for Container Security. This upgrade version
               improves performance and adds access to new functionality. The Helm chart repository
               is at a new location in GitHub: <a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm" target="_blank">https://github.com/trendmicro/visionone-container-security-helm</a>. 
               <div class="important" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-pre05v__note_rnx_wk5_pfc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body"> You must modify your Helm override file values and firewall exceptions for this new
                              version. </div>
</td>
</tr>
</table>
</div>
</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-upgrade-helm-cloud-one#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-hgc8nc">Upgrade Helm chart from Cloud One to TrendAI Vision One™</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Inventory</b></span></div>]]></description>
    <pubDate>Mon, 16 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-helm-chart-upgrade</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>New osquery and YARA rule templates with TrendAI Threat Intelligence for Response Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-TI-RM-templates</link>
    <description><![CDATA[<div class="p">June 16, 2025—Announcing the availability of new pre-built osquery and YARA rule templates
               in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Response Management. These templates are designed to detect suspicious and malicious
               behaviors, streamlining the investigation and triage of potential breaches. With these
               templates you can expect:</div><ul class="ul" id="whatsnew_olc_rbj_4fc__ul_mqm_1cj_4fc">
<li class="li">
<div class="p">Enhanced security posture powered by <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>, delivering proactive identification of emerging threats, adversary tactics, and
                     vulnerabilities relevant to your environment.</div>
</li>
<li class="li">
<div class="p">Seamless integration of ready-to-use templates into your existing operational workflows,
                     accelerating incident response and investigation.</div>
</li>
</ul><div class="p">Access these templates from the <b class="uicontrol">Response scripts</b> tab in Response Management. For more information see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-response-management#GUID-B24E310A-FF3E-46D5-9EF8-F51A9332796F">Response Management</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Workflow and Automation</b> → <b class="uicontrol">Response Management</b></span></div>]]></description>
    <pubDate>Mon, 16 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-TI-RM-templates</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Mail tracking logs for accepted traffic integrated with TrendAI Vision One</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__cegp-mail-tracking-logs-v1-2</link>
    <description><![CDATA[<div class="p">June 17, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now supports uploading mail tracking logs for the accepted traffic type to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. This enhancement allows customers to:</div><ul class="ul" id="whatsnew_uky_fvm_qfc-2__ul_vgn_2wm_qfc">
<li class="li">
<div class="p">Query accepted traffic logs directly in the Search app</div>
</li>
<li class="li">
<div class="p">Integrate these logs with third-party platforms via the Third-Party Integration app</div>
</li>
</ul><div class="p">To query mail tracking logs in the Search app, you can use the following fields:</div><ul class="ul" id="whatsnew_uky_fvm_qfc-2__ul_at1_3wm_qfc">
<li class="li">
<div class="p">scanType: gateway_realtime_accepted_mail_traffic</div>
</li>
<li class="li">
<div class="p">pname: Cloud Email Gateway Protection, and then filter the search result by LogType:
                     messaging</div>
</li>
<li class="li">
<div class="p">msgUuid or mailMsgId</div>
<div class="p">Note that multiple records may share the same msgUuid or mailMsgId if an email undergoes
                     several rounds of scans or actions based on the configured policy rules.</div>
</li>
</ul><div class="p">Only newly generated accepted traffic logs are uploaded; historical logs are not migrated.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">XDR Data Explorer</b></span></div>]]></description>
    <pubDate>Tue, 17 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__cegp-mail-tracking-logs-v1-2</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Helm Chart 3.0.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-helm-chart-upgrade-rn</link>
    <description><![CDATA[<div class="p">June 17, 2025—The 3.0.3 Helm Chart release includes a minor update to your Helm value
               overrides and firewall settings required when upgrading from <code class="codeph">cloudone-container-security-helm</code>. See <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-upgrade-helm-cloud-one#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-hgc8nc">Upgrade Helm chart from Trend Cloud One to TrendAI Vision One™</a> for more information.</div><div class="p">Detailed release notes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-g1r1xv__ul_wzt_1zp_xfc">
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-g1r1xv__ul_t3k_czp_xfc">
<li class="li">
<div class="p">Fixes occasional issues when upgrading from Cloud One.</div>
</li>
</ul>
</li>
<li class="li"><b class="uicontrol">Upgrade instructions</b><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-g1r1xv__ul_yxd_fzp_xfc">
<li class="li">
<div class="p">Sample upgrade command:
                           <pre class="codeblock" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-g1r1xv__codeblock_dfc_4pb_qfc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.0.3.tar.gz </pre>
</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-g1r1xv__ul_ocq_tdq_xfc">
<li class="li"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.0.3" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.0.3</a></li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Tue, 17 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-helm-chart-upgrade-rn</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Mail tracking logs for accepted traffic integrated with TrendAI Vision One</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cegp-mail-tracking-logs-v1</link>
    <description><![CDATA[<div class="p">June 17, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now supports uploading mail tracking logs for the accepted traffic type to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. This enhancement allows customers to:</div><ul class="ul" id="whatsnew_uky_fvm_qfc__ul_vgn_2wm_qfc">
<li class="li">
<div class="p">Query accepted traffic logs directly in the Search app</div>
</li>
<li class="li">
<div class="p">Integrate these logs with third-party platforms via the Third-Party Integration app</div>
</li>
</ul><div class="p">To query mail tracking logs in the Search app, you can use the following fields:</div><ul class="ul" id="whatsnew_uky_fvm_qfc__ul_at1_3wm_qfc">
<li class="li">
<div class="p">scanType: gateway_realtime_accepted_mail_traffic</div>
</li>
<li class="li">
<div class="p">pname: Cloud Email Gateway Protection, and then filter the search result by LogType:
                     messaging</div>
</li>
<li class="li">
<div class="p">msgUuid or mailMsgId</div>
<div class="p">Note that multiple records may share the same msgUuid or mailMsgId if an email undergoes
                     several rounds of scans or actions based on the configured policy rules.</div>
</li>
</ul><div class="p">Only newly generated accepted traffic logs are uploaded; historical logs are not migrated.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">XDR Data Explorer</b></span></div>]]></description>
    <pubDate>Tue, 17 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cegp-mail-tracking-logs-v1</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Email header scanning in DLP policy available for more email services and protection modes</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-header-dlp-more-services-cecp</link>
    <description><![CDATA[<div class="p">June 20, 2025—The Data Loss Prevention policy feature, which previously supported
               scanning email header fields for Exchange Online, now extends to Gmail, Exchange Online
               (Inline Mode, and Gmail (Inline Mode). This enhancement allows DLP policies to inspect
               email headers in addition to the subject, body, and attachments, providing broader
               coverage and more consistent protection across supported platforms.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 20 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-header-dlp-more-services-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Enhanced email reporting to skip emails matching global approved header fields for Exchange Online</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-email-reporting-cecp</link>
    <description><![CDATA[<div class="p">June 20, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> enhances its email reporting feature by allowing administrators to control whether
               reported Exchange Online emails—matching the approved header field list configured
               under Global Settings—are sent to <span class="tm">TrendAI™</span> for further analysis. This provides greater flexibility for admins to manage data
               handling based on organizational policies and privacy considerations.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 20 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-email-reporting-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Enhanced malware scanning to detect active content in PDF files</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-detect-active-content-pdf-cecp</link>
    <description><![CDATA[<div class="p">June 20, 2025—Besides Microsoft office files as attachments, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> supports detecting active content in PDF files attached to emails in Exchange Online
               and Exchange Online (Inline Mode). It can then take the configured action on emails
               containing active content in attached PDF files.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 20 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-detect-active-content-pdf-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1504</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101504</link>
    <description><![CDATA[<div class="p">June 23, 2025—Virtual Network Sensor version 1.0.1504  includes enhancements, bug
               fixes, and security updates.</div><div class="p">This update includes the following change:</div><ul class="ul" id="whatsnew_hqt_rrv_tfc__ul_d2y_xhb_r2c">
<li class="li">
<div class="p">This update adds support for simulating the Black Basta attack.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 23 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101504</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.66</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-66</link>
    <description><![CDATA[<div class="p">June 23, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.66 is now
               available.</div><section class="section" id="whatsnew_atb_hjn_sfc__section_pd1_dqr_kfc">
<h3 class="section-title">Enhancements</h3>
<ul class="ul" id="whatsnew_atb_hjn_sfc__ul_bvh_2qr_kfc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_atb_hjn_sfc__ul_dcg_kc2_xfc">
<li class="li">
<div class="p">Disable the use of Google Public DNS for certain traffic in on-premises gateways and
                              use the configured DNS instead.</div>
</li>
</ul>
</li>
</ul>
</section>]]></description>
    <pubDate>Mon, 23 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-66</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Central management of Deep Discovery Inspector detection rules in Network Analysis Configuration</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ddi-rules-in-nac</link>
    <description><![CDATA[<div class="p">June 23, 2025—You can now manage detection rules in Network Analysis Configuration
               for all connected Deep Discovery Inspector appliances version 6.8 Service Pack 1 or
               later by enabling central management for Deep Discovery Inspector resources.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-nac-detection-rules#concept_ggc_kty_pfc">Detection Rules</a>.</div><div class="p"><span class="menucascade" id="whatsnew_inv_3xy_pfc__networkMSpath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Analysis Configuration</b></span></div>]]></description>
    <pubDate>Mon, 23 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ddi-rules-in-nac</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Workbench insight enrichment with associated Threat Intelligence Sweeping alerts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-insight-enriched-ti-alerts</link>
    <description><![CDATA[<div class="p">June 23, 2025—Workbench can now automatically associate Threat Intelligence Sweeping
               alerts with Workbench insights to enhance your investigations. You can also manually
               add these alerts to insights when you identify relevant connections. The associated
               Threat Intelligence Sweeping alerts enrich the insights by providing additional indicators
               of compromise and threat context directly within your insights. </div><div class="p">With this feature, you can have more streamlined and comprehensive investigations
               into potential security incidents.</div><div class="p"><span class="menucascade"><b class="uicontrol">XDR Threat Detection</b> → <b class="uicontrol"> Workbench</b></span></div>]]></description>
    <pubDate>Mon, 23 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-insight-enriched-ti-alerts</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Endpoint Security Supports Red Hat Enterprise Linux 9 (ARM64)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-security-RH3L-9</link>
    <description><![CDATA[<div class="p">June 25, 2025—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports deploying Server &amp; Workload Protection and Endpoint
               Sensor to Red Hat Enterprise Linux 9 (ARM64) endpoints.</div><div class="p">For details on supported Linux platforms, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">Endpoint Agent System Requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol"><b class="wintitle" id="whatsnew_jyh_nby_vfc__endptInventoryScreen">Endpoint Inventory</b></b></span></div>]]></description>
    <pubDate>Wed, 25 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-security-RH3L-9</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Central management of network resources now available in Network Resources</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-resources-central-mgmt</link>
    <description><![CDATA[<div class="p">June 25, 2025—Users now have the flexibility to sync network resources from either
               Deep Discovery Inspector appliances version 6.8 or later or <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Analysis Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Resources</b></span></div>]]></description>
    <pubDate>Wed, 25 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-resources-central-mgmt</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Helm Chart 3.0.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-3-0-4</link>
    <description><![CDATA[<div class="p">June 27, 2025—The 3.0.4 Helm Chart release includes the following:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-chopv4__ul_wzt_1zp_xfc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-chopv4__ul_t3k_czp_xfc">
<li class="li">
<div class="p">Improved namespace management in Red Hat OpenShift.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-chopv4__ul_nkz_q2q_xfc">
<li class="li">
<div class="p">Fixed Scout error in Amazon ECS and Red Hat OpenShift.</div>
</li>
</ul>
</li>
<li class="li"><b class="uicontrol">Upgrade instructions</b><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-chopv4__ul_yxd_fzp_xfc">
<li class="li">
<div class="p">Sample upgrade command:
                           <pre class="codeblock" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-chopv4__codeblock_dfc_4pb_qfc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.0.4.tar.gz </pre>
</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-chopv4__ul_ocq_tdq_xfc">
<li class="li"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.0.4" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.0.4</a></li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Fri, 27 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-3-0-4</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Runtime malware scanning in Container Security now supports ARM64</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-malware-scan-arm64</link>
    <description><![CDATA[<div class="p">June 27, 2025—The Runtime Malware Scanning feature now supports ARM64 CPU node clusters.
               This update brings full functionality to ARM64 architecture while maintaining support
               for x86 platforms, and applies to clusters running Helm chart 3.0.1 and later. For
               more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-security-scanning-kubernete#GUID-BED80320-70E5-47C4-9530-CC26073D469D-6eetgq">Enable Runtime Security and scanning features</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Container Security</b></span></div>]]></description>
    <pubDate>Fri, 27 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-runtime-malware-scan-arm64</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Nozomi Vantage integration now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-nozomi-vantage-new</link>
    <description><![CDATA[<div class="p">June 30, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now allows for integration with the Nozomi Networks Vantage OT/IoT security platform.
               The enables the Nozomi Vantage connector to extract asset data, inventory information,
               and security alerts from industrial control systems and forward the data telemetry
               to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> for use in risk analysis and threat correlation. Configure API authentication in
               your Nozomi Vantage console to begin enabling the integration. to enable secure data
               feeds and enhance your converged IT/OT security visibility and threat correlation.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Sun, 29 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-nozomi-vantage-new</guid>
    <category>Third-Party Integration</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.24.1059</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-version-2241059</link>
    <description><![CDATA[<div class="p">June 30, 2025—This update includes security enhancements, bug fixes, and feature releases
               as detailed in the following notes.</div><div class="p">Version 2.24.1059</div><ul class="ul" id="whatsnew_u3l_hpt_vfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_u3l_hpt_vfc__ul_cmv_nbz_lfc">
<li class="li">
<div class="p">Update skips connectivity checks for other proxies in the PAC file if any proxy is
                           reachable.</div>
</li>
<li class="li">
<div class="p">Update replaces the netsh command with a Windows API or PowerShell command.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_u3l_hpt_vfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Update prevents update an uninstall processes from running simultaneously</div>
</li>
<li class="li">
<div class="p">Fix crash issues in ZTSAUpdate.exe and ZTSADownloader.exe that could occur during
                           update process</div>
</li>
<li class="li">
<div class="p">Fix issue where changes to the NTLM setting in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> does not immediately take effect in the Zero Trust Secure Access module</div>
</li>
<li class="li">
<div class="p">Fix issue where NTLM authentication fails when NT service account is logged in</div>
</li>
<li class="li">
<div class="p">Fix issue where Private Access internal apps are not reachable if any internal app
                           FQDN contains a space</div>
</li>
<li class="li">
<div class="p">Fix issue where Private Access connection fails because an empty proxy is used for
                           connecting to <span class="tm">TrendAI™</span> services</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-version-2241059</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.21.90</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-for-macos-version-22190</link>
    <description><![CDATA[<div class="p">June 30, 2025—This update includes security enhancements, bug fixes, and feature releases
               as detailed in the following notes.</div><div class="p">Version 2.21.90</div><ul class="ul" id="whatsnew_rrn_t4t_vfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_rrn_t4t_vfc__ul_xzd_plg_cfc">
<li class="li">
<div class="p">Fixed issue where Private Access disconnection notifications were missing after a
                           module update and removed residual search domain information from the system</div>
</li>
<li class="li">
<div class="p">Fixed issue where search domain details persisted in system settings following an
                           abnormal Private Access disconnection.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-for-macos-version-22190</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1133</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201133</link>
    <description><![CDATA[<div class="p">June 30, 2025—Mobile Security for Business app version 2.0.1133 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-P6Q7R8S9-T0O1-2345-PQRS-TU6789012345__ul_p6q_7rs_t8u">
<li class="li">
<div class="p">Optimizes posture check functions.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201133</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Keyword search for all platform data now available in public preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-platform-search-public</link>
    <description><![CDATA[<div class="p">June 30, 2025—Click the search bar at the top of the screen and type a keyword to
               search detections, assets, vulnerabilities, logs, and more across the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> platform. Quickly obtain an overview of the information you need across <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> all in one convenient place.</div>]]></description>
    <pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-platform-search-public</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1461</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201461</link>
    <description><![CDATA[<div class="p">June 30, 2025—Mobile Security for Business app version 2.0.1461 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-G7H8I9J0-K1F2-3456-GHIJ-KL7890123456__ul_g7h_8ij_k9l">
<li class="li">
<div class="p">Optimizes posture check functions.</div>
</li>
<li class="li">
<div class="p">Displays detected issues while a scan is in progress.</div>
</li>
<li class="li">
<div class="p">Fixes an issue where the agent status on the console does not update when the app
                     is uninstalled from the personal profile on company-owned devices when Microsoft Intune
                     or Other MDM serves as the MDM.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201461</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Server &amp; Workload Protection now features recommended exclusions for Anti-Malware scans</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-anti-malware-recommended-exclusions</link>
    <description><![CDATA[<div class="p">June 30, 2025—Server &amp; Workload Protection now features Recommended Exclusions as
               a common object in Policies for use with Anti-Malware scans.</div><div class="p">Recommended Exclusions is a list which contains apps and programs <span class="tm">TrendAI™</span> recommends excluding from Anti-Malware scans depending on your security environment.
               You can add recommended exclusions individually, or run the Recommendation Scan from
               the computer editor to discover listed apps installed on individual endpoints. Additionally,
               you can configure your agent to dynamically apply exclusions based on regular scans.
               For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-recommended-exclusions#reference_bm2_yl5_tfc">Recommended Exclusions</a></div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Server &amp; Workload Protection</b> → <b class="uicontrol">Policies</b></span> or <b class="uicontrol">Computers</b>.</div>]]></description>
    <pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-anti-malware-recommended-exclusions</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Retro scan available for custom detection models</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dmm-retro-scan</link>
    <description><![CDATA[<div class="p">June 30, 2025—Reanalyze historical data against your existing custom detection filters
               and uncover missed threats. Enhance threat hunting efficiency with retroactive scanning.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-run-retro-scans#task_kyb_1bp_tfc">Run retro scans on custom model data</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dmm-retro-scan</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Third-party log correlation in Workbench alerts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-third-party-correlation</link>
    <description><![CDATA[<div class="p">June 30, 2025—Workbench now uses third-party logs for alert correlation. The enriched
               content and linking details can give more context to triage security events.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-third-party-correlation</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Host investigation now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__whats-new-host-investigation-2</link>
    <description><![CDATA[<div class="p">June 30, 2025—The Search app now allows you to investigate hosts with greater efficiency.
               Simplify your workflow and reduce reliance on complex queries, enabling faster and
               more effective threat detection. Stay ahead of potential threats with continuous monitoring
               in the Dashboards app, now accessible on the <b class="uicontrol">Host Investigation</b> tab.</div><div class="p">Leverage host investigation and significantly reduce MTTx, ultimately improving your
               overall operational efficiency. Upgrade your threat-hunting process and stay one step
               ahead in the ever-evolving cybersecurity landscape.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-search-app#GUID-35EBFC20-D4C7-4B24-AA3D-E496DC797714">XDR Data Explorer</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">XDR Data Explorer</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards</b></span></div>]]></description>
    <pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__whats-new-host-investigation-2</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Extend Cyber Risk Exposure Management capabilities to cover Microsoft Defender for Endpoint assets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-CREM-MDE-integration</link>
    <description><![CDATA[<div class="p">
<div class="important" id="whatsnew_ay2_d4m_5fc__PRE-RELEASE_FEATURE">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">
<div class="p">This is a "Pre-release" feature and is not considered an official release. Please
                                 review the <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pre-release-disclaimer#GUID-E9D0CBA8-F65E-409C-B197-F15BA2E021D0">Pre-release disclaimer</a> before using the feature.</div>
</div>
</td>
</tr>
</table>
</div>
</div><div class="p">June 30, 2025—You can now extend the capabilities of Cyber Risk Exposure Management
               to assets in your environment covered by Microsoft Defender for Endpoint. Integrating
               Microsoft Defender for Endpoint via an Azure subscription in Cloud accounts enables
               you to gain insights into the security configuration of your Microsoft Defender for
               Endpoint-managed assets in Cyber Risk Overview, visibility over discovered assets
               in Attack Surface Discovery, and information on asset misconfigurations in Threat
               and Exposure Management. To learn how to integrate your Microsoft Defender for Endpoint
               data for use in Cyber Risk Exposure Management, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ms-defender-endpoint-log-collection#enable_microsoft_defender_for_endpoint_collection_e0481973_c448_4496_97ea_c24955605f8b">Enable Microsoft Defender for Endpoint Log Collection</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-CREM-MDE-integration</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Host investigation now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-host-investigation</link>
    <description><![CDATA[<div class="p">June 30, 2025—The Search app now allows you to investigate hosts with greater efficiency.
               Simplify your workflow and reduce reliance on complex queries, enabling faster and
               more effective threat detection. Stay ahead of potential threats with continuous monitoring
               in the Dashboards app, now accessible on the <b class="uicontrol">Host Investigation</b> tab.</div><div class="p">Leverage host investigation and significantly reduce MTTx, ultimately improving your
               overall operational efficiency. Upgrade your threat-hunting process and stay one step
               ahead in the ever-evolving cybersecurity landscape.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-search-app#GUID-35EBFC20-D4C7-4B24-AA3D-E496DC797714">XDR Data Explorer</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">XDR Data Explorer</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards</b></span></div>]]></description>
    <pubDate>Mon, 30 Jun 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-host-investigation</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Enhanced Condition node for Automated Response Playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-condition-node</link>
    <description><![CDATA[<div class="p">July 1, 2025—The Condition node in Automated Response Playbooks now supports three
               powerful new filters—<b class="b">Asset group</b>, <b class="b">Asset criticality</b>, and <b class="b">Custom tags</b>—enabling more targeted automation that aligns response actions with the value and
               context of your assets.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-automated-response-playbooks#GUID-BED80320-70E5-47C4-9530-CC26073D469D-36">Manually create Automated Response Playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Tue, 01 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-condition-node</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>New frameworks and features added (July 2, 2025)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-component-management-june-24-2025</link>
    <description><![CDATA[<div class="p">July 2, 2025—This release introduces new compliance frameworks and enhanced features
               to improve compliance management and audit readiness.</div><div class="p">Frameworks added:</div><ul class="ul" id="whatsnew_asm_lcg_qfc__ul_lkk_pcg_qfc">
<li class="li">
<div class="p">CIS Critical Security Controls Version 8.1</div>
</li>
<li class="li">
<div class="p">HIPAA 45 CFR</div>
</li>
<li class="li">
<div class="p">NIST CSF 2.0</div>
</li>
</ul><div class="p">Additional features included:</div><ul class="ul" id="whatsnew_asm_lcg_qfc__ul_tlm_qcg_qfc">
<li class="li">
<div class="p">Enhanced custom compliance framework builder: Tailor existing frameworks, create new
                     frameworks, and create new controls to meet specific industry requirements and ensure
                     more relevant and effective compliance checks, greatly reducing the need for manual
                     compliance audits.</div>
</li>
<li class="li">
<div class="p">Support for Compliance Management cases: Create Compliance Management cases for assets
                     to be remediated to address your organization's compliance analysis fail rate.</div>
</li>
<li class="li">
<div class="p">CSV and PDF reports of your organization's pass rate for custom frameworks: View actionable
                     and comprehensive recommendations and analysis generated by AI, and simplify the audit
                     preparation process with easy-to-share reports.</div>
</li>
<li class="li">
<div class="p">Configuration exclusions: Disable certain configurations from compliance analysis
                     to improve the pass rate of your organization.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 02 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-component-management-june-24-2025</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>New features and frameworks available in Compliance Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-comp-mgmt-q2-new</link>
    <description><![CDATA[<div class="p">July 2, 2025—Compliance Management now offers the following updated features:</div><ul class="ul" id="whatsnew_jn4_kbg_qfc__ul_mt2_nbg_qfc">
<li class="li">
<div class="p">New supported frameworks: CIS Critical Security Controls Version 8.1, HIPAA 45 CFR,
                     and NIST CSF 2.0.</div>
</li>
<li class="li">
<div class="p">Enhanced custom compliance framework builder: Tailor existing frameworks, create new
                     frameworks, and create new controls to meet specific industry requirements and ensure
                     more relevant and effective compliance checks, greatly reducing the need for manual
                     compliance audits.</div>
</li>
<li class="li">
<div class="p">Support for Compliance Management cases: Create Compliance Management cases for assets
                     to be remediated to address your organization's compliance analysis fail rate.</div>
</li>
<li class="li">
<div class="p">CSV and PDF reports of your organization's pass rate for custom frameworks: View actionable
                     and comprehensive recommendations and analysis generated by AI, and simplify the audit
                     preparation process with easy-to-share reports.</div>
</li>
<li class="li">
<div class="p">Configuration exclusions: Disable certain configurations from compliance analysis
                     to improve the pass rate of your organization.</div>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Governance &amp; Risk Compliance</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Compliance Management</b></span></div>]]></description>
    <pubDate>Wed, 02 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-comp-mgmt-q2-new</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Compliance Management cases now supported</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-comp-mgmt-cases</link>
    <description><![CDATA[<div class="p">July 2, 2025—You can now open <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> cases in Compliance Management to track and manage non-compliant assets.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-trend-vision-one-cases#trend_vision_one_cases_926303f6_e321_4b67_9391_bbfdbce05efe">TrendAI Vision One™ cases</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Governance &amp; Risk Compliance</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Compliance Management</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Wed, 02 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-comp-mgmt-cases</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Enhanced SAML group synchronization with Microsoft Entra ID</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-saml-group-syn-entra-id</link>
    <description><![CDATA[<div class="p">July 3, 2025—You can now add SAML groups using either group object IDs or email addresses
               for Microsoft Entra ID groups. This allows groups without email addresses to have
               SSO functionality. </div><div class="p"><span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> also supports real-time and regular sync of group data from Microsoft Entra ID to
               keep your SAML groups up to date, with an option to manually trigger data sync when
               needed.</div><div class="p">The enhancements require access to the tenants where the groups reside. For groups
               added before June 30, 2025, ensure that the required access is granted to maintain
               SSO access and stay current.</div><div class="p">For details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adding-saml-group-account#GUID-BED80320-70E5-47C4-9530-CC26073D469D-60xptx">Add a SAML Group Account for Microsoft Entra ID</a>.</div><div class="p"><span class="menucascade" id="whatsnew_zry_rb2_qfc__userAccountsPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">User Accounts</b></span></div>]]></description>
    <pubDate>Thu, 03 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-saml-group-syn-entra-id</guid>
    <category>Administration</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises gateway version 1.0.67</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-67</link>
    <description><![CDATA[<div class="p">July 07, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.67 is now
               available.</div><ul class="ul" id="whatsnew_az1_qfx_vfc__ul_e5q_zfx_vfc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_az1_qfx_vfc__ul_wz4_1gx_vfc">
<li class="li">
<div class="p">Enhanced the scanner to filter traffic of public AI services by AI category for rule
                           matching.</div>
</li>
<li class="li">
<div class="p">Fixed the issue that allowed users to bypass SafeSearch filters on the Yahoo Español
                           search results page.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 07 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-67</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Subscription notification for Container Security releases</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-sub-notify-new-v1cs</link>
    <description><![CDATA[<div class="p">July 7, 2025—You can now add a subscription notification for new Container Security
               releases. Enabling this subscription sends email or webhook notifications about Helm
               Chart and ECS stack components when new updates are released.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-notifications#GUID-851983F9-99C6-4108-A99A-B8D6E9E7AEE4">Notifications</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Notifications</b></span></div>]]></description>
    <pubDate>Mon, 07 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-sub-notify-new-v1cs</guid>
    <category>Administration</category>
</item>
<item>
    <title>New --evaluatePolicy flag for Artifact Scanner</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-evaluatepolicy-flag-tmas</link>
    <description><![CDATA[<div class="p">July 7, 2025—<span class="tm">TrendAI™</span> Artifact Scanner (TMAS) now supports the new <code class="codeph">--evaluatePolicy</code> flag, which allows you to evaluate the TMAS scan results against your Code Security
               policy to preview the policy evaluation functionality. Policy evaluation is available
               for vulnerabilities, secrets, and malware scanners.</div><div class="p">For more information, see the <code class="codeph">WHATS-NEW.md</code> file included with the binary and the <code class="codeph">--evaluatePolicy</code> flag information in <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-artifact-scanner-cli#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-2ly1ud" target="_blank">Artifact Scanner CLI</a>.</div><div class="important" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-fkhnie__note_v12_hlj_xfc" lang="en-us" xml:lang="en-us">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">
<div class="p">This is a "Pre-release" feature and is not considered an official release. Please
                              review the
                              <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-pre-release-disclaimer#GUID-E9D0CBA8-F65E-409C-B197-F15BA2E021D0">Pre-release disclaimer</a>
                              before using the feature.</div>
</div>
</td>
</tr>
</table>
</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Code Security</b></span></div>]]></description>
    <pubDate>Mon, 07 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-evaluatepolicy-flag-tmas</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Support for CrowdStrike Falcon logs in custom detection filters (July 8, 2025)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-20250708</link>
    <description><![CDATA[<div class="p">July 8, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports CrowdStrike Falcon logs in custom detection models.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_cgq_cvc_wfc__ul_qcf_gvc_wfc">
<li class="li">
<div class="p">BITS Admin File Transfer</div>
</li>
<li class="li">
<div class="p">Double Extension File</div>
</li>
<li class="li">
<div class="p">Execution of Python Script prevented by CrowdStrike</div>
</li>
<li class="li">
<div class="p">Local Account Discovery</div>
</li>
<li class="li">
<div class="p">Malicious File Found and Quarantined by CrowdStrike</div>
</li>
<li class="li">
<div class="p">NS Lookup Remote Payload</div>
</li>
<li class="li">
<div class="p">Process Prevented by CrowdStrike</div>
</li>
<li class="li">
<div class="p">Process Terminated and File Quarantined by CrowdStrike</div>
</li>
<li class="li">
<div class="p">Registry Operation Blocked</div>
</li>
<li class="li">
<div class="p">Scheduled Task Prevented by CrowdStrike</div>
</li>
</ul><div class="p">The related custom detection filters have been added to the <a class="xref" href="https://github.com/trendmicro/tm-v1-detection-models/tree/main/tm-v1-sigma-rules/third_party_logs/CrowdStrike/Falcon" target="_blank">tm-v1-detection-models GitHub repository</a>. You can import these detection filters to your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> environment to test the new integration.</div><div class="p">For more information about custom detection filters, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters#GUID-30038E42-0086-45BA-AB35-EAA8A2EAB6F5">Custom filters</a>.</div>]]></description>
    <pubDate>Tue, 08 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-20250708</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>New Available actions in Endpoint Inventory</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-actions-endpoint-inventory</link>
    <description><![CDATA[<div class="p">July 8, 2025—Endpoint Security has new Available Actions to assist with Endpoint security
               policy features and platform support. You can resolve Server &amp; Workload Protection
               issues with just a single click when reviewing the available actions in Endpoint Inventory.</div><div class="p">To filter for endpoints that might require attention, check the <b class="uicontrol">Available actions</b> section in Endpoint Inventory, and click the status types listed.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Tue, 08 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-actions-endpoint-inventory</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent July 2025 update - Windows</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-july-2025-update</link>
    <description><![CDATA[<div class="p">July 9, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202507 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_w2f_kwy_zfc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.1.0.5557</div>
</li>
<li class="li">
<div class="p">Service communication manager (VOM) plug-in version 1.2.0.1141</div>
</li>
<li class="li">
<div class="p">Endpoint sensor version 1.2.0.6543</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery version 1.0.0.3895</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 14.0.20114</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2.14490</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_w2f_kwy_zfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_w2f_kwy_zfc__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Add support for the updated Endpoint Security Policies (unified assignment). This
                           is a pre-release feature with limited release.</div>
</li>
<li class="li">
<div class="p">Agent includes new Windows Filtering Platform driver, <code class="codeph">tbimwfp</code>, for Firewall feature in Endpoint Security Policies (unified assignment). This is
                           a pre-release feature with limited release.</div>
</li>
<li class="li">
<div class="p">All configurations of the agent now support the Agent Interface on Windows platforms
                           (previously called Agent Console). This is a pre-release feature with limited release.</div>
</li>
<li class="li">
<div class="p">Add support for terminating the agent using the Agent Interface. This is a pre-release
                           feature with limited release.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_w2f_kwy_zfc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Attack surface discovery includes enhanced data collection of hardware and network
                           information</div>
</li>
<li class="li">
<div class="p">Attack surface discovery includes enhanced data collection of registry and local user
                           group information</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection updates Curl module to version 8.14.1 and OpenSSL to
                           version 3.0.16 to enhance product security and address the vulnerability CVE-2025-5025.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection updates Data Loss Prevention module to version 6.2.6090
                           providing enhanced performance</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection system logs can now display policy names with non-English
                           characters</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection updates Boost C++ libraries to version 1.88.0 to enhance
                           security</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection adds a function to inject a packet when connection is
                           not locked to avoid crashing</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_w2f_kwy_zfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue related to the trusted program list
                           which might cause performance issues for listed programs</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue related to the firewall exception
                           profile rule set which might prevent the system from applying the firewall exception
                           rules correctly</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue related to update process which might
                           prevent the system from updating <span class="tm">TrendAI™</span> Endpoint Security agents correctly</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue where after updating to 202501 release,
                           the TMBMSRV.exe service might cause high memory usage</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue related to Behavior Monitoring that
                           might cause false positive alerts for Microsoft applications</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue where enabling Data Loss Prevention
                           might cause the system to not block the transmission of sensitive data through webmail</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue where Data Loss Prevention might not
                           block the upload of sensitive files with a non-English filename to Microsoft OneDrive</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: fixed issue where the "Scan Now" button for on-demand
                           Enhanced Recommendation Scans doesn't work until the first automatic scan is triggered
                           after agent activation or after agent restart</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: agent language now reverts to the system default language
                           after remote upgrade</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: fixed an issue where a file detected by Predictive Machine
                           Learning is not scanned after changing to a higher detection level</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: adds a hidden setting to prevent setting relative registry
                           keys for Windows Defender</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_w2f_kwy_zfc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: July 2, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: July 9, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: July 16, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 09 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-july-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent July 2025 update - Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-linux-agent-july-2025-update</link>
    <description><![CDATA[<div class="p">July 9, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202507 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_axj_5qz_zfc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.2.0.824</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 3.0.0.6679</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2.14430</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_axj_5qz_zfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_axj_5qz_zfc__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Add support for the updated Endpoint Security Policies (unified assignment). This
                           is a pre-release feature with limited release.</div>
</li>
<li class="li">
<div class="p">Add support for disabling self-protection using the authorization token (see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources-authorization-tokens#concept_emr_qz5_hfc">Authorization tokens</a> in Policy Resources)</div>
</li>
<li class="li">
<div class="p">Supports TPL</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor supports Red Hat Enterprise Linux 10</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection supports Red Hat Enterprise Linux 10, including support
                           for SELinux, Secure Boot and FIPS mode</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_axj_5qz_zfc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Enhance collection of hardware information including CPU, manufacturer brand and model,
                           serial number, disk information, and network adapter information</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection adds a function to inject a packet when connection is
                           not locked to avoid crashing</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_axj_5qz_zfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Server &amp; Workload Protection: fixed issue where the "Scan Now" button for on-demand
                           Enhanced Recommendation Scans doesn't work until the first automatic scan is triggered
                           after agent activation or after agent restart</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_axj_5qz_zfc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: July 2, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: July 9, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: July 16, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 09 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-linux-agent-july-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent July 2025 update - macOS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-macOS-agent-july-2025-update</link>
    <description><![CDATA[<div class="p">July 9, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202507 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_vxr_1pz_zfc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.2.522</div>
<ul class="ul" id="whatsnew_vxr_1pz_zfc__ul_gyr_bkr_g2c">
<li class="li">
<div class="p">ws_communicator.app</div>
</li>
<li class="li">
<div class="p">XBCAgent.app</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.2.523</div>
<ul class="ul" id="whatsnew_vxr_1pz_zfc__ul_f3l_ppz_zfc">
<li class="li">
<div class="p">PreCheck.app</div>
</li>
<li class="li">
<div class="p">SilentInstaller.app</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">Endpoint sensor version 1.2.523</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 3.5.8052</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_vxr_1pz_zfc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_vxr_1pz_zfc__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Add support for the updated Endpoint Security Policies (unified assignment). This
                           is a pre-release feature with limited release.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection and Sensor-only deployments support the Agent Interface
                           on macOS platforms (previously called Agent Console). This is a pre-release feature
                           with limited release.</div>
</li>
<li class="li">
<div class="p">Add support for configuring the Monitoring Level for security features</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_vxr_1pz_zfc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection updates Data Loss Prevention module to version 6.2.6090
                           providing enhanced performance</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection system logs can now display policy names with non-English
                           characters</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection updates the iCore module to enhance security</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection updates Boost C++ libraries to version 1.88.0 to enhance
                           security</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_vxr_1pz_zfc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue related to the firewall exception
                           profile rule set which might prevent the system from applying the firewall exception
                           rules correctly</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue related to update process which might
                           prevent the system from updating <span class="tm">TrendAI™</span> Endpoint Security agents correctly</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue where after updating to 202501 release,
                           the TMBMSRV.exe service might cause high memory usage</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue related to Behavior Monitoring that
                           might cause false positive alerts for Microsoft applications</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue where enabling Data Loss Prevention
                           might cause the system to not block the transmission of sensitive data through webmail</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: resolved an issue where Data Loss Prevention might not
                           block the upload of sensitive files with a non-English filename to OneDrive</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_vxr_1pz_zfc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: July 2, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: July 9, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: July 16, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 09 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-macOS-agent-july-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Image Signature Verification for Admission Control</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-image-signature</link>
    <description><![CDATA[<div class="p">July 10, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Container Security now helps you enforce software supply chain security with the
               new Image Signature Verification deployment rule.</div><div class="p">This rule, available in Kubernetes protection policies, validates that container images
               are signed by a trusted source using the Cosign tool before they are deployed to your
               cluster. You can create rules that automatically block or log any image that is not
               signed with one of your approved public keys, ensuring that only authentic and untampered
               images can run in your environment. Use conditions to apply this verification to specific
               image registries or repositories for granular control.</div><div class="important" id="whatsnew_apd_tl2_yfc__note_u1q_yl2_yfc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">
<div class="p">To verify signatures for images stored in private registries, you must configure your
                              Helm override file to allow the admission controller to access your registry. For
                              more information, see the <a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm?tab=readme-ov-file#configuring-access-to-private-registries-for-image-signature-verification-deployment-rules" target="_blank">TrendAI Vision One™ Container Security Helm Chart</a> public GitHub repository.</div>
</div>
</td>
</tr>
</table>
</div><div class="p">Locate this feature: <span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol"> Container Security</b> → <b class="uicontrol"> Container Protection</b></span>.</div>]]></description>
    <pubDate>Thu, 10 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-image-signature</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Support for Palo Alto Networks PAN-OS logs in custom detection filters (July 11, 2025)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-250711</link>
    <description><![CDATA[<div class="p">July 11, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports Palo Alto Networks PAN-OS logs in custom detection models.</div><div class="p">This update includes the following changes:</div><div class="p">
<ul class="ul" id="whatsnew_d3l_pxz_xfc__ul_fml_sxz_xfc">
<li class="li">
<div class="p">ActiveCampaign 1-2-All Admin Panel User Name Parameter SQL Injection</div>
</li>
<li class="li">
<div class="p">Adobe ColdFusion Improper Access Control Vulnerability</div>
</li>
<li class="li">
<div class="p">Aiohttp Directory Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache Druid Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache Flink Directory Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache OFBiz XXE Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache Solr Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache Struts 2 Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache Struts ClassLoader Security Bypass Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache Struts Jakarta Multipart Parser Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache Struts2 Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache Struts2 Dynamic Method Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache Struts2 Redirect or Action Method Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache Tomcat Remote Code Execution via JSP Upload Vulnerability</div>
</li>
<li class="li">
<div class="p">Apache Web Server Access Control Bypass Vulnerability</div>
</li>
<li class="li">
<div class="p">Artica Proxy cyrus.php Command Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">Artifex Ghostscript Arbitrary Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">AVEVA InTouch Access Anywhere Secure Gateway Path Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">BE126 WIFI Local File Disclosure Vulnerability</div>
</li>
<li class="li">
<div class="p">Cisco Smart Install Protocol Vulnerability</div>
</li>
<li class="li">
<div class="p">CMS Made Simple SQL Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">Compromised User Name or Password from Previous Data Breach in Inbound FTP Login</div>
</li>
<li class="li">
<div class="p">D-Link HNAP SOAPAction Header Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Elastic Elasticsearch Snapshot API Directory Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">ElasticSearch Groovy Script Engine Remote Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Ffay Lanproxy Directory Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">File detection - Unknown Binary File</div>
</li>
<li class="li">
<div class="p">FineCMS Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Generic IoT Device Remote Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Ghost CMS Path Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">Grafana Labs Grafana Snapshot Authentication Bypass Vulnerability</div>
</li>
<li class="li">
<div class="p">GrandNode Ecommerce LetsEncryptController Directory Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">Hongdian H8922 Industrial Router Remote Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">HP Enterprise VAN SDN Controller Remote Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">HP OpenView Network Node Manager HTTP Request Parsing Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">HP Universal CMDB Server Credential Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">HTTP GET Requests Long URI Anomaly</div>
</li>
<li class="li">
<div class="p">HTTP2 Protocol Suspicious RST STREAM Frame detection</div>
</li>
<li class="li">
<div class="p">Huawei HG532 Home Gateway Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Jackson-Databind JNDI Remote Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Javascript WSF HTA JSE or VBS File Sent in Email</div>
</li>
<li class="li">
<div class="p">JBoss Seam 2 Remote Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">JetBrains TeamCity Path Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">Jolokia Agent JNDI Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">Laravel Ignition Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Magento Server MAGMI Plugin Directory Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">Microsoft IIS Escaped Characters Decoding Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Microsoft Jet Database Engine Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Mofi Network MOFI4500-4GXeLTE Information Disclosure Vulnerability</div>
</li>
<li class="li">
<div class="p">Nagios SQL Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">Nagios XI SQL Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">NetBSD tnftp Url Fetching Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Netgear JNR1010 Path Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">NginxWebUI Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Nmap Aggressive Option Print Detection</div>
</li>
<li class="li">
<div class="p">Nmap Service Detection</div>
</li>
<li class="li">
<div class="p">Node.js Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">OpenSSH Denial of Service Vulnerability</div>
</li>
<li class="li">
<div class="p">OpenSSL TLS Heartbleed Vulnerability</div>
</li>
<li class="li">
<div class="p">Oracle GlassFish Directory Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">Pentaho Authentication Bypass Vulnerability</div>
</li>
<li class="li">
<div class="p">PHP DIESCAN Information Disclosure Vulnerability</div>
</li>
<li class="li">
<div class="p">PHP-Fusion Downloads.php Command Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">PHPMoAdmin Object Parameter Handling Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">PNG File Chunk Length Abnormal</div>
</li>
<li class="li">
<div class="p">Potential HTML Evasion Technique Detected in HTTP Response</div>
</li>
<li class="li">
<div class="p">RPC Portmapper DUMP Request Detected</div>
</li>
<li class="li">
<div class="p">Shiro Deserialization Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">SIPVicious Scanner Detection</div>
</li>
<li class="li">
<div class="p">SMB Data Segmented Across TCP Evasion Attack</div>
</li>
<li class="li">
<div class="p">SolarWinds Storage Manager Authentication Filter Policy Bypass Vulnerability</div>
</li>
<li class="li">
<div class="p">Spring Boot Actuator Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Spring Data Commons Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">SSH Failed Brute-force Authentication Attempt</div>
</li>
<li class="li">
<div class="p">SSL Double Client Hello Cipher Suite Length Mismatch</div>
</li>
<li class="li">
<div class="p">Supervisor XML RPC Command Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">ThinkAdmin ModuleService.php Check Allow Download Function Directory Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">ThinkPHP Arbitrary File Write Vulnerability</div>
</li>
<li class="li">
<div class="p">TLS SNI Denial-of-Service Vulnerability</div>
</li>
<li class="li">
<div class="p">TP-Link Archer Router Command Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">TRENDNet TEW-827DRU Remote Command Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">Webmin rpc.cgi Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">WordPress Formidable Forms Plugin Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">WordPress LearnPress Plugin SQL Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">WordPress Multiple Plugins SQL Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">WordPress Plugin and Theme Directory Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">WordPress Plugin Directory Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">WordPress SimpleBoardJob Plugin Directory Traversal Vulnerability</div>
</li>
<li class="li">
<div class="p">WordPress Video List Manager Plugin SQL Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">Wordpress Visitor Statistics Plugin SQL Injection Vulnerability</div>
</li>
<li class="li">
<div class="p">Zentao Remote Code Execution Vulnerability</div>
</li>
<li class="li">
<div class="p">ZGrab Application Layer Scanner Detection</div>
</li>
</ul>
</div><div class="p">The related custom detection filters have been added to the <a class="xref" href="https://github.com/trendmicro/tm-v1-detection-models/tree/main/tm-v1-sigma-rules/third_party_logs/palo_alto_networks/PAN-OS/Firewall" target="_blank">tm-v1-detection-models GitHub repository</a>. You can import these detection filters to your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> environment to test the new integration.</div><div class="p">For more information about custom detection filters, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters#GUID-30038E42-0086-45BA-AB35-EAA8A2EAB6F5">Custom filters</a>.</div>]]></description>
    <pubDate>Fri, 11 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-250711</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Helm Chart 3.1.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-310</link>
    <description><![CDATA[<div class="p">July 14, 2025—The 3.1.0 Helm Chart release includes support for Image Support Verification
               rules in admission controller, and for managing attestors using policy as code. This
               release also supports custom rules with one Falco container.</div><ul class="ul" id="helm_chart_3_1_0__ul_wzt_1zp_xfc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="helm_chart_3_1_0__ul_t3k_czp_xfc">
<li class="li">
<div class="p">Containerd upgraded to 1.7.27.</div>
</li>
<li class="li">
<div class="p">Kubectl upgraded to 1.33.2.</div>
</li>
<li class="li">
<div class="p">Switch event delivery using http.</div>
</li>
<li class="li">
<div class="p">Batch event handling and retry mechanism.</div>
</li>
<li class="li">
<div class="p">Load policy, ruleset, and rules into configMap.</div>
</li>
<li class="li">
<div class="p">Download ebpf drivers using http.</div>
</li>
<li class="li">
<div class="p">Scout running in ECS to directly use <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> endpoint.</div>
</li>
<li class="li">
<div class="p">Use <code class="codeph">oc</code> command when <code class="codeph">kubectl</code> is not available.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="helm_chart_3_1_0__ul_nkz_q2q_xfc">
<li class="li">
<div class="p">Fixed an issue in which runtime events for excluded namespaces were incorrectly sent
                           to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
<li class="li">
<div class="p">Fixed an issue in which enabling the malware scan caused the scan-manager to crash.</div>
</li>
<li class="li">
<div class="p">Fixed an issue in which the k8s.pod.id was empty in OpenShift environments.</div>
</li>
<li class="li">
<div class="p">Added crio.sock and containerd.sock to prevent container information from going missing
                           from runtime security events in OpenShift environments.</div>
</li>
</ul>
</li>
<li class="li"><b class="uicontrol">Upgrade instructions</b><ul class="ul" id="helm_chart_3_1_0__ul_yxd_fzp_xfc">
<li class="li">
<div class="p">Sample upgrade command:
                           <pre class="codeblock" id="helm_chart_3_1_0__codeblock_dfc_4pb_qfc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro\
https://github.com/trendmicro/visionone-container-security-helm/archive/3.1.0.tar.gz </pre>
</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="helm_chart_3_1_0__ul_ocq_tdq_xfc">
<li class="li"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.0" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.0</a></li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 14 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-310</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Helm Chart 3.1.1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-311</link>
    <description><![CDATA[<div class="p">July 15, 2025—The 3.1.1 Helm Chart release includes the following:</div><ul class="ul" id="RN_2025_07_15_Container_Helm_3_1_1__ul_wzt_1zp_xfc">
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="RN_2025_07_15_Container_Helm_3_1_1__ul_nkz_q2q_xfc">
<li class="li">
<div class="p">Fixed an issue in which runtime rules did not load in some environments.</div>
</li>
</ul>
</li>
<li class="li"><b class="uicontrol">Upgrade instructions</b><ul class="ul" id="RN_2025_07_15_Container_Helm_3_1_1__ul_yxd_fzp_xfc">
<li class="li">
<div class="p">Sample upgrade command:
                           <pre class="codeblock" id="RN_2025_07_15_Container_Helm_3_1_1__codeblock_dfc_4pb_qfc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.1.1.tar.gz </pre>
</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="RN_2025_07_15_Container_Helm_3_1_1__ul_ocq_tdq_xfc">
<li class="li"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.1" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.1</a></li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Tue, 15 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-311</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Support for CrowdStrike Falcon logs in custom detection filters (July 15, 2025)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-250715</link>
    <description><![CDATA[<div class="p">July 15, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports CrowdStrike Falcon logs in custom detection models.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_hkq_pzz_xfc__ul_tss_rzz_xfc">
<li class="li">
<div class="p">CrowdStrike Pattern Disposition - Critical Process Disabled</div>
</li>
<li class="li">
<div class="p">CrowdStrike Pattern Disposition - File Quarantine, Critical Process Disabled</div>
</li>
<li class="li">
<div class="p">CrowdStrike Pattern Disposition - Parent Process Prevented</div>
</li>
<li class="li">
<div class="p">CrowdStrike Pattern Disposition - Parent Process Terminated, Critical Process Disabled</div>
</li>
<li class="li">
<div class="p">CrowdStrike Pattern Disposition - Response Action Failed, File Quarantined, Process
                     Blocked</div>
</li>
<li class="li">
<div class="p">CrowdStrike Pattern Disposition - Response Action Failed, Process Blocked</div>
</li>
<li class="li">
<div class="p">CrowdStrike Pattern Disposition - Detection</div>
</li>
<li class="li">
<div class="p">CrowdStrike Pattern Disposition - Operation Blocked</div>
</li>
<li class="li">
<div class="p">CrowdStrike Pattern Disposition - Process Terminate</div>
</li>
<li class="li">
<div class="p">CrowdStrike Pattern Disposition - Process Terminate Operation Blocked</div>
</li>
<li class="li">
<div class="p">CrowdStrike Pattern Disposition - Quarantine File</div>
</li>
</ul><div class="p">The related custom detection filters have been added to the <a class="xref" href="https://github.com/trendmicro/tm-v1-detection-models/tree/main/tm-v1-sigma-rules/third_party_logs/CrowdStrike/Falcon" target="_blank">tm-v1-detection-models GitHub repository</a>. You can import these detection filters to your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> environment to test the new integration.</div><div class="p">For more information about custom detection filters, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters#GUID-30038E42-0086-45BA-AB35-EAA8A2EAB6F5">Custom filters</a>.</div>]]></description>
    <pubDate>Tue, 15 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-dmm-250715</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 2.0.6</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-206</link>
    <description><![CDATA[<div class="p">July 16, 2025—Service Gateway Smart Protection Services Version 2.0.6 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_nzx_z51_dgc__ul_r4w_mv1_dgc">
<li class="li">
<div class="p">This update includes the client IP address in Web Reputation Services access logs
                     to provide more detailed visibility into incoming requests.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 16 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-206</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Generic Caching Service 1.0.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-103</link>
    <description><![CDATA[<div class="p">July 16, 2025—Service Gateway Generic Caching Service 1.0.3 delivers key enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_xzz_nl1_mgc__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update fixes the request routing path to prevent misprocessing of the requests.</div>
</li>
<li class="li">
<div class="p">This update corrects product names in requests sent to the Service Gateway Management
                     app.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 16 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-103</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.21</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3-0-21</link>
    <description><![CDATA[<div class="p">July 16, 2025—Service Gateway Firmware Version 3.0.21 includes enhancements, bug fixes,
               and security updates for Service Gateway.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_rcv_4p1_dgc__ul_xkj_3r1_dgc">
<li class="li">
<div class="p">This update enables customers to deploy the Service Gateway virtual appliance on Google
                     Cloud Platform from Marketplace.</div>
</li>
<li class="li">
<div class="p">This update provides more details on the ActiveUpdate Service status and shows a warning
                     message on the console when pattern update fails.</div>
</li>
<li class="li">
<div class="p">This update addresses various issues to improve overall system reliability and correctness.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 16 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3-0-21</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.10</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3010</link>
    <description><![CDATA[<div class="p">July 16, 2025—Service Gateway Local ActiveUpdate Service Version 3.0.10 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_gqc_ns1_dgc__ul_s3z_tt1_dgc">
<li class="li">
<div class="p">This update provides more details on the ActiveUpdate Service status and shows a warning
                     message on the console when pattern update fails.</div>
</li>
<li class="li">
<div class="p">This update addresses various issues to improve overall system reliability and correctness.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 16 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3010</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Helm Chart 3.1.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-312</link>
    <description><![CDATA[<div class="p">July 17, 2025—The 3.1.2 Helm Chart release updates the scope of the attestor custom
               resource definition to "cluster".</div><div class="p">Detailed release notes:</div><ul class="ul" id="RN_2025_07_17_Container_Security_Helm_3_1_2_de1bfc0d_0f46_42f3_846b_483b9ec9443f__ul_m5c_nmd_1gc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements:</b></div>
<ul class="ul" id="RN_2025_07_17_Container_Security_Helm_3_1_2_de1bfc0d_0f46_42f3_846b_483b9ec9443f__ul_kxg_pmd_1gc">
<li class="li">
<div class="p">Includes attestor Custom Resource in the log collection script</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="RN_2025_07_17_Container_Security_Helm_3_1_2_de1bfc0d_0f46_42f3_846b_483b9ec9443f__ul_obb_qhj_1gc">
<li class="li">
<div class="p">If you are upgrading from 3.1.0 or 3.1.1, you must manually delete the attestor CRD
                           before upgrading using the following command: <code class="codeph">kubectl delete crd attestors.container-security.trendmicro.com</code></div>
</li>
<li class="li">
<div class="p">Sample upgrade command:
                           <pre class="codeblock" id="RN_2025_07_17_Container_Security_Helm_3_1_2_de1bfc0d_0f46_42f3_846b_483b9ec9443f__codeblock_ijn_bmj_1gc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.1.2.tar.gz</pre>
</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="RN_2025_07_17_Container_Security_Helm_3_1_2_de1bfc0d_0f46_42f3_846b_483b9ec9443f__ul_ckm_2mj_1gc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.2" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.2</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Thu, 17 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-312</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Data Posture Security now available for Azure subscriptions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-posture-security-azure</link>
    <description><![CDATA[<div class="p">July 17, 2025 — Data Security Posture is now extended to Azure subscriptions. With
               this feature, you can now comprehensively monitor sensitive data and prevent data
               leakage caused by misconfigurations and vulnerabilities in your Azure environments.
               This update offers you the same level of data protection and risk mitigation in Azure
               that was previously exclusive to AWS environments. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-security-posture-azure#enable_data_security_posture_on_an_azure_subscription_7405a28a_1573_4d84_8d61_cad0ccb7e386">Enable Data Security Posture on Azure subscriptions</a>.</div><div class="p"><b class="uicontrol">Data Security</b> ➞ <b class="uicontrol">Data Security Posture</b></div>]]></description>
    <pubDate>Thu, 17 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-posture-security-azure</guid>
    <category>Data Security</category>
</item>
<item>
    <title>Template Scanner now Supports Azure</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__template-scanner-Azure-2</link>
    <description><![CDATA[<div class="p">July 18, 2025—Cloud Risk Management Template Scanner now supports Azure in addition
               to AWS allowing you to have a more comprehensive view over detecting risks in your
               IaC before its deployed. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-coverage#template-scanner-coverage">TrendAI Vision One™ - Template Scanner Coverage</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Template Scanner</b></span></div>]]></description>
    <pubDate>Fri, 18 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__template-scanner-Azure-2</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Automatic reversal of false positive quarantines in OneDrive</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-reverse-fp-onedrive-cecp</link>
    <description><![CDATA[<div class="p">July 18, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> leverages the latest URL pattern intelligence to automatically identify false positive
               URLs in files within OneDrive, as detected by Web Reputation Services. When a false
               positive is confirmed, the system retrieves the relevant file information from the
               detection logs and automatically reverses the Quarantine action, restoring the file
               to its original location in the corresponding collaboration service.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 18 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-reverse-fp-onedrive-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Template Scanner now Supports Azure</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-Azure</link>
    <description><![CDATA[<div class="p">July 18, 2025—Cloud Risk Management Template Scanner now supports Azure in addition
               to AWS allowing you to have a more comprehensive view over detecting risks in your
               IaC before its deployed. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-coverage#template-scanner-coverage">TrendAI Vision One™ - Template Scanner Coverage</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Template Scanner</b></span></div>]]></description>
    <pubDate>Fri, 18 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-Azure</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.68</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-68</link>
    <description><![CDATA[<div class="p">July 21, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.68 is now
               available.</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_gyh_zyn_zfc__ul_khv_vzn_zfc">
<li class="li">
<div class="p">Added support for bypassing authentication by public IP address in On-premises gateways</div>
</li>
<li class="li">
<div class="p">Added support for adding, deleting, or updating X-Forwarded-For headers in On-premises
                     gateways</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 21 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-68</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Platform data query in public preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-platform-data-query-wn</link>
    <description><![CDATA[<div class="p">July 21, 2025—Platform data query is now available in public preview. Click the search
               bar at the top of the screen and type a keyword to search detections, assets, vulnerabilities,
               and more across the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> platform.</div>]]></description>
    <pubDate>Mon, 21 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-platform-data-query-wn</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>Email address modification to change the recipient or sender addresses before delivery</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-address-modification-cegp</link>
    <description><![CDATA[<div class="p">July 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> includes support for email address modification, a feature that allows administrators
               to rewrite sender or recipient addresses in message envelopes or headers and modify
               domains in email addresses. This enhancement improves mail flow control, supports
               advanced routing scenarios, and helps enforce organizational policies and compliance
               requirements.</div><div class="p"><span class="menucascade" id="whatsnew_oxp_kfd_zfc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Mon, 21 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-address-modification-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>New tokens in notifications and stamps for header sender information</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-tokens-for-header-sender-cegp</link>
    <description><![CDATA[<div class="p">July 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> includes a new token, %HEADER_SENDER%, which administrators can use in email notifications
               for policy matches and in message body stamps. This token retrieves the sender address
               from the message header—rather than the envelope—providing a more accurate representation
               of the sender in certain scenarios. It serves as an alternative to the existing %SENDER%
               token.</div><div class="p"><span class="menucascade" id="whatsnew_kx1_jdd_zfc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Mon, 21 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-tokens-for-header-sender-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Sanitize attachments action available for PDF files</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sanitize-action-for-pdf-cegp</link>
    <description><![CDATA[<div class="p">July 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> enhances the "Sanitize attachments" action in Content Filtering policy to remove
               active content from PDF files, in addition to the previously supported Microsoft Word,
               Excel, and PowerPoint attachments.</div><div class="p"><span class="menucascade" id="whatsnew_kdy_k2d_zfc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Mon, 21 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sanitize-action-for-pdf-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Enhanced virus scan capability to detect .alz and .egg archive files</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virus-scan-support-alz-egg-cegp</link>
    <description><![CDATA[<div class="p">July 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> supports detection of .alz and .egg compressed files in both inbound and outbound
               email traffic. Once extracted, file contents are scanned by the Advanced Threat Scan
               Engine (ATSE) and Virtual Analyzer (if enabled) according to the configured virus
               policy rules.</div><div class="p">Additionally, for inbound emails, if File Password Analysis is enabled, encrypted
               .alz and .egg files will be decrypted using the retrieved password, then scanned by
               ATSE and Virtual Analyzer (if enabled), ensuring comprehensive protection against
               hidden threats.</div><div class="p"><span class="menucascade" id="whatsnew_sld_p2d_zfc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Mon, 21 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virus-scan-support-alz-egg-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>CIS Azure Kubernetes Service (AKS) Benchmark scanning now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-aks-1-7-0</link>
    <description><![CDATA[<div class="p">July 23, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports compliance scanning with CIS Azure Kubernetes Service (AKS) Benchmark
               version 1.7.0 in your Microsoft AKS clusters. Assess and guarantee adherence to industry-leading
               security standards effortlessly, enhancing your Kubernetes security posture.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-compliance-scanning#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-196t45">Compliance</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Protection</b></span></div>]]></description>
    <pubDate>Wed, 23 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-aks-1-7-0</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Server &amp; Workload Protection and Endpoint Sensor support Red Hat Enterprise Linux 10 64-bit (x86-64)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-swp-es-support-rhel-10-64bit</link>
    <description><![CDATA[<div class="p">July 25, 2025—Server &amp; Workload Protection and Endpoint Sensor now support deployment
               to Red Hat Enterprise Linux 10 64-bit (x86-64) endpoints.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Fri, 25 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-swp-es-support-rhel-10-64bit</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.25.1019</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-version-2251019</link>
    <description><![CDATA[<div class="p">July 28, 2025—This update includes security enhancements, bug fixes, and feature releases
               as detailed in the following notes.</div><div class="p">Version 2.25.1019</div><ul class="ul" id="whatsnew_p32_gks_fgc__ul_igc_fls_fgc">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_p32_gks_fgc__ul_d2y_hls_fgc">
<li class="li">
<div class="p">Added connector IP information to Private Access connection details page.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_p32_gks_fgc__ul_yml_lls_fgc">
<li class="li">
<div class="p">Checks connectivity to the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent proxy when switching networks and falls back to direct connection
                           if the proxy is unreachable.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Resolved issues</b></div>
<ul class="ul" id="whatsnew_p32_gks_fgc__ul_ah1_rls_fgc">
<li class="li">
<div class="p">Fixed an issue where changes to the NTLM enable/disable setting in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> does not immediately take effect in the ZTSA module.</div>
</li>
<li class="li">
<div class="p">ZTSA failed to log in via NTLM when multiple users were logged into Windows.</div>
</li>
<li class="li">
<div class="p">The user displayed in the ZTSA UI differed from the user shown on the Internet Access
                           diagnostics page.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 28 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-version-2251019</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.22.111</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-version-222111</link>
    <description><![CDATA[<div class="p">July 28, 2025—This update includes security enhancements and feature releases as detailed
               in the following notes.</div><div class="p">Version 2.22.121</div><ul class="ul" id="whatsnew_jvd_dms_fgc__ul_igc_fls_fgc">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_jvd_dms_fgc__ul_d2y_hls_fgc">
<li class="li">
<div class="p">Added connector IP information to Private Access connection details page.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_jvd_dms_fgc__ul_yml_lls_fgc">
<li class="li">
<div class="p">Provides a notification pop-up reminding users to sign into the ZTSA module.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 28 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-version-222111</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Import/export of custom detection models and filters now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-import-export-models</link>
    <description><![CDATA[<div class="p">July 28, 2025—Import and export of custom detection models and filters is now supported
               in Detection Model Management, empowering security analysts and security operations
               managers to streamline the creation, testing, and deployment of custom detection rules
               and improve operational efficiency and flexibility.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-models#CustomModels">Custom models</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-filters#GUID-30038E42-0086-45BA-AB35-EAA8A2EAB6F5">Custom filters</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Mon, 28 Jul 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-import-export-models</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.11</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3011</link>
    <description><![CDATA[<div class="p">August 1, 2025—Service Gateway Local ActiveUpdate Service Version 3.0.11 includes
               enhancements, bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_ojq_lvp_fgc__ul_o1t_xvp_fgc">
<li class="li">
<div class="p">This update addresses an issue where the service may not function properly when a
                     large number of ActiveUpdate sites were configured.</div>
</li>
</ul>]]></description>
    <pubDate>Fri, 01 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3011</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Estimate your credit requirements with the new credit calculator</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-new-credit-calculator</link>
    <description><![CDATA[<div class="p">August 4, 2025—The new credit calculator is now available in <b class="uicontrol" lang="en-us" xml:lang="en-us">Platform Usage and Credits</b>. This tool allows you to estimate your credit requirements based on projected usage
               of selected solutions. You can easily determine how many credits you need overall,
               without doing any calculations.</div><div class="p">On the new <b class="uicontrol">All available solutions</b> tab, you can view an inventory of <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> solutions that require credits, along with the description and credit requirement
               for each. To estimate your required credits with the credit calculator, you can select
               available solutions and input your projected unit usage, such as the number of cloud
               accounts or email users in your organization. The calculator then provides your estimated
               required credits, current credit balance, and recommended credit purchase. You can
               download a spreadsheet of the provided figures or directly contact your sales representative
               to purchase credits.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-credits-billing#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-6jb7ja">Platform Usage and Credits</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">TrendAI™ Flex Licensing</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Platform Usage and Credits</b></span></div>]]></description>
    <pubDate>Mon, 04 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-new-credit-calculator</guid>
    <category>Administration</category>
</item>
<item>
    <title>Helm Chart 3.1.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-313</link>
    <description><![CDATA[<div class="p">August 4, 2025—The 3.1.3 Helm Chart release includes the following:</div><ul class="ul" id="RN_2025_08_04_Container_Helm_3_1_3_62d169e2_b1f1_4e82_9f56_a0646c775d1c__ul_m2v_3ct_fgc">
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="RN_2025_08_04_Container_Helm_3_1_3_62d169e2_b1f1_4e82_9f56_a0646c775d1c__ul_ok3_pct_fgc">
<li class="li">
<div class="p">Applied a fix to ensure proper use of the latest TLS certificate. The scan-manager
                           now restarts after TLS changes, ensuring that it always uses the latest certificate.</div>
</li>
<li class="li">
<div class="p">Resolved an issue where self-signed certificates were not automatically added to Scout.
                           This fix ensures proper integration of self-signed certificates, improving security
                           and reducing manual configuration.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instractions</b></div>
<ul class="ul" id="RN_2025_08_04_Container_Helm_3_1_3_62d169e2_b1f1_4e82_9f56_a0646c775d1c__ul_mqd_2gt_fgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="RN_2025_08_04_Container_Helm_3_1_3_62d169e2_b1f1_4e82_9f56_a0646c775d1c__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.1.3.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="RN_2025_08_04_Container_Helm_3_1_3_62d169e2_b1f1_4e82_9f56_a0646c775d1c__ul_myz_3gt_fgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.3" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.3</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 04 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-313</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Introducing TrendAI Vision One - Agentic SIEM</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentic-siem-ga</link>
    <description><![CDATA[<div class="p">August 4, 2025—Easily ingest your third-party data and get meaningful insights with
               real-time threat detection and correlation at scale. Now generally available, <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Agentic SIEM helps you cut through the noise with seamless third-party data ingestion,
               actionable data visibility, and built-in support for long-term data retention, auditing,
               and regulatory exporting to ensure you're compliance-ready, all in one console.</div><div class="p">At release, Agentic SIEM includes the following new features and capabilities:</div><ul class="ul" id="whatsnew_gcc_tnz_2gc__ul_tky_znz_2gc">
<li class="li">
<div class="p">Data ingestion &amp; retention: </div>
<ul class="ul" id="whatsnew_gcc_tnz_2gc__ul_t2n_q4z_2gc">
<li class="li">
<div class="p">Data ingestion for any third-party data source log in CEF or syslog format such as
                           third-party network, application, or endpoint logs</div>
</li>
<li class="li">
<div class="p">Data ingestion for Microsoft Defender for Endpoint logs</div>
</li>
<li class="li">
<div class="p">Custom filtering to allow you to manage your third-party data ingestion and retention
                           volume</div>
</li>
<li class="li">
<div class="p">Flexible data retention management with support for both analytic and archival ingestion
                           and long-term retention of up to two years for analytic data and seven years for archival
                           data</div>
</li>
<li class="li">
<div class="p">In-app free trial for Agentic SIEM accessible directly from the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">Threat Detection &amp; Investigation:</div>
<ul class="ul" id="whatsnew_gcc_tnz_2gc__ul_s1s_54z_2gc">
<li class="li">
<div class="p">XDR threat detections and correlations for third-party logs, with automated detection
                           and correlation between third-party data and <span class="tm">TrendAI™</span> native logs</div>
</li>
<li class="li">
<div class="p">IOC sweeping of third-party logs powered by <span class="tm">TrendAI™</span> Threat Intelligence</div>
</li>
<li class="li">
<div class="p">Ready-made detection filters and templates for third-party logs for easy custom model
                           creation and management</div>
</li>
<li class="li">
<div class="p">Unified platform data query capabilities across all data in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span></div>
</li>
<li class="li">
<div class="p">Purpose-built SIEM widgets and dashboards for threat hunting and monitoring</div>
</li>
<li class="li">
<div class="p">Retroactive scanning for IoAs</div>
</li>
<li class="li">
<div class="p">Enhanced Workbench Insights console with host investigation, tailored impact scope
                           view, enhanced highlighted object view, and a new timeline view to optimize threat
                           investigation</div>
</li>
<li class="li">
<div class="p">AI-guided threat investigation presented in Workbench Insights overview</div>
</li>
<li class="li">
<div class="p">Proactive priority recommendations and detection of possible false positive Workbench
                           insights to help SOC teams triage more efficiently</div>
</li>
<li class="li">
<div class="p">AI-generated PDF reports that include Workbench Insights summaries, threat activity
                           timelines, actions taken, and recommendations to help security teams quickly understand
                           and communicate investigation findings</div>
</li>
</ul>
</li>
</ul><div class="p">To learn more, get started in <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-source-log-management#concept_rcd_r5c_pdc">Data Source and Log Management</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Data Source and Log Management</b></span></div>]]></description>
    <pubDate>Mon, 04 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agentic-siem-ga</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>New names for the Search app and XDR Threat Investigation</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-search-xdr-renaming</link>
    <description><![CDATA[<div class="p">August 4, 2025—To align with the expanding scope of XDR capabilities, the Search app
               has been renamed to <b class="wintitle" lang="en-us" xml:lang="en-us">XDR Data Explorer</b> and XDR Threat Investigation app group has been renamed to <b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b>.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-search-app#GUID-35EBFC20-D4C7-4B24-AA3D-E496DC797714">XDR Data Explorer</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">XDR Data Explorer</b></span></div>]]></description>
    <pubDate>Mon, 04 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-search-xdr-renaming</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>View All CVEs for Internal Assets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-view-all-cves-for-internal-assets</link>
    <description><![CDATA[<div class="p">August 4, 2025—Cyber Risk Exposure Management displays high and medium impact CVEs
               (CVEs with an impact score of 31 to 100) in your internal assets by default. However,
               visibility into low-impact CVEs (CVEs with an impact score range of 0-30) may also
               be necessary for your organization to meet compliance requirements or follow internal
               policies. You can now configure your level of CVE coverage in Threat and Exposure
               Management. To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-full-cve-assessment#concept_gvh_ljz_bdc-2">Vulnerability assessment visibility and configuration</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 04 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-view-all-cves-for-internal-assets</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>SLA metrics in Case Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sla-metric-case-management</link>
    <description><![CDATA[<div class="p">August 4, 2025—Configure service level agreement (SLA) metrics to track whether case
               handling complies with your SLA requirements. You can apply SLA metrics based on case
               priority or to all cases regardless of priority level. Workbench, Risk Event, and
               Compliance Management case types support SLA metrics. SLA metrics appear in the Mean
               Time Metrics, Mean Time to Close, and My Open Case widgets.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-config-sla-targets#untitled1-2">Configure service level agreement (SLA) targets &amp; notifications</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Workflow and Automation</b> → <b class="uicontrol">Case Management</b></span></div>]]></description>
    <pubDate>Mon, 04 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sla-metric-case-management</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Export and import security playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-export-import-playbooks</link>
    <description><![CDATA[<div class="p">August 4, 2025—The Security Playbooks app now supports exporting and importing playbooks,
               making it easier to share and reuse automated workflows. Whether you are replicating
               a proven playbook across environments or adopting a shared playbook from another team,
               this feature helps streamline collaboration and accelerate the deployment of effective
               security operations.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 04 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-export-import-playbooks</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent August 2025 update - Windows</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-august-2025-update</link>
    <description><![CDATA[<div class="p">August 6, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202508 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_wcc_v3k_lgc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Service communication manager (VOM) plug-in version 1.2.0.1199</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 1.2.0.6677</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery version 1.0.0.3925</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 14.0.20168</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2-17700</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_wcc_v3k_lgc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_wcc_v3k_lgc__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Adds the quarantine file path and SHA-256 information
                           to the detection results in Data Explorer.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_wcc_v3k_lgc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Endpoint Sensor: Enhances data collection of hardware and network information.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Removes the Diagnostic Tool UI from the web console.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Windows SDK to version 10.0.19041.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enhances protection capabilities of Behavior Monitoring
                           to detect and block malicious activity originating from a valid driver.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the ofcntcer.dat file.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enables removal of specific outdated components from
                           the agent folder.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the debug log to enhance agent processes on
                           x86 platforms.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Virus Scan Engine (VSAPI) to version 25.560.1004
                           to enhance memory and file scans.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Advanced Threat Scan Engine (ATSE) to version
                           25.560.1004 to enhance memory and file scans.</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Prevents the use of invalid path strings when setting
                           up temporary folders.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_wcc_v3k_lgc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue that causes excessive memory usage when
                           Behavior Monitoring is enabled.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—When configuring scan exceptions, the system
                           might create duplicate entries.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue related to the agent update process that
                           might prevent agents from performing updates.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Sometimes the system tray icon might not display.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—When the Ntrtscan.exe process becomes unresponsive,
                           the agent console might display the "Protection at Risk" status.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Sometimes the agent driver (tmnciesc.sys) might
                           become unresponsive.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue related to Data Loss Prevention which
                           might prevent the system from applying the approved list for the SMB channel.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Sometimes the TCacheGen_x64.exe tool might
                           not stop PccNTMon.exe properly.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue related to Data Loss Prevention which
                           might prevent the agent from checking compressed files in email messages.</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Resolved—Agent sometimes crashes when performing heartbeat
                           connection.</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_wcc_v3k_lgc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: August 6, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: August 13, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: August 20, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 06 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-windows-agent-august-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent August 2025 update - Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-linux-agent-august-2025-update</link>
    <description><![CDATA[<div class="p">August 6, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202508 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_ihv_snk_lgc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.2.0.956</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 3.0.0.6986</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2.17500</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_ihv_snk_lgc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_ihv_snk_lgc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Updates CACert.</div>
</li>
<li class="li">
<div class="p">Shortens the time to update information on the proxy in use.</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Update removes all Agent-PGPCore* files and Agent-Core*
                           files in the agent app folder after an agent update.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_ihv_snk_lgc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Server &amp; Workload Protection: Prevents an Integrity Check fail when multiple plugins
                           download the same KSP at almost the same time.</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Resolved—Agent sometimes crashes when performing heartbeat
                           connection.</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_ihv_snk_lgc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: August 6, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: August 13, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: August 20, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 06 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-linux-agent-august-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent August 2025 update - macOS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-macOS-agent-august-2025-update</link>
    <description><![CDATA[<div class="p">August 6, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202508 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_vsm_lmk_lgc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.2.525</div>
<ul class="ul" id="whatsnew_vsm_lmk_lgc__ul_gyr_bkr_g2c">
<li class="li">
<div class="p">XBCAgent.app</div>
</li>
<li class="li">
<div class="p">ws_communicator.app</div>
</li>
<li class="li">
<div class="p">PreCheck.app</div>
</li>
<li class="li">
<div class="p">SilentInstaller.app</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 1.2.525</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 3.5.8060</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_vsm_lmk_lgc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_vsm_lmk_lgc__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Adds the quarantine file path and SHA-256 information
                           to the detection results in Data Explorer.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_vsm_lmk_lgc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Update allows enabling of Data Detection and Response / Data Security Sensor without
                           needing to enable Endpoint Sensor.</div>
</li>
<li class="li">
<div class="p">Update enhances Attack Surface Discovery data collection to include additional hardware
                           information.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Removes the Diagnostic Tool UI from the web console.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enhances protection capabilities of Behavior Monitoring
                           to detect and block malicious activity originating from a valid driver.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the ofcntcer.dat file.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enables removal of specific outdated components from
                           the agent folder.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the debug log to enhance agent processes on
                           x86 platforms.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Virus Scan Engine (VSAPI) to version 25.560.1004
                           to enhance memory and file scans.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Advanced Threat Scan Engine (ATSE) to version
                           25.560.1004 to enhance memory and file scans.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_vsm_lmk_lgc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue that causes excessive memory usage when
                           Behavior Monitoring is enabled.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—When configuring scan exceptions, the system
                           might create duplicate entries.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue related to the agent update process that
                           might prevent agents from performing updates.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—When the Ntrtscan.exe process becomes unresponsive,
                           the agent console might display the "Protection at Risk" status.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Sometimes the agent driver (tmnciesc.sys) might
                           become unresponsive.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue related to Data Loss Prevention which
                           might prevent the system from applying the approved list for the SMB channel.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue related to Data Loss Prevention which
                           might prevent the agent from checking compressed files in email messages.</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_vsm_lmk_lgc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: August 6, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: August 13, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: August 20, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 06 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-macOS-agent-august-2025-update</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Content delivery network tags added to internet-facing assets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-CDN-tags-internet-facing-assets</link>
    <description><![CDATA[<div class="p">August 8, 2025—Internet-facing assets displayed in Attack Surface Discovery that are
               hosted by a content delivery network (CDN) are now tagged with a CDN tag in asset
               profiles. CDN-hosted asset profiles might contain inaccurate information, like related
               assets, open ports, and services, due to the nature of content delivery network hosting.
               The CDN tag gives you better situational awareness about the asset.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Fri, 08 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-CDN-tags-internet-facing-assets</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.500.09100859</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-rn-150009100859</link>
    <description><![CDATA[<div class="p">September 10, 2025 — The Agentless Vulnerability &amp; Threat Detection 1.500.09100859
               release excludes Agentless Vulnerability &amp; Threat Detection resources from impacting
               compliance and risk scores in Cloud Security Posture.</div><div class="p">
<ul class="ul" id="RN_2025_08_10_AVTD_150009100859_c92f44ed_5b43_4ace_a4a7_36e9e8cd6d3e__ul_sln_cl5_pgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: September 10, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b>:
                        <ul class="ul" id="RN_2025_08_10_AVTD_150009100859_c92f44ed_5b43_4ace_a4a7_36e9e8cd6d3e__ul_gz3_3l5_pgc">
<li class="li">
<div class="p">Adds the <code class="codeph">conformity:suppress</code> tag to exclude Agentless Vulnerability &amp; Threat Detection resources, preventing Cloud
                                 Security Posture rule violations from impacting the compliance and risk scores of
                                 your cloud accounts.</div>
</li>
</ul>
</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Sun, 10 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-rn-150009100859</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1524</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101524</link>
    <description><![CDATA[<div class="p">August 11, 2025—Virtual Network Sensor version 1.0.1524 includes enhancements, bug
               fixes, and security updates.</div><div class="p">This update includes the following change:</div><ul class="ul" id="whatsnew_kzx_5zf_jgc__ul_d2y_xhb_r2c">
<li class="li">
<div class="p">This update enhances the capabilities of Virtual Network Sensor to categorize traffic
                     that was previously unidentifiable.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 11 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101524</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.69</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-69</link>
    <description><![CDATA[<div class="p">August 11, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.69 is
               now available.</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_pjl_q1z_fgc__ul_qpb_z1z_fgc">
<li class="li">
<div class="p">Added support to assign standard HTTP(S) port 80/443 for On-premises Gateway proxy
                     services.</div>
</li>
<li class="li">
<div class="p">Added an option to record DLP and AI content matching data into detection log for
                     visibility.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 11 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-69</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.484.07301135</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-version-148407301135</link>
    <description><![CDATA[<div class="p">August 11, 2025—The 1.484.07301135 Agentless Vulnerability &amp; Threat Detection release
               updates the Python runtime version and adds tags for EBS snapshots.</div><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_tkv_34l_fgc__ul_v44_5ql_fgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform:</b> AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements:</b></div>
<ul class="ul" id="whatsnew_tkv_34l_fgc__ul_vym_crl_fgc">
<li class="li">
<div class="p">Updates the runtime version to Python 3.12 for Agentless Vulnerability &amp; Threat Detection
                           Lambda functions to deploy in the CloudFormation stack.</div>
</li>
<li class="li">
<div class="p">Adds tags for EBS snapshots temporarily created by the Agentless Vulnerability &amp; Threat
                           Detection scanning process. You can use these tags to include or exclude EBS snapshots.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 11 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-version-148407301135</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.158.09041233</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-rn-115809041233</link>
    <description><![CDATA[<div class="p">September 11, 2025 — The 1.158.09041233 version of Agentless Vulnerability &amp; Threat
               Detection   initiates scans of Azure environments more quickly, reducing the wait
               time before scanning begins.</div><div class="p">
<ul class="ul" id="RN_2025_09_10_AWS_AVTD_ver145809081657_b2c2acd5_4130_49cf_b655_89eb4e1bdff3__ul_htq_ng5_pgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Azure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: September 11, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b>:</div>
<ul class="ul" id="RN_2025_09_10_AWS_AVTD_ver145809081657_b2c2acd5_4130_49cf_b655_89eb4e1bdff3__ul_fbn_tg5_pgc">
<li class="li">
<div class="p">Reduces the wait time before scanning begins from approximately 2 hours to 30 minutes.</div>
</li>
</ul>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Azure</b></span></div>]]></description>
    <pubDate>Mon, 11 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-rn-115809041233</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Microsoft Defender for Endpoint Log Collection version 1.0.55</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mde-rn-version-1055</link>
    <description><![CDATA[<div class="p">August 11, 2025—The 1.0.55 Microsoft Defender for Endpoint Log Collection release
               includes support for Azure Functions SDK log level settings.</div><ul class="ul" id="whatsnew_a5w_xwk_hgc__ul_pcm_3xk_hgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b>: Azure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul">
<li class="li">
<div class="p">Provides support for Azure SDK log level settings for Azure Functions.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 11 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mde-rn-version-1055</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Helm Chart 3.1.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-315</link>
    <description><![CDATA[<div class="p">August 11, 2025 — The Helm Chart 3.1.5 release includes the following:.</div><ul class="ul" id="RN_2025_08_27_Helm_chart_3_1_5_20b2d336_48ef_4e88_850c_dea5fefa928e__ul_fxt_z2p_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="RN_2025_08_27_Helm_chart_3_1_5_20b2d336_48ef_4e88_850c_dea5fefa928e__ul_v53_bfp_lgc">
<li class="li">
<div class="p">Fixes issue with Runtime Security support for Linux kernels version 6.12 and later.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="RN_2025_08_27_Helm_chart_3_1_5_20b2d336_48ef_4e88_850c_dea5fefa928e__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="RN_2025_08_27_Helm_chart_3_1_5_20b2d336_48ef_4e88_850c_dea5fefa928e__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.1.5.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="RN_2025_08_27_Helm_chart_3_1_5_20b2d336_48ef_4e88_850c_dea5fefa928e__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.5" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.5</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 11 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-315</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Outbound static IP supports bandwidth usage queries</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-outbnd-static-ip-usage-queries</link>
    <description><![CDATA[<div class="p">August 8, 2025—Zero Trust Secure Access Internet Access and Zero Trust Secure Access
               AI Service Access now support bandwidth usage queries for outbound static IP addresses.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-outbound-static-ip-settings#GUID-BED80320-70E5-47C4-9530-CC26073D469D-dratuz">Outbound static IP settings</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 11 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-outbnd-static-ip-usage-queries</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>AI-generated Workbench insight summaries and highlights now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-insight-summary</link>
    <description><![CDATA[<div class="p">August 11, 2025—Streamline your incident investigations with AI-generated Workbench
               insight summaries and highlights, plus proactive suggestions for next steps to quickly
               remediate incidents in your environment.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insights#GUID-86CD9AB6-4CAD-4E08-B948-FA2373A1C555">Workbench insights</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Mon, 11 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-insight-summary</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Filter assets by tag and asset group in Threat and Exposure Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-filter-assets-tag-asset-group</link>
    <description><![CDATA[<div class="p">August 11, 2025—For enhance visibility and asset management, you can now filter risk
               events based on asset custom tags and affected asset groups. In Threat and Exposure
               Management, select a risk factor. Then, use the filters to find risk events associated
               with a particular custom tag or asset group.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 11 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-filter-assets-tag-asset-group</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Click the asset total in Cyber Risk Subindexes to view all related assets in Attack Surface Discovery</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-total-cyber-risk-subindexes</link>
    <description><![CDATA[<div class="p">August 8, 2025—For easier asset management, you can now view all assets in an asset
               group from Cyber Risk Subindexes. To view the assets, click <b class="uicontrol">Cyber Risk Subindexes</b> in Cyber Risk Overview, and then click the asset total. You are taken to Attack Surface
               Discovery, where you can view a list of all assets within the asset group along with
               the asset contribution to your overall Cyber Risk Index.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b></span></div>]]></description>
    <pubDate>Mon, 11 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-total-cyber-risk-subindexes</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>New configuration options for ECS protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-ECS-config</link>
    <description><![CDATA[<div class="p">August 12, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports new configuration options for ECS protection with Amazon EC2.</div><ul class="ul" id="whatsnew_cnq_jhk_hgc__ul_tl2_thk_hgc">
<li class="li">
<div class="p"><b class="uicontrol">CPU and memory limits</b>: Modify values for large or small EC2 instances, and adjust the <code class="codeph">trendmicro-scout</code> resource usage to match the needs of your container instance size.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Falco and Scout container images</b>: Configure a base path to use a private image from a personal registry instead of
                     public Container Security images.</div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b></span></div>]]></description>
    <pubDate>Tue, 12 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-ECS-config</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector Version 2.37.0.1790</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-37-0-1790</link>
    <description><![CDATA[<div class="p">August 13, 2025—Zero Trust Secure Access Private Access Connector Version 2.37.0.1790
               delivers new features.</div><div class="p"><b class="uicontrol">New features</b><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-8f44gl__ul_ygk_ymv_nfc">
<li class="li">
<div class="p">Added a new CLI command for maintenance mode.</div>
</li>
<li class="li">
<div class="p">Supports ICMP protocol in the Private Access Internal app. </div>
</li>
<li class="li">
<div class="p">The connector automatically rolls back to the last successfully connected region if
                        it starts up and tries to connect to an unreachable region.</div>
</li>
</ul>
</div>]]></description>
    <pubDate>Wed, 13 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-37-0-1790</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Automatic reversal of false positive quarantines extended to SharePoint Online</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-reverse-fp-sharepoint-cecp</link>
    <description><![CDATA[<div class="p">August 15, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> automatically reverses false positive quarantines in SharePoint Online, in addition
               to OneDrive. Using advanced URL pattern intelligence, it identifies false positives,
               retrieves file details from detection logs, and restores affected files to their original
               locations—no manual action needed.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 15 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-reverse-fp-sharepoint-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Enhanced audit log details for policy configuration updates</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-audit-logs-cecp</link>
    <description><![CDATA[<div class="p">August 15, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> provides more granular visibility into policy configuration changes in audit logs.
               Administrators can view detailed records of what specific settings were changed, such
               as updates to the approved or blocked list in policies. This improves traceability,
               accountability, and ease of troubleshooting during policy reviews or investigations.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 15 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-audit-logs-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Approved sender list for Data Loss Prevention policy in Exchange Online</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-approved-sender-dlp-eo-cecp</link>
    <description><![CDATA[<div class="p">August 15, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> allows configuring the approved sender list in Data Loss Prevention policy to exclude
               specific senders from scanning for Exchange Online in both API-based protection and
               inline protection modes.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 15 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-approved-sender-dlp-eo-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Support for multiple administrator email addresses in email reporting</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-reporting-multi-addr-cecp</link>
    <description><![CDATA[<div class="p">August 15, 2025—The <b class="uicontrol">Report to administrator</b> option in email reporting settings now supports up to 10 email addresses in the current
               organization, an enhancement from the previous limit of one. This allows greater flexibility
               in notifying multiple stakeholders when emails are reported by end users, improving
               visibility and response coordination across teams.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 15 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-reporting-multi-addr-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Email tracking log enhancement for inline protection: sender IP column added</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mail-tracking-log-eo-inline-cecp</link>
    <description><![CDATA[<div class="p">August 15, 2025—The email tracking log for Exchange Online (Inline Mode) now includes
               a sender IP column, showing the IP address first received by Microsoft Exchange Online.
               This provides enriched visibility into email origins for investigation and auditing.</div><div class="p">Note that if <span class="tm">TrendAI™</span> Email Security or <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> is deployed before Microsoft Exchange Online, the sender IP shown will be the IP
               address received by the corresponding <span class="tm">TrendAI™</span> solution.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 15 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mail-tracking-log-eo-inline-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Helm Chart 3.1.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-314</link>
    <description><![CDATA[<div class="p">August 18, 2025—The Helm Chart 3.1.4 release includes the following:</div><ul class="ul" id="RN_2025_08_18_Conatiner_Helm_3_1_4_3f90fd95_565f_4986_a791_13f5ecb07e95__ul_m2v_3ct_fgc">
<li class="li">
<div class="p"><b class="uicontrol">Features</b></div>
<ul class="ul" id="RN_2025_08_18_Conatiner_Helm_3_1_4_3f90fd95_565f_4986_a791_13f5ecb07e95__ul_sjh_lw1_jgc">
<li class="li">
<div class="p">Added a new environment variable <code class="codeph">LOG_LEVEL</code> to configure logging levels for ECS Fargate in task definitions.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="RN_2025_08_18_Conatiner_Helm_3_1_4_3f90fd95_565f_4986_a791_13f5ecb07e95__ul_mry_nw1_jgc">
<li class="li">
<div class="p">Added image version tags to task definitions to facilitate easier version comparison.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="RN_2025_08_18_Conatiner_Helm_3_1_4_3f90fd95_565f_4986_a791_13f5ecb07e95__ul_ok3_pct_fgc">
<li class="li">
<div class="p">Resolved issues with malware/secret scan timeouts and job creation failures.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="RN_2025_08_18_Conatiner_Helm_3_1_4_3f90fd95_565f_4986_a791_13f5ecb07e95__ul_mqd_2gt_fgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="RN_2025_08_18_Conatiner_Helm_3_1_4_3f90fd95_565f_4986_a791_13f5ecb07e95__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.1.4.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="RN_2025_08_18_Conatiner_Helm_3_1_4_3f90fd95_565f_4986_a791_13f5ecb07e95__ul_myz_3gt_fgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.4" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.4</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 18 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-314</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>TrendAI Vision One now supports Oracle Cloud compartments</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-oracle-cloud</link>
    <description><![CDATA[<div class="p">August 18, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports Oracle Cloud compartments for the following features:</div><ul class="ul" id="whatsnew_uhh_jlj_jgc__ul_ijg_vlj_jgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Accounts</b>: You can now connect your Oracle Compartments in Cloud Accounts to monitor your Oracle
                     cloud assets for risk. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-adding-oracle-cloud-compartment#adding_an_oracle_cloud_compartment_e8b1be09_a27e_4480_91a8_55ff64d9f936">Connect an OCI compartment using Oracle Resource Manager (ORM)</a>.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Cyber Risk Exposure Management</b>:</div>
<ul class="ul" id="whatsnew_uhh_jlj_jgc__ul_f24_vrj_jgc">
<li class="li">
<div class="p">Connected Oracle Cloud compartments are now viewable in the Cloud Assets tab in <b class="uicontrol">Attack Surface Discovery</b>, including Asset Profile and Cloud Risk Graph views. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-assets#GUID-e38fe112-b41e-4ea4-b453-a14df83cbf1d">Cloud assets</a>.</div>
</li>
<li class="li">
<div class="p">You can evaluate potential attack paths in your connected Oracle Compartments in <b class="uicontrol">Attack Path Prediction</b>. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-attack-path-predict#concept_ts1_jzy_2dc">Attack Path Prediction</a>.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Cloud Risk Management</b>:</div>
<ul class="ul" id="whatsnew_uhh_jlj_jgc__ul_c1m_ptj_jgc">
<li class="li">
<div class="p">Monitor and manage risks for your Oracle Cloud compartment in <b class="uicontrol">Cloud Security Posture</b>. View your connected Oracle Cloud compartments on the Cloud Overview tab, and group
                           your Oracle Cloud compartments into projects. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-overview-dashboard#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-mb54h0"> Cloud Security Posture</a>.</div>
</li>
<li class="li">
<div class="p">The <b class="uicontrol">Misconfiguration and Compliance</b> (CSPM) app has been updated with forty rules to scan Oracle Cloud compartments. These
                           rules are mapped to the CIS Oracle Foundations benchmark, which is now supported in
                           Cloud Risk Management. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-identity-dashboard-view#Main_Dashboard">Misconfiguration and Compliance</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-risk-management#concept_ntw_j14_ffc">Cloud Risk Management</a>.</div>
</li>
</ul>
</li>
<li class="li"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-ECS-config#whatsnew_cnq_jhk_hgc">New configuration options for ECS protection</a></li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Oracle</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b></span></div>]]></description>
    <pubDate>Mon, 18 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-oracle-cloud</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Privilege-based insight visibility</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-privilegebased-insight-visibility</link>
    <description><![CDATA[<div class="p">August 18, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now better aligns Workbench insight visibility with user permissions, ensuring security
               analysts can view the full impact of security incidents while limiting their view
               of assets that do not fall within their designated management scope. This enhancement
               refines the investigation experience by ensuring that the presented information is
               actionable and relevant to the user's role.</div><div class="p">This alignment is particularly beneficial for multinational organizations. If a security
               incident spans multiple geographic regions, analysts from each involved SOC can now
               view the same unified insight to understand the full picture of an attack. This shared
               context streamlines collaborative investigations, while scope-aware controls ensure
               teams can only act on the assets for which they are responsible.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insights#GUID-86CD9AB6-4CAD-4E08-B948-FA2373A1C555">Workbench insights</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol"> Workbench</b></span></div>]]></description>
    <pubDate>Mon, 18 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-privilegebased-insight-visibility</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Asset Group Management now supports larger and more complex organizational structures</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-agm-node-layer-limits</link>
    <description><![CDATA[<div class="p">August 19, 2025—To support more complex asset organization and improve scalability,
               Asset Group Management now allows users to create up to 500 asset groups, increased
               from the previous limit of 30.</div><div class="p">Additionally, the maximum number of layers for nested asset groups has been expanded
               from two levels to ten, enabling more granular organization and control. These enhancements
               are designed to meet the asset management needs of large-scale deployments and complex
               operational models.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asset-group-management#assetGroupManagement_fc5b85cc_4d94_4130_8ca8_db240f272caf">Asset Group Management</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Service Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Asset Group Management</b></span></div>]]></description>
    <pubDate>Tue, 19 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-agm-node-layer-limits</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Centralized policy resource management in Email and Collaboration Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policy-resources-ecs</link>
    <description><![CDATA[<div class="p">August 19, 2025—Email and Collaboration Security now offers a centralized location
               for managing policy-related resources and performing email security operations across
               supported solutions.</div><div class="p">The first available feature is the approved and blocked lists, enabling administrators
               to define trusted or suspicious senders and content once and apply them consistently
               across supported solutions, including <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> and <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span>. This reduces duplicated setup effort and ensures uniform enforcement. For solution-specific
               control, configurations can still be made individually.</div><div class="p">In this release, only sender addresses are supported for the approved list, with more
               object types and common lists coming soon under Policy Resources.</div><div class="p"><span class="menucascade"><b class="uicontrol">Email and Collaboration Security</b> → <b class="uicontrol">Configuration and Operations</b></span></div>]]></description>
    <pubDate>Tue, 19 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policy-resources-ecs</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>DMARC report analysis result export enhancements</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dmarc-analysis-export-cegp</link>
    <description><![CDATA[<div class="p">August 19, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now allows administrators to export DMARC report compliance check details into CSV
               files directly from the console, either by selecting specific records or exporting
               all filtered results.</div><div class="p">Exporting selected records happens instantly, while exporting all results triggers
               an export task. This streamlined export process improves efficiency, supports faster
               data analysis, and enables easier day-to-day follow-up and reporting.</div><div class="p"><span class="menucascade" id="whatsnew_drc_yzd_ggc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 19 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dmarc-analysis-export-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Proxy settings now support self-signed certificates</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-self-signed-certs</link>
    <description><![CDATA[<div class="p">August 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports proxy for self-signed certificates for Kubernetes clusters in Container
               Security. This enables you to use secure web proxy solutions as a proxy to access
               the internet and inspect HTTPS traffic.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-proxy-kubernetes-clusters#GUID-BED80320-70E5-47C4-9530-CC26073D469D-i0u4z0">Proxy Settings Script Generator (for
                  Kubernetes clusters)</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Container Inventory</b></span></div>]]></description>
    <pubDate>Thu, 21 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-self-signed-certs</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.26.1301</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-v2-26-1301</link>
    <description><![CDATA[<div class="p">August 25, 2025—This update includes resolved issues, as detailed in the following
               notes.</div><ul class="ul" id="whatsnew_kgs_w35_ngc__ul_pbf_kjv_ngc">
<li class="li">
<div class="p"><b class="uicontrol">Resolved issues</b></div>
<ul class="ul" id="whatsnew_kgs_w35_ngc__ul_rxw_2j5_ngc">
<li class="li">
<div class="p">Fixed an issue where Private Access sometimes failed to connect to expired cookies.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 25 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-v2-26-1301</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.23.127</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-version-v2-23-127</link>
    <description><![CDATA[<div class="p">August 25, 2025—This update includes enhancements and resolved issues, as detailed
               in the following notes.</div><ul class="ul" id="whatsnew_u1v_zj5_ngc__ul_gt1_hk5_ngc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_u1v_zj5_ngc__ul_o15_tk5_ngc">
<li class="li">
<div class="p">Log timestamps and format have been unified.</div>
</li>
<li class="li">
<div class="p">Internet Access authentication header is now recorded in user defaults when in tunnel
                           mode.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Resolved issues</b></div>
<ul class="ul" id="whatsnew_u1v_zj5_ngc__ul_ypz_hk5_ngc">
<li class="li">
<div class="p">The "Changing Configuration by Administrator" pop-up displays after an update.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 25 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-version-v2-23-127</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1532</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101532</link>
    <description><![CDATA[<div class="p">August 25, 2025—Virtual Network Sensor version 1.0.1532 includes enhancements, bug
               fixes, and security updates.</div><div class="p">This update includes the following change:</div><ul class="ul" id="whatsnew_xz2_1c5_jgc__ul_d2y_xhb_r2c">
<li class="li">
<div class="p">Virtual Network Sensor supports configuring session tracking and hostname lookup settings.
                     </div>
</li>
<li class="li">
<div class="p">Virtual Network Sensor avoids scanning the network traffic of other Virtual Network
                     Sensors or Deep Discovery Inspector appliances within the same <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> account.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 25 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101532</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Cloud Detections for AWS CloudTrail version 1.43.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-aws-cloudtrail-1430</link>
    <description><![CDATA[<div class="p">August 25, 2025—The 1.43.0 Cloud Detections for AWS CloudTrail release enhances AWS
               Lambda efficiency.</div><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_wwc_lv1_lgc__ul_v44_5ql_fgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform:</b> AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements:</b></div>
<ul class="ul" id="whatsnew_wwc_lv1_lgc__ul_vym_crl_fgc">
<li class="li">
<div class="p">Enhances AWS Lambda efficiency by optimizing and reducing the number of AWS Service
                           Systems Manager (SSM) connections.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 25 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-aws-cloudtrail-1430</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Nozomi Central Management Console (CMC) integration available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-nozomi-cmc-whats-new</link>
    <description><![CDATA[<div class="p">August 25, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now integrates with the Nozomi Networks Central Management Console (CMC) on-premises
               platform to streamline and centralize your security operations. To enable the Nozomi
               CMC integration, configure your API authentication settings in Nozomi CMC and install
               the Third-party security data forwarding service on your deployed Service Gateway.
               Data forwarded to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> includes consolidated asset inventory and security alerts from distributed industrial
               control systems across multiple sites. The integration enables secure data feeds and
               strengthens your unified IT/OT security posture with enhanced multi-site threat correlation
               and centralized visibility.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 25 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-nozomi-cmc-whats-new</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Container Protection for Amazon ECS version 1.1.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-V1CS-amazon-ecs-version-112</link>
    <description><![CDATA[<div class="p">August 26, 2025 — Container Protection for Amazon ECS version 1.1.2 is now available.</div><ul class="ul" id="whatsnew_vvj_hgv_pgc__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b></div>
<ul class="ul" id="whatsnew_vvj_hgv_pgc__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Amazon Web Services (AWS)</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_vvj_hgv_pgc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Fixes an issue where runtime security components for ECS failed to communicate with
                           <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
<li class="li">
<div class="p">Fixes runtime security support for kernel versions 6.12 or later.</div>
</li>
<li class="li">
<div class="p">Fixes a typo in IAM perms.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Tue, 26 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-V1CS-amazon-ecs-version-112</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Helm Chart 3.1.6</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-316</link>
    <description><![CDATA[<div class="p">August 27, 2025 — The Helm Chart 3.1.6 release includes the following:</div><ul class="ul" id="whatsnew_prg_vxp_lgc__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_prg_vxp_lgc__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">This release enhances the Workload Operator component to be idempotent.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_prg_vxp_lgc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_prg_vxp_lgc__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.1.6.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_prg_vxp_lgc__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.6" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.6</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Wed, 27 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-316</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>AI-recommended related XDR Data Explorer events now supported in Workbench insight alerts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-ai-related-xdr-events</link>
    <description><![CDATA[<div class="p">August 27, 2025—AI-recommended related events from XDR Data Explorer in Workbench
               insight alerts are now supported. To view related XDR Data Explorer events, go to
               the <b class="uicontrol">Alerts</b> tab in a Workbench insight and click the magnifying glass icon. On the <b class="uicontrol">Related events</b> panel on the <b class="uicontrol">Activities</b> tab, you can view a variety of activities from related XDR Data Explorer events.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-alerts-workbench-insights#GUID-1722E7D9-6C28-4742-B3A2-A8E09FAA00C9">Alerts correlated in Workbench insights</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Workbench</b></span></div>]]></description>
    <pubDate>Wed, 27 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-ai-related-xdr-events</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 2.0.6</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-206</link>
    <description><![CDATA[<div class="p">August 28, 2025—Service Gateway Forward Proxy Service Version 2.0.6 delivers key enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_vmr_g3m_lgc__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update provides granular substatus information to help users better understand
                     the current service status.</div>
</li>
</ul><div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>]]></description>
    <pubDate>Thu, 28 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-206</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 2.0.7</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-207</link>
    <description><![CDATA[<div class="p">August 28, 2025—Service Gateway Smart Protection Services Version 2.0.7 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_z2n_rhm_lgc__ul_r4w_mv1_dgc">
<li class="li">
<div class="p">This update provides granular substatus information to help users better understand
                     the current service status.</div>
</li>
</ul><div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>]]></description>
    <pubDate>Thu, 28 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-207</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Generic Caching Service 1.0.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-104</link>
    <description><![CDATA[<div class="p">August 28, 2025—Service Gateway Generic Caching Service 1.0.4 delivers key enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_fzg_1km_lgc__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update provides granular substatus information to help users better understand
                     the current service status.</div>
</li>
</ul><div class="p">Some features may not be available in all regions or on all Service Gateway appliances.</div>]]></description>
    <pubDate>Thu, 28 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-104</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.22</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3022</link>
    <description><![CDATA[<div class="p">August 28, 2025—Service Gateway Firmware Version 3.0.22 includes enhancements, bug
               fixes, and security updates for Service Gateway.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_err_m2m_lgc__ul_xkj_3r1_dgc">
<li class="li">
<div class="p">This update adds support for standard ports 443 and 80 for reverse proxy deployment
                     on ZTSA On-premises Gateway and ZTSA On-premises Gateway with AI.</div>
</li>
<li class="li">
<div class="p">This update resolves the Forward Proxy Service overlapping domain check issue.</div>
</li>
<li class="li">
<div class="p">This update includes multiple vulnerability fixes.</div>
</li>
</ul>]]></description>
    <pubDate>Thu, 28 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3022</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.12</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3012</link>
    <description><![CDATA[<div class="p">August 28, 2025—Service Gateway Local ActiveUpdate Service Version 3.0.12 includes
               enhancements, bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_ok2_yfm_lgc__ul_o1t_xvp_fgc">
<li class="li">
<div class="p">This update introduces a new feature that includes the critical pattern version in
                     service substatus for monitoring.</div>
</li>
<li class="li">
<div class="p">This update resolves the issue with the cleanup logic that occurred when the <code class="filepath">server.ini</code> file could not be downloaded.</div>
</li>
<li class="li">
<div class="p">This update adds logging to record agent requests to the ActiveUpdate sites.</div>
</li>
</ul>]]></description>
    <pubDate>Thu, 28 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3012</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>View your intended credit usage in License Information</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-credit-purchase-intention</link>
    <description><![CDATA[<div class="p">August 28, 2025—In License Information, you can now view the solutions that your organization
               intended to use credits for when purchasing a <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span> Flex (credits)</span> license. This enhancement enables you to see which specific solutions you intended
               to budget for, including the estimated units and number of credits you planned to
               use for each. You can view these details both on your license certificate and in License
               Information.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-license-information#GUID-F6E28A1C-66AE-44D3-8D51-5CE7775298C8">License Information</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">TrendAI™ Flex Licensing</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">License Information</b></span></div>]]></description>
    <pubDate>Thu, 28 Aug 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-credit-purchase-intention</guid>
    <category>Administration</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1535</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101535</link>
    <description><![CDATA[<div class="p">September 01, 2025—Virtual Network Sensor version 1.0.1535 includes enhancements,
               bug fixes, and security updates.</div>]]></description>
    <pubDate>Mon, 01 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101535</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Template Scanner now Supports Google Cloud</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-GCP-release</link>
    <description><![CDATA[<div class="p">September 5, 2025—Cloud Risk Management Template Scanner now supports Google Cloud
               (GCP) in addition to AWS and Azure, allowing you to have a more comprehensive view
               over detecting risks in your IaC before its deployed. For coverage details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-coverage#template-scanner-coverage">Template Scanner Coverage</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Template Scanner</b></span></div>]]></description>
    <pubDate>Fri, 05 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-GCP-release</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.70</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-70</link>
    <description><![CDATA[<div class="p">September 8, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.70
               is now available.</div><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_ad2_rc5_ngc__ul_clq_bd5_ngc">
<li class="li">
<div class="p">Supports URL matching with special characters (UTF-16 / UTF-32 encoded, comma) in
                     the Allow/Deny/URL Category lists.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul">
<li class="li">
<div class="p">Fixed the issue where the AI service was unable to detect and block files being uploaded
                     to Microsoft Copilot.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 08 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-70</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector Version 2.37.0.2062</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v2-37-0-2062</link>
    <description><![CDATA[<div class="p">September 8, 2025—Zero Trust Secure Access Private Access Connector Version 2.37.0.2062
               delivers key enhancements.</div><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_ymc_ntl_pgc__ul_ywy_25l_pgc">
<li class="li">
<div class="p">Adds resiliency to the IoT connection on the connector. Automates the recovery process
                     by detecting IoT service issues and automatically reconnecting to restore normal operation.</div>
</li>
<li class="li">
<div class="p">ZTNA browser access enables time synchronization for RDP applications.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 08 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v2-37-0-2062</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.494.09031302</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avt-rn-version-149409031302</link>
    <description><![CDATA[<div class="p">September 8, 2025—The 1.494.09031302 version of Agentless Vulnerability &amp; Threat Detection
               adds the ability for AWS customers to scan encrypted disks that use customer-managed
               keys.</div><div class="p">Detailed release notes:</div><div class="p">
<ul class="ul" id="concept_qwd_gyt_4gc__ul_rwd_gyt_4gc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform:</b> AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method:</b>: CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements:</b></div>
<ul class="ul" id="concept_qwd_gyt_4gc__ul_swd_gyt_4gc">
<li class="li">
<div class="p">Adds AWS KMS decryption IAM policies to the Agentless Vulnerability &amp; Threat Detection
                              stack template, enabling the scanner to scan disks encrypted with customer managed
                              keys.</div>
</li>
</ul>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 08 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avt-rn-version-149409031302</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access Internet Access or AI Service Access supports multiple static IPs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-ia-or-ai-multiple-static-ips</link>
    <description><![CDATA[<div class="p">September 8, 2025—Zero Trust Secure Access Internet Access or AI Service Access now
               supports multiple outbound static IPs in different regions.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span>
</div>]]></description>
    <pubDate>Mon, 08 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-ia-or-ai-multiple-static-ips</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Customize the retention period for risk event data in Cyber Risk Exposure Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-CREM-risk-retention-period</link>
    <description><![CDATA[<div class="p">September 8, 2025—Retain risk event data for longer than 30 days by configuring the
               risk event data retention settings in the Data sources and retention section of  Data
               Source and Log Management. You can set a custom retention period of up to two years.
               Risk event data older than 30 days does not display in Threat and Exposure Management,
               but the data is viewable using platform search.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 08 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-CREM-risk-retention-period</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent September 2025 update - Windows</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-september-2025-update-windows</link>
    <description><![CDATA[<div class="p">September 10, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202509 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_vy3_qbq_khc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Service communication manager (VOM) plug-in version 1.2.0.1223</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 1.2.0.6793</div>
</li>
<li class="li">
<div class="p">Vulnerability Assessment version 1.0.0.3972</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 14.0.20225</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2-20480</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_vy3_qbq_khc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_vy3_qbq_khc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Updates Product Licensing Management to version 2.5.6220.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates PHP module to version 8.2.29 and rebuilds extension
                           using new version to enhance product security.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates 7-Zip module to version 25.1 to enhance product
                           security.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_vy3_qbq_khc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue causing Behavior Monitoring to display
                           incorrect log numbers when log number is zero.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—When the option "Agents use the proxy server
                           settings configured in Windows Internet Options when connecting to <span class="tm">TrendAI™</span> servers" is enabled, agents do not maintain the setting after installing an agent
                           update.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Behavior Monitoring displays and alert when
                           launching a Microsoft application.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue related to unable to stop agent repeating
                           the update process.</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixes a potential memory leak.</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixes an issue causing restoration function to fail
                           when there is no real-time scan configuration.</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_vy3_qbq_khc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: September 10, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: September 17, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: September 24, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 10 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-september-2025-update-windows</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent September 2025 update - Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-september-2025-update-linux</link>
    <description><![CDATA[<div class="p">September 10, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202509 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_jby_35q_khc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.2.0.994</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 3.0.0.7226</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2-20480</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_jby_35q_khc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_jby_35q_khc__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Agent supports Oracle Linux 10, including Server &amp; Workload Protection</div>
</li>
<li class="li">
<div class="p">Agent supports Red Hat Linux 10</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_jby_35q_khc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Updates CACert</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_jby_35q_khc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixes a potential memory leak</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixes an issue related to get podman information</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_jby_35q_khc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: September 10, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: September 17, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: September 24, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 10 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-september-2025-update-linux</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent September 2025 update - macOS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-september-2025-update-macos</link>
    <description><![CDATA[<div class="p">September 10, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202509 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_rwv_5qq_khc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.2.527</div>
<ul class="ul" id="whatsnew_rwv_5qq_khc__ul_gyr_bkr_g2c">
<li class="li">
<div class="p">XBCAgent.app</div>
</li>
<li class="li">
<div class="p">ws_communicator.app</div>
</li>
<li class="li">
<div class="p">PreCheck.app</div>
</li>
<li class="li">
<div class="p">SilentInstaller.app</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 1.2.527</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 3.5.8052</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_rwv_5qq_khc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_rwv_5qq_khc__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Adds the quarantine file path and SHA-256 information
                           to the detection results in Data Explorer.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_rwv_5qq_khc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Updates <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> third-party libraries to the latest version</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates Product Licensing Management to version 2.5.6220.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates PHP module to version 8.2.29 and rebuilds extension
                           using new version to enhance product security.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates 7-Zip module to version 25.1 to enhance product
                           security.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_rwv_5qq_khc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue causing Behavior Monitoring to display
                           incorrect log numbers when log number is zero.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Behavior Monitoring displays and alert when
                           launching a Microsoft application.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Fixes an issue related to unable to stop agent repeating
                           the update process.</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_rwv_5qq_khc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: September 10, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: September 17, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: September 24, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 10 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-september-2025-update-macos</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>New “Group by” option available for custom models</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dmm-group-container</link>
    <description><![CDATA[<div class="p">September 10, 2025—You can now group by container when creating a custom model. Events
               are triggered when the threshold is met for one container.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-configuring-custom-model#CreatingCustomModel">Configure a custom model</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Wed, 10 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dmm-group-container</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Approved sender list for Data Loss Prevention policy extended to Gmail</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-approved-sender-dlp-gmail-cecp</link>
    <description><![CDATA[<div class="p">September 12, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> allows configuring the approved sender list in Data Loss Prevention policy to exclude
               specific senders from scanning for Gmail in both API-based protection and inline protection
               modes.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 12 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-approved-sender-dlp-gmail-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Automatic bypass for Microsoft Teams meeting URLs in Time-of-Click Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-bypass-teams-meeting-urls-cecp</link>
    <description><![CDATA[<div class="p">September 12, 2025—Starting September 30, 2025, Microsoft Teams will begin validating
               meeting join URLs. Rewritten or modified URLs may be treated as malicious, which could
               interfere with email delivery and link protection features. To prevent false positives
               and ensure uninterrupted access to legitimate Teams meetings, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> automatically bypasses URLs from teams.microsoft.com in Time-of-Click Protection.</div><div class="p">This update helps maintain seamless meeting access while preserving accurate threat
               detection—no configuration required.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 12 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-bypass-teams-meeting-urls-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Approved SharePoint Online sites in Global Settings</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-global-approved-sp-sites-cecp</link>
    <description><![CDATA[<div class="p">September 12, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> supports defining an approved site list for SharePoint Online in Global Settings.
               Files uploaded, created, synchronized, or modified on these approved sites will be
               excluded from scanning, allowing administrators to bypass ATP or DLP policy enforcement
               for trusted SharePoint Online locations.</div><div class="p">This feature helps streamline policy configuration—especially for customers managing
               large numbers of SharePoint Online sites—by enabling centralized exception management
               similar to approved Exchange Online users.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 12 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-global-approved-sp-sites-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Helm Chart 3.1.7</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-317</link>
    <description><![CDATA[<div class="p">September 16, 2025—The Helm Chart 3.1.7 release includes the following:</div><ul class="ul" id="whatsnew_rtw_fgx_sgc__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_rtw_fgx_sgc__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Improved support for OKE clusters.</div>
</li>
<li class="li">
<div class="p">Enhanced node selector and toleration flexibility for scan jobs.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_rtw_fgx_sgc__ul_ok3_pct_fgc">
<li class="li">
<div class="p">Added workaround for existing soft lockup issue in the Azure Linux 2 kernel.</div>
</li>
<li class="li">
<div class="p">Improved handling of scan manager when malware or secret cron schedules were empty.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_rtw_fgx_sgc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_rtw_fgx_sgc__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.1.7.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_rtw_fgx_sgc__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.7" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.7</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Tue, 16 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-317</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Customizable notifications for default global outbound virus and spam policy rules</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-config-actions-outbound-policy-cegp</link>
    <description><![CDATA[<div class="p">September 16, 2025—Administrators with "Manage security policies and policy objects"
               permission and full domain visibility scope can now customize notification settings
               for default global outbound policy rules in Virus Scan and Spam Filtering. Options
               include enabling notifications, selecting notification templates, and configuring
               BCC recipients. This enhancement improves operational flexibility for security teams.
               For example, it allows them to alert internal stakeholders more effectively without
               compromising global protection rules.</div><div class="p"><span class="menucascade" id="whatsnew_wp4_nz5_4gc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 16 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-config-actions-outbound-policy-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Improved quarantine query</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-improved-quarantine-query-cegp</link>
    <description><![CDATA[<div class="p">September 16, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> offers enhanced quarantine query capabilities, including full wildcard support across
               both the user and domain parts of email addresses, as well as the ability to filter
               by header sender and recipient fields. These updates make it easier to locate quarantined
               emails with greater flexibility and precision.</div><div class="p"><span class="menucascade" id="whatsnew_hhp_qzd_ggc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 16 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-improved-quarantine-query-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Header sender field added to log export</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-header-sender-for-log-export-cegp</link>
    <description><![CDATA[<div class="p">September 16, 2025—To improve traceability and analysis, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now includes the "Email Header (From)" field in both log views within the console
               and exported CSV files for mail tracking accepted logs and policy event logs. Whether
               exporting selected entries or the full log, users can now view header sender data
               directly.</div><div class="p"><span class="menucascade" id="whatsnew_txc_yz5_4gc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 16 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-header-sender-for-log-export-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Automatic bypass for Microsoft Teams meeting URLs in Time-of-Click Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-bypass-teams-meeting-urls-cegp</link>
    <description><![CDATA[<div class="p">September 16, 2025—Starting September 30, 2025, Microsoft Teams will begin validating
               meeting join URLs. Rewritten or modified URLs may be treated as malicious, which could
               interfere with email delivery and link protection features. To prevent false positives
               and ensure uninterrupted access to legitimate Teams meetings, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> automatically bypasses URLs from teams.microsoft.com in Time-of-Click Protection.</div><div class="p">This update helps maintain seamless meeting access while preserving accurate threat
               detection—no configuration required.</div><div class="p"><span class="menucascade" id="whatsnew_fkv_hy5_4gc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 16 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-bypass-teams-meeting-urls-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.23</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-3023</link>
    <description><![CDATA[<div class="p">17 September, 2025—Service Gateway Firmware Version 3.0.23 delivers key enhancements
               and security updates.</div><div class="p">Service Gateway Firmware 3.0.23 contains the following changes:
               <ul class="ul" id="whatsnew_mrm_bsc_tgc__ul_fzp_3sc_tgc">
<li class="li">Support for Kernel-based virtual machines (KVM)</li>
<li class="li">Vulnerability fixes</li>
</ul>
</div>]]></description>
    <pubDate>Wed, 17 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-3023</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.13</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3013</link>
    <description><![CDATA[<div class="p">September 17, 2025—Service Gateway Local ActiveUpdate Service Version 3.0.13 includes
               enhancements, bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_qbb_hdp_tgc__ul_o1t_xvp_fgc">
<li class="li">
<div class="p">This update fixes an issue where update downloads failed due to improperly placed
                     exception handlers (RelayDownloadFailedError).</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 17 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3013</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Introducing the TrendAI Artifact Scanner (TMAS) GitHub action</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-tmas-github-action</link>
    <description><![CDATA[<div class="p">September 17, 2025—Use the new TMAS GitHub action to install TMAS for Code Security
               and Container Security deployments in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. This GitHub action uses automated CI/CD integration to run scans in every pull request
               or push to enforce policies directly in the pipeline.</div><div class="p">Learn more about the TMAS GitHub action in the <a class="xref" href="https://github.com/trendmicro/tmas-scan-action/blob/main/README.md" target="_blank">GitHub README</a> or in <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-integrating-tmas-ci-cd-pipeline#sub_task_1-w8egd9">Integrate TrendAI™ Artifact Scanner (TMAS) into a CI/CD pipeline</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Code Security</b></span></div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Logs</b></span></div>]]></description>
    <pubDate>Wed, 17 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-tmas-github-action</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Improved visualization of lateral movement in Execution Profiles</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-ep-lat-movement</link>
    <description><![CDATA[<div class="p">September 19, 2025—Quickly and accurately visualize lateral movement within the network
               to identify potential threats with a more focused scope. View connections in the observed
               graph and stay updated on nodes that can run Execution Profiles in order to efficiently
               respond to alerts and insights.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-execution-profile#GUID-FE1F2827-DCDB-4146-BD35-C9003A0EBD6A">Execution profile</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Fri, 19 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-ep-lat-movement</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>New Endpoint Security experience and Policy Resources coming soon</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-endpoint-security-policies-soon</link>
    <description><![CDATA[<div class="p">September 20, 2025—The new Endpoint Security Policy management and Policy Resources
               are releasing soon.</div><div class="p">On October 31, 2025, Endpoint Security Policies will officially upgrade to the "unified
               assignment" experience. The new version of Endpoint Security Policies along with Policy
               Resources provide several key benefits:</div><ul class="ul" id="whatsnew_t2l_p3h_rgc__ul_qxz_53h_rgc">
<li class="li">
<div class="p">Assignments allow users to apply policies to endpoint groups across your security
                     environment to simplify enforcement and management of security and compliance requirements.</div>
</li>
<li class="li">
<div class="p">Policies simplify managing endpoint security settings by centralizing control for
                     agent features, ensuring consistent configurations, security measures, and application
                     settings across your security environment.</div>
</li>
<li class="li">
<div class="p">Policy Resources make policy management more efficient by creating reusable resources,
                     reducing redundancy, and maintaining consistency.</div>
</li>
</ul><div class="p">For more information about the new Endpoint Security Policies, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-security-policies#concept_rmz_hjw_ffc">Endpoint Security Policies</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Endpoint Security Policies</b></span></div><div class="p">For more information about Policy Resources, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-security-policy-resources#concept_f12_dz5_hfc">Policy Resources</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Policy Resources</b></span></div>]]></description>
    <pubDate>Sat, 20 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-endpoint-security-policies-soon</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway version 1.0.71</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-71</link>
    <description><![CDATA[<div class="p">September 22, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.71
               is now available.</div><div class="p"><b class="uicontrol">Enhancement</b></div><ul class="ul" id="whatsnew_cnh_nzq_tgc__ul_lgc_f1r_tgc">
<li class="li">
<ul class="ul" id="whatsnew_cnh_nzq_tgc__ul_rsv_f1r_tgc">
<li class="li">
<div class="p">Added support for AI proxy to protect private AI services with multiple LLM integration.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 22 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-71</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access adds PoP site in Azure Sweden</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-azure-sweden</link>
    <description><![CDATA[<div class="p">September 22, 2025—Zero Trust Secure Access Internet Access now supports the Azure
               Sweden region. Users in the region may configure their service FQDNs to reflect the
               new location. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol">Secure Access Configuration</b> → <b class="uicontrol">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 22 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-azure-sweden</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Private GenAI protection now supports multiple LLMs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-ai-proxy-supports-mult-llms</link>
    <description><![CDATA[<div class="p">September 22, 2025—Zero Trust Secure Access AI Service Access in on-premises gateways
               now supports enhanced private GenAI protection with the new AI proxy mode, enabling
               multiple LLM integrations.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 22 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-ai-proxy-supports-mult-llms</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Filter relevant XDR insights and events in Workbench and Observed Attack Techniques</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-filter-wb-oat</link>
    <description><![CDATA[<div class="p">September 22, 2025—You can now filter Workbench insights and Observed Attack Techniques
               events by asset group, custom asset tag, criticality, and endpoint group. Click <b class="uicontrol">Add filter</b> and select a filter from the drop-down menu.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insights#GUID-86CD9AB6-4CAD-4E08-B948-FA2373A1C555">Workbench insights</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-observed-attack-techniques#GUID-B626E45A-5383-4CDB-8459-2751E6E3DB52">Observed Attack Techniques</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Observed Attack Techniques</b></span></div>]]></description>
    <pubDate>Mon, 22 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-filter-wb-oat</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Explore third-party integrations with the new marketplace-style UI</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-marketplacestyle-tpi</link>
    <description><![CDATA[<div class="p">September 22, 2025—The <b class="wintitle" lang="en-us" xml:lang="en-us">Third-Party Integrations</b> app now features a sleek, marketplace-style design that makes browsing, filtering,
               and evaluating integrations faster and easier. Whether you are a customer, partner,
               or service provider, you will enjoy a more intuitive experience and clearer integration
               details.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-third-party-integration#GUID-7A395A56-B2E2-4105-9D75-E633886C51F8">Third-Party Integrations</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 22 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-marketplacestyle-tpi</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1152</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201152</link>
    <description><![CDATA[<div class="p">September 23, 2025—Mobile Security for Business app version 2.0.1152 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-O5P6Q7R8-S9N0-1234-OPQR-ST5678901234__ul_o5p_6qr_s7t">
<li class="li">
<div class="p">Requires users to log in after they disconnect from and then reconnect to Private
                     Access on the agent if the feature is enabled on the console.</div>
</li>
<li class="li">
<div class="p">Fixes an issue where users cannot access websites from certain domains.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 23 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201152</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1149</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201149</link>
    <description><![CDATA[<div class="p">September 23, 2025—Mobile Security for Business app version 2.0.1149 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-N4O5P6Q7-R8M9-0123-NOPQ-RS4567890123__ul_n4o_5pq_r6s">
<li class="li">
<div class="p">Supports using the last valid credentials for authentication upon failure to connect
                     to Private Access.</div>
</li>
<li class="li">
<div class="p">Fixes an issue where internal domains cannot be accessed through Private Access.</div>
</li>
<li class="li">
<div class="p">Fixes an issue where the app automatically starts scanning each time users return
                     to the app.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 23 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201149</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Hotfix for Windows agents - Sep 24, 2025</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-hotfix-windows-agents-sep-24-2025</link>
    <description><![CDATA[<div class="p">September 24, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202509 hotfix addresses the following component and
               module updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_h5q_sdq_khc__ul_iv1_3mr_g2c">
<li class="li">
<div class="p">Endpoint Sensor version 1.2.0.6845</div>
</li>
</ul><div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div><ul class="ul" id="whatsnew_h5q_sdq_khc__ul_aml_hcc_g2c">
<li class="li">
<div class="p">Resolves an upgrade failure (error code: 201) that occurred when a service could not
                     be stopped during the update process.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where the <code class="filepath">tm_netsrv</code> service failed to restart properly.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 24 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-hotfix-windows-agents-sep-24-2025</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Helm Chart 3.1.8</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-318</link>
    <description><![CDATA[<div class="p">September 29, 2025 — The Helm Chart 3.1.8 release includes the following:</div><ul class="ul" id="whatsnew_uwv_mfc_xgc__ul_wq1_sfc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b><ul class="ul" id="whatsnew_uwv_mfc_xgc__ul_p22_5fc_xgc">
<li class="li">
<div class="p">Added node-level compliance checks for master nodes to ensure alignment with Kubernetes
                              and OpenShift standards.</div>
</li>
<li class="li">
<div class="p">Enhanced deployment log visibility by including signature verification rule evaluation
                              events, along with detailed evaluation reasons, for both frontend and public API deployments.</div>
</li>
</ul>
</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_uwv_mfc_xgc__ul_p1q_2gc_xgc">
<li class="li">
<div class="p">Resolved an issue with scan manager schedule logging.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_uwv_mfc_xgc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_uwv_mfc_xgc__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.1.8.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_uwv_mfc_xgc__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.8" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.1.8</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 29 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-318</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>File Security Storage now supports full and scheduled scans</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-supports-full-scheduled-scans</link>
    <description><![CDATA[<div class="p">September 29, 2025—File Security Storage version 2.3.18 introduces two key enhancements:</div><ul class="ul" id="whatsnew_rzf_4ys_wgc__ul_wjk_lbt_wgc">
<li class="li">
<div class="p"><b class="uicontrol">Full-bucket scans</b> - scan all files within an S3 bucket</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Scheduled scans</b> - automatically scan buckets on a defined schedule</div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">File Security</b></span></div>]]></description>
    <pubDate>Mon, 29 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-supports-full-scheduled-scans</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.27.1051</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-ver-2271051</link>
    <description><![CDATA[<div class="p">September 30, 2025—This update includes a new feature release as detailed in the following
               notes.</div><div class="p">Version 2.27.1051</div><ul class="ul" id="whatsnew_uwq_zg1_xgc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New Feature</b></div>
<ul class="ul" id="whatsnew_uwq_zg1_xgc__ul_cmv_nbz_lfc">
<li class="li">
<div class="p">Private Access can now connect using the connector that was last known to have a good
                           status, even if the backend is temporarily unavailable.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Tue, 30 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-ver-2271051</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.24.177</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-version-224177</link>
    <description><![CDATA[<div class="p">September 30, 2025—This update includes a new feature release as detailed in the following
               notes.</div><div class="p">Version 2.24.177</div><ul class="ul" id="whatsnew_unk_h31_xgc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New Feature</b></div>
<ul class="ul" id="whatsnew_unk_h31_xgc__ul_cmv_nbz_lfc">
<li class="li">
<div class="p">When the backend is temporarily unavailable, Private Access can now connect using
                           the last known good configuration. This only applies if the previously known good
                           information is still valid.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Tue, 30 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-version-224177</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1547</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101547</link>
    <description><![CDATA[<div class="p">September 30, 2025—Virtual Network Sensor version 1.0.1547 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following change:</div><ul class="ul" id="whatsnew_g3c_r5w_tgc__ul_d2y_xhb_r2c">
<li class="li">
<div class="p">Support deployment on Oracle Cloud Infrastructure.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 30 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101547</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1515</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201515</link>
    <description><![CDATA[<div class="p">September 30, 2025—Mobile Security for Business app version 2.0.1515 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-F6G7H8I9-J0E1-2345-FGHI-JK6789012345__ul_f6g_7hi_j8k">
<li class="li">
<div class="p">Makes updates to comply with Android system requirements.</div>
</li>
<li class="li">
<div class="p">Fixes an issue where risky apps are incorrectly identified as other types and not
                     shown in Risky Mobile Apps on the console.</div>
</li>
<li class="li">
<div class="p">Supports using the last valid credentials for authentication upon failure to connect
                     to Private Access.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 30 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201515</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Virtual Network Sensor now available for Oracle Cloud Infrastructure</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-available-oci</link>
    <description><![CDATA[<div class="p">September 30, 2025—You can now deploy the Virtual Network Sensor on Oracle Cloud Infrastructure,
               in addition to the other supported cloud platforms: AWS, Azure, and Google Cloud.
               This enables you to monitor network traffic within your Oracle Cloud environment.</div><div class="p">To deploy, download the Virtual Network Sensor image from the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console.</div><div class="p">For details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deploy-vns-overview-oci#concept_f1s_4bs_sgc">Deploy a Virtual Network Sensor with Oracle Cloud Infrastructure</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Tue, 30 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vns-available-oci</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Server &amp; Workload Protection and Endpoint Sensor support Oracle Linux 10 64-bit (x86-64)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oracle-linux-10-64-bit</link>
    <description><![CDATA[<div class="p">September 30, 2025—Server &amp; Workload Protection and Endpoint Sensor now support deployment
               to Oracle Linux 10 64-bit (x86-64) endpoints.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Tue, 30 Sep 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oracle-linux-10-64-bit</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent October 2025 update - Windows</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-october-2025-update-windows</link>
    <description><![CDATA[<div class="p">October 1, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202510 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_qrf_n2q_khc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Service communication manager (VOM) plug-in version 1.2.0.1241</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 1.2.0.6879</div>
</li>
<li class="li">
<div class="p">Vulnerability Assessment version 1.0.0.4014</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery version 1.0.0.4014</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 14.0.20315</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2-22850</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_qrf_n2q_khc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_qrf_n2q_khc__ul_afq_zmq_khc">
<li class="li">
<div class="p">Server &amp; Workload Protection: Advanced TLS traffic inspection now supports TLS1.3
                           on Windows 11, Windows Server 2022, and Windows Server 2025.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_qrf_n2q_khc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Vulnerability Assessment: Enhances data collection</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Virus Scan Engine (VSAPI) to version 25.560.1005
                           to improve capabilities.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Damage Cleanup Engine (DCE) to version 7.5.1217
                           to enhance process chain cleanup capability and provide more details for cleanup information.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the TmEyes module to version 8.55.1403 for enhanced
                           ransomware detection capability.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the AMSP module to version 6.6.1216 for enhanced
                           ransomware detection capability.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Net Filter module to version 1.0.456 to
                           enhance web browser detection capability.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates Data Loss Prevention (DLP) to version 6.2.6098
                           to enhance print check logic and support Windows 11 25H2.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enhances log upload mechanism to reduce network payload
                           for Data Loss Prevention, Device Access Control, Behavior Monitoring, and Predictive
                           Machine Learning logs.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enhances the quarantined file verification to prevent
                           incorrect operations.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the agent program to protect against a potential
                           resource loading security issue.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_qrf_n2q_khc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Resolves an application crash issue.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—The notification of a firewall policy violation
                           does not behave according to the policy rule settings.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Agent is unable to start Data Loss Prevention
                           (DLP) service due to version comparison issue.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Malicious IP not being blocked by user-defined
                           suspicious object list (UDSO).</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Manual scan ends with displayed message "Stopped
                           by Apex One" without any user interaction.</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_qrf_n2q_khc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: October 01, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: October 08, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: October 15, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 01 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-october-2025-update-windows</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent October 2025 update - Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-october-2025-update-linux</link>
    <description><![CDATA[<div class="p">October 1, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202510 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_d3l_pvq_khc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.2.0.1046</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 3.0.0.7488</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2-22850</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_d3l_pvq_khc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_d3l_pvq_khc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Updates CACert</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_d3l_pvq_khc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixes potential crashes caused by race conditions when
                           manipulating Linux network devices during network packet processing</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixes potential crashes caused by race conditions when
                           multiple threads update the driver configuration</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Resolved—metrics of bmsensor is missing when agent reports
                           to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span></div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixes the memfd detection failed issue</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_d3l_pvq_khc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: October 01, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: October 08, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: October 15, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 01 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-october-2025-update-linux</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent October 2025 update - macOS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-october-2025-update-macos</link>
    <description><![CDATA[<div class="p">October 1, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202510 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_v3s_trq_khc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.2.533</div>
<ul class="ul" id="whatsnew_v3s_trq_khc__ul_gyr_bkr_g2c">
<li class="li">
<div class="p">XBCAgent.app</div>
</li>
<li class="li">
<div class="p">ws_communicator.app</div>
</li>
<li class="li">
<div class="p">PreCheck.app</div>
</li>
<li class="li">
<div class="p">SilentInstaller.app</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">CETAgent.app version 3.5.10135</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 1.2.533</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 3.5.8052</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_v3s_trq_khc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_v3s_trq_khc__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Agent supports quarantine actions</div>
</li>
<li class="li">
<div class="p">Agent supports macOS 26 Tahoe</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_v3s_trq_khc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Virus Scan Engine (VSAPI) to version 25.560.1005
                           to improve capabilities.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Damage Cleanup Engine (DCE) to version 7.5.1217
                           to enhance process chain cleanup capability and provide more details for cleanup information.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the TmEyes module to version 8.55.1403 for enhanced
                           ransomware detection capability.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the AMSP module to version 6.6.1216 for enhanced
                           ransomware detection capability.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Net Filter module to version 1.0.456 to
                           enhance web browser detection capability.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enhances log upload mechanism to reduce network payload
                           for Data Loss Prevention, Device Access Control, Behavior Monitoring, and Predictive
                           Machine Learning logs.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Enhances the quarantined file verification to prevent
                           incorrect operations.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the agent program to protect against a potential
                           resource loading security issue.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_v3s_trq_khc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—The notification of a firewall policy violation
                           does not behave according to the policy rule settings.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Agent is unable to start Data Loss Prevention
                           (DLP) service due to version comparison issue.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Malicious IP not being blocked by user-defined
                           suspicious object list (UDSO).</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Manual scan ends with displayed message "Stopped
                           by Apex One" without any user interaction.</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_v3s_trq_khc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: October 01, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: October 08, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: October 15, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 01 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-october-2025-update-macos</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1520</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201520</link>
    <description><![CDATA[<div class="p">October 1, 2025—Mobile Security for Business app version 2.0.1520 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-E5F6G7H8-I9D0-1234-EFGH-IJ5678901234__ul_e5f_6gh_i7j">
<li class="li">
<div class="p">Fixes an issue where the Mobile Security for Business app cannot be installed in the
                     personal profile on corporate-owned devices with work profiles when Microsoft Intune
                     serves as the MDM.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 01 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201520</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Data retention periods now customizable with credit allocation for Network Sensor and Deep Discovery Inspector</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-retention-customize-ddi-sensor</link>
    <description><![CDATA[<div class="p">October 1, 2025—You can now customize data retention periods for Network Sensor and
               <span class="tm">TrendAI™</span> Deep Discovery Inspector in Data Source and Log Management. Credits will be allocated
               based on the selected retention periods. This flexibility allows you to tailor retention
               to meet your analysis, correlation, and threat hunting needs.</div><div class="p">If you already have a data retention license for Network Sensor, only the retention
               period included in your license is available.</div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Data Source and Log Management</b></span></div>]]></description>
    <pubDate>Wed, 01 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-retention-customize-ddi-sensor</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access connector version 2.37.0.2115</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-2-37-0-2115</link>
    <description><![CDATA[<div class="p">October 6, 2025—Zero Trust Secure Access Private Access Connector version 2.37.0.2115
               introduces new features and resolves known issues.</div><div class="p"><b class="uicontrol">New Feature</b></div><ul class="ul" id="whatsnew_gzd_3c5_wgc-2__ul_lwq_tc5_wgc">
<li class="li">
<div class="p">Added support for Nutanix platform</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issue</b></div><ul class="ul" id="whatsnew_gzd_3c5_wgc-2__ul_dhr_xc5_wgc">
<li class="li">
<div class="p">Fixed connector heartbeat disconnect issue</div>
</li>
<li class="li">
<div class="p">Vulnerability remediation</div>
</li>
<li class="li">
<div class="p">Connection stability improvements</div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Module</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Secure Access Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Private Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 06 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-2-37-0-2115</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Helm Chart 3.2.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-320</link>
    <description><![CDATA[<div class="p">October 6, 2025 — The Helm Chart 3.2.0 release includes the following:</div><ul class="ul" id="RN_2025_10_06_Helm_chart_320_a41f6550_49c0_406a_ac2c_47e56da35c99__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Features</b><ul class="ul" id="RN_2025_10_06_Helm_chart_320_a41f6550_49c0_406a_ac2c_47e56da35c99__ul_m2z_thc_xgc">
<li class="li">
<div class="p">Introduces support for custom rules in Container Security Runtime Security. You can
                              now create, configure, and import your own rules to tailor runtime protection to your
                              specific environment. This feature enables custom exclusions and granular filtering,
                              allowing you to detect events of interest with greater precision. It extends coverage
                              beyond managed rules, providing personalized and adaptable protection.</div>
</li>
</ul>
</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b><ul class="ul" id="RN_2025_10_06_Helm_chart_320_a41f6550_49c0_406a_ac2c_47e56da35c99__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">Improved compliance scanning to ensure integrity of check files by preventing unauthorized
                              modifications.</div>
</li>
<li class="li">
<div class="p">Upgraded to the latest malware-scanning image for improved detection capabilities
                              and performance.</div>
</li>
</ul>
</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="RN_2025_10_06_Helm_chart_320_a41f6550_49c0_406a_ac2c_47e56da35c99__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="RN_2025_10_06_Helm_chart_320_a41f6550_49c0_406a_ac2c_47e56da35c99__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.2.0.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="RN_2025_10_06_Helm_chart_320_a41f6550_49c0_406a_ac2c_47e56da35c99__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.2.0" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.2.0</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 06 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-320</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Support for custom rules in Container Security Runtime Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-custom-rules-V1CS</link>
    <description><![CDATA[<div class="p">October 6, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports custom rules for Container Security runtime protection. This allows
               you to create, configure, and import your own custom rules for runtime protection,
               enabling you to specify custom exclusions or granular filtering to detect events of
               interest in your specific environment. This capability provides personalized detections
               extending the coverage from managed rules.</div><div class="p">Additional improvements released with custom rules:</div><ul class="ul" id="whatsnew_hm5_1pd_vgc__ul_i13_gpd_vgc">
<li class="li">
<div class="p">Custom detection model (CDM) support that matches custom rules detections.</div>
</li>
<li class="li">
<div class="p">XDR Data Explorer able to show and search detections from Container Security custom
                     rules.</div>
</li>
<li class="li">
<div class="p">Splunk HEC connector configuration includes new option for custom rule detections.
                     See <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-splunk-hec-connector-configuration#splunk_hec_connector">Splunk HEC connector configuration</a> for more information.</div>
</li>
</ul><div class="p">
<div class="note" id="whatsnew_hm5_1pd_vgc__note_y23_rpd_vgc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">Custom rule detection data ingestion requires credit allocation. The data usage can
                              be viewed in Data Source and Log Management. See <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-credits-billing#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-6jb7ja">Platform Usage and Credits</a> for more information.</div>
</td>
</tr>
</table>
</div>
</div><div class="p">For more information about custom rules, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rulesets#GUID-BED80320-70E5-47C4-9530-CC26073D469D-o15ed0">Object management</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b></span></div>]]></description>
    <pubDate>Mon, 06 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whatsnew-custom-rules-V1CS</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Enhanced vulnerability insights and updated CVE column naming for internet-facing assets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-easm-cve-update</link>
    <description><![CDATA[<div class="p">October 6, 2025—New enhancements in vulnerability management and asset profiling make
               it easier to prioritize and mitigate vulnerabilities in your internet-facing assets.</div><ul class="ul" id="whatsnew_ktl_2kv_vgc__ul_ghl_vlv_vgc">
<li class="li">
<div class="p">A new CVE impact score column has been added to the internet-facing asset table within
                     the Vulnerabilities factor in <b class="uicontrol">Threat and Exposure Management</b>. This enhancement provides clearer visibility into the potential impact of each vulnerability,
                     helping you prioritize remediation efforts more effectively.</div>
</li>
<li class="li">
<div class="p">The "Highly Exploitable CVEs" column has been updated to "Total CVEs" in both the
                     IP address asset table in <b class="uicontrol">Attack Surface Discovery</b> and Related IPs in domain asset profiles. This change ensures more accurate and consistent
                     terminology across the platform, making vulnerability data interpretation easier.</div>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 06 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-easm-cve-update</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Cloud Risk Management Releases New &#x27;Services, Regions and Resources&#x27; Public API</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-services-regions-resources-api</link>
    <description><![CDATA[<div class="p">October 9, 2025—Cloud Risk Management released a new public API for Services, Regions
               and Resources to enable enhanced visibility, control, and automation for managing
               cloud resources efficiently across services and regions. See the <a class="xref" href="https://automation.trendmicro.com/xdr/home" target="_blank">Automation Center</a> for more information.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Public API</b></span></div>]]></description>
    <pubDate>Thu, 09 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-services-regions-resources-api</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection 1.187.10101315</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-gcp-avtd-118710101315</link>
    <description><![CDATA[<div class="p">October 10, 2025 — The 1.187.10101315 version of Agentless Vulnerability &amp; Threat
               Detection for Google Cloud creates subnets only in the regions where it is deployed,
               rather than in all supported regions.</div><div class="p">
<ul class="ul" id="RN_2025_10_10_GCP_AVTD_1_187_10101315_6d04cb54_90fd_43c5_9803_71ba541adfb4__ul_vsl_ymw_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Google Cloud</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: October 10, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancement</b>: Creates subnets only in the regions where Agentless Vulnerability &amp; Threat Detection
                        is deployed, which reduces unnecessary resource provisioning and minimizes network
                        overhead in unused regions.</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Google Cloud</b></span></div>]]></description>
    <pubDate>Fri, 10 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-gcp-avtd-118710101315</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection 1.85.10082048</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-oci-avtd-18410021742</link>
    <description><![CDATA[<div class="p">October 10, 2025 — The Agentless Vulnerability &amp; Threat Detection 1.85.10082048 release
               provides support for Oracle Cloud Infrastructure (OCI) accounts.</div><div class="p">
<ul class="ul" id="whatsnew_kxw_xjt_wgc__ul_nbk_kkt_wgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Oracle Cloud Infrastructure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: October 10, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New features</b>: Agentless Vulnerability &amp; Threat Detection for Oracle Cloud (OCI) supports vulnerability
                        and anti-malware scanning for OCI compute VM instances, disk volumes, and Oracle Container
                        Registry images.</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Oracle</b></span></div>]]></description>
    <pubDate>Fri, 10 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-oci-avtd-18410021742</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Helm Chart 3.2.1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-321</link>
    <description><![CDATA[<div class="p">
<ul class="ul" id="whatsnew_hqr_1fx_chc__ul_wq1_sfc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b><ul class="ul" id="whatsnew_hqr_1fx_chc__ul_p22_5fc_xgc">
<li class="li">
<div class="p">Improved custom rule detection with mitigation action.</div>
</li>
</ul>
</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_hqr_1fx_chc__ul_p1q_2gc_xgc">
<li class="li">
<div class="p">Resolved an issue that caused source rule file metadata to be missing from the OCI
                              repository on the custom ruleset detail page.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_hqr_1fx_chc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_hqr_1fx_chc__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.2.1.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_hqr_1fx_chc__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.2.1" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.2.1</a></div>
</li>
</ul>
</li>
</ul>
</div>]]></description>
    <pubDate>Fri, 10 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-321</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection now supports Oracle Cloud Infrastructure (OCI)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-oci-support</link>
    <description><![CDATA[<div class="p">October 10, 2025 — Agentless Vulnerability &amp; Threat Detection now supports Oracle
               Cloud Infrastructure (OCI), enabling comprehensive security coverage for your cloud
               assets.</div><ul class="ul" id="whatsnew_b2b_dj1_xgc__ul_smy_ck1_xgc">
<li class="li">
<div class="p">Perform vulnerability and anti-malware scanning on OCI Compute VM instances, disk
                     volumes, and Oracle Container Registry images.</div>
</li>
<li class="li">
<div class="p">Benefit from streamlined protection without the need to install agents, reducing operational
                     complexity and improving security posture.</div>
</li>
</ul><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oracle-cloud-compartments#oracle_compartments_aa4cd909_689b_45ad_bf61_093633421f27">Connect Oracle Cloud Infrastructure (OCI) compartments</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Oracle</b></span></div>]]></description>
    <pubDate>Fri, 10 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-oci-support</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Enhanced visibility for duplicate and inactive agents in Endpoint Inventory</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-visible-duplicate-agents</link>
    <description><![CDATA[<div class="p">October 13, 2025—Endpoint Inventory now provides enhanced visibility and messaging
               for duplicate and inactive agents, helping you to identify and clean up potential
               issues with cloned endpoints.</div><div class="p">Endpoint Inventory can now flag inactive agents and provide warnings to clean up cloned
               agents before issues occur. Additionally, new inventory table columns, <b class="uicontrol">Cloned endpoint type</b> and <b class="uicontrol">Cloned agent configuration</b>, enhance filtering capabilities to locate persistent and non-persistent cloned endpoints
               in your inventory.</div><div class="p">For more information about Endpoint Inventory columns, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-table-columns#reference_l3v_mrv_k2c">Endpoint Inventory table columns</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 13 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-visible-duplicate-agents</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Workbench insight asset visibility scope refinement</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-insight-asset</link>
    <description><![CDATA[<div class="p">October 14, 2025—Streamline investigations and resolve information inconsistencies
               during cross-region security incidents. If displayed assets in a Workbench insight
               are outside the user asset visibility scope, the user is unable to take any actions
               on those assets. This enhancement ensures secure and efficient investigation processes
               while protecting organization assets.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Tue, 14 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-insight-asset</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Set cluster protection status by version gap</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-set-cluster-status-version-gap</link>
    <description><![CDATA[<div class="p">October 15, 2025—You can now set a cluster protection status for clusters in Container
               Security by a version gap, making it easier to keep your clusters updated. This setting
               changes the cluster protection status to "unhealthy" when the current deployed version
               falls behind the latest release by a predefined number of versions.</div><div class="p">See <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-container-inventory#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-1p3dd3">Inventory/Overview</a> for more information.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b></span></div>]]></description>
    <pubDate>Wed, 15 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-set-cluster-status-version-gap</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 2.0.7</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-207</link>
    <description><![CDATA[<div class="p">October 20, 2025—Service Gateway Forward Proxy Service Version 2.0.7 delivers key
               enhancements, bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_thx_nq1_dhc__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update improves error handling and recovery in Squid operations.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 20 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-207</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Generic Caching Service 1.0.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-105</link>
    <description><![CDATA[<div class="p">October 20, 2025—Service Gateway Generic Caching Service 1.0.5 delivers key enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_h2g_fr1_dhc__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update improves the log rotation mechanism.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 20 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-105</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway version 1.0.72</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-op-gateway-v-1-0-72</link>
    <description><![CDATA[<div class="p">October 20, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.72 is
               now available and contains the following enhancements.</div><div class="p"><b class="uicontrol">Enhancements:</b></div><ul class="ul" id="whatsnew_oqr_j2g_zgc__ul_vzy_v2g_zgc">
<li class="li">
<div class="p">Enhanced Cloud (application) Reputation Service  (CRS) query handling to cache for
                     a null result in a short period.</div>
</li>
<li class="li">
<div class="p">Enhanced Web Reputation Service (WRS) query handling to recognize the application
                     name and category for untested URL being accessed, except when security scanning with
                     a security level as HIGH. </div>
</li>
<li class="li">
<div class="p">Enriched the Activity Log by adding a remarks field to capture device posture details
                     and LLM profile information for relevant accessing.</div>
</li>
</ul><div class="p"><b class="uicontrol">New Features:</b></div><ul class="ul" id="whatsnew_oqr_j2g_zgc__ul_hxb_wsv_zgc">
<li class="li">
<div class="p">Supports Perplexity public AI service in advanced content inspection.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 20 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-op-gateway-v-1-0-72</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.24</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3024</link>
    <description><![CDATA[<div class="p">October 20, 2025—Service Gateway Firmware Version 3.0.24 includes enhancements, bug
               fixes, and security updates for Service Gateway.</div><div class="p">This update includes the following changes:</div><ul class="ul">
<li class="li">
<div class="p">This update adds support for Oracle Cloud Infrastructure (OCI).</div>
</li>
<li class="li">
<div class="p">This update allows customers to disable and enable weak ciphers via CLISH.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 20 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firmware-version-3024</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.14</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3014</link>
    <description><![CDATA[<div class="p">October 20, 2025—Service Gateway Local ActiveUpdate Service Version 3.0.14 includes
               enhancements, bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_pqy_rp1_dhc__ul_o1t_xvp_fgc">
<li class="li">
<div class="p">This update upgrades Python to version 3.12.</div>
</li>
<li class="li">
<div class="p">This update fixes bugs related to the default pattern version type.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 20 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3014</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Tag Management now available for preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-tag-management-preview</link>
    <description><![CDATA[<div class="p">October 20, 2025—Tag Management, which enables you to implement comprehensive asset
               tagging across the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> platform, is now available for public preview. In Tag Management, you can create
               and manage tags, configure rules for automated asset tagging, map platform tags to
               third-party attributes, and gain centralized visibility into all <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> tags used by your organization. Leveraging asset tagging helps to keep your assets
               organized, enhancing your overall security posture and operational efficiency.</div><div class="p"> Tag Management includes several key features:</div><ul class="ul" id="whatsnew_jyb_mty_wgc__ul_fcp_lpf_xgc">
<li class="li">
<div class="p">Tag library: A centralized inventory of all your custom and platform tags, allowing
                     you to easily view and organize your tags.</div>
</li>
<li class="li">
<div class="p">Automated tagging: Create condition-based rules to automatically tag applicable assets
                     when run, increasing efficiency and reducing manual effort.</div>
</li>
<li class="li">
<div class="p">External tags: Define mapping relationships between <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> tag properties and organizational attributes from third-party sources including Microsoft
                     Entra ID, Active Directory, and cloud service providers. This integration enables
                     you synchronize and centrally manage tags from various sources.</div>
</li>
<li class="li">
<div class="p">Execution results: A table view of the results of actions related to your automated
                     tagging rules and external mappings, helping you monitor tagging activity across the
                     platform.</div>
</li>
</ul><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-tag-management#tagManagement_d92045b8_7480_4afe_810f_e913515a47ea">Tag Management</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Service Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Tag  Management</b></span></div>]]></description>
    <pubDate>Mon, 20 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-tag-management-preview</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Zero Trust Secure Access adds PoP site in Oracle Netherlands</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-oracle-netherlands</link>
    <description><![CDATA[<div class="p">October 20, 2025—Zero Trust Secure Access Internet Access now supports the Oracle
               Netherlands region. Users in the region may configure their service FQDNs to reflect
               the new location. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol">Secure Access Configuration</b> → <b class="uicontrol">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 20 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-oracle-netherlands</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Extended query period for mail tracking and policy event logs in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-log-query-period-extension-cegp</link>
    <description><![CDATA[<div class="p">October 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> allows administrators to query mail tracking logs and policy event logs retained
               for up to 180 days, instead of the previous 90 days.</div><div class="p"><span class="menucascade" id="whatsnew_ybl_n4r_zgc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 21 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-log-query-period-extension-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.519.10151529</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-rn-151910151529</link>
    <description><![CDATA[<div class="p">October 22, 2025—The Agentless Vulnerability &amp; Threat Detection 1.519.10151529 release
               prevents unpredictable cost increases when using AWS Vulnerability &amp; Threat Detection
               (AVTD) with Auto Scaling Groups.</div><div class="p">
<ul class="ul" id="whatsnew_lhq_r22_dhc__ul_sln_cl5_pgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: October 22, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b>:
                        <ul class="ul" id="whatsnew_lhq_r22_dhc__ul_gz3_3l5_pgc">
<li class="li">
<div class="p">By default, Agentless Vulnerability &amp; Threat Detection now excludes Auto Scaling Group
                                 (ASG) instances and their EBS volumes from scanning to prevent unpredictable cost
                                 increases. (This change is delivered automatically. No CloudFormation template update
                                 or user action is required.)</div>
</li>
</ul>
</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Resolved issues</b>:
                        <ul class="ul" id="whatsnew_lhq_r22_dhc__ul_ljv_2cw_2hc">
<li class="li">
<div class="p">Missing EventBridge tagging permissions (<code class="codeph">events:TagResource</code> and <code class="codeph">events:UntagResource</code>) in the CommonControlPlanePolicyPart1 CloudFormation policy caused "Unauthorized
                                 tagging operation" errors when creating EventBridge rules during deployment.</div>
</li>
</ul>
</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Wed, 22 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-rn-151910151529</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Container Protection for Amazon ECS version 1.1.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-V1CS-amazon-ecs-version-113</link>
    <description><![CDATA[<div class="p">October 22, 2025—Container Protection for Amazon ECS version 1.1.3 is now available.</div><ul class="ul" id="whatsnew_r1g_3fh_bhc__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b></div>
<ul class="ul" id="whatsnew_r1g_3fh_bhc__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Amazon Web Services (AWS)</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_r1g_3fh_bhc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Updated container images and lambda functions to latest versions.</div>
</li>
<li class="li">
<div class="p">Changed the default log level in the Runtime Security scout container to <code class="codeph">info</code> to reduce logging costs.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Wed, 22 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-V1CS-amazon-ecs-version-113</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Oracle Cloud support in Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-container-oke-support</link>
    <description><![CDATA[<div class="p">October 22, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports Oracle Cloud OKE in Container Security. Add an OKE cluster in <span class="menucascade"><b class="uicontrol">Inventory/Overview</b> → <b class="uicontrol">Kubernetes</b> → <b class="uicontrol">Oracle Cloud OKE</b></span> to add OKE clusters and view node and pod information. Use the Map to Cloud Account
               function to enable Cyber Risk Exposure Management.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-connect-oracle-oke-clusters#task_xs4_44r_1hc">Protect Oracle Cloud OKE clusters</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b></span></div>]]></description>
    <pubDate>Wed, 22 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-container-oke-support</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Helm Chart 3.2.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-322</link>
    <description><![CDATA[<div class="p">October 23, 2025 — The Helm Chart 3.2.2 release includes the following:</div><ul class="ul" id="whatsnew_qvm_tvw_chc__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b><ul class="ul" id="whatsnew_qvm_tvw_chc__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">Improved health status reporting in EKS Fargate clusters.</div>
</li>
<li class="li">
<div class="p">Improved handling of excluded namespaces, especially in malware scanning.</div>
</li>
<li class="li">
<div class="p">Updated open source packages.</div>
</li>
</ul>
</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_qvm_tvw_chc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_qvm_tvw_chc__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.2.2.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_qvm_tvw_chc__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.2.2" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.2.2</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Thu, 23 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-helm-chart-322</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Enhanced user-reported email analysis and response in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-reporting-closed-loop-cecp</link>
    <description><![CDATA[<div class="p">October 24, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> offers enhanced capabilities for analyzing and responding to user-reported emails.
               When a user reports a suspicious message, the system automatically analyzes the email
               to determine whether it poses a threat—such as phishing or spam—and identifies key
               indicators like malicious URLs or suspicious senders. It also provides a list of recent
               emails that share similar suspicious indicators with the reported message, allowing
               administrators to apply manual or automatic actions to mitigate these threats.</div><div class="p">In addition, <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> enhances detection capabilities by learning from the reported email to help prevent
               recurrence. Administrators can also add relevant objects—such as sender addresses,
               domains, or URLs—from the reported email to monitored lists used in Correlated Intelligence
               policies, helping block future unwanted or anomalous messages based on organizational
               context.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 24 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-email-reporting-closed-loop-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Two more conditions available for detection signal customization in Correlated Intelligence in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-conditions-for-ci-signals-cecp</link>
    <description><![CDATA[<div class="p">October 24, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> adds two more conditions for defining custom detection signals for anomalies in Correlated
               Intelligence. These new conditions allow administrators to define anomalies in their
               environment based on specific URLs or URL domains found in emails. This enhancement
               helps tailor anomaly identification to the unique characteristics of each customer's
               environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 24 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-conditions-for-ci-signals-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Extended query duration for user-reported emails in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-emailreporting-query-extension-cecp</link>
    <description><![CDATA[<div class="p">October 24, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> allows administrators to search and view emails reported by end users for up to 90
               days, expanding beyond the previous limits of 24 hours, 7 days, and 30 days. This
               longer retention period improves investigation capabilities, supports more thorough
               incident analysis, and helps security teams respond more effectively to delayed or
               complex threats.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 24 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-emailreporting-query-extension-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.28.1047</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-version-2281047</link>
    <description><![CDATA[<div class="p">October  27, 2025—This update includes an enhancement as well as resolved issues as
               described in the notes.</div><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_mlw_pjx_2hc__ul_rxq_hkx_2hc">
<li class="li">
<div class="p">After XBC proxy updates, Zero Trust Secure Access now keeps Private Access connections
                     active without disconnecting.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_mlw_pjx_2hc__ul_ltj_zkx_2hc">
<li class="li">
<div class="p">Private Access would fail to connect when multiple IP addresses were assigned to LightTunnelAdapter.</div>
</li>
<li class="li">
<div class="p">Private Access would hang when connecting after Windows updates.</div>
</li>
<li class="li">
<div class="p">Refined the wording on the sign-in loading page when NTLM authentication is enabled.</div>
</li>
</ul><div class="p"></div>]]></description>
    <pubDate>Mon, 27 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-version-2281047</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.25.210</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-version-225210</link>
    <description><![CDATA[<div class="p">October 27, 2025—This update includes resolved issues as described in the notes.</div><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_qlf_jnx_2hc__ul_fsz_tnx_2hc">
<li class="li">
<div class="p">Cumulative bug fixes</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 27 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-version-225210</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1561</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101561</link>
    <description><![CDATA[<div class="p">October 27, 2025—Virtual Network Sensor version 1.0.1561 includes enhancements, bug
               fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-93fwj3__ul_d2y_xhb_r2c">
<li class="li">
<div class="p">Support identifying HASSH fingerprints for detecting anomalies in SSH traffic</div>
</li>
<li class="li">
<div class="p">Support VLAN awarenss for identifying multiple VLANs operating on the same network</div>
</li>
<li class="li">
<div class="p">Support more instance types for deployment on AWS</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 27 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101561</guid>
    <category>Network Security</category>
</item>
<item>
    <title>User role control flags and API key permission changes</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-role-flags-api-key-changes</link>
    <description><![CDATA[<div class="p">October 27, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> introduces user role control flags and API key permission changes.</div><div class="p">User role control flags determine whether a role is assignable to API keys and/or
               user accounts. Only Master Administrators can configure control flags for custom roles.
               Control flags for predefined roles are defined by <span class="tm">TrendAI™</span> and cannot be configured by customers.</div><div class="p">API keys can no longer be assigned Master Administrator permissions. Existing API
               keys with the Master Administrator role are unaffected by this change, but it is recommended
               that you review your existing API keys and assign them different roles. SIEM &amp; SOAR
               roles are intended for API key assignments and should not be assigned to user accounts.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-accounts-foundation-services#GUID-E88BBD1F-EA82-4490-9C7F-E141E3BEE8F4">User Accounts</a>, <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-user-roles-trend-vision-one#GUID-BED80320-70E5-47C4-9530-CC26073D469D-7ur3dj">Configure custom user roles</a>, and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-platform-api-keys#GUID-E88BBD1F-EA82-4490-9C7F-E141E3BEE8F4-2">API Keys</a>.</div>]]></description>
    <pubDate>Mon, 27 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-role-flags-api-key-changes</guid>
    <category>Administration</category>
</item>
<item>
    <title>Support for VLAN awareness in Virtual Network Sensor</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vlan-awareness-vns</link>
    <description><![CDATA[<div class="p">October 27, 2025—You can now configure Virtual Network Sensor in Network Inventory
               to be VLAN-aware, allowing the sensor to recognize and capture VLAN IDs. With this
               feature, the sensor can identify multiple VLANs operating on the same network and
               generate more accurate telemetry and detections.</div><div class="p">For details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sensor-details#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-gqnz6n">Sensor Details</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Inventory</b></span></div>]]></description>
    <pubDate>Mon, 27 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vlan-awareness-vns</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Support for Scan for Malware in security playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scan-for-malware-for-playbooks</link>
    <description><![CDATA[<div class="p">October 27, 2025—You can now add the Scan for Malware response action to the following
               playbooks:</div><ul class="ul">
<li class="li">
<div class="p">Risk Event Response playbooks</div>
</li>
<li class="li">
<div class="p">Automated Response Playbooks</div>
</li>
<li class="li">
<div class="p">Endpoint Response playbooks</div>
</li>
</ul><div class="p">This feature helps you quickly initiate a malware scan on endpoints during investigations,
               improving threat containment and reducing the risk of lateral movement.</div><div class="p">For details on the requirements to run the Scan for Malware action, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-creating-risk-reduction-playbooks#GUID-E852DBEE-FB1F-4C87-891C-CE5D38274385">Manually create Risk Event Response playbooks</a>, <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-automated-response-playbooks#GUID-BED80320-70E5-47C4-9530-CC26073D469D-36">Manually create Automated Response Playbooks</a>, and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-endpoint-response-playbooks#GUID-7416FC70-2F9A-4EDF-A586-B12CA6250389">Manually create Endpoint Response playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 27 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-scan-for-malware-for-playbooks</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Helm Chart 3.2.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-323</link>
    <description><![CDATA[<div class="p">October 30, 2025 — The Helm Chart 3.2.3 release includes the following:</div><ul class="ul" id="whatsnew_hjf_kpn_khc__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b><ul class="ul" id="whatsnew_hjf_kpn_khc__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">Improved consistency of runtime malware and secret scanning.</div>
</li>
</ul>
</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_hjf_kpn_khc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_hjf_kpn_khc__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.2.3.tar.gz </pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_hjf_kpn_khc__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.2.3" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.2.3</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Thu, 30 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-323</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Container Protection for Amazon ECS version 1.1.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-V1CS-amazon-ecs-version-114</link>
    <description><![CDATA[<div class="p">October 30, 2025—Container Protection for Amazon ECS version 1.1.4 is now available.</div><ul class="ul" id="whatsnew_gx1_ntq_2hc__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b></div>
<ul class="ul" id="whatsnew_gx1_ntq_2hc__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Amazon Web Services (AWS)</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_gx1_ntq_2hc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Removed Falco container’s <code class="codeph">stdout_output</code> stream to further reduce logging costs.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Thu, 30 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-V1CS-amazon-ecs-version-114</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Installer updates for October</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-installer-updates-for-october</link>
    <description><![CDATA[<div class="p">October 31, 2025—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent installer has received the following updates and fixes:</div><ul class="ul" id="whatsnew_gzn_qgt_ghc__ul_rg5_wgt_ghc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_gzn_qgt_ghc__ul_vt2_xgt_ghc">
<li class="li">
<div class="p">Added the parameter <code class="codeph">FQDN_ARG</code> to the installation command for enabling the deployment script on Sovereign and Private
                           Cloud instances</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_gzn_qgt_ghc__ul_e3x_bht_ghc">
<li class="li">
<div class="p">Fixed an activation timing issue that might cause deployment of Server &amp; Workload
                           Protection features to fail</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Fri, 31 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-installer-updates-for-october</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One has a new United Kingdom Data Center</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-new-pop-site-london</link>
    <description><![CDATA[<div class="p">October 31, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> opened a Data Center to support the United Kingdom region. Users in this region may
               configure their service FQDNs to reflect the new location.</div><div class="p">
<div class="note" id="whatsnew_ts4_yyq_chc__note_glp_jxl_dhc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">
<div class="p">The following applications currently are not supported by the United Kingdom Data
                                 Center:
                                 <ul class="ul" id="whatsnew_ts4_yyq_chc__ul_o4d_tkn_dhc">
<li class="li">
<div class="p">Endpoint Security (agent package), agent rollout is November 12.</div>
</li>
<li class="li">
<div class="p">Forensic App,  release date is November 15.</div>
</li>
<li class="li">
<div class="p">Zero Trust Secure Access (Private Access), release date is November 15.</div>
</li>
<li class="li">
<div class="p">File Security, target release is December 31.</div>
</li>
</ul>
</div>
</div>
</td>
</tr>
</table>
</div>
</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a> and<a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-united-kingdom-firewall-exceptions#concept_xp2_4cm_dhc">United Kingdom - firewall exceptions</a> .</div>]]></description>
    <pubDate>Fri, 31 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-new-pop-site-london</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>New Endpoint Security Policy experience and Policy Resources now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-endpoint-security-policies</link>
    <description><![CDATA[<div class="p">October 31, 2025—The new Endpoint Security Policy management and Policy Resources
               are officially released.</div><div class="p">The new version of Endpoint Security Policies along with Policy Resources provide
               several key benefits:</div><ul class="ul" id="whatsnew_n4b_nbm_chc__ul_dpt_ccm_chc">
<li class="li">
<div class="p">Assignments allow users to apply policies to endpoint groups across your security
                     environment to simplify enforcement and management of security and compliance requirements.</div>
</li>
<li class="li">
<div class="p">Policies simplify managing endpoint security settings by centralizing control for
                     agent features, ensuring consistent configurations, security measures, and application
                     settings across your security environment.</div>
</li>
<li class="li">
<div class="p">Policy Resources make policy management more efficient by creating reusable resources,
                     reducing redundancy, and maintaining consistency.</div>
</li>
</ul><div class="p">The new policy experience release schedule depends on your region.</div><div class="table" id="whatsnew_n4b_nbm_chc__I_fobxoe_">
<h4 class="table-title"></h4>
<table border="1" class="tgroup">
<colgroup class="colspec" style="width: 50%;"></colgroup>
<colgroup class="colspec" style="width: 50%;"></colgroup>
<thead class="thead table-header-style">
<tr class="row">
<td class="entry">
<div class="p">Region</div>
</td>
<td class="entry">
<div class="p">Release date</div>
</td>
</tr>
</thead>
<tbody class="tbody">
<tr class="row">
<td class="entry">
<div class="p">UK, Australia</div>
</td>
<td class="entry">
<div class="p">October 31, 2025 (Friday)</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">MEA</div>
</td>
<td class="entry">
<div class="p">November 3, 2025 (Monday)</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">US</div>
</td>
<td class="entry">
<div class="p">November 4, 2025 (Tuesday)</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">EU</div>
</td>
<td class="entry">
<div class="p">November 5, 2025 (Wednesday)</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Singapore, India</div>
</td>
<td class="entry">
<div class="p">November 6, 2025 (Thursday)</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">Japan</div>
</td>
<td class="entry">
<div class="p">November 10, 2025 (Monday)</div>
</td>
</tr>
</tbody>
</table>
</div><div class="p">To access the updated policies and assignments, go to <span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Endpoint Security Policies</b></span></div><div class="p">To access policy resources, go to <span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Policy Resources</b></span></div>]]></description>
    <pubDate>Fri, 31 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-endpoint-security-policies</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Centralized management of endpoint security features available for pre-release</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-centralized-endpoint-prerelease</link>
    <description><![CDATA[<div class="p">October 31, 2025—Endpoint Security Policies support for managing Standard Endpoint
               Protection and Server &amp; Workload Protection security features are available as a pre-release
               feature.</div><div class="p">To allow Endpoint Security Policies to manage the security policy settings instead
               of your Protection Managers, you can opt-in to the pre-release using Platform Directory.
               Once you opt-in, you can configure any policy to manage settings for agents with Standard
               Endpoint Protection and Server &amp; Workload Protection features.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-security-policies#concept_rmz_hjw_ffc">Endpoint Security Policies</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Endpoint Security Policies</b></span></div>]]></description>
    <pubDate>Fri, 31 Oct 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-centralized-endpoint-prerelease</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway version 1.0.73</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-onprem-gateway-v-1-0-73</link>
    <description><![CDATA[<div class="p">November 03, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.73
               is now available and contains the following enhancement.
               <div class="note" id="whatsnew_ej1_wj2_dhc__note_jc3_gyr_fhc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">
<div class="p">Please update to the latest build of version 1.0.73, as it resolves an issue that
                                 was present in the first build.</div>
</div>
</td>
</tr>
</table>
</div>
</div><div class="p"><b class="uicontrol">Enhancement:</b></div><ul class="ul" id="whatsnew_ej1_wj2_dhc__ul_vzy_v2g_zgc">
<li class="li">
<div class="p">Improved the XDR log uploading service to prevent continuous attempts to retrieve
                     the service token when the backend service or network is unavailable.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 03 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-onprem-gateway-v-1-0-73</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1527</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201527</link>
    <description><![CDATA[<div class="p">November 3, 2025—Mobile Security for Business app version 2.0.1527 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-D4E5F6G7-H8C9-0123-DEFG-HI4567890123__ul_d4e_5fg_h6i">
<li class="li">
<div class="p">Fixes an issue where Zero Trust Secure Access functions become unavailable.</div>
</li>
<li class="li">
<div class="p">Requires users to log in after they disconnect from and then reconnect to Private
                     Access on the agent if the feature is enabled on the console.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 03 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201527</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection now supports Alibaba Cloud</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-support-alibaba</link>
    <description><![CDATA[<div class="p">November 3, 2025 — Agentless Vulnerability &amp; Threat Detection now supports Alibaba
               Cloud projects, enabling comprehensive security coverage for your cloud assets.</div><ul class="ul" id="agentless_vulnerability_threat_detection_now_supports_google_cloud_c298e441_5f43_40c0_8262_c7bdf6135615__ul_ixp_nwk_fhc">
<li class="li">
<div class="p">Perform vulnerability and anti-malware scanning on Elastic Compute Service (ECS) instances,
                     cloud disks, and Alibaba Container Registry images.</div>
</li>
<li class="li">
<div class="p">Benefit from streamlined protection without the need to install agents, reducing operational
                     complexity and improving security posture.</div>
</li>
</ul><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-alibaba-cloud-accounts#concept_olp_4sx_gdc">Connect Alibaba Cloud accounts</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Alibaba Cloud</b></span></div>]]></description>
    <pubDate>Mon, 03 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-support-alibaba</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent November 2025 update - Windows</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-november-2025-update-windows</link>
    <description><![CDATA[<div class="p">November 5, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202511 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_knc_jhq_khc__ul_lwl_cnq_khc">
<li class="li">
<div class="p">Base agent program (Basecamp) version 1.1.0.5801</div>
</li>
<li class="li">
<div class="p">Service communication manager (VOM) plug-in version 1.2.0.1319</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 1.2.0.6967</div>
</li>
<li class="li">
<div class="p">Vulnerability Assessment version 1.0.0.4037</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery version 1.0.0.4037</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 14.0.20315</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2-26770</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_knc_jhq_khc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_knc_jhq_khc__ul_mgh_kkq_khc">
<li class="li">
<div class="p">Agent now supports the UK region</div>
</li>
<li class="li">
<div class="p">Agent supports deployment scripts for Sovereign and Private Cloud (SPC) deployments</div>
</li>
<li class="li">
<div class="p">Installer supports early check</div>
</li>
<li class="li">
<div class="p">Agent now supports Windows 11 25H2</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: User-based firewall is officially released and will
                           be gradually deployed to customers</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_knc_jhq_khc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Vulnerability Assessment: Enhances data collection</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Virus Scan Engine (VSAPI) and Advanced Threat
                           Scan Engine (ATSE) to version 25.580.1003 to enhance memory and file scans</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Network Content Inspection Engine (NCIE)
                           to version 3.7.1028 to enhance secure driver loading</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the server program to protect against a potential
                           path traversal security issue</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Curl module to version 8.16.0 to enhance
                           product security</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the OpenSSL module to version 3.6.0 to enhance
                           product security.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the TmEyes module to version 8.55.1409 to enable
                           Windows 11 25H2 support</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Behavior Monitoring Core Service module
                           to version 2.98.2141 to enhance system performance</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Behavior Monitoring Core Drive module to
                           version 2.98.2131 to enhance system performance</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Increases the file size limitation of the collection
                           function from 128 MB to 4 GB in Agent Control Manager</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_knc_jhq_khc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixes an issue where Service communication manager (VOM) update fails because the
                           service is restarted by watchdog during the update process</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—When Web Reputation security level is set to
                           "high," but the "Block pages that have not been tested by <span class="tm">TrendAI™</span>" option is not enabled, the system might incorrectly block untested domains</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Endpoint systems might encounter issues related
                           to DLL corruption (TmUmEvt64.dll)</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—System might display garbled content for Web
                           Browser Extension on endpoints running on non-English versions of supported operating
                           systems</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Agent might block URLs or websites that are
                           not under monitoring</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixes a timing issue where ICRC connection events might
                           not be sent to <span class="tm">TrendAI™</span> services</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixes an issue where enabling an HTTP/2 feature caused
                           an infinite loop crash</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_knc_jhq_khc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: November 05, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: November 12, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: November 19, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 05 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-november-2025-update-windows</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent November 2025 update - Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-november-2025-update-linux</link>
    <description><![CDATA[<div class="p">November 5, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202511 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_qkj_3wq_khc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.2.0.1102</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 3.0.0.7853</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2-26770</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_qkj_3wq_khc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_qkj_3wq_khc__ul_lt5_qwq_khc">
<li class="li">
<div class="p">Agent supports Debian 13 and Rocky Linux 10</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: User-based firewall is officially released and will
                           be gradually deployed to customers</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_qkj_3wq_khc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Server &amp; Workload Protection: Increases the file size limitation of the collection
                           function from 128 MB to 4 GB in Agent Control Manager</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_qkj_3wq_khc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixes an issue where enabling an HTTP/2 feature caused
                           an infinite loop crash</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection: Fixes an issue causing incorrect infected file information</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_qkj_3wq_khc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: November 05, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: November 12, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: November 19, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 05 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-november-2025-update-linux</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent November 2025 update - macOS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-november-2025-update-macos</link>
    <description><![CDATA[<div class="p">November 5, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202511 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_aw4_3tq_khc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.2.547</div>
<ul class="ul" id="whatsnew_aw4_3tq_khc__ul_gyr_bkr_g2c">
<li class="li">
<div class="p">XBCAgent.app</div>
</li>
<li class="li">
<div class="p">ws_communicator.app</div>
</li>
<li class="li">
<div class="p">PreCheck.app</div>
</li>
<li class="li">
<div class="p">SilentInstaller.app</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">CETAgent.app version 3.5.10136</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 1.2.533</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 3.5.8052</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_aw4_3tq_khc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_aw4_3tq_khc__ul_lnv_b5q_g2c">
<li class="li">
<div class="p">Agent supports applying Firewall policy settings</div>
</li>
<li class="li">
<div class="p">Agent supports <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Sovereign and Private Cloud 2.0 deployments</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_aw4_3tq_khc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Removed support for macOS 11</div>
</li>
<li class="li">
<div class="p">Updates icons for all permission guides</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Virus Scan Engine (VSAPI) and Advanced Threat
                           Scan Engine (ATSE) to version 25.580.1003 to enhance memory and file scans</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Network Content Inspection Engine (NCIE)
                           to version 3.7.1028 to enhance secure driver loading</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the server program to protect against a potential
                           path traversal security issue</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Curl module to version 8.16.0 to enhance
                           product security</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the OpenSSL module to version 3.6.0 to enhance
                           product security.</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Behavior Monitoring Core Service module
                           to version 2.98.2141 to enhance system performance</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Updates the Behavior Monitoring Core Drive module to
                           version 2.98.2131 to enhance system performance</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_aw4_3tq_khc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—When Web Reputation security level is set to
                           "high," but the "Block pages that have not been tested by <span class="tm">TrendAI™</span>" option is not enabled, the system might incorrectly block untested domains</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Endpoint systems might encounter issues related
                           to DLL corruption (TmUmEvt64.dll)</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—System might display garbled content for Web
                           Browser Extension on endpoints running on non-English versions of supported operating
                           systems</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection: Resolved—Agent might block URLs or websites that are
                           not under monitoring</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_aw4_3tq_khc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: November 05, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: November 12, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: November 19, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 05 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-november-2025-update-macos</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector version 2.38.0.1156</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v23801156</link>
    <description><![CDATA[<div class="p">Nov 10, 2025—Zero Trust Secure Access Private Access Connector Version 2.38.0.1156
               delivers enhancements.</div><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_xfm_w2p_ghc__ul_tp3_bfp_ghc">
<li class="li">
<div class="p">Fixes and enhanced logging for disconnect issues</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 10 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v23801156</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Aligned package names and enhanced credit visibility in Credits &amp; Billing</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-credits-app-enhancements</link>
    <description><![CDATA[<div class="p">November 10, 2025—Credits &amp; Billing now displays aligned names for Email and Collaboration
               Security and Endpoint Security packages, clarifying the connection between the licenses
               you purchase and the solutions you use in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. You can now easily identify and understand the email and endpoint packages you have
               purchased, making credit management more straightforward and efficient.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-credit-req-for-apps-services#GUID-001E41E3-6F8A-499E-85E5-14A3DBD67C6C-2">Credit requirements for TrendAI Vision One™ solutions</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">TrendAI™ Flex Licensing</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Platform Usage and Credits</b></span></div>]]></description>
    <pubDate>Mon, 10 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-credits-app-enhancements</guid>
    <category>Administration</category>
</item>
<item>
    <title>Change risk event status directly from Risk Event Response playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-change-risk-event-status</link>
    <description><![CDATA[<div class="p">November 10, 2025—The Risk Event Response playbook is enhanced to support a new action
               in Action Settings: <b class="uicontrol">Change risk event status</b>.</div><div class="p">With this update, you can now update the status of specified risk events directly
               from the playbook. Available status options include:</div><ul class="ul" id="whatsnew_s4p_fzp_fhc__ul_z4g_2cq_fhc">
<li class="li">
<div class="p">In progress</div>
</li>
<li class="li">
<div class="p">Remediated</div>
</li>
<li class="li">
<div class="p">Dismissed</div>
</li>
<li class="li">
<div class="p">Accepted</div>
</li>
</ul><div class="p">You can also require manual approval before applying the action.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-creating-risk-reduction-playbooks#GUID-E852DBEE-FB1F-4C87-891C-CE5D38274385">Manually create Risk Event Response playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 10 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-change-risk-event-status</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.65.11111517</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-16511111517</link>
    <description><![CDATA[<div class="p">November 12, 2025 — The Agentless Vulnerability &amp; Threat Detection 1.65.11111517 release
               provides support for Alibaba Cloud accounts.</div><ul class="ul" id="RN_2025_11_12_Alibaba_AVTD_1_65_11111517_783a85bb_8dfd_4c74_8c04_a1b22ad9c48f__ul_fy3_dk2_hhc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Alibaba Cloud</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: November 12, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New features</b>: Agentless Vulnerability &amp; Threat Detection for Alibaba Cloud supports vulnerability
                     and anti-malware scanning for Elastic Compute Service (ECS) instances, cloud disks,
                     and Alibaba container registry images.</div>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Alibaba Cloud</b></span></div>]]></description>
    <pubDate>Wed, 12 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-16511111517</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent supports Endpoint Sensor for Windows 11 ARM64 endpoints</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-sensor-arm64</link>
    <description><![CDATA[<div class="p">November 12, 2025—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports enabling Endpoint Sensor (XDR for Endpoints)
               on Windows 11 ARM64 endpoints.</div><div class="p">This initial release includes support for process, file, and registry telemetry, along
               with exception handling and self-protection capabilities. For more details about supported
               platforms, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Wed, 12 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-sensor-arm64</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1533</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201533</link>
    <description><![CDATA[<div class="p">November 13, 2025—Mobile Security for Business app version 2.0.1533 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-C3D4E5F6-G7B8-9012-CDEF-GH3456789012__ul_c3d_4ef_g5h">
<li class="li">
<div class="p">Optimizes log collection functions.</div>
</li>
</ul>]]></description>
    <pubDate>Thu, 13 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201533</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.74</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-74</link>
    <description><![CDATA[<div class="p">November 17, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.74
               contains new features and enhancements.</div><div class="p"><b class="uicontrol">New Features</b></div><ul class="ul" id="whatsnew_hqb_zkj_hhc__ul_idb_klj_hhc">
<li class="li">
<div class="p">Support for harmful prompt detection for both public and private AI services.</div>
</li>
<li class="li">
<div class="p">Support for sensitive data upload detection for public AI service (ChatGPT, Gemini,
                     Copilot for Bing). </div>
</li>
<li class="li">
<div class="p">Support for applying MIP to uploaded file content inspection for public AI service
                     (ChatGPT, Gemini, Copilot for Bing).</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_hqb_zkj_hhc__ul_z1z_llj_hhc">
<li class="li">
<ul class="ul" id="whatsnew_hqb_zkj_hhc__ul_ugn_mlj_hhc">
<li class="li">
<div class="p">Fixed iTunes update error caused by authentication failure.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 17 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-v1-0-74</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Helm Chart 3.2.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-324</link>
    <description><![CDATA[<div class="p">November 17, 2025 — The Helm Chart 3.2.4 release includes the following:</div><ul class="ul" id="whatsnew_t2q_bqn_khc__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b><ul class="ul" id="whatsnew_t2q_bqn_khc__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">Support for Service Gateway.</div>
</li>
</ul>
</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_t2q_bqn_khc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_t2q_bqn_khc__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.2.4.tar.gz </pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_t2q_bqn_khc__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.2.4" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.2.4</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 17 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-324</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>GKE Autopilot support for Container Security clusters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-container-gke-autopilot</link>
    <description><![CDATA[<div class="p">November 17, 2025—You can now select GKE Autopilot to adjust agent deployment for
               GKE clusters with GKE Autopilot enabled.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-connecting-google-gke-clusters#GUID-BED80320-70E5-47C4-9530-CC26073D469D-3bng11">Connect Google GKE clusters</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b></span></div>]]></description>
    <pubDate>Mon, 17 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-container-gke-autopilot</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access adds PoP site in AWS Thailand</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-aws-thailand</link>
    <description><![CDATA[<div class="p">November 17, 2025—Zero Trust Secure Access Internet Access now supports the AWS Thailand
               region. Users in the region may configure their service FQDNs to reflect the new location.
               For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol">Secure Access Configuration</b> → <b class="uicontrol">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 17 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-aws-thailand</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent now supports Debian 13 and Rocky Linux 10 64-bit operating systems</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-debian-13-rocky-linux-10-64bit</link>
    <description><![CDATA[<div class="p">November 17, 2025—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports deployments to endpoints using Debian 13 64-bit
               (x86-64) and Rocky Linux 10 64-bit (x86-64).</div><div class="p">Support for Linux platforms includes deploying the agent with Server &amp; Workload Protection
               and XDR for Endpoint (EDR) features. For more information on supported systems, see
               <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 17 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-debian-13-rocky-linux-10-64bit</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent now supports Windows 11 25H2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-supports-windows-11-25h2</link>
    <description><![CDATA[<div class="p">November 17, 2025—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports deployments to endpoints using Windows 11 25H2.</div><div class="p">Windows 11 25H2 support includes deploying the agent with Standard Endpoint Protection,
               Server &amp; Workload Protection, and XDR for Endpoint (EDR) features. For more information
               on supported systems, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 17 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-supports-windows-11-25h2</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Service Gateway support for Kubernetes clusters in Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-container-service-gateway</link>
    <description><![CDATA[<div class="p">November 17, 2025—You can now select a Service Gateway as a connection method when
               you add a Kubernetes cluster in Container Security. </div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-kubernetes-cluster-security#GUID-BED80320-70E5-47C4-9530-CC26073D469D-i9o1pn">Kubernetes cluster security</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-management#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-82ud47">Service Gateway Management</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b></span></div>]]></description>
    <pubDate>Mon, 17 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-container-service-gateway</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Enhanced internet-facing asset discovery improves accuracy</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asd-easm-enhancement</link>
    <description><![CDATA[<div class="p">November 17, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Cyber Risk Exposure Management has enhanced the discovery process used to find internet-facing
               assets in Attack Surface Discovery. The enhancement results in: 
               <ul class="ul" id="whatsnew_abq_jdp_hhc__ul_adg_sdp_hhc">
<li class="li">
<div class="p">More accurate identification of internet-facing assets by preventing the discovery
                        and display of IP addresses or domains that do not belong to your organization.</div>
</li>
<li class="li">
<div class="p">Improved reliability and confidence in your internet-facing asset inventory, supporting
                        more effective risk management and mitigation decisions to secure your external attack
                        surface.</div>
</li>
<li class="li">
<div class="p">A more precise Cyber Risk Index that reflects your organization's true cyber security
                        posture.</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 17 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-asd-easm-enhancement</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Endpoint Security supports custom download location for agent installer script</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-script-location</link>
    <description><![CDATA[<div class="p">November 17, 2025—When generating a deployment script in Endpoint Inventory, you can
               select a custom location from which to download the agent installer package.</div><div class="p">This method allows for control over the version of the agent to deploy to your endpoints
               by redirecting the installation script to download a prepared source file. For more
               information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-using-endpoint-deployment-script#GUID-81EE6C86-00F5-4C9F-B261-4DC4F17AC5D7">Deploy agents using the deployment script</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 17 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-custom-script-location</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Endpoint Security supports selecting installation proxy for agent installer</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-select-deploy-proxy</link>
    <description><![CDATA[<div class="p">November 17, 2025—When generating an agent installer in Endpoint Inventory, you can
               now select a specific proxy to use during agent installation.</div><div class="p">You can select from deployed Service Gateways, a defined custom proxy, or the system
               proxy configured on the endpoint. For instructions on specifying the installer proxy,
               see the following deployment topics:</div><ul class="ul" id="whatsnew_b1j_5jf_hhc__ul_ktp_1kf_hhc">
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deploy-agents-installer-package#task_qv1_24r_p3c">Deploy agents using the installer package</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deployment-offline-installer#task_tqw_j5z_jfc">Deploy agents using the offline installer package</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-using-endpoint-deployment-script#GUID-81EE6C86-00F5-4C9F-B261-4DC4F17AC5D7">Deploy agents using the deployment script</a></div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 17 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-select-deploy-proxy</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Improved DMARC mechanism check for inbound email authentication in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-inbound-dmarc-enhancement-cegp</link>
    <description><![CDATA[<div class="p">November 18, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now supports more flexible and robust DMARC authentication for inbound messages.
               Administrators can now configure separate actions for domains with well-defined DMARC
               policies and those with misconfigured or missing records, supporting more accurate
               enforcement across diverse sender domains.</div><div class="p">Additionally, as DMARC adoption grows and more organizations configure their policies
               correctly, and as major email providers enforce stricter DMARC standards, DMARC authentication
               behavior in <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> has been strengthened to align with RFC standards, improving spoofing protection
               and helping customers align with evolving industry practices.</div><div class="p"><span class="menucascade" id="whatsnew_gyg_dsz_ghc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 18 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-inbound-dmarc-enhancement-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Endpoint Security Policies supports managing firewall settings for macOS agents</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies-firewall-macos-agents</link>
    <description><![CDATA[<div class="p">November 19, 2025—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports applying firewall settings configured in Endpoint
               Security Policies to macOS endpoints using the Standard Endpoint Protection configuration.</div><div class="p">This enhancement applies to agent versions 202511 and later, and requires enabling
               central management of protection features for the target endpoint group. For more
               information about centralizing management of endpoint protection features, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-before-you-enroll-policies#concept_m5h_4jv_hfc">Before you enroll your endpoint groups</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Endpoint Security Policies</b></span></div>]]></description>
    <pubDate>Wed, 19 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies-firewall-macos-agents</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.75</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-v1-0-75</link>
    <description><![CDATA[<div class="p">November 20, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.75
               contains the following enhancement.</div><div class="p"><b class="uicontrol">Enhancement</b></div><ul class="ul" id="whatsnew_csg_cg3_jhc__ul_jhq_kj3_jhc">
<li class="li">
<div class="p">Rolled back the URL filtering enhancement for the Untested or Newly Observed Domain
                     category. This rollback applies globally, except for the Japan site.</div>
</li>
</ul>]]></description>
    <pubDate>Thu, 20 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-v1-0-75</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access connector version 2.38.0.1176</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v2-38-0-1167</link>
    <description><![CDATA[<div class="p">November 20, 2025—Zero Trust Secure Access Private Access Connector version 2.38.0.1176
               introduces a new enhancement:.</div><div class="p"><b class="uicontrol">Enhancement</b></div><ul class="ul" id="whatsnew_gzd_3c5_wgc__ul_lwq_tc5_wgc">
<li class="li">
<div class="p">Automatically detects backend service disruptions and preserves network connectivity
                     by using cached configurations, while monitoring for service recovery.</div>
</li>
</ul>]]></description>
    <pubDate>Thu, 20 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v2-38-0-1167</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Add-in for Outlook available in French in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-addin-support-french-cecp</link>
    <description><![CDATA[<div class="p">November 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> expands language support for its Outlook Add-in. End users are be able to access
               these interfaces in French.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-addin-support-french-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Email notification of analysis results to end users in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-closed-loop-email-notification-cecp</link>
    <description><![CDATA[<div class="p">November 21, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> supports sending analysis results of reported emails directly to end users, based
               on administrator configuration. Whether the email is analyzed as phishing, spam, or
               flagged for further attention, users receive feedback that reinforces their role in
               threat detection. This enhancement helps close the email reporting loop, encourages
               continued user engagement, and strengthens overall organizational security awareness.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 21 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-closed-loop-email-notification-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows version 2.29.1043</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-version-2291043</link>
    <description><![CDATA[<div class="p">November 24, 2025—This update includes a new feature, an enhancement as well as resolved
               issues as described in the notes.</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_vf5_3js_mhc__ul_ikg_rjs_mhc">
<li class="li">
<div class="p">Added "feedback status" button in the "Debug Settings" page for troubleshooting.</div>
</li>
<li class="li">
<div class="p">Implemented a proxy fallback mechanism that automatically switches to a reachable
                     proxy.</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_vf5_3js_mhc__ul_vlc_cks_mhc">
<li class="li">
<div class="p">Changed "AI Service Access" to "AI Secure Access"</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_vf5_3js_mhc__ul_csr_fks_mhc">
<li class="li">
<div class="p">Internet Access traffic would sometimes bypass the SWG when the endpoint had Group
                     Policy settings enabled for DNSClient</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-version-2291043</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.26.255</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-version-226255</link>
    <description><![CDATA[<div class="p">November 24, 2025—This update includes new features, an enhancement as well as resolved
               issues as described in the notes.</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_vf5_3js_mhc-2__ul_ikg_rjs_mhc">
<li class="li">
<div class="p">Added "feedback status" button in the "Debug Settings" page for troubleshooting.</div>
</li>
<li class="li">
<div class="p">Supports system proxy in service mode for internet access</div>
</li>
<li class="li">
<div class="p">Support for macOS Tahoe 26</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_vf5_3js_mhc-2__ul_vlc_cks_mhc">
<li class="li">
<div class="p">Changed "AI Service Access" to "AI Secure Access"</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_vf5_3js_mhc-2__ul_csr_fks_mhc">
<li class="li">
<div class="p">Sign-in pop-up kept popping up, even when Internet Access was disabled</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-version-226255</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Receive notifications when Workbench alerts are created or closed</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-wb-alert-notifications</link>
    <description><![CDATA[<div class="p">November 24, 2025—Simplify your security operations workflow with notifications via
               email, webhook, and <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> mobile app whenever a Workbench alert is created or closed. Go to <span class="menucascade"><b class="uicontrol">Administration</b> → <b class="uicontrol">Notifications</b> → <b class="uicontrol">Alerts</b></span> and click <b class="uicontrol">Workbench alert</b> to configure notification settings.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-alert-notifications#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-81ylzg">Alerts</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Notifications</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-wb-alert-notifications</guid>
    <category>Administration</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection 1.188.112111442</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-AVTD-1188112111442</link>
    <description><![CDATA[<div class="p">November 24, 2025 — The 1.188.112111442 version of Agentless Vulnerability &amp; Threat
               Detection for Google Cloud adds a tag to prevent Cloud Security Posture rule failures.</div><div class="p">
<ul class="ul" id="RN_2025_11_24_avtd_gcp_1_188_112111442_31748a91_6a71_4962_89c5_869febe6e06d__ul_vsl_ymw_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Google Cloud</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: November 24, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New features</b>: Adds the tag <code class="codeph">conformity:suppress</code> to exclude Agentless Vulnerability &amp; Threat Detection resources and prevent Cloud
                        Security Posture rule failures from affecting cloud account compliance and risk scores.</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Google Cloud</b></span></div>]]></description>
    <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-AVTD-1188112111442</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Helm Chart 3.3.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-330</link>
    <description><![CDATA[<div class="p">November 24, 2025 — The Helm Chart 3.3.0 release includes the following:</div><ul class="ul" id="whatsnew_u1q_drn_khc__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Features</b><ul class="ul" id="whatsnew_u1q_drn_khc__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">Support for file integrity monitoring, which detects file changes to critical areas
                              of containers by comparing their current state to a pre-established baseline. File
                              integrity monitoring scans files for unexpected changes and logs an event if a deviation
                              is found, providing visibility into potential security threats.</div>
</li>
</ul>
</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_u1q_drn_khc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_u1q_drn_khc__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.3.0.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_u1q_drn_khc__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.0" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.0</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-330</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>File integrity monitoring available in Container Security</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-file-integrity-monitoriring-cs</link>
    <description><![CDATA[<div class="p">November 24, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now includes file integrity monitoring as part of its Container Security runtime
               protection capabilities. This feature monitors critical files and directories within
               your containerized environments and generates detailed security events when changes
               are detected, including essential file attributes that provide comprehensive details
               about the changes.</div><div class="p">Key Capabilities</div><div class="p">
<ul class="ul" id="whatsnew_o5n_1mn_khc__ul_ybg_lmn_khc">
<li class="li">
<div class="p"><b class="b">Custom file integrity monitor rules</b>: Create tailored monitoring rules for specific folders and files in your containers.</div>
</li>
<li class="li">
<div class="p"><b class="b">Trend-managed rules</b>: Leverage predefined rules maintained by <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> for common security scenarios.</div>
</li>
<li class="li">
<div class="p"><b class="b">Scheduled monitoring</b>: Continuously detect file changes according to your configured monitoring schedule.</div>
</li>
</ul>
</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-file-integrity-monitoring-container#concept_q43_ld4_3hc">File integrity monitoring</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Configuration</b> → <b class="uicontrol">Object Management</b></span></div>]]></description>
    <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-file-integrity-monitoriring-cs</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Real-Time Status Feedback on current module status</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-realtime-status-feedback</link>
    <description><![CDATA[<div class="p">November 24, 2025—Users can now send instant feedback on the current module status
               to help with troubleshooting. To prevent spam, a five-minute cooldown applies—users
               must wait five minutes before submitting another status update.</div>]]></description>
    <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-realtime-status-feedback</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access supports the macOS System Proxy Support for Service Mode</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-macos-proxy-service-mode</link>
    <description><![CDATA[<div class="p">November 24, 2025—Zero Trust Secure Access now supports using the macOS system proxy
               for traffic forwarding in Secure Access Modules. Select System Proxy as the service
               mode when the Tunnel (VPN) option is already in use by other solutions on your company’s
               Mac devices.</div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access </b> → <b class="uicontrol">Secure Access Module</b> → <b class="uicontrol">Global Settings</b> → <b class="uicontrol">Service Mode for Internet Access</b> → <b class="uicontrol">macOS</b></span></div>]]></description>
    <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-macos-proxy-service-mode</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Upgraded compliance scan support for new benchmark versions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-upgraded-CS-benchmark-versions</link>
    <description><![CDATA[<div class="p">November 24, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now has enhanced compliance scanning capabilities for the following latest CIS benchmark
               versions:</div><div class="p">
<ul class="ul" id="whatsnew_vdt_ncn_khc__ul_kwf_12n_khc">
<li class="li">
<div class="p">CIS Amazon Elastic Kubernetes Service (EKS) Benchmark v1.7.0</div>
</li>
<li class="li">
<div class="p">CIS Kubernetes Benchmark v1.11.1</div>
</li>
<li class="li">
<div class="p">CIS Red Hat OpenShift Container Platform Benchmark v1.8.0</div>
</li>
<li class="li">
<div class="p">CIS Google Kubernetes Engine (GKE) Benchmark v1.8.0</div>
</li>
</ul>
</div><div class="p">Select a specific benchmark version to apply to each cluster type, ensuring your Kubernetes
               environments adhere to the latest security standards and best practices.</div><div class="p">
<div class="important" id="whatsnew_vdt_ncn_khc__note_plh_hkn_khc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">Starting November 24 2025, EKS benchmark version 1.4.0 will start to be deprecated.
                              Support for EKS 1.4.0 will end January 23, 2026.</div>
</td>
</tr>
</table>
</div>
</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Inventory/Overview</b></span></div>]]></description>
    <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-upgraded-CS-benchmark-versions</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Enhanced Workbench insights</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insight-updates</link>
    <description><![CDATA[<div class="p">November 24, 2025—Simplify your security operations with enhanced Workbench insights.
               Easily create, update, and close cases directly from the <b class="uicontrol">Workbench Insights</b> tab, and opt-in to AI-powered investigations to generate investigation reports from
               the insight details screen.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insight-details#GUID-4BF42FE6-5079-4760-886A-47B8D22D2148">Workbench insight details</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insight-updates</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>New cross-layer attack simulations available for third-party logs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-third-party-attack-sim</link>
    <description><![CDATA[<div class="p">November 24, 2025—You can now run the cross-layer attack simulation with ingested
               data from Microsoft Defender for Endpoint, Palo Alto Networks firewalls, and Fortinet
               FortiGate firewalls. To run a cross-layer simulation, go to <span class="menucascade"><b class="uicontrol">Resource Center</b> → <b class="uicontrol">Simulations</b> → <b class="uicontrol">Cross-layer attack simulations</b></span> and select the simulation you want to run. To view simulation results, go to <span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span> or <span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Observed Attack Techniques</b></span> for correlated alerts and events related to the T1071, T1204, T1518.001, and T1105
               technique set, and the T1003 and T1071 technique set.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Observed Attack Techniques</b></span></div>]]></description>
    <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-third-party-attack-sim</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.542.11191153</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-154211191153</link>
    <description><![CDATA[<div class="p">November 26, 2025 — The Agentless Vulnerability &amp; Threat Detection 1.542.11191153
               release increases the maximum supported size for AWS container image vulnerability
               scans to 20GB, allowing larger container images to be scanned for security issues
               without manual workarounds.</div><div class="p">
<ul class="ul" id="RN_2025_11_26_AVTD_AWS_1_542_11191153_a4fc88bf_a98d_4cd5_9b49_5a0e949fae1d__ul_sln_cl5_pgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: November 26, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b>:
                        <ul class="ul" id="RN_2025_11_26_AVTD_AWS_1_542_11191153_a4fc88bf_a98d_4cd5_9b49_5a0e949fae1d__ul_gz3_3l5_pgc">
<li class="li">
<div class="p">AWS container image scanning now supports images up to 20GB in size, enabling security
                                 scans for larger containers without additional configuration.</div>
</li>
</ul>
</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Wed, 26 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-154211191153</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Access strategic reports via Threat Insights</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-TI-strategic-reports</link>
    <description><![CDATA[<div class="p">November 26, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now offers Advanced Persistent Threat (APT) and Cybercrime Situational Threat Awareness
               reports through Threat Insights. These additions deliver extensive strategic intelligence
               and situational awareness to stay ahead of evolving threats.</div><ul class="ul" id="whatsnew_r5p_5cj_jhc__ul_u4b_zcj_jhc">
<li class="li">
<div class="p">Comprehensive view of APT and cybercrime trends to shape effective security strategies.</div>
</li>
<li class="li">
<div class="p">Quickly review summaries within <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> and download full versions of the reports for deeper insights.</div>
</li>
<li class="li">
<div class="p">Mutual linking between emerging threat, threat actor, and report summary pages, streamlining
                     navigation and improving context for threat investigations.</div>
</li>
</ul><div class="p">These reports empower security teams to make informed decisions and respond proactively
               to both targeted and broad cyber threats. </div><div class="p"><span class="menucascade"><b class="uicontrol">Threat Intelligence</b> → <b class="uicontrol">Threat Insights</b></span></div>]]></description>
    <pubDate>Wed, 26 Nov 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-TI-strategic-reports</guid>
    <category>Threat Intelligence</category>
</item>
<item>
    <title>Cloud Detections for AWS VPC Flow Logs version 1.557.12011407</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-vpc-version-155712011407</link>
    <description><![CDATA[<div class="p">December 1, 2025—The Cloud Detections for AWS VPC Flow Logs version 1.557.12011407
               release introduces support for AWS VPC Flow Logs detections in private Virtual Private
               Cloud (VPC) environments.</div><ul class="ul" id="RN_2025_12_01_AWS_VPC_9cd2dd02_c0e3_49c2_86e5_8e01969b9eb9__ul_vml_l2g_rhc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: December 1, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: AWS CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New features</b>: Adds support for AWS VPC Flow Logs detections in VPCs, improving visibility into
                     network-isolated environments.</div>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 01 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-vpc-version-155712011407</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Detections for AWS CloudTrail version 1.48.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-cloudtrail-version-1480</link>
    <description><![CDATA[<div class="p">December 1, 2025—The Cloud Detections for AWS CloudTrail version 1.48.0 release introduces
               support for AWS CloudTrail detections in private VPC environments.</div><ul class="ul" id="rn_2025_12_01_aws_cloudtrail_version_1_48_0_2b54fc66_66e8_4658_af9d_2af9dd83f9b9__ul_v44_5ql_fgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform:</b> AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: December 1, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New features:</b></div>
<ul class="ul" id="rn_2025_12_01_aws_cloudtrail_version_1_48_0_2b54fc66_66e8_4658_af9d_2af9dd83f9b9__ul_vym_crl_fgc">
<li class="li">
<div class="p">Adds support for AWS CloudTrail detections in private VPCs, improving visibility into
                           network-isolated environments.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 01 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-aws-cloudtrail-version-1480</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.557.12011407</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-155712011407</link>
    <description><![CDATA[<div class="p">December 1, 2025—The Agentless Vulnerability &amp; Threat Detection1.557.12011407 release
               resolves an issue that prevented removal of the Agentless Vulnerability &amp; Threat Detection
               CloudFormation stack.</div><div class="p">
<ul class="ul" id="RN_2025_12_01_aws_avtd_1_557_12011407_38ed1fa8_28a0_4ab1_b6f9_1a53807a40a7__ul_sln_cl5_pgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: December 1, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b>:
                        <ul class="ul" id="RN_2025_12_01_aws_avtd_1_557_12011407_38ed1fa8_28a0_4ab1_b6f9_1a53807a40a7__ul_gz3_3l5_pgc">
<li class="li">
<div class="p">Resolved an issue that prevented the resource bucket and log bucket from being deleted,
                                 allowing the Agentless Vulnerability &amp; Threat Detection stack to be removed successfully.</div>
</li>
</ul>
</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 01 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-155712011407</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Detections for Azure VNet Flow Logs version 1.163.11181617</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-flow-logs-version-116111052231</link>
    <description><![CDATA[<div class="p">December 1, 2025 — This release provides support for Cloud Detections for Azure VNet
               Flow logs in your Azure subscription.</div><div class="p">
<ul class="ul" id="whatsnew_tsn_wpn_khc__ul_sln_cl5_pgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Azure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: December 1, 2025</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New features</b>: Cloud Detections for Azure VNet Flow Logs supports ingestion of Virtual Network
                        (VNet) flow logs in your Azure subscription. This feature enables <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to gather insight into your VNet traffic, with detection models to identify and provide
                        alerts on malicious IP traffic, SSH brute force attacks, data exfiltration, and more.</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Azure</b></span></div>]]></description>
    <pubDate>Mon, 01 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-flow-logs-version-116111052231</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>AI Security Blueprint for unified AI asset protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-ai-security-blueprint</link>
    <description><![CDATA[<div class="p">December 1, 2025—AI Security Blueprint in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> is your starting point for securing AI across development, deployment, and production.
               The AI Security Blueprint dashboard provides clear guidance to help you protect both
               your AI stacks and the users who access AI services. It gives unified visibility into
               your AI assets—including services, models, workloads, data stores, entitlements, code
               repositories, APIs, and container images—so you can identify vulnerabilities, reduce
               risk, and strengthen security across every layer of your AI environment.</div><div class="p"><span class="menucascade"><b class="uicontrol">AI Security</b> → <b class="uicontrol">AI Security Blueprint</b></span></div>]]></description>
    <pubDate>Mon, 01 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-ai-security-blueprint</guid>
    <category>AI Security</category>
</item>
<item>
    <title>AI Guard is real-time protection for AI systems</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-AI-guard-GA</link>
    <description><![CDATA[<div class="p">December 1, 2025—Announcing the official release of AI Guard, an application programming
               interface (API) endpoint that provides real-time protection by monitoring and filtering
               AI system inputs and outputs. This solution addresses the unique security challenges
               that arise when deploying AI at scale.</div><div class="p">Key features include:</div><ul class="ul" id="whatsnew_oms_zq5_dhc__ul_wlv_tr5_dhc">
<li class="li">
<div class="p">Guardrails for inbound requests to block malicious input and prevent misuse.</div>
</li>
<li class="li">
<div class="p">Scanning for harmful content generation and sensitive information leakage.</div>
</li>
<li class="li">
<div class="p">Protection against AI model poisoning.</div>
</li>
<li class="li">
<div class="p">Sensitive data protection and privacy compliance.</div>
</li>
<li class="li">
<div class="p">Infrastructure security to manage risks in applications powered by LLMs, preventing
                     abuse and misuse.</div>
</li>
</ul><div class="p">AI Guard enables users to safely implement AI capabilities while maintaining security
               standards and compliance requirements. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ai-scanner-ai-guard#AI_Scanner_AI_Guard_intro_c6d5f59e_26dc_4c99_a35a_c0a6259ca7ab">AI Application Security</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">AI Security</b> → <b class="uicontrol">AI Application Security</b> → <b class="uicontrol">AI Guard</b></span></div>]]></description>
    <pubDate>Mon, 01 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-AI-guard-GA</guid>
    <category>AI Security</category>
</item>
<item>
    <title>Comprehensive AI model security scanning</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-AI-scan-GA</link>
    <description><![CDATA[<div class="p">December 1, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> introduces a powerful solution for scanning AI models, including large language models
               (LLMs), to identify common attack techniques, security objectives, and vulnerabilities.</div><ul class="ul" id="whatsnew_g1g_d1m_jhc__ul_nmc_l1m_jhc">
<li class="li">
<div class="p">Assess risks in your LLM deployments and pinpoint gaps in your security posture.</div>
</li>
<li class="li">
<div class="p">Receive detailed, itemized feedback reports highlighting vulnerabilities and actionable
                     recommendations.</div>
</li>
<li class="li">
<div class="p">Leverage the <span class="tm">TrendAI™</span> Artifact Scanner (TMAS) command-line interface (CLI) which now supports scanning
                     LLM endpoints and LLM-powered applications.</div>
</li>
<li class="li">
<div class="p">View results in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> for streamlined analysis and reporting.</div>
</li>
</ul><div class="p">This feature addresses the growing need for robust security insights as LLM adoption
               accelerates, helping your organization maintain regulatory compliance and prevent
               exploitative usage of AI models.</div><div class="p"><span class="menucascade"><b class="uicontrol">AI Security</b> → <b class="uicontrol">AI Application Security</b> → <b class="uicontrol">AI Scanner</b></span></div>]]></description>
    <pubDate>Mon, 01 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-AI-scan-GA</guid>
    <category>AI Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent December 2025 update - Windows</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-december-2025-update-windows</link>
    <description><![CDATA[<div class="p">December 2, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202512 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_srl_pxp_whc__ul_lwl_cnq_khc">
<li class="li">
<div class="p">Service communication manager (VOM) plug-in version 1.2.0.1365</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 1.2.0.7045</div>
</li>
<li class="li">
<div class="p">Vulnerability Assessment version 1.0.0.4064</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery version 1.0.0.4064</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 14.0.20422</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2-29760</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_srl_pxp_whc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<div class="note" id="whatsnew_srl_pxp_whc__note_w1k_w1q_whc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">
<div class="p">Some enhancements might not follow the normal release schedule.</div>
</div>
</td>
</tr>
</table>
</div>
<ul class="ul" id="whatsnew_srl_pxp_whc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Includes performance enhancements for Vulnerability Assessment and Attack Surface
                           Discovery</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Updates the Behavior Monitoring Core Service to version
                           2.98.2144 to enhance system performance</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Updates the Scheduled Updates configuration in the
                           web console for agents</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Firewall and Intrusion Prevention system events now
                           display process and user info if the data is available. This enhancement is being
                           rolled out gradually and might not follow the normal release schedule.</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Strong cipher and minimum Transport Layer Security
                           (TLS) version can be set in the agent configuration file for agents using Deep Security
                           Relay</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Updates the Advanced Threat Scan Engine to version
                           25.560</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_srl_pxp_whc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Fixes an authorization issue that enabled the agent to accept all policy requests</div>
</li>
<li class="li">
<div class="p">To prevent RPC hang, agent now terminates WebInstaller if abnormal behavior is detected
                           during agent update or installation</div>
</li>
<li class="li">
<div class="p">Data Security Sensor - Fixes included to prevent heap corruption</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Resolved issue: after a malware file is quarantined
                           on agent endpoints, the system might not clean the encrypted malware file properly</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Resolved issue: backup folders and files for agent
                           updates are not periodically removed properly and might occupy excessive disk space
                           on endpoints</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Fixed an issue related to Behavior Monitoring and Microsoft
                           Defender might cause agent endpoints to become unresponsive</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Resolved issue: user-defined suspicious objects (IP
                           address) might not be detected and blocked properly by agents</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Resolved issue: the <span class="tm">TrendAI™</span> Apex One Data Protection service (DSAGENT.exe) might stop unexpectedly</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Resolved issue: uploading logs using the File Collection
                           or Custom Script functions failed on some systems</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Resolved issue: Software builds took much longer on
                           certain systems running the agent with Device Control enabled</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Fixed an issue where the agent did not populate the
                           <b class="uicontrol">Last updated</b> column in the <b class="uicontrol">Software information</b> tab in Endpoint Inventory endpoint details</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Resolved issue: Anti-Malware proteciton sometiems stops
                           working when the operating system was running in low power mode (for example, with
                           the laptop screen off or closed)</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Resolved issue: while Application Control was running
                           in lockdown mode, applications could execute if Application Control was processing
                           a ruleset change</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_srl_pxp_whc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: December 2, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: December 9, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: December 11, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 02 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-december-2025-update-windows</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent December 2025 update - Linux</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-december-2025-update-linux</link>
    <description><![CDATA[<div class="p">December 2, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202512 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_npq_xdq_whc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package 1.2.0.1253</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 3.0.0.8173</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2-29760</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_npq_xdq_whc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">New features</b></div>
<ul class="ul" id="whatsnew_npq_xdq_whc__ul_lt5_qwq_khc">
<li class="li">
<div class="p">Agent supports Ubuntu 24 ARM64 (AWS Arm-based Graviton 2) deployments</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<div class="note" id="whatsnew_npq_xdq_whc__note_w1k_w1q_whc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">
<div class="p">Some enhancements might not follow the normal release schedule.</div>
</div>
</td>
</tr>
</table>
</div>
<ul class="ul" id="whatsnew_npq_xdq_whc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Updates CACert</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Firewall and Intrusion Prevention system events now
                           display process and user info if the data is available. This enhancement is being
                           rolled out gradually and might not follow the normal release schedule.</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Strong cipher and minimum Transport Layer Security
                           (TLS) version can be set in the agent configuration file for agents using Deep Security
                           Relay</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Updates the Advanced Threat Scan Engine to version
                           25.560</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_npq_xdq_whc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Server &amp; Workload Protection - Resolved issue: agent was unable to start on some Red
                           Hat Package Manager (RPM)-based Linux distributions using a newer RPM library (rpm-4.16.1.3-39.el9.x86_64
                           or later / rpm-4.19.1.1-20.el10.x86_64 or later)</div>
<div class="p">For more information, see the <a class="xref" href="https://success.trendmicro.com/en-US/solution/KA-0021622" target="_blank">Success Portal Knowledge Base</a>.</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Resolved issue: uploading logs using the File Collection
                           or Custom Script functions failed on some systems</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Resolved issue: while Application Control was running
                           in lockdown mode, applications could execute if Application Control was processing
                           a ruleset change</div>
</li>
<li class="li">
<div class="p">Server &amp; Workload Protection - Resolved issue: Application Control blocked some applications
                           from being executed through a shell when they should have been allowed</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_npq_xdq_whc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: December 2, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: December 9, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: December 11, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 02 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-december-2025-update-linux</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent December 2025 update - macOS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-december-2025-update-macos</link>
    <description><![CDATA[<div class="p">December 2, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202512 includes security enhancements, bug fixes,
               and feature releases. Updates to individual components and agent modules may follow
               different batch release schedules.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_bkp_bdq_whc__ul_u41_55q_g2c">
<li class="li">
<div class="p">Agent program services package (Endpoint Basecamp) 1.2.563</div>
<ul class="ul" id="whatsnew_bkp_bdq_whc__ul_gyr_bkr_g2c">
<li class="li">
<div class="p">XBCAgent.app</div>
</li>
<li class="li">
<div class="p">ws_communicator.app</div>
</li>
<li class="li">
<div class="p">PreCheck.app</div>
</li>
<li class="li">
<div class="p">SilentInstaller.app</div>
</li>
</ul>
</li>
<li class="li">
<div class="p">CETAgent.app version 3.5.10136</div>
</li>
<li class="li">
<div class="p">Endpoint Sensor version 1.2.550</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection version 3.5.8143</div>
</li>
</ul><div class="p">Detailed release notes:</div><ul class="ul" id="whatsnew_bkp_bdq_whc__ul_blb_b5q_g2c">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_bkp_bdq_whc__ul_rzf_vxq_g2c">
<li class="li">
<div class="p">Enhances endpoint capability status regular update</div>
</li>
<li class="li">
<div class="p">Supports Standard Endpoint Protection deployment scripts</div>
</li>
<li class="li">
<div class="p">Supports sending system events to xLogR</div>
</li>
<li class="li">
<div class="p">Enhanced policy statuses</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Updates the Behavior Monitoring Core Service to version
                           2.98.2144 to enhance system performance</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Updates the Scheduled Updates configuration in the
                           web console for agents</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div>
<ul class="ul" id="whatsnew_bkp_bdq_whc__ul_pkb_kyq_g2c">
<li class="li">
<div class="p">Standard Endpoint Protection - Resolved issue: after a malware file is quarantined
                           on agent endpoints, the system might not clean the encrypted malware file properly</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Resolved issue: backup folders and files for agent
                           updates are not periodically removed properly and might occupy excessive disk space
                           on endpoints</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Resolved issue: user-defined suspicious objects (IP
                           address) might not be detected and blocked properly by agents</div>
</li>
<li class="li">
<div class="p">Standard Endpoint Protection - Resolved issue: the <span class="tm">TrendAI™</span> Apex One Data Protection service (DSAGENT.exe) might stop unexpectedly</div>
</li>
</ul>
</li>
</ul><div class="p">Release schedule:</div><ul class="ul" id="whatsnew_bkp_bdq_whc__ul_jjr_g3r_g2c">
<li class="li">
<div class="p">Batch 1: December 2, 2025</div>
</li>
<li class="li">
<div class="p">Batch 2: December 9, 2025</div>
</li>
<li class="li">
<div class="p">Batch 3: December 11, 2025</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 02 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-december-2025-update-macos</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 2.0.8</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-208</link>
    <description><![CDATA[<div class="p">December 3, 2025—Service Gateway Forward Proxy Service Version 2.0.8 delivers key
               enhancements, bug fixes, and security updates.</div><div class="p">This update includes the following change:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-dqph5m__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update fixes multiple vulnerabilities.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 03 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-208</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 2.0.8</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-208</link>
    <description><![CDATA[<div class="p">December 3, 2025—Service Gateway Smart Protection Services Version 2.0.8 includes
               enhancements, bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-tvdz7o__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update allows disabling legacy TLS versions for Smart Protection Services through
                     CLISH.</div>
</li>
<li class="li">
<div class="p">This update fixes multiple vulnerabilities.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 03 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-208</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.15</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3015</link>
    <description><![CDATA[<div class="p">December 3, 2025—Service Gateway Local ActiveUpdate Service Version 3.0.15 includes
               an enhancement.</div><div class="p">This update includes the following change:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-oxspez__ul_o1t_xvp_fgc">
<li class="li">
<div class="p">This update supports displaying the latest Virus Scan Engine pattern version.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 03 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3015</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1547</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201547</link>
    <description><![CDATA[<div class="p">December 8, 2025—Mobile Security for Business app version 2.0.1547 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-A1B2C3D4-E5F6-7890-ABCD-EF1234567890__ul_a1b_2cd_e3f">
<li class="li">
<div class="p">Fixes internal application access failures caused by a Zero Trust Secure Access issue.</div>
</li>
<li class="li">
<div class="p">Fixes login failures that occur when Private Access is enabled but Internet Access
                     is not.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 08 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201547</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1159</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201159</link>
    <description><![CDATA[<div class="p">December 8, 2025—Mobile Security for Business app version 2.0.1159 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-M3N4O5P6-Q7L8-9012-MNOP-QR3456789012__ul_m3n_4op_q5r">
<li class="li">
<div class="p">Fixes internal application access failures caused by a Zero Trust Secure Access issue.</div>
</li>
<li class="li">
<div class="p">Fixes the failure to connect to specific internal applications.</div>
</li>
<li class="li">
<div class="p">Fixes slow internet connection when Private Access is enabled.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 08 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201159</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>File Security now supports Virtual Private Cloud deployment</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-FSS-supports-VPC-deployment</link>
    <description><![CDATA[<div class="p">December 8, 2025—You can now deploy File Security  directly into your Virtual Private
               Cloud (VPC), giving you greater control over network security and resource isolation.</div><div class="p"></div>]]></description>
    <pubDate>Mon, 08 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-FSS-supports-VPC-deployment</guid>
    <category>File Security</category>
</item>
<item>
    <title>Risk Event, Account Response, and High-Risk Account Response playbooks now support Google Workspace</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-playbooks-support-google-workspace</link>
    <description><![CDATA[<div class="p">December 8, 2025—Security playbooks now supports Google Workspace for Risk Event,
               Account Response, and High-Risk Account Response playbooks.</div><div class="p">You can now configure your playbooks to scan for and respond to potential security
               risks discovered in accounts managed by your Google Workspace IAM. The response playbooks
               require permission to access your Google Workspace data, which you can manage in Data
               Source and Log Management.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-defined-playbooks#GUID-84FF2824-1AF8-4BF8-8FAA-A7C284EC189B">User-defined playbooks</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Workflow and Automation</b> → <b class="uicontrol">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 08 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-playbooks-support-google-workspace</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Enhancements to risk score messaging for internet-facing assets</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ASD-EASM-zero-risk</link>
    <description><![CDATA[<div class="p">December 8, 2025—New enhancements in Attack Surface Discovery make it easier for you
               to understand why some internet-facing assets receive a risk score of 0.0.</div><div class="p">Some internet-facing assets with 0.0 risk scores may actually contain no risk. However,
               it is more likely that Attack Surface Discovery has received incomplete or inconsistent
               information about the asset during assessment. Assets with incomplete or inconsistent
               information cannot complete assessment, so a risk score cannot be calculated. <span class="tm">TrendAI™</span> recommends investigating assets with 0.0 risk scores to confirm whether the asset
               hosting method is causing inconsistent information to be returned during assessment.</div><div class="p">To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-internet-facing-assets#tsx_h22_pwb">Internet-Facing Assets</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 08 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ASD-EASM-zero-risk</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>TrendAI Vision One Automation Center has moved</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-api-automation-center-moved</link>
    <description><![CDATA[<div class="p">December 8, 2025—You can now go to <span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">API Automation Center</b></span> to visit <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Automation Center. Quickly and efficiently locate the OpenAPI specifications, endpoint
               references, and integration walkthroughs that you need.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-api-automation-center#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-q751ky">API Automation Center</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">API Automation Center</b></span></div>]]></description>
    <pubDate>Mon, 08 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-api-automation-center-moved</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Extended sliding window for log search in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-extended-log-sliding-window-cegp</link>
    <description><![CDATA[<div class="p">December 9, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> extends the sliding window for mail tracking, policy event, and audit log search
               to 90 continuous days, instead of the previous 60, 60, and 7 days respectively.</div><div class="p"><span class="menucascade" id="whatsnew_wvz_ptd_nhc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 09 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-extended-log-sliding-window-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent supports additional XDR capabilities for Windows 11 ARM64 endpoints</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-capabilities-windows-11-arm64</link>
    <description><![CDATA[<div class="p">December 9, 2025—Endpoint Sensor (XDR for Endpoints) has expanded capability support
               for Windows 11 ARM64, including support for Isolate Endpoint response action, monitoring
               Windows event telemetry, and monitoring connection telemetry.</div><div class="p">For more details about supported platforms, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Tue, 09 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-xdr-capabilities-windows-11-arm64</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Two-way sync of Workbench insight impact scope and highlighted objects with Jira Cloud</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-wb-cm-ho-sync</link>
    <description><![CDATA[<div class="p">December 9, 2025—Workbench insight impact scope and highlighted objects in Case Management
               are now bi-directionally synced with Jira Cloud issues, enabling efficient case management
               and investigation.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-jira-cloud-integration#task_tpy_jk3_y2c">Jira Cloud integration (for Case Management)</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Tue, 09 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-wb-cm-ho-sync</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent now supports Ubuntu 24.04 ARM64</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-supports-ubuntu-2404-arm64</link>
    <description><![CDATA[<div class="p">December 11, 2025—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports deployments to endpoint using Ubuntu 24.04 ARM64
               (AArch64).</div><div class="p">Support for Ubuntu 24.04 ARM64 (AArch64) includes deploying the agent with Server
               &amp; Workload Protection and XDR for Endpoint (EDR) features. For more information on
               supported systems, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Thu, 11 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-supports-ubuntu-2404-arm64</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows server version 2.29.1047</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsas-module-winserver-v-2-29-1047</link>
    <description><![CDATA[<div class="p">December 12, 2025—This update includes the following enhancement:</div><div class="p"><b class="uicontrol">Enhancement</b></div><ul class="ul" id="whatsnew_bbx_ntk_4hc__ul_lr2_d5k_4hc">
<li class="li">
<div class="p">Support for the new Canada site.</div>
</li>
</ul>]]></description>
    <pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsas-module-winserver-v-2-29-1047</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.26.269</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-v-2-26-269</link>
    <description><![CDATA[<div class="p">December 12, 2025—This update includes the following enhancement:</div><div class="p"><b class="uicontrol">Enhancement</b></div><ul class="ul" id="whatsnew_bbx_ntk_4hc-2__ul_lr2_d5k_4hc">
<li class="li">
<div class="p">Support for the new Canada site.</div>
</li>
</ul>]]></description>
    <pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-v-2-26-269</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Helm Chart 3.3.1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-331</link>
    <description><![CDATA[<div class="p">December 12, 2025—The Helm Chart 3.3.1 release includes the following:</div><ul class="ul" id="concept_w12_kky_qhc__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_w12_kky_qhc__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">Displays the Falco version in the Falco logs for better debugging.</div>
</li>
<li class="li">
<div class="p">Adds SHA1 hash to File Integrity Monitoring events.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="concept_w12_kky_qhc__ul_vqr_sky_qhc">
<li class="li">
<div class="p">Fixed an error where the Fargate injector incorrectly added the Service Gateway <code class="codeph">configmap</code> and <code class="codeph">secret</code> to pods when Service Gateway was not enabled.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="concept_w12_kky_qhc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="concept_w12_kky_qhc__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.3.1.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="concept_w12_kky_qhc__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.1" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.1</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-331</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Microsoft Teams Graph API integration (preview) in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-teams-graph-api-integration-cecp</link>
    <description><![CDATA[<div class="p">December 12, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> transitions to Microsoft Teams Graph API and Graph subscriptions, replacing the legacy
               CSOM API and remote event receiver. This upgrade enhances integration reliability
               and scalability, laying the groundwork for more efficient data handling and future
               feature expansion.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-teams-graph-api-integration-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Agentic AI-powered threat detection in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-llm-ci-exchangeonline-cecp</link>
    <description><![CDATA[<div class="p">December 12, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> introduces Agentic AI to power threat detection for phishing and spam in Correlated
               Intelligence for Exchange Online. This enhancement brings advanced AI-driven analysis
               to improve detection accuracy and reduce manual effort for security teams.</div><div class="p">This feature is in private preview. If you want to access this feature before it enters
               public preview or is officially released, contact your sales representative.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-llm-ci-exchangeonline-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>TrendAI Vision One has a new Canada Data Center</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-trend-v-one-new-canada-data-center</link>
    <description><![CDATA[<div class="p">December 12, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> has opened a data center to support the Canadian region. Users in this region may
               configure their service FQDNs to reflect the new location.</div>]]></description>
    <pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-trend-v-one-new-canada-data-center</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Automatic reversal of false positive quarantines extended to Teams in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-reverse-fp-teams-cecp</link>
    <description><![CDATA[<div class="p">December 12, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> automatically reverses false positive quarantines in Teams, in addition to OneDrive
               and SharePoint Online. Using advanced URL pattern intelligence, it identifies false
               positives, retrieves file details from detection logs, and restores affected files
               to their original locations—no manual action needed.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-auto-reverse-fp-teams-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Automatic detection of more problematic messages from reported emails in Cloud Email and Collaboration Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-closedloop-mitigation-cecp</link>
    <description><![CDATA[<div class="p">December 12, 2025—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> enhances the user-reported email analysis and response feature by leveraging implemented
               automatic remediation and prevention measures to identify more problematic messages.
               After these measures are generated based on reported emails confirmed as phishing
               or spam and automatically implemented, the system further identifies historical emails
               and provides an extra list of more problematic messages for administrator review and
               automatic or manual mitigation. This enhancement improves threat coverage, reduces
               blind spots, and strengthens proactive response across the email environment.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration Protection</b></span></div>]]></description>
    <pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enhanced-closedloop-mitigation-cecp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Cloud Risk Management releases new CIS Azure and AWS compliance standards</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-cis-azure-aws-standards-12-12</link>
    <description><![CDATA[<div class="p">December 12, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Cloud Risk Management has released the following new compliance standards: </div><div class="p"><b class="b">CIS Foundations Benchmarks. - CIS Azure Foundations Benchmark v4.0.0</b>: Cloud Risk Management has updated the CIS Azure compliance standard to the latest
               version to meet the Center of Internet Security (CIS) Foundations Benchmarks for Microsoft
               Azure. You can now filter Checks and download Compliance Reports to ensure your cloud
               environment complies with the latest CIS Foundations Benchmarks. - CIS Azure Foundations
               Benchmark v4.0.0. </div><div class="p"><b class="b">Deprecation Notice</b>: We've also deprecated CIS Azure Foundations Benchmark v2.1.0 for removal on <b class="b">February 8 2026</b>. It will no longer be accessible in the filters, preventing the creation of new reports
               or report-configurations with this outdated benchmark. If any existing report configurations
               include deprecated compliance standards, it will not be possible to generate new PDF/CSV
               reports. However, the list of previously generated PDF/CSV reports remains available.
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Cloud Risk Management recommends updating your report configurations to use the latest
               versions of CIS Azure Foundations Benchmark before <b class="b">February 8 2026</b>.</div><div class="p"><b class="b">AWS Well-Architected Framework Generative AI Lens</b>:  <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Cloud Risk Management has added support for the new Amazon Web Services Well-Architected
               Framework Generative AI Lens. Generative AI Lens is an extension of the AWS Well-Architected
               Framework, complementing the AWS WAF with Gen AI specific controls.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Misconfiguration and Compliance</b></span>
</div>]]></description>
    <pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-cis-azure-aws-standards-12-12</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Template Scanner enhances support for Azure resources</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-Azure-update-12-12</link>
    <description><![CDATA[<div class="p">December 12, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Cloud Risk Management Template Scanner has added the following updates to support
               your Azure cloud infrastructure.  For coverage details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-coverage#template-scanner-coverage">Template Scanner Coverage</a>.</div><ul class="ul" id="WhatsNew_12_12_2025_Azure_Update_Templatescanner_502be384_6ee0_47a8_902d_4285bf7bce42__ul_zzg_114_4hc">
<li class="li">
<div class="p">New Azure resources</div>
<ul class="ul" id="WhatsNew_12_12_2025_Azure_Update_Templatescanner_502be384_6ee0_47a8_902d_4285bf7bce42__ul_bhr_d14_4hc">
<li class="li">
<div class="p">DNS Zones</div>
</li>
<li class="li">
<div class="p">DNS Private Zones</div>
</li>
<li class="li">
<div class="p">FrontDoor Profiles</div>
</li>
<li class="li">
<div class="p">Access Control Roles</div>
</li>
<li class="li">
<div class="p">Access Control Custom Roles</div>
</li>
<li class="li">
<div class="p">MachineLearning Learning Workspaces</div>
</li>
<li class="li">
<div class="p">SecurityCenter Tasks</div>
</li>
<li class="li">
<div class="p">SecurityCenter Alerts</div>
</li>
<li class="li">
<div class="p">SecurityCenter Pricings</div>
</li>
<li class="li">
<div class="p">CosmosDB Servers</div>
</li>
</ul>
</li>
<li class="li">API Management Management APIs</li>
<li class="li">SQL Servers</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Template Scanner</b></span></div>]]></description>
    <pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-Azure-update-12-12</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Cloud Risk Management releases new CIS Azure and AWS compliance standards</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__new-cis-azure-aws-standards-12-12-2</link>
    <description><![CDATA[<div class="p">December 12, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Cloud Risk Management has released the following new compliance standards: </div><div class="p"><b class="b">CIS Foundations Benchmarks. - CIS Azure Foundations Benchmark v4.0.0</b>: Cloud Risk Management has updated the CIS Azure compliance standard to the latest
               version to meet the Center of Internet Security (CIS) Foundations Benchmarks for Microsoft
               Azure. You can now filter Checks and download Compliance Reports to ensure your cloud
               environment complies with the latest CIS Foundations Benchmarks. - CIS Azure Foundations
               Benchmark v4.0.0. </div><div class="p"><b class="b">Deprecation Notice</b>: We've also deprecated CIS Azure Foundations Benchmark v2.1.0 for removal on <b class="b">February 8 2026</b>. It will no longer be accessible in the filters, preventing the creation of new reports
               or report-configurations with this outdated benchmark. If any existing report configurations
               include deprecated compliance standards, it will not be possible to generate new PDF/CSV
               reports. However, the list of previously generated PDF/CSV reports remains available.
               <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Cloud Risk Management recommends updating your report configurations to use the latest
               versions of CIS Azure Foundations Benchmark before <b class="b">February 8 2026</b>.</div><div class="p"><b class="b">AWS Well-Architected Framework Generative AI Lens</b>:  <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> - Cloud Risk Management has added support for the new Amazon Web Services Well-Architected
               Framework Generative AI Lens. Generative AI Lens is an extension of the AWS Well-Architected
               Framework, complementing the AWS WAF with Gen AI specific controls.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Misconfiguration and Compliance</b></span>
</div>]]></description>
    <pubDate>Fri, 12 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__new-cis-azure-aws-standards-12-12-2</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.76</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-76</link>
    <description><![CDATA[<div class="p">December 15, 2025—The Zero Trust Secure Access On-premises Gateway version 1.0.76
               contains new features, enhancements, and resolved issues.</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_qtq_bpf_phc__ul_snh_5pf_phc">
<li class="li">
<div class="p">Supports sensitive data upload detection for Microsoft Copilot for Microsoft 365</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_qtq_bpf_phc__ul_h25_npf_phc">
<li class="li">
<div class="p">Improved large file downloading stability in poor client network conditions</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_qtq_bpf_phc__ul_hl2_ypf_phc">
<li class="li">
<div class="p">Fixed the issue where srcLocation and dstLocation fields appeared as empty values
                     in XDR logs</div>
</li>
<li class="li">
<div class="p">Fixed issues caused by public AI services protocol changes</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 15 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-76</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>CyberArk is now available as a third-party integration</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WhatsNew</link>
    <description><![CDATA[<div class="p">December 15, 2025—You can now integrate CyberArk with <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> for proactive security outcomes. Currently, <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> syncs user data from CyberArk for risk assessment in Cyber Risk and Exposure Management.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cyberark-integration-overview#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-vh8d5w">CyberArk integration</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Mon, 15 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WhatsNew</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Zero Trust Secure Access adds PoP site in Google Cloud Qatar</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-gcp-qatar</link>
    <description><![CDATA[<div class="p">December 15, 2025—Zero Trust Secure Access Internet Access now supports the Google
               Cloud Qatar region. Users in the region may configure their service FQDNs to reflect
               the new location. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol">Secure Access Configuration</b> → <b class="uicontrol">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 15 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-gcp-qatar</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Tailored local threat intelligence with unified sandbox and artifact collection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-threat-intelligence-unified-sandbox</link>
    <description><![CDATA[<div class="p"> December 15, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> introduces a major enhancement that unifies dynamic sandbox analysis with static
               artifact collection, creating a tailored local threat intelligence source for your
               organization. This update delivers:</div><ul class="ul" id="whatsnew_tl4_144_phc__ul_w4f_g44_phc">
<li class="li">
<div class="p">Centralized visibility by merging dynamic and static analysis results in one view</div>
</li>
<li class="li">
<div class="p">Fusion of sandbox (dynamic) and artifact (static) intelligence for deeper threat context</div>
</li>
<li class="li">
<div class="p">Seamless integration with the Workbench for streamlined investigation and hunting</div>
</li>
<li class="li">
<div class="p">Customizable intelligence, allowing organizations to promote relevant artifacts and
                     analysis results for local use</div>
</li>
<li class="li">
<div class="p">Enhanced investigation and hunting capabilities, empowering security teams to respond
                     faster and more effectively</div>
</li>
</ul><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sandbox-analysis#GUID-C9DCD923-DCF1-4455-889C-13945A86595A">Sandbox Analysis</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Threat Intelligence</b> → <b class="uicontrol">Sandbox Analysis</b></span></div>]]></description>
    <pubDate>Mon, 15 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-threat-intelligence-unified-sandbox</guid>
    <category>Sandbox Analysis</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1584</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101584</link>
    <description><![CDATA[<div class="p">December 16, 2025—Virtual Network Sensor version 1.0.1584 includes enhancements, bug
               fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-3yi9c5__ul_d2y_xhb_r2c">
<li class="li">
<div class="p">Change the default password for default user "admin".</div>
</li>
<li class="li">
<div class="p">Split the metadata token used for deploying Virtual Network Sensor on Google Cloud
                     into two parts.</div>
</li>
<li class="li">
<div class="p">Support monitoring traffic transmitted using DNS over TCP/UDP and sending the payload
                     size in telemetry.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 16 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101584</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Hotfix for Windows agents - Dec 24, 2025</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-hotfix-windows-agents-dec-24-2025</link>
    <description><![CDATA[<div class="p">December 24, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202512 hotfix addresses the following component and
               module updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_fmz_gcq_whc__ul_iv1_3mr_g2c">
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2-29810</div>
</li>
</ul><div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div><ul class="ul" id="whatsnew_fmz_gcq_whc__ul_aml_hcc_g2c">
<li class="li">
<div class="p">Resolved issue: Application Control failed to retain the inventory when a ruleset
                     update was applied</div>
<div class="p">For more information, see the <a class="xref" href="https://success.trendmicro.com/en-US/solution/KA-0021901" target="_blank">Success Portal Knowledge Base</a>.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 24 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-hotfix-windows-agents-dec-24-2025</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Hotfix for Linux agents - Dec 24, 2025</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-hotfix-for-linux-agents-dec-24-2025</link>
    <description><![CDATA[<div class="p">December 24, 2025—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202512 hotfix addresses the following component and
               module updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_fl4_cfq_whc__ul_iv1_3mr_g2c">
<li class="li">
<div class="p">Server &amp; Workload Protection version 20.0.2-29810</div>
</li>
</ul><div class="p"><b class="uicontrol">Bug fixes and resolved issues</b></div><ul class="ul" id="whatsnew_fl4_cfq_whc__ul_aml_hcc_g2c">
<li class="li">
<div class="p">Resolved issue: Application Control failed to retain the inventory when a ruleset
                     update was applied</div>
<div class="p">For more information, see the <a class="xref" href="https://success.trendmicro.com/en-US/solution/KA-0021901" target="_blank">Success Portal Knowledge Base</a>.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 24 Dec 2025 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-hotfix-for-linux-agents-dec-24-2025</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Changes to the TrendAI Vision One credits model</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-new-platform-usage-credits</link>
    <description><![CDATA[<div class="p">January 5, 2026—Platform Usage and Credits, formerly called Credits &amp; Billing, is
               now available in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>. Platform Usage and Credits offers centralized visibility into your credits, pay-as-you-go,
               and trial usage, allowing you to monitor your usage across all solutions with improved
               efficiency and transparency. The existing credit allocation model has changed to a
               monthly credit drawdown model, improving your understanding of how you are utilizing
               your credit balance across the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> platform.</div><div class="p">Key updates include:</div><div class="p">
<ul class="ul" id="whatsnew_lt1_sbg_qhc__ul_j1b_h2g_qhc">
<li class="li">
<div class="p">The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span> Flex (credits)</span> license (formerly called the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Credits license): The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span> Flex (credits)</span> license is now the only license type available for purchase. All your existing <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> licenses automatically convert to credits, enabling you to access all paid solutions
                        across <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
<li class="li">
<div class="p">Improved credit visibility: View your total credit balance in Platform Usage and Credits,
                        as well as any credits expiring soon. Your credit balance equates to the number of
                        credits purchased in your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span> Flex (credits)</span> license, multiplied by the number of years in the contract period.</div>
</li>
<li class="li">
<div class="p">Monthly credit drawdown: Each month, <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> deducts credits from your credit balance based on your usage of paid solutions, packages,
                        and features in the previous month. Different solutions calculate your credit usage
                        based on either your peak usage on any day of the month, or your accumulated usage
                        over the course of the month.</div>
</li>
<li class="li">
<div class="p">Trial usage insights: Many <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> solutions offer a free trial. Platform Usage and Credits provides insight into your
                        usage during the trial period, along with the estimated number of credits required
                        to continue your usage after the trial ends.</div>
</li>
</ul>
</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-credits-billing#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-6jb7ja">Platform Usage and Credits</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">TrendAI™ Flex Licensing</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Platform Usage and Credits</b></span></div>]]></description>
    <pubDate>Mon, 05 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-new-platform-usage-credits</guid>
    <category>Administration</category>
</item>
<item>
    <title>Unified Threat Intelligence package</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-threat-intelligence-package</link>
    <description><![CDATA[<div class="p">January 5, 2026—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> introduces a Threat Intelligence package that combines Threat Insights and Threat
               Intelligence Feed into a single, streamlined offering. This package provides unlimited
               user access and features a simplified pricing model per organization for easier budgeting.</div><ul class="ul" id="whatsnew_j1g_wds_4hc__ul_rhw_12s_4hc">
<li class="li">
<div class="p">Seamless access to both Threat Insights and Threat Intelligence Feed in one package</div>
</li>
<li class="li">
<div class="p">Unlimited user access, so team members can leverage advanced threat data without per-user
                     charges</div>
</li>
<li class="li">
<div class="p">New pricing model: 6,666.67 credits per organization monthly for full access to both
                     capabilities</div>
</li>
<li class="li">
<div class="p">Customers using SKUs benefit from unified access and simplified management</div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Threat Intelligence</b> → <b class="uicontrol">Threat Intelligence Hub</b></span></div>]]></description>
    <pubDate>Mon, 05 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-threat-intelligence-package</guid>
    <category>Threat Intelligence</category>
</item>
<item>
    <title>TXOne connectors removed from Product Instance</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-txone-connectors-removed</link>
    <description><![CDATA[<div class="p">January 6, 2026—<b class="wintitle" lang="en-us" xml:lang="en-us">Product Instance</b> no longer supports the TXOne StellarOne and TXOne EdgeOne connectors. Instead, you
               can leverage Third-Party Log Collection to ingest and retain log data from your organization's
               third-party data sources.</div><div class="p">This change is part of the transition from XDR for OT (Device and Network) to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Agentic SIEM, which began on January 1, 2026. Going forward, <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> bills your Agentic SIEM usage, including third-party log data ingestion and retention,
               based on the new credits model. You must migrate your log collection from Product
               Instance to Third-Party Log Collection by March 31, 2026.</div><div class="p">To get started, go to <span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Service Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Product Instance</b></span> and take the following steps for each unsupported connector:</div><ol class="ol">
<li class="li">
<div class="p">Go to <span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Data Source and Log Management</b></span> and create or select a third-party log repository.</div>
</li>
<li class="li">
<div class="p">Add the TXOne OT collector to the repository.</div>
</li>
<li class="li">
<div class="p">Configure your OT environment to forward log data to the newly added collector.</div>
</li>
<li class="li">
<div class="p">Go back to <b class="wintitle" lang="en-us" xml:lang="en-us">Product Instance</b> and remove the TXOne StellarOne or TXOne EdgeOne connector.</div>
</li>
</ol><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-third-party-log-intro#concept_hyp_3yc_pdc">Third-Party Log Collection</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Service Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Product Instance</b></span></div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Data Source and Log Management</b></span></div>]]></description>
    <pubDate>Tue, 06 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-txone-connectors-removed</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Cloud Detections for AWS VPC Flow Logs version 1.565.12081656</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vpc-flow-logs-version-156512081656</link>
    <description><![CDATA[<div class="p">January 6, 2026—The Cloud Detections for AWS VPC Flow Logs version 1.565.12081656
               release
               introduces support for the new XDR for Cloud solution trial.</div><div class="p">
<ul class="ul" id="RN_2026_01_06_aws_vpc_flow_logs_1_565_12081656_d4a81644_e9ba_4dc4_becc_5d347dcd309e__ul_sln_cl5_pgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: January 6, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: AWS CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New features</b>:
                        <ul class="ul" id="RN_2026_01_06_aws_vpc_flow_logs_1_565_12081656_d4a81644_e9ba_4dc4_becc_5d347dcd309e__ul_gz3_3l5_pgc">
<li class="li">
<div class="p">Adds support for the new XDR for Cloud solution trial.</div>
</li>
</ul>
</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Tue, 06 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vpc-flow-logs-version-156512081656</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Risk Management reports now support Japanese language output</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-compliance-reports-support-japanese</link>
    <description><![CDATA[<div class="p">January 8, 2026—Cloud Risk Management Reports now support generating reports in Japanese
               for
               daily reports, configured reports, and on-demand reports in PDF, CSV, and XLSX formats.</div><div class="p">For more information on configuring reports and the language setting, see:</div><ul class="ul" id="whatsnew_cqc_chk_whc__ul_u2v_ghk_whc">
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-compliance-in-cloud-posture#compliance-excel-report">Compliance Excel Report</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generate-download-report#Generate_And_Download_Report">Generate and download report</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-posture-report#Cloud_Posture_Report">Cloud Posture Report</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-configured-reports#Configured_Reports">Configured reports</a></div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Misconfiguration and Compliance</b></span></div>]]></description>
    <pubDate>Thu, 08 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-compliance-reports-support-japanese</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.77</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-77</link>
    <description><![CDATA[<div class="p">January 12, 2026—The Zero Trust Secure Access On-premises Gateway version 1.0.77 contains
               enhancements and resolved issues.</div><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_g51_4dt_whc__ul_jtc_42t_whc">
<li class="li">
<div class="p">Added support for a new entry used by Microsoft Copilot for Bing in AI Secure Access.
                     </div>
</li>
<li class="li">
<div class="p">Enhanced activity and detection logs with the associated LLM model information for
                     AI Secure Access.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_g51_4dt_whc__ul_tcf_s2t_whc">
<li class="li">
<div class="p">Fixed a core dump issue caused by DLP scanning.</div>
</li>
<li class="li">
<div class="p">Fixed issues due to a public AI services protocol change.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 12 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-77</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector Version 2.38.0.1323</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v2-38-01323</link>
    <description><![CDATA[<div class="p">January 12, 2026—Zero Trust Secure Access Private Access Connector Version 2.38.0.1323
               delivers new features and resolved issues.</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_wqb_jhs_yhc__ul_lyg_phs_yhc">
<li class="li">
<div class="p">Extends support for re-authentication duration to a maximum of 30 days</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_wqb_jhs_yhc__ul_myg_phs_yhc">
<li class="li">
<div class="p">Fixed incorrect DNS mappings between IP addresses and domain names</div>
</li>
<li class="li">
<div class="p">Improved handling of network disconnections and re-connections</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 12 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v2-38-01323</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Automated tagging for the Cyber Risk Exposure Management exception list</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-tagging-CREM-exception-list</link>
    <description><![CDATA[<div class="p">January 12, 2026—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now supports leveraging automated tagging rules to add assets to the <span class="ph" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</span> exception list, eliminating the need to manually add each asset. This enhancement
               streamlines exception management by allowing you to simultaneously add multiple assets
               to the exception list based on predefined conditions, improving your operational efficiency.</div><div class="p">This enhancement focuses on device-type assets. You can add conditions to tagging
               rules using asset attributes such as organizational unit, work location, and user
               principal name. Once a tagging rule assigns the <dfn class="term">CREM exception list</dfn> tag value to assets that meet the conditions, <span class="ph" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</span> excludes those assets from cyber risk assessments and risk event analysis, and the
               assets do not count towards your <span class="ph" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</span> credit usage.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-automatic-tagging-tab#automaticTagging_2c6502b4_2e87_4f7a_b2b0_f581189ed004">Automated tagging</a> or <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-attack-surface-discovery#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-kc8qmp">Attack Surface Discovery</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Service Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Tag  Management</b></span></div>]]></description>
    <pubDate>Mon, 12 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-tagging-CREM-exception-list</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Container Protection for Amazon ECS version 2.0.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-ecs-v2-0-0</link>
    <description><![CDATA[<div class="p">January 12, 2026—Container Protection for Amazon ECS version 2.0.0 is now available.</div><ul class="ul" id="whatsnew_gdk_2sm_yhc__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b></div>
<ul class="ul" id="whatsnew_gdk_2sm_yhc__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Amazon Web Services (AWS)</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_gdk_2sm_yhc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Automatically patch ECS Fargate tasks and services with the latest runtime sensor
                           version instead of using a manual process. Changes to your task role permissions are
                           required.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 12 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-ecs-v2-0-0</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>New Private Access Notification Controls</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-private-access-notification</link>
    <description><![CDATA[<div class="p">January 12, 2026—Administrators can now selectively enable or disable specific notification
               categories directly from the management console.</div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol">Secure Access Configuration</b> → <b class="uicontrol">Customization Settings</b> → <b class="uicontrol">Secure Access Module Notifications</b></span></div>]]></description>
    <pubDate>Mon, 12 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-private-access-notification</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Endpoint Security Policies now supports excluding hash values from Anti-Malware scans</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-hash-values-antimalware-scans</link>
    <description><![CDATA[<div class="p">January 12, 2025—You can now exclude file hash values from Anti-Malware scans using
               Endpoint Security Policies.</div><div class="p">To exclude hash values, create a hash list in Policy Resources, then add the list
               to the Anti-Malware scan exclusions in your Endpoint Security Policies. Currently,
               only SHA-1 values are supported for this release. Support for additional hash types
               is coming soon.</div><div class="p">For information on creating a hash list, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources-hash-lists#task_l2h_5kc_whc">Hash Lists</a>.</div><div class="p">For information on the Anti-Malware policy settings, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies-anti-malware#concept_s5g_xv5_hfc">Anti-Malware</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Policy Resources</b></span></div>]]></description>
    <pubDate>Mon, 12 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-hash-values-antimalware-scans</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Alert auto-correlation disabled for closed cases related to Workbench insights</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-closed-case-wb</link>
    <description><![CDATA[<div class="p">January 13, 2026—To enhance workflow efficiency for security analysts, auto-correlation
               with new Workbench alerts is disabled once a case related to a Workbench insight is
               closed. This ensures that completed investigations remain undisturbed, avoiding confusion
               and the need for reinvestigation.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-alerts-workbench-insights#GUID-1722E7D9-6C28-4742-B3A2-A8E09FAA00C9">Alerts correlated in Workbench insights</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Case Management</b></span></div>]]></description>
    <pubDate>Tue, 13 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-closed-case-wb</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 2.0.9</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-209</link>
    <description><![CDATA[<div class="p">January 14, 2026—Service Gateway Forward Proxy Service Version 2.0.9 delivers key
               enhancements, bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_mrd_x4j_yhc__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update adds a command to display the top 5 FQDNs consuming the most network traffic
                     on Forward Proxy Service.</div>
</li>
<li class="li">
<div class="p">This update prevents exposure of internal information about accessing the Forward
                     Proxy Service root path.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 14 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-209</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Smart Protection Services Version 2.0.9</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-209</link>
    <description><![CDATA[<div class="p">January 14, 2025—Service Gateway Smart Protection Services Version 2.0.9 includes
               enhancements, bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul">
<li class="li">
<div class="p">This update adds a CLISH command to enable and disable weak ciphers.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 14 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sg-sps-version-209</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Generic Caching Service 1.0.6</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-106</link>
    <description><![CDATA[<div class="p">January 14, 2026—Service Gateway Generic Caching Service 1.0.6 delivers key enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_bj4_rrj_yhc__ul_shh_1z2_hzb">
<li class="li">
<div class="p">This update applies some vulnerability fixes.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 14 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-106</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.26</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-3026</link>
    <description><![CDATA[<div class="p">January 14, 2026—Service Gateway Firmware Version 3.0.26 includes enhancements, bug
               fixes, and security updates for Service Gateway.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_tjb_ft3_yhc__ul_dwt_1x3_yhc">
<li class="li">
<div class="p">This update supports MicroK8s certificate refresh during the NTP refresh process.</div>
</li>
<li class="li">
<div class="p">This update introduces a CLISH command for collecting pcap files.</div>
</li>
<li class="li">
<div class="p">This update fixes network connection instability when managing large numbers of endpoints
                     caused by insufficient ARP cache limits.</div>
</li>
<li class="li">
<div class="p">This update applies some vulnerability fixes.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 14 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-3026</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.25</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-3025</link>
    <description><![CDATA[<div class="p">December 3, 2025—Service Gateway Firmware Version 3.0.25 includes enhancements, bug
               fixes, and security updates for Service Gateway.</div><div class="p">Service Gateway Firmware 3.0.25 contains the following changes:
               <ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-v7empq__ul_fzp_3sc_tgc">
<li class="li">
<div class="p">This update adds support for UDP traffic to Service Gateway services.</div>
</li>
<li class="li">
<div class="p">This update allows disabling legacy TLS versions for Smart Protection Services through
                        CLISH.</div>
</li>
<li class="li">
<div class="p">This update allows Service Gateway services to access ​the Snaps API (<code class="codeph">api.snapcraft.io​</code>) for Linux package management.</div>
</li>
<li class="li">
<div class="p">This update fixes a Service Gateway log upload issue.</div>
</li>
</ul>
</div>]]></description>
    <pubDate>Wed, 14 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-3025</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Local ActiveUpdate Service Version 3.0.16</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3016</link>
    <description><![CDATA[<div class="p">January 14, 2026—Service Gateway Local ActiveUpdate Service Version 3.0.16 includes
               enhancements, bug fixes, and security updates。</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_im2_vgj_yhc__ul_amj_flj_yhc">
<li class="li">
<div class="p">This update fixes an issue where log files were occupied and could not be rotated
                     successfully.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 14 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3016</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Helm Chart 3.3.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-332</link>
    <description><![CDATA[<div class="p">January 14, 2026—The Helm Chart 3.3.2 release includes the following:</div><ul class="ul" id="whatsnew_j4r_5bb_b3c__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Features</b></div>
<ul class="ul" id="whatsnew_j4r_5bb_b3c__ul_qfz_mcb_b3c">
<li class="li">
<div class="p">Support for RBAC audit log collections for Gardener clusters.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_j4r_5bb_b3c__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">Provides an option to specify a ConfigMap for rule-loader to load custom rules.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">No longer supported</b></div>
<ul class="ul" id="whatsnew_j4r_5bb_b3c__ul_vqr_sky_qhc">
<li class="li">
<div class="p">Removed legacy Splunk support feature from the Scout component.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_j4r_5bb_b3c__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_j4r_5bb_b3c__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.3.2.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_j4r_5bb_b3c__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.2" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.2</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Wed, 14 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-332</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Support for audit logs for Gardener clusters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-container-audit-Gardener-cluster</link>
    <description><![CDATA[<div class="p">January 14, 2026—You can now collect Kubernetes API server audit logs for Gardner
               clusters for RBAC and activity monitoring in Container Security.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enable-audit-log-gardener-clusters#concept_qyk_ws2_yhc">Enable audit log collection for Gardener clusters</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b></span></div>]]></description>
    <pubDate>Wed, 14 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-container-audit-Gardener-cluster</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Quarantine message response action available for Gmail in Response Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-quarantine-gmail-messages</link>
    <description><![CDATA[<div class="p">January 14, 2026—You can now use the <b class="uicontrol">Quarantine Message</b> response action for Gmail to isolate suspicious or harmful emails during investigations.
               Previously, this action was only available for Exchange Online. Organizations using
               Cloud App Security or <span class="ph" lang="en-us" xml:lang="en-us">Cloud Email and Collaboration
                  Protection</span> can now take the same quarantine action on Gmail messages, enabling consistent and
               effective containment across their email environments. For details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-quarantine-message-task#GUID-4EFF92DB-27C3-4E9B-AD06-944677964E15">Quarantine Message task</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Response Management</b></span></div>]]></description>
    <pubDate>Wed, 14 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-quarantine-gmail-messages</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Endpoint Security Policies now supports selecting multiple exclusion lists</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies-multiple-exclusion-lists</link>
    <description><![CDATA[<div class="p">January 19, 2026—You can now select multiple lists for Anti-Malware scan exclusions
               and Trusted Programs.</div><div class="p">You can select up to 10 of each type of list configured in policy resources for Anti-Malware
               exclusions, including directory lists, file lists, file extension lists, and hash
               lists. Additionally, you can select up to two program lists for Trusted Programs in
               Exclusions.</div><div class="p">For more information, see the following Endpoint Security Policy topics:</div><ul class="ul" id="whatsnew_n22_vjb_yhc__ul_zvw_zjb_yhc">
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies-anti-malware#concept_s5g_xv5_hfc">Anti-Malware</a></div>
</li>
<li class="li">
<div class="p"><a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies-exclusions#concept_awr_lw5_hfc">Exclusions</a></div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Endpoint Security Policies</b></span></div>]]></description>
    <pubDate>Mon, 19 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies-multiple-exclusion-lists</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>IPv6 support for outbound email traffic in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ipv6-support-for-outbound-cegp</link>
    <description><![CDATA[<div class="p">January 20, 2026—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> now supports IPv6 for outbound email traffic, expanding compatibility with modern
               email platforms such as Microsoft 365 and Gmail. This enhancement applies exclusively
               to the outbound direction and includes both outbound email delivery over IPv6 and
               IPv6-based email reception from user-defined mail servers. Administrators can configure
               IPv6 addresses for user-defined mail servers, and outbound policy rules using <b class="uicontrol">Deliver Now</b> can route messages to IPv6 destinations. This update improves interoperability in
               IPv6-enabled environments and helps ensure reliable outbound mail flow.</div><div class="p"><span class="menucascade" id="whatsnew_rjt_5yq_whc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 20 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ipv6-support-for-outbound-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Workbench insights now displayed by severity and score</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-insight-severity-score</link>
    <description><![CDATA[<div class="p">January 20, 2026—Workbench insights now support severity mapping to streamline security
               operations by priority. Severity color indicates the level of urgency and potential
               impact of an insight, while score numbers represent overall priority. Focus on and
               promptly address insights with higher scores to ensure efficient security management.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insights#GUID-86CD9AB6-4CAD-4E08-B948-FA2373A1C555">Workbench insights</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Tue, 20 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-insight-severity-score</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Agentic AI-powered threat detection in Cloud Email Gateway Protection</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-llm-ci-cegp</link>
    <description><![CDATA[<div class="p">January 20, 2026—<span class="ph" lang="en-us" xml:lang="en-us">Cloud Email Gateway
                  Protection</span> introduces Agentic AI to power threat detection for phishing and spam in Correlated
               Intelligence for Exchange Online. This enhancement brings advanced AI-driven analysis
               to improve detection accuracy and reduce manual effort for security teams.</div><div class="p">This feature is in private preview. If you want to access this feature before it enters
               public preview or is officially released, contact your sales representative.</div><div class="p"><span class="menucascade" id="whatsnew_fj2_4yq_whc__emailGatewayProtectionPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Email and Collaboration Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Email Gateway Protection</b></span></div>]]></description>
    <pubDate>Tue, 20 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-llm-ci-cegp</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Helm Chart 3.3.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-333</link>
    <description><![CDATA[<div class="p">January 22, 2026—The Helm Chart 3.3.3 release includes the following:</div><ul class="ul" id="whatsnew_ftm_fyg_b3c__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Features</b></div>
<ul class="ul" id="whatsnew_ftm_fyg_b3c__ul_svx_3yg_b3c">
<li class="li">
<div class="p">In-clusters components now support user-managed custom rulesets configured in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_ftm_fyg_b3c__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">This release enhances the stability and patch vulnerability of in-cluster components.</div>
</li>
<li class="li">
<div class="p">Because custom rulesets are now supported by in-cluster components, the <code class="codeph">runtimeSecurity.customRules.enable</code> flag is no longer needed in the override file. You can now create a ConfigMap to
                           import custom rules for in-cluster components. See <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-enable-custom-rules-v1cs#task_s3j_rk1_5gc">Import custom rules with cluster-managed configuration</a> for more information.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_ftm_fyg_b3c__ul_vqr_sky_qhc">
<li class="li">
<div class="p">This release fixes the admission controller blocking the isolation action issue.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_ftm_fyg_b3c__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_ftm_fyg_b3c__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.3.3.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_ftm_fyg_b3c__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.3" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.3</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Thu, 22 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-333</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Gain granular visibility into your network traffic patterns</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-protocol-traffic-analysis</link>
    <description><![CDATA[<div class="p">The new "Protocol traffic analysis" tab allows you to filter traffic by protocol groups
               or specific protocols. You can now identify top IP addresses by traffic volume and
               seamlessly drill down into connection details within the XDR Data Explorer for deeper
               investigation.</div><div class="p">For details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-overview#concept_d3q_zbp_hcc">Network Overview</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Overview</b></span></div>]]></description>
    <pubDate>Mon, 26 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-protocol-traffic-analysis</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Add and manage domains and IP addresses used for internet-facing asset discovery in Seed Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-seed-management</link>
    <description><![CDATA[<div class="p">January 26, 2026—Seed Management in now available for internet-facing assets in Attack
               Surface Discovery. The new Seed Management feature provides a centralized location
               to add, view, and manage the public-facing root domains, hosts, and IP addresses used
               to discover your organization's internet-facing assets. The benefits of Seed Management
               include:
               <ul class="ul" id="whatsnew_ftg_45x_b3c__ul_d1j_qvx_b3c">
<li class="li">
<div class="p">Greater visibility into the assets used as discovery seeds to map your organization's
                        external attack surface</div>
</li>
<li class="li">
<div class="p">Better control over tracked and assessed public-facing assets</div>
</li>
<li class="li">
<div class="p">Enhanced ability to remove discovery seeds without affecting unrelated assets</div>
</li>
<li class="li">
<div class="p">Simplified management of internet-facing asset discovery</div>
</li>
</ul>
</div><div class="p">Click <b class="uicontrol">Seed Management</b> to add, view, and manage your organization's public-facing root domains, hosts, and
               IP addresses. Assets used as discovery seeds are identified by the seed icon (<img alt="EASM_Seed=252f7a28-721f-4f4c-b2f3-237e39454d64.jpg" class="image" height="16" id="whatsnew_ftg_45x_b3c__image_ezx_cbv_2hc" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-images/EASM_Seed%3D252f7a28-721f-4f4c-b2f3-237e39454d64.jpg"/>) in <span class="menucascade"><b class="uicontrol">Attack Surface Discovery</b> → <b class="uicontrol">Internet-facing assets</b></span>. Discovery of additional assets based on newly added seeds may take up to seven days.
               When you remove a seed asset, new assets related to the seed are no longer discovered.
               To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-seed-management#concept_mgj_tyt_2hc">Seed Management</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 26 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-seed-management</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>New features and frameworks available in Compliance Management</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-comp-mgmt-0126</link>
    <description><![CDATA[<div class="p">January 26, 2026—Compliance Management now offers the following updated features:</div><div class="p">
<ul class="ul" id="whatsnew_spq_ccy_b3c__ul_zbt_fcy_b3c">
<li class="li">
<div class="p">New compliance report templates: NIST AI RMF 1.0, Digital Operation Resilience Act
                        - Chapters II, III, IV, and VI, and NIS2: Commission Implementing Regulation (EU)
                        2024/2690.</div>
</li>
<li class="li">
<div class="p">Exception list support: Endpoints added to the Attack Surface Discovery exception
                        list are excluded from compliance analysis, ensuring more accurate and intentional
                        compliance reporting.</div>
</li>
<li class="li">
<div class="p">OSCAL import and export for custom frameworks: Import custom compliance frameworks
                        using OSCAL-formatted YAML files, eliminating the need to build frameworks from scratch.
                        Frameworks can also be exported and imported across different <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> instances, facilitating reuse of standardized frameworks across environments.</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Governance &amp; Risk Compliance</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Compliance Management</b></span></div>]]></description>
    <pubDate>Mon, 26 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-comp-mgmt-0126</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Manage the risk of your SentinelOne endpoints</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-sentinelone-singularity</link>
    <description><![CDATA[<div class="p">January 26, 2026—<b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> now supports visibility, unified risk insights, and streamlined response workflows
               for your endpoints managed by SentinelOne Singularity. This new integration with <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> expands support for leading EPP/EDR platforms, providing the same core <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> experience for endpoints managed by third-party solutions.</div><div class="p">The integration introduces continuous asset discovery for devices managed by SentinelOne
               Singularity, enabling <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> to: 
               <ul class="ul" id="whatsnew_pff_kxx_b3c__ul_tr5_vxx_b3c">
<li class="li">
<div class="p">Detect and ingest endpoint inventory and security configuration events captured by
                        SentinelOne</div>
</li>
<li class="li">
<div class="p">Identify previously unmanaged or unknown assets, enriching <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b>'s unified asset catalog</div>
</li>
<li class="li">
<div class="p">Consolidate visibility across Windows, macOS, and Linux environments using SentinelOne’s
                        multi‑OS telemetry</div>
</li>
</ul>
</div><div class="p">This deeper visibility ensures that <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b> accurately reflects your complete endpoint landscape.</div><div class="p">SentinelOne endpoint telemetry—including vulnerability exposure data, misconfigurations,
               and endpoint security events—can now contribute to your Cyber Risk Index. This allows
               <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> to:
               <ul class="ul" id="whatsnew_pff_kxx_b3c__ul_gc5_fyx_b3c">
<li class="li">
<div class="p">Enrich cyber risk scoring using real‑time endpoint context</div>
</li>
<li class="li">
<div class="p">Prioritize remediation based on business impact, not just CVSS scoring</div>
</li>
<li class="li">
<div class="p">Highlight the riskiest SentinelOne Singularity‑managed assets across your environment</div>
</li>
</ul>
</div><div class="p">This turns raw endpoint data into actionable, prioritized exposure insights, which
               are summarized in <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Overview</b> and highlighted as risk events in <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b>. Connect your SentinelOne Singularity account in <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b>.</div><div class="p"><span class="menucascade" id="whatsnew_pff_kxx_b3c__idRiskInsightsPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 26 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-whats-new-sentinelone-singularity</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Local response detection filters available for Windows endpoints</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-local-response</link>
    <description><![CDATA[<div class="p">January 29, 2026—Detection filters can now be deployed on Windows endpoints as local
               response filters. A process can be terminated locally when a local response filter
               is matched, shortening MTTD and improving overall usability. To add local response
               filters, go to <span class="menucascade" id="whatsnew_ll5_s4x_whc__observedAttackTechniquesPath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Observed Attack Techniques</b></span> and expand any associated entity. Right-click a detection filter name and select
               <b class="uicontrol">Add filter to local response</b>.</div><div class="p">You can view and configure local response filters connected to existing endpoint policies
               in <span class="menucascade"><b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Endpoint Security Policies</b> → <b class="uicontrol">Policies</b></span>. Click a policy name and then <b class="uicontrol">XDR for Endpoints (EDR)</b> to view a list of local response filters related to the selected endpoint policy.</div><div class="p">This feature is in private preview. If you want to access this feature before the
               feature enters public preview or is officially released, contact your sales representative.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-local-response-filters#concept_pyk_blx_whc">Local response filters</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Observed Attack Techniques</b></span></div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Detection Model
                     Management</b></span></div>]]></description>
    <pubDate>Thu, 29 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-local-response</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Create custom widgets from XDR Data Explorer</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-custom-widget-xdr-data-explorer</link>
    <description><![CDATA[<div class="p">January 29, 2026—You can now create custom widgets directly from your XDR Data Explorer
               search results. This allows you to turn search queries into an actionable visualizations
               to help identify trends, compare patterns, and monitor key indicators without leaving
               the investigation workflow. By converting search results into widgets, you can build
               dashboards tailored to your reporting, threat hunting, and operational needs.</div><div class="p">After running a query in XDR Data Explorer, click the Custom Widget icon (<img alt="custom-widget-icon=531d1ce6-06db-46c6-bc8a-767b923a12e2.png" class="image" height="16" id="whatsnew_xmm_swy_c3c__image_custom_widget_icon" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-images/custom-widget-icon%3D531d1ce6-06db-46c6-bc8a-767b923a12e2.png"/>) to open the Custom Widget Builder. Configure your data settings including aggregation
               functions (Count, Sum, Average, Min, Max, Distinct Count), grouping methods (by field,
               time binning, or both), and result display options. Available chart types include
               bar charts, pie charts, line charts, time series charts, and tables, depending on
               your grouping method.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-custom-widget#concept_bjn_1zr_c3c">Create a Custom Widget</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards and Reports</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Dashboards</b></span></div>]]></description>
    <pubDate>Thu, 29 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-custom-widget-xdr-data-explorer</guid>
    <category>Dashboards and Reports</category>
</item>
<item>
    <title>Cloud Risk Management Releases GET Accounts Public API V3.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-risk-management-accountsapiv3</link>
    <description><![CDATA[<div class="p">January 31, 2026—Cloud Risk Management releases GET Accounts V3.0 Public API for 
               enhanced risk management capabilities, streamlined compliance processes, improved
               data security, and more efficient operational oversight.. See the <a class="xref" href="https://automation.trendmicro.com/xdr/home" target="_blank">Automation Center</a> for more information.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Public API</b></span></div>]]></description>
    <pubDate>Sat, 31 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-risk-management-accountsapiv3</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Cloud Risk Management Releases GET Accounts Public API V3.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__cloud-risk-management-accountsapiv3-2</link>
    <description><![CDATA[<div class="p">January 31, 2026—Cloud Risk Management releases GET Accounts V3.0 Public API for 
               enhanced risk management capabilities, streamlined compliance processes, improved
               data security, and more efficient operational oversight.. See the <a class="xref" href="https://automation.trendmicro.com/xdr/home" target="_blank">Automation Center</a> for more information.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Public API</b></span></div>]]></description>
    <pubDate>Sat, 31 Jan 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-__cloud-risk-management-accountsapiv3-2</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Container Protection for Amazon ECS version 2.0.1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-ecs-v2-0-1</link>
    <description><![CDATA[<div class="p">February 1, 2026—Container Protection for Amazon ECS version 2.0.1 is now available.</div><ul class="ul" id="concept_oyv_hpb_n3c__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b></div>
<ul class="ul" id="concept_oyv_hpb_n3c__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Amazon Web Services (AWS)</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_oyv_hpb_n3c__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Released terraform template to install Container Security for ECS v2.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Sun, 01 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-ecs-v2-0-1</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Deployment script updates for February 2026</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deployment-script-updates-feb-2026</link>
    <description><![CDATA[<div class="p">February 2, 2026—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent installer deployment script has received the following updates
               and fixes:</div><ul class="ul" id="whatsnew_qym_tpz_b3c__ul_rg5_wgt_ghc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_qym_tpz_b3c__ul_vt2_xgt_ghc">
<li class="li">
<div class="p">Updated "Sensor Only" deployment script streamlines deployment process by removing
                           the check for the XES status; improving reliability and ensures installation completes
                           without unnecessary interruptions.</div>
</li>
<li class="li">
<div class="p">Updated Server &amp; Workload Protection deployment script removes redundant activation
                           steps when choosing a custom download source location.</div>
</li>
</ul>
</li>
</ul><div class="p">For more information about using the deployment script, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-using-endpoint-deployment-script#GUID-81EE6C86-00F5-4C9F-B261-4DC4F17AC5D7">Deploy agents using the deployment script</a>.</div>]]></description>
    <pubDate>Mon, 02 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deployment-script-updates-feb-2026</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.78</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-78</link>
    <description><![CDATA[<div class="p">February 2, 2026—The Zero Trust Secure Access On-premises Gateway version 1.0.78 contains
               new features.</div><div class="p"><b class="uicontrol">New Features</b></div><ul class="ul" id="whatsnew_gjw_yky_13c__ul_usm_mly_13c">
<li class="li">
<div class="p">Supports tenancy restriction for ChatGPT in both Internet Access rules and AI Secure
                     Access rules.</div>
</li>
<li class="li">
<div class="p">Supports access control for traffic to MCP servers in AI Secure Access rules</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 02 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-78</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>TrendAI Flex licensing now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-trendai-flex-credits-license</link>
    <description><![CDATA[<div class="p">February 2, 2026—The <dfn class="term"><span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Credits</dfn> license is now called the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span> Flex (credits)</span> license, reflecting the new <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span> Flex</span> model—a clearer and more flexible way to manage your license entitlements. This update
               continues the transition that began in January 2026, when all new orders and renewals
               adopted the credits‑based model. All previously purchased solutions and packages remain
               fully available, and there is no change to your entitlements.</div><div class="p"><span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI™</span> Flex</span> provides improved visibility into your total credit balance, how you are using credits,
               and how <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> draws down credits from your balance each month. To make this information more easily
               accessible, Licensing Information and Platform Usage and Credits have moved from Administration
               to the new TrendAI™ Flex Licensing section of the navigation bar.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-credit-usage#GUID-8F07DAF4-60FC-470C-8176-D1FE4576EE49">Credits</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-what-is-trendai-flex-faq#FAQ_whatisTrendAIFlex_c7d867d3_42ed_43be_bb12_2fecceb71854">What is TrendAI™ Flex?</a></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">TrendAI™ Flex Licensing</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Platform Usage and Credits</b></span></div>]]></description>
    <pubDate>Mon, 02 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-trendai-flex-credits-license</guid>
    <category>TrendAI Flex Licensing</category>
</item>
<item>
    <title>AWS Cloud Account template version v1.0.2089</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cam-version-1-0-2084</link>
    <description><![CDATA[<div class="p">February 2, 2026—The AWS Cloud Account template version v1.0.2089 enhances security
               by restricting IAM role permissions used for stack lifecycle management. This template
               supports both single and organization AWS deployments.</div><ul class="ul" id="RN_2026_02_02_CAM_v1_0_2084__ul_cam_v1_0_2084">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: February 2, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancement</b>:</div>
<ul class="ul" id="RN_2026_02_02_CAM_v1_0_2084__ul_enhancement">
<li class="li">
<div class="p">Restricts the IAM role permissions used for CAM stack lifecycle management.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 02 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cam-version-1-0-2084</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Microsoft Defender for Endpoint Log Collection version 1.0.65</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mde-log-collection-version-1-0-63</link>
    <description><![CDATA[<div class="p">February 2, 2026—Microsoft Defender for Endpoint Log Collection version 1.0.65 improves
               data processing reliability and reduces storage and Log Analytics costs.</div><ul class="ul" id="RN_2026_02_02_MDE_log_collection_1_0_63__ul_mde_log_collection">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Azure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: February 2, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements and bug fixes</b>:</div>
<ul class="ul" id="RN_2026_02_02_MDE_log_collection_1_0_63__ul_enhancements">
<li class="li">
<div class="p">Fixed an issue where <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> could not process large MDE log data.</div>
</li>
<li class="li">
<div class="p">Fixed a processing error encountered when handling large-scale TVM device data.</div>
</li>
<li class="li">
<div class="p">Reduced storage overhead by identifying and cleaning up stale data within the storage
                           table.</div>
</li>
<li class="li">
<div class="p">Enhanced log filtering to suppress noise, effectively lowering Log Analytics consumption
                           costs.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 02 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mde-log-collection-version-1-0-63</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Container Protection for Amazon ECS version 2.0.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-ecs-v2-0-2</link>
    <description><![CDATA[<div class="p">February 2, 2026—Container Protection for Amazon ECS version 2.0.2 is now available.</div><ul class="ul" id="concept_irg_bqb_n3c__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b></div>
<ul class="ul" id="concept_irg_bqb_n3c__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Amazon Web Services (AWS)</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="concept_irg_bqb_n3c__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Fixed stack creation and deletion timeout issue introduced in release 2.0.1</div>
</li>
<li class="li">
<div class="p">Fixed image scanning for ECS when digest is missing.</div>
</li>
<li class="li">
<div class="p">Fixed health info status calculation for ECS v2.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Mon, 02 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-ecs-v2-0-2</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Enhanced ServiceNow ticket mapping for streamlined synchronization</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-SNOW-ticket-mapping</link>
    <description><![CDATA[<div class="p">February 2, 2026—You can now define precise column mappings between <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> cases and ServiceNow tickets. This enhancement ensures robust bidirectional synchronization,
               allowing actions executed in ServiceNow to be accurately reflected within <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Case Management. By delivering granular mapping of case and ticket fields and their
               corresponding values, this update optimizes workflow consistency and strengthens operational
               efficiency for security and IT operations teams.</div><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol">Third-Party Integration</b></span></div>]]></description>
    <pubDate>Mon, 02 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-SNOW-ticket-mapping</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Blocking of untrusted Windows applications enters public preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-local-app-autoblocking-whats-new</link>
    <description><![CDATA[<div class="p">February 3, 2026—<b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> now allows you to designate local applications as trusted or untrusted and enable
               auto-blocking of unwanted applications found on Windows endpoints in your environment.</div><div class="p">In the local apps section of <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b>, set app status to trusted or untrusted based on your evaluation of their risk and
               the context provided by <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b>. Setting an app to untrusted increases the risk score of assets on which the application
               is installed.</div><div class="p">In addition, you can enable auto-blocking of all untrusted Windows applications that
               have executable files associated with the applications. After enabling the feature,
               the hashes of all executables associated with untrusted applications are forwarded
               to Suspicious Object Management. Suspicious Object Management blocks execution of
               the executable files on all Windows endpoints.</div><div class="p">To enable auto-blocking, you must opt in to the auto-blocking public preview via Platform
               Directory or directly within Local Apps. You must also enable Advanced Risk Telemetry
               in Endpoint Security Policies.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Tue, 03 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-local-app-autoblocking-whats-new</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector version 2.38.0.1388</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-38-0-1388</link>
    <description><![CDATA[<div class="p">February 05, 2026—Zero Trust Secure Access Private Access Connector Version 2.38.0.1388
               delivers new features, enhancements and  resolved issues</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_rx5_k55_33c__ul_prg_x55_33c">
<li class="li">
<div class="p">Supports fail-safe mode, ensuring continued operation and connectivity even when communication
                     with the controller is temporarily unavailable</div>
</li>
<li class="li">
<div class="p">Extended maximum re-authentication duration to 30 days</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_rx5_k55_33c__ul_xhf_bv5_33c">
<li class="li">
<div class="p">Upgraded to a new version of FreeRDP, providing improved stability and compatibility
                     for remote desktop connections</div>
</li>
<li class="li">
<div class="p">Added retry logic for public key retrieval during client authentication to improve
                     reliability in networks with intermittent connectivity</div>
</li>
<li class="li">
<div class="p">Improved reliability of IoT device heartbeat monitoring to ensure consistent device
                     status reporting</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_rx5_k55_33c__ul_i5n_1v5_33c">
<li class="li">
<div class="p">Resolved issues with DNS mapping that could cause incorrect name resolution for certain
                     configurations</div>
</li>
<li class="li">
<div class="p">Fixed an issue that could cause inaccurate speed test results in certain environments</div>
</li>
<li class="li">
<div class="p">Fixed an issue where container updates could time out with Error 108 under certain
                     conditions</div>
</li>
<li class="li">
<div class="p">Resolved upgrade script issues that could affect connector upgrades</div>
</li>
</ul>]]></description>
    <pubDate>Thu, 05 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-38-0-1388</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows server version 2.31.1017</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-winserver-v-2-31-1017</link>
    <description><![CDATA[<div class="p">February 9, 2026—The latest version of the Zero Trust Secure Access Module for Windows
               has been released. It contains new features and resolved issues.</div><div class="p"><b class="uicontrol">New Features</b><ul class="ul" id="whatsnew_csj_mn1_23c-2__ul_ah5_wn1_23c">
<li class="li">
<div class="p">Added a "Do not show this message again" checkbox to the sign-in pop up.</div>
</li>
</ul>
</div><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_csj_mn1_23c-2__ul_nwd_b41_23c">
<li class="li">
<div class="p">Fixed an issue where a proxy defined in the PAC file was incorrectly marked as down
                     when HTTP read error occurred.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where the sign-in pop-up appeared unexpectedly due to an exception
                     encountered while reading the configuration.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 09 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-winserver-v-2-31-1017</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1605</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101605</link>
    <description><![CDATA[<div class="p">February 9, 2026—Virtual Network Sensor version 1.0.1605 includes enhancements, bug
               fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_z3t_2pd_h3c__ul_d2y_xhb_r2c">
<li class="li">
<div class="p">Visibility of TLS version in network telemetry.</div>
</li>
<li class="li">
<div class="p">System event logs sent to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 09 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101605</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Network attack surface visibility</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-attack-surface-visibility</link>
    <description><![CDATA[<div class="p">February 9, 2026—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now shows all devices on your network that are discovered by network sensors along
               with their associated risk levels. You can view categorized device types and see asset
               risk scores based on vulnerabilities and exposure. A graphical representation of the
               devices within your network structure is also available, helping you quickly identify
               high‑risk devices that require attention. This feature provides clearer visibility
               into your network's attack surface and helps you prioritize remediation.</div><div class="p">For details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-discovered-network-devices#concept_jfv_43c_b3c">Discovered devices</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-risk-graph#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-4fmiro">Network Risk Graph</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Network Overview</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 09 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-network-attack-surface-visibility</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Newly detected cloud apps set automatically set to not configured in Attack Aurface Discovery</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-unconfigured-cloud-apps-whatsnew</link>
    <description><![CDATA[<div class="p">February 9, 2026—All newly detected cloud apps in Attack Surface Discovery are now
               set to <b class="uicontrol">Not configured</b> by default. An app with a <b class="uicontrol">Not configured</b> status is considered trusted in your environment. To change the status of the app
               to <b class="uicontrol">Trusted</b> to allow the app in your environment or <b class="uicontrol">Untrusted</b> to block the app in your environment, select the app or go to the app profile and
               manually change the status.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 09 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-unconfigured-cloud-apps-whatsnew</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.590.02090022</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-1-590-02090022</link>
    <description><![CDATA[<div class="p">February 10, 2026—The Agentless Vulnerability &amp; Threat Detection version 1.590.02090022
               adds scan schedule configuration for AWS accounts, enabling you to configure the scan
               frequency and start time, and toggle scanning on or off without requiring stack redeployment.
               This release also introduces EC2-based scanning for EBS volumes to improve scanning
               performance and reliability.</div><ul class="ul" id="RN_2026_02_09_AVTD_AWS_EBS_volume_scan_d7e8f9a0_b1c2_4d3e_5f6a_7b8c9d0e1f2a__ul_avtd_ebs_scan">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: February 10, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New feature</b>:</div>
<ul class="ul" id="RN_2026_02_09_AVTD_AWS_EBS_volume_scan_d7e8f9a0_b1c2_4d3e_5f6a_7b8c9d0e1f2a__ul_q24_q4p_g3c">
<li class="li">
<div class="p">Configure the scan frequency and start time for <span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> in your AWS account. You can also enable or disable scanning without redeploying
                           the CloudFormation stack. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-get-start-agentless-vulnerbaility#DeployAgentlessVulnThreatDetect">Get started with Agentless Vulnerability &amp; Threat Detection in AWS</a>.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancement</b>:</div>
<ul class="ul" id="RN_2026_02_09_AVTD_AWS_EBS_volume_scan_d7e8f9a0_b1c2_4d3e_5f6a_7b8c9d0e1f2a__ul_avtd_enhancement">
<li class="li">
<div class="p">Introduces EC2-based scanning for EBS volumes to improve scanning performance and
                           reliability. New IAM policies enable <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to launch temporary EC2 scanner instances, attach EBS volumes for scanning, and manage
                           the scanner lifecycle within your AWS account.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Tue, 10 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-1-590-02090022</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Updates to Cloud Risk Management risk levels rolled back</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crm-risk-levels</link>
    <description><![CDATA[<div class="p">February 13, 2026—Previously unannounced updates to the risk level classification
               for some rules resulted in some unexpected changes to risk levels. Risk levels have
               already been restored to the previous classification. No customer action is required
               at this time.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-introduction-rules#Introduction_to_Conformity_Rules">Introduction to Cloud Risk Management rules</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Misconfiguration and Compliance</b></span></div>]]></description>
    <pubDate>Fri, 13 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crm-risk-levels</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Update to TrendAI Artifact Scanner (TMAS) FQDNs</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-update-tmas-fqdns-v1</link>
    <description><![CDATA[<div class="p">February 17, 2026—<span class="tm">TrendAI™</span> Artifact Scanner (TMAS) updated the Fully Qualified Domain Names (FQDNs) associated
               with <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Container Security and Code Security solutions. Update your firewall settings to
               allow new exceptions. See <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-firewall-exception-requirements-for#GUID-778BDEF9-D1F1-4FB1-BF6E-BFBC46D00FEF">Firewall exception requirements for TrendAI Vision One™</a> for more information.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b></span></div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Code Security</b></span></div><div class="p"><span class="menucascade"><b class="uicontrol">AI Security</b> → <b class="uicontrol">AI Scanner</b></span></div>]]></description>
    <pubDate>Tue, 17 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-update-tmas-fqdns-v1</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Intrusion Prevention Configuration enhancements</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-ipc-enhancements</link>
    <description><![CDATA[<div class="p">February 19, 2026—Improvements to the Intrusion Prevention Configuration settings
               page include enhancements to policy recommendations and security monitoring for TippingPoint
               devices in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div><div class="p">You can now streamline virtual patching by enabling filtering across DV status types,
               performance impacts, and filter types while still preserving existing settings. These
               enhancements also include the ability to export filtered recommendations, which allows
               teams to share and use virtual patching in existing processes and ticketing systems,
               improving collaboration and traceability.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-intrusion-prevention-configuration#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-kmd30a">Intrusion Prevention Configuration</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Network Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Intrusion Prevention Configuration</b></span></div>]]></description>
    <pubDate>Thu, 19 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-ipc-enhancements</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Cloud Detections for AWS CloudTrail version 1.49.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloudtrail-version-1-49-0</link>
    <description><![CDATA[<div class="p">February 23, 2026—The Cloud Detections for AWS CloudTrail version 1.49.0 release introduces
               support for Permissions Boundary for AWS CloudTrail and AWS CloudTrail with Control
               Tower, and includes vulnerability fixes and improvements.</div><div class="p">
<ul class="ul" id="RN_2026_02_23_aws_cloudtrail_1_49_0_a1b2c3d4_e5f6_7890_1234_567890abcdef__ul_cloudtrail_1_49_0">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: February 23, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: AWS CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New features</b>:
                        <ul class="ul" id="RN_2026_02_23_aws_cloudtrail_1_49_0_a1b2c3d4_e5f6_7890_1234_567890abcdef__ul_new_features">
<li class="li">
<div class="p">Adds support for Permissions Boundary for AWS CloudTrail and AWS CloudTrail with Control
                                 Tower.</div>
</li>
</ul>
</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements and bug fixes</b>:
                        <ul class="ul" id="RN_2026_02_23_aws_cloudtrail_1_49_0_a1b2c3d4_e5f6_7890_1234_567890abcdef__ul_enhancements">
<li class="li">
<div class="p">Vulnerabilities fixes and improvements.</div>
</li>
</ul>
</div>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 23 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloudtrail-version-1-49-0</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>File Security Storage for AWS CloudFormation Template Version 4.0.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-aws-cloudformation-template-v4</link>
    <description><![CDATA[<div class="p">February 23, 2026—The AWS File Security Storage CloudFormation template version 4.0
               contains new features and minor bug fixes and improvements.</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_kys_c45_33c__ul_wry_f45_33c">
<li class="li">
<div class="p">Supports File Security Storage in private VPCs</div>
</li>
<li class="li">
<div class="p">Supports Permission Boundary for File Security Storage</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_kys_c45_33c__ul_xry_f45_33c">
<li class="li">
<div class="p">Minor bug fixes and improvements</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 23 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-aws-cloudformation-template-v4</guid>
    <category>File Security</category>
</item>
<item>
    <title>TrendAI Vision One™ Cloud Risk Management now supports creating custom rules using API</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-CREM-customrules-WN</link>
    <description><![CDATA[<div class="p">February 23, 2026—Cloud Risk Management now supports Custom Rules, enabling you to
               define your own compliance rules tailored to your organization's specific requirements.
               Custom Rules can be created and managed via public API for any supported cloud resource
               type, giving you the flexibility to enforce policies beyond the built-in rule set.
               To learn more <a class="xref" href="https://portal.xdr.trendmicro.com/ui/amc/redoc/index.html?from=beta#tag/Custom-Rules" target="_blank">Custom Rules API Reference</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crem-custom-rule-intro#concept_k53_5fd_33c">Custom rules quick reference guide</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Custom Rules</b></span></div>]]></description>
    <pubDate>Mon, 23 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-CREM-customrules-WN</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.170.13800d3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-1-170-13800d3</link>
    <description><![CDATA[<div class="p">February 26, 2026—The Agentless Vulnerability &amp; Threat Detection version 1.170.13800d3
               migrates Azure Key Vault access policies to the Azure role-based access control (RBAC)
               model to ensure compatibility with the latest Azure Key Vault API.</div><ul class="ul" id="RN_2026_02_26_Azure_AVTD_1_170_13800d3_a1b2c3d4_e5f6_7890_abcd_ef1234567890__ul_azure_avtd_rbac">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Azure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: February 26, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancement</b>:</div>
<ul class="ul" id="RN_2026_02_26_Azure_AVTD_1_170_13800d3_a1b2c3d4_e5f6_7890_abcd_ef1234567890__ul_avtd_enhancement">
<li class="li">
<div class="p">Migrated Azure AVTD Key Vault access policies to Azure role-based access control (RBAC)
                           model to ensure compatibility with the latest Azure Key Vault API.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" id="RN_2026_02_26_Azure_AVTD_1_170_13800d3_a1b2c3d4_e5f6_7890_abcd_ef1234567890__cloudAccountsAzurepath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Azure</b></span></div>]]></description>
    <pubDate>Thu, 26 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-1-170-13800d3</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Log Inspection configuration for Endpoint Security Policies in private preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-log-inspection-policy-preview</link>
    <description><![CDATA[<div class="p">February 26, 2026—Log Inspection settings in Endpoint Security Policies are available
               for private pre-release preview.</div><div class="p">Log Inspection settings apply to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span> Endpoint Security agents</span> with Server &amp; Workload Protection features on Windows and Linux endpoints. Log Inspection
               is a <span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span> Endpoint Security Pro feature which might require additional credits to enable. Managing
               the feature with Endpoint Security Policies is a pre-release feature.</div><div class="p">If you want access to Log Inspection before it enters public preview or is officially
               released, contact your sales representative.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policy-log-inspection#task_jbz_x4v_f3c">Log Inspection</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Path to app in console</b></span></div>]]></description>
    <pubDate>Thu, 26 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-log-inspection-policy-preview</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Integrity Monitoring configuration for Endpoint Security Policies in private preview</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-integrity-monitoring-policy-preview</link>
    <description><![CDATA[<div class="p">February 26, 2026—Integrity Monitoring settings in Endpoint Security Policies are
               available for private pre-release preview.</div><div class="p">Integrity Monitoring settings apply to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span> Endpoint Security agents</span> with Server &amp; Workload Protection features on Windows and Linux endpoints. Integrity
               Monitoring is a <span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span> Endpoint Security Pro feature which might require additional credits to enable. Managing
               the feature with Endpoint Security Policies is a pre-release feature.</div><div class="p">If you want access to Integrity Monitoring before it enters public preview or is officially
               released, contact your sales representative.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policy-integrity-monitoring#task_fgr_crv_f3c">Integrity Monitoring</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Path to app in console</b></span></div>]]></description>
    <pubDate>Thu, 26 Feb 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-integrity-monitoring-policy-preview</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.28.422</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-v-2-28-422</link>
    <description><![CDATA[<div class="p">March 2, 2026—The latest version of the Zero Trust Secure Access Module for macOS
               has been released. It contains new features.</div><div class="p"><b class="uicontrol">New Features</b></div><ul class="ul" id="whatsnew_gzw_jtk_m3c__ul_grn_tsk_m3c">
<li class="li">
<div class="p">Displays a reminder notification when an auto-update is triggered.</div>
</li>
<li class="li">
<div class="p">Updated product branding from "Trend Vision One™ " to "<span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span>".</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 02 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-v-2-28-422</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows server version 2.32.1036</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-winserver-v-2-32-1036</link>
    <description><![CDATA[<div class="p">March 2, 2026—The latest version of the Zero Trust Secure Access Module for Windows
               has been released. It contains new features and enhancements.</div><div class="note" id="whatsnew_k4w_3sk_m3c__note_qxc_wrr_43c">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">
<div class="p">This version has been replaced by version 2.32.1049.</div>
</div>
</td>
</tr>
</table>
</div><div class="p"><b class="uicontrol">New Features</b></div><ul class="ul" id="whatsnew_k4w_3sk_m3c__ul_grn_tsk_m3c">
<li class="li">
<div class="p">Displays a reminder notification when an auto-update is triggered.</div>
</li>
<li class="li">
<div class="p">Updated product branding from "Trend Vision One™ " to "<span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span>".</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_k4w_3sk_m3c__ul_l4h_vsk_m3c">
<li class="li">
<div class="p">Removed the netsh.exe dependency checking when connecting Private Access.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 02 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-winserver-v-2-32-1036</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1625</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101625</link>
    <description><![CDATA[<div class="p">March 2, 2026—Virtual Network Sensor version 1.0.1625 includes enhancements, bug fixes,
               and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_q2m_kny_l3c__ul_d2y_xhb_r2c">
<li class="li">
<div class="p">Virtual Network Sensor rebranded from Trend Vision One to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
<li class="li">
<div class="p">Virtual Network Sensor now supports new CLI commands for enabling and disabling the
                     Geneve protocol.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 02 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101625</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.79</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-79</link>
    <description><![CDATA[<div class="p">March 2, 2026—The Zero Trust Secure Access On-premises Gateway version 1.0.79 contains
               new features.</div><div class="p"><b class="uicontrol">New Features</b></div><ul class="ul" id="whatsnew_rvd_kjn_33c__ul_usm_mly_13c">
<li class="li">
<div class="p">Supports sensitive data upload detection for public AI service (Perplexity, DeepSeek,
                     Claude, Amazon BedRock, GitHub Copilot)</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_rvd_kjn_33c__ul_sjt_c1d_m3c">
<li class="li">Updated relevant notification pages for Trend AI re branding</li>
<li class="li">Fixed the potential issue of HTTPS traffic being stuck in tunnel mode</li>
</ul>]]></description>
    <pubDate>Mon, 02 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-79</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1570</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201570</link>
    <description><![CDATA[<div class="p">March 2, 2026—Mobile Security for Business app version 2.0.1570 includes enhancements
               and updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-B2C3D4E5-F6G7-8901-BCDE-FG2345678902__ul_b2c_3de_f4g">
<li class="li">
<div class="p">Rebrands Trend Micro to <span class="tm">TrendAI™</span>, including updated logo and product name throughout the app interface.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 02 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201570</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1173</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201173</link>
    <description><![CDATA[<div class="p">March 2, 2026—Mobile Security for Business app version 2.0.1173 includes enhancements
               and updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-A1B2C3D4-E5F6-7890-ABCD-EF1234567891__ul_a1b_2cd_e3f">
<li class="li">
<div class="p">Rebrands Trend Micro to <span class="tm">TrendAI™</span>, including updated logo and product name throughout the app interface.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 02 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201173</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>TrendAI Vision One Cloud Risk Management now supports Oracle Cloud Infrastructure Well-Architected Framework</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oci-well-architected-CREM</link>
    <description><![CDATA[<div class="p">March 02, 2026—Cloud Risk Management has released support for the <b class="b">Oracle Cloud Infrastructure Well-Architected Framework</b> (updated 2025) compliance standard. You can now sort OCI checks and generate reports
               based on this best practices framework in Cloud Risk Management.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Misconfiguration and Compliance</b></span></div>]]></description>
    <pubDate>Mon, 02 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-oci-well-architected-CREM</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Agent Interface now includes Identity Security Sensor status</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-interface-identity-security</link>
    <description><![CDATA[<div class="p">March 4, 2026—You can now view the Identity Security Sensor status for your endpoints
               from the <span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span> Endpoint Security Agent Interface <b class="uicontrol">Security capability status</b> menu.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Agent Interface</b></span></div>]]></description>
    <pubDate>Wed, 04 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-interface-identity-security</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1579</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201579</link>
    <description><![CDATA[<div class="p">March 9, 2026—Mobile Security for Business app Android version 2.0.1579 includes bug
               fixes and enhancements.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-823FB1E4-152D-4350-8035-DBDBF1EB3223__ul_rn_1579_changes">
<li class="li">
<div class="p">Add timeout to stop if the enrollment step keep loading</div>
</li>
<li class="li">
<div class="p">Fix the bug that old user turn on whole device protection in multi-profile MDD</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 09 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201579</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Endpoint Alerts now officially released</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-alerts-officially-released</link>
    <description><![CDATA[<div class="p">March 9, 2026—Endpoint Alerts is now officially released, providing a centralized
               location to view and manage security and system alerts your endpoint agents generate.</div><div class="p">Endpoint Alerts provides two key features: configurable alerts in Notifications, and
               a centralized list view in Endpoint Security. In Notifications, you can configure
               alert watchlists for both security and system events, ensuring the most important
               and critical notifications are sent immediately to your team. With Endpoint Alerts,
               you can view each alert on your watchlists in detail including severity and affected
               endpoints.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-alerts#concept_mss_1k4_ygc">Endpoint Alerts</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Alerts</b></span></div>]]></description>
    <pubDate>Mon, 09 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-alerts-officially-released</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Add internet-facing assets to the exception list to prevent discovery and assessment</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-easm-exception-list-whatsnew</link>
    <description><![CDATA[<div class="p">March 9, 2026—You can now add non-seed internet-facing domains and IP addresses to
               the exception list in <b class="wintitle" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b>. Adding internet-facing assets to the exception list removes the assets from the
               asset list, excludes them from organization cyber risk assessments including Cyber
               Risk Index calculation, and prevents rediscovery. Only non-seed domains and IP addresses
               can be added to the exception list. To manage seed domains and IP addresses, remove
               them from Seed Management.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Continuous Risk Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Surface Discovery</b></span></div>]]></description>
    <pubDate>Mon, 09 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-easm-exception-list-whatsnew</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows server version 2.32.1049</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-winserver-v-2-32-1049</link>
    <description><![CDATA[<div class="p">March 10, 2026—The latest version of the Zero Trust Secure Access Module for Windows
               has been released. It contains resolved issues and replaces Windows version 2.32.1036.</div><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_fnc_qgr_43c__ul_yh1_2rr_43c">
<li class="li">Resolved an issue where the internet access status frequently toggled between connected,
                  connecting, and disconnected.</li>
</ul>]]></description>
    <pubDate>Tue, 10 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-winserver-v-2-32-1049</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Template Scanner now supports additional AWS resources in Terraform</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-aws-CREM</link>
    <description><![CDATA[<div class="p">March 10, 2026—The following AWS resources are now supported by Template Scanner in
               Terraform:</div><ul class="ul" id="WhatsNew_2026_03_09_CRM_Template_Scanner_AWS_25609cd1_afb6_4542_ad3c_433c00f8c26d__ul_aws_resources_terraform">
<li class="li">
<div class="p">Bedrock Agent</div>
</li>
<li class="li">
<div class="p">Bedrock Custom Model</div>
</li>
<li class="li">
<div class="p">Bedrock Guardrail</div>
</li>
<li class="li">
<div class="p">Bedrock Knowledge Base</div>
</li>
<li class="li">
<div class="p">Bedrock Model Invocation Logging Configuration</div>
</li>
<li class="li">
<div class="p">IAM Certificate</div>
</li>
<li class="li">
<div class="p">IAM Account Password Policy</div>
</li>
<li class="li">
<div class="p">IAM OpenID Connect Provider</div>
</li>
<li class="li">
<div class="p">IAM SAML Provider</div>
</li>
<li class="li">
<div class="p">IAM User</div>
</li>
<li class="li">
<div class="p">SageMaker Domain</div>
</li>
<li class="li">
<div class="p">SageMaker Endpoint</div>
</li>
<li class="li">
<div class="p">SageMaker Endpoint Config</div>
</li>
<li class="li">
<div class="p">SageMaker Model</div>
</li>
<li class="li">
<div class="p">SageMaker Notebook Instance</div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Template Scanner</b></span></div>]]></description>
    <pubDate>Tue, 10 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-template-scanner-aws-CREM</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 2.0.10</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-2010</link>
    <description><![CDATA[<div class="p">March 11, 2026—Service Gateway: Forward Proxy Service Version 2.0.10 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_sgfps_2010__ul_sgfps_2010_changes">
<li class="li">
<div class="p">This update applies some vulnerability fixes.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 11 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-2010</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Generic Caching Service 1.0.7</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-107</link>
    <description><![CDATA[<div class="p">March 11, 2026—Service Gateway: Generic Caching Service 1.0.7 includes enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_sggcs_107__ul_sggcs_107_changes">
<li class="li">
<div class="p">This update enhances log rotation with compression and reduced retention period.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 11 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-generic-caching-service-107</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.27</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-3027</link>
    <description><![CDATA[<div class="p">March 11, 2026—Service Gateway Firmware Version 3.0.27 includes enhancements, bug
               fixes, and security updates for Service Gateway.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_sgfw_3027__ul_sgfw_3027_changes">
<li class="li">
<div class="p">This update adds custom CA certificate support for hosted services.</div>
</li>
<li class="li">
<div class="p">This update enhances concurrent connection tracking for pods not using the host network.</div>
</li>
<li class="li">
<div class="p">This update improves iptables multiport rule management to prevent duplicate rules.</div>
</li>
<li class="li">
<div class="p">This update adds support for uploading large logs to <span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
<li class="li">
<div class="p">This update adds a feature to avoid service updates when disk space is insufficient.</div>
</li>
<li class="li">
<div class="p">This update fixes custom port configuration overwriting UDP ports.</div>
</li>
<li class="li">
<div class="p">This update fixes duplicate iptables multiport rules causing zero traffic count.</div>
</li>
<li class="li">
<div class="p">This update fixes CA trust store update validation during appliance upgrade.</div>
</li>
<li class="li">
<div class="p">This update applies some vulnerability fixes.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 11 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-3027</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Container Protection for Amazon ECS version 2.0.3</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-ecs-v2-0-3</link>
    <description><![CDATA[<div class="p">March 11, 2026—Container Protection for Amazon ECS version 2.0.3 is now available.</div><ul class="ul" id="whatsnew_slr_grd_43c__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b></div>
<ul class="ul" id="whatsnew_slr_grd_43c__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Amazon Web Services (AWS)</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_slr_grd_43c__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Added option to disable automated patching/install for Scout daemon and Fargate sidecar.</div>
</li>
<li class="li">
<div class="p">Added option to configure log level.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Big fixes</b></div>
<ul class="ul" id="whatsnew_slr_grd_43c__ul_z5c_nrd_43c">
<li class="li">
<div class="p">Fixed issue where some vulnerability occurrences were missing.</div>
</li>
<li class="li">
<div class="p">Reduced error logging for expected retry scenarios.</div>
</li>
<li class="li">
<div class="p">Fixed parameters from the CAM template not being applied to ECS protection stack.</div>
</li>
<li class="li">
<div class="p">Fixed issue where only a limited number of Fargate services received runtime security
                           sidecar injection.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Wed, 11 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-ecs-v2-0-3</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Helm Chart 3.3.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-334</link>
    <description><![CDATA[<div class="p">March 12, 2026—The Helm Chart 3.3.4 release includes the following:</div><ul class="ul" id="whatsnew_i33_bc1_p3c__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_i33_bc1_p3c__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">Increased <code class="codeph">auth</code> token rotation interval to reduce offline issues due to maintenance.</div>
</li>
<li class="li">
<div class="p">Enhanced scan results with detailed failure reasons for FAIL statuses.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_i33_bc1_p3c__ul_vqr_sky_qhc">
<li class="li">
<div class="p">Fixed an issue where vulnerability scan jobs didn't follow the concurrent job limit.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where malware and secret scan jobs failed when CRI runtime was configured.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where the admission controller would block malware and secret scan
                           jobs with some policies.</div>
</li>
<li class="li">
<div class="p">Updated GKE workload <code class="codeph">allowlist</code> to fix compatibility with GKE Autopilot clusters.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where scout couldn't connect to the kubernetes metacollector on EKS
                           Fargate.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_i33_bc1_p3c__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_i33_bc1_p3c__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.3.4.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_i33_bc1_p3c__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.4" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.4</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Thu, 12 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-334</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Context menu action &quot;Collect Quarantined File&quot; now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-collect-quarantined-file-announce</link>
    <description><![CDATA[<div class="p">March 12, 2025—The "Collect Quarantined File" action is now available in context menus
               within Workbench, Observed Attack Techniques, or XDR Data Explorer.</div><div class="p">Streamline your incident response with new quarantined file actions available across
               multiple investigation workflows. When investigating alerts and insights in Workbench,
               Observed Attack Techniques, or XDR Data Explorer, the system automatically detects
               quarantined files and displays the "Collect Quarantined File" action in context menus,
               replacing standard file collection for files quarantined by Standard Endpoint Protection
               and Server &amp; Workload Protection. You can also restore or delete quarantined files
               from Endpoint Event Viewer using the Anti-Malware Identified file event view.</div><div class="p">For more information about Endpoint Event Viewer, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-event-viewer#concept_yxn_znh_yhc">Endpoint Event Viewer</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Workflow and Automation</b> → <b class="uicontrol">Response Management</b></span></div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Event Viewer</b></span></div>]]></description>
    <pubDate>Thu, 12 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-collect-quarantined-file-announce</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Endpoint Event Viewer now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-event-viewer-prerelease</link>
    <description><![CDATA[<div class="p">March 12, 2026—You can now view endpoint security events and system events in Endpoint
               Event Viewer.</div><div class="p">The Endpoint Event Viewer provides a single location to view security and system events
               across your endpoints with the <span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent installed. You can filter each event list by data fields,
               endpoint groups, and custom tags. Each list supports exporting events to a CSV file.</div><div class="p">Additionally, you can view and manage quarantined files and quarantine events in the
               Anti-Malware list Identified file event view.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-event-viewer#concept_yxn_znh_yhc">Endpoint Event Viewer</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Event Viewer</b></span></div>]]></description>
    <pubDate>Thu, 12 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-event-viewer-prerelease</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Centralized quarantine management with Response actions for endpoints now available with Endpoint Event Viewer</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-centralized-quarantine-management</link>
    <description><![CDATA[<div class="p">March 12, 2026—You can now view, manage, and take Response actions on quarantined
               files in Endpoint Event Viewer.</div><div class="p">The Anti-Malware list <b class="wintitle">Identified file event view</b> provides a centralized location where you can manage files Anti-Malware has quarantined
               on your endpoints. From the view, you can take three Response actions: Delete, Collect,
               and Restore quarantined files.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-identified-file-event-view#concept_t4t_qq3_yhc">Anti-Malware Identified file event view</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Event Viewer</b></span></div>]]></description>
    <pubDate>Thu, 12 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-centralized-quarantine-management</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Duplicate action now available for all Policy Resources</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-duplicate-action-policy-resources</link>
    <description><![CDATA[<div class="p">March 13, 2026—You can now use the duplicate action for all rules, lists, and schedules
               in Policy Resources.</div><div class="p">Policy Resources has expanded the duplicate action to include the following resource
               types:</div><ul class="ul" id="whatsnew_p2q_bl4_43c__ul_qzr_jl4_43c">
<li class="li">
<div class="p">File Extension Lists</div>
</li>
<li class="li">
<div class="p">Web Lists</div>
</li>
<li class="li">
<div class="p">IP Lists</div>
</li>
<li class="li">
<div class="p">Port Lists</div>
</li>
<li class="li">
<div class="p">Schedules</div>
</li>
</ul><div class="p">With this enhancement, all resource types, except authorization tokens, can be duplicated.
               For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-security-policy-resources#concept_f12_dz5_hfc">Policy Resources</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Policy Resources</b></span></div>]]></description>
    <pubDate>Fri, 13 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-duplicate-action-policy-resources</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Device vulnerability data support for some Third-Party Integrations connectors</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-TPI-device-vulnerability-data</link>
    <description><![CDATA[<div class="p">March 13, 2026—You can now select <b class="uicontrol">Device Vulnerabilities</b> as a data scope for the following outbound connectors: Google Security Operations
               SIEM, Splunk HEC Connector, and AWS S3 Bucket Connector. This lets you send device
               vulnerability data to your SIEM or storage destination.</div><div class="p">To learn more, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-data-spec-for-aws-s3-buckets#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-mfvul3">Data specification for AWS S3
                  buckets</a>, <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-google-secops#task_ycg_pdc_n2c">Google Security Operations SIEM integration</a>, and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-splunk-hec-connector-configuration#splunk_hec_connector">Splunk HEC connector configuration</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Third-Party Integrations</b></span></div>]]></description>
    <pubDate>Fri, 13 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-TPI-device-vulnerability-data</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>DKIM Sign Enhancement</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dkim-sign-enhancement</link>
    <description><![CDATA[<div class="p">March 16, 2026—<span class="tm">TrendAI™</span> Email Security now supports header-sender signing, oversigning, and unlimited body
               signing within the Outbound DKIM Signing settings. These enhancements allow administrators
               to apply DKIM signatures to messages based on a specified header-sender domain.</div>]]></description>
    <pubDate>Mon, 16 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-dkim-sign-enhancement</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>Enhanced search and filtering for User Accounts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-accounts-2026-03-18-wn</link>
    <description><![CDATA[<div class="p">March 18, 2026—The User Accounts app now includes a <b class="uicontrol">Last sign-in</b> column, a <b class="uicontrol">Created date</b> column, and a search bar for finding accounts by email. It also includes new filters
               for <b class="uicontrol">Account type</b>, <b class="uicontrol">Role name</b>, and <b class="uicontrol">Last sign-in date</b> (30, 60, 90, or 180 days) to help administrators identify and manage inactive accounts.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">User Accounts</b></span></div>]]></description>
    <pubDate>Wed, 18 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-user-accounts-2026-03-18-wn</guid>
    <category>Administration</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent now supports Windows 11 IoT Enterprise LTSC 2024</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-supports-windows-11-iot-enterprise</link>
    <description><![CDATA[<div class="p">March 18, 2026—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports deployments to endpoints using Windows 11 IoT
               Enterprise LTSC 2024.</div><div class="p">Support for Windows 11 Enterprise LTSC 2024 includes deploying the agent with Standard
               Endpoint Protection, Server &amp; Workload Protection and XDR for Endpoints (EDR) features.
               For more information on supported systems, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Wed, 18 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-supports-windows-11-iot-enterprise</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.80</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-80</link>
    <description><![CDATA[<div class="p">March 23, 2026—The Zero Trust Secure Access On-premises Gateway version 1.0.80 contains
               enhancements.</div><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_ujh_sg3_q3c__ul_np2_hh3_q3c">
<li class="li">
<div class="p">Enhanced device posture checking in Internet Access and AI Service Access rules.</div>
</li>
<li class="li">
<div class="p">Updated the prompt injection detection service for on-premises gateway with AI.</div>
</li>
<li class="li">
<div class="p">Fixed issues caused by protocol changes in Microsoft Copilot for Bing.</div>
</li>
<li class="li">
<div class="p">Enhanced scanning of files uploaded to Google Drive by adding base64 decoding support.</div>
</li>
<li class="li">
<div class="p">Enhanced scanning for large archive files downloaded from internet.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-80</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.200.be30965</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-audit-logs-gcp</link>
    <description><![CDATA[<div class="p">March 23, 2026—The Agentless Vulnerability &amp; Threat Detection version 1.200.be30965
               release introduces audit log support for Google Cloud. Scan lifecycle events and resource-level
               errors are now recorded in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Audit Logs on a per-region basis, giving security teams visibility into when scans
               start, progress, complete, and encounter failures across each cloud region.</div><ul class="ul" id="RN_2026_03_31_GCP_AVTD_audit_logs_c3d4e5f6_a7b8_9012_3456_789012cdefgh__ul_gcp_avtd_audit_logs">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Google Cloud</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: March 23, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New feature</b>:</div>
<ul class="ul" id="RN_2026_03_31_GCP_AVTD_audit_logs_c3d4e5f6_a7b8_9012_3456_789012cdefgh__ul_avtd_audit_feature">
<li class="li">
<div class="p">Agentless Vulnerability &amp; Threat Detection now generates entries in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
<span class="menucascade"><b class="uicontrol">Audit Logs</b> → <b class="uicontrol">System Logs</b></span> under the <b class="uicontrol">Agentless Vulnerability &amp; Threat Detection</b> category. The following events are recorded:</div>
<ul class="ul" id="RN_2026_03_31_GCP_AVTD_audit_logs_c3d4e5f6_a7b8_9012_3456_789012cdefgh__ul_audit_events">
<li class="li">
<div class="p"><b class="uicontrol">Scan started</b>: Logged per region when a scan begins, including the scan trigger type, cloud provider,
                                 account ID, region, and a count of disks and container images targeted for scanning
                                 in that region.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Scan in progress</b>: Logged per region as the scan advances, showing the current completion percentage.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Scan completed</b>: Logged per region when a scan finishes, highlighting the total duration, and the
                                 number of resources successfully scanned out of the total targeted resources.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Resource scan error</b>: Logged when an individual resource cannot be scanned, including the account ID,
                                 resource type, resource ID, region, and the underlying error message.</div>
</li>
</ul>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" id="RN_2026_03_31_GCP_AVTD_audit_logs_c3d4e5f6_a7b8_9012_3456_789012cdefgh__cloudAccountsGCPpath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Google Cloud</b></span></div>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-audit-logs-gcp</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.603.03150442</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-audit-logs-aws</link>
    <description><![CDATA[<div class="p">March 23, 2026—The Agentless Vulnerability &amp; Threat Detection version 1.603.03150442
               release introduces audit log support for AWS. Scan lifecycle events and resource-level
               errors are now recorded in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Audit Logs on a per-region basis, giving security teams visibility into when scans
               start, progress, complete, and encounter failures across each cloud region.</div><ul class="ul" id="RN_2026_03_31_AWS_AVTD_audit_logs_a1b2c3d4_e5f6_7890_1234_567890abcdef__ul_aws_avtd_audit_logs">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: March 23, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: CloudFormation, Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New feature</b>:</div>
<ul class="ul" id="RN_2026_03_31_AWS_AVTD_audit_logs_a1b2c3d4_e5f6_7890_1234_567890abcdef__ul_avtd_audit_feature">
<li class="li">
<div class="p">Agentless Vulnerability &amp; Threat Detection now generates entries in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
<span class="menucascade"><b class="uicontrol">Audit Logs</b> → <b class="uicontrol">System Logs</b></span> under the <b class="uicontrol">Agentless Vulnerability &amp; Threat Detection</b> category. The following events are recorded:</div>
<ul class="ul" id="RN_2026_03_31_AWS_AVTD_audit_logs_a1b2c3d4_e5f6_7890_1234_567890abcdef__ul_audit_events">
<li class="li">
<div class="p"><b class="uicontrol">Scan started</b>: Logged per region when a scan begins, including the scan trigger type, cloud provider,
                                 account ID, region, and a count of disks, container images, and serverless functions
                                 targeted for scanning in that region.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Scan in progress</b>: Logged per region as the scan advances, showing the current completion percentage.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Scan completed</b>: Logged per region when a scan finishes, highlighting the total duration, and the
                                 number of resources successfully scanned out of the total targeted resources.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Resource scan error</b>: Logged when an individual resource cannot be scanned, including the account ID,
                                 resource type, resource ID, region, and the underlying error message.</div>
</li>
</ul>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancement</b>:</div>
<ul class="ul" id="RN_2026_03_31_AWS_AVTD_audit_logs_a1b2c3d4_e5f6_7890_1234_567890abcdef__ul_avtd_enhancement">
<li class="li">
<div class="p">Introduced anti-malware scan caching for scanned machine AMI, reducing redundant scans
                           and improving overall scanning efficiency.</div>
</li>
<li class="li">
<div class="p">Improved scanning performance for EBS volumes by supporting an additional direct-access
                           scanning method.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-audit-logs-aws</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.175.71e5c1c</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-audit-logs-azure</link>
    <description><![CDATA[<div class="p">March 23, 2026—The Agentless Vulnerability &amp; Threat Detection version 1.175.71e5c1c
               release introduces audit log support for Azure. Scan lifecycle events and resource-level
               errors are now recorded in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Audit Logs on a per-region basis, giving security teams visibility into when scans
               start, progress, complete, and encounter failures across each cloud region.</div><ul class="ul" id="RN_2026_03_31_Azure_AVTD_audit_logs_b2c3d4e5_f6a7_8901_2345_678901bcdefg__ul_azure_avtd_audit_logs">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Azure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: March 23, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New feature</b>:</div>
<ul class="ul" id="RN_2026_03_31_Azure_AVTD_audit_logs_b2c3d4e5_f6a7_8901_2345_678901bcdefg__ul_avtd_audit_feature">
<li class="li">
<div class="p">Agentless Vulnerability &amp; Threat Detection now generates entries in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>
<span class="menucascade"><b class="uicontrol">Audit Logs</b> → <b class="uicontrol">System Logs</b></span> under the <b class="uicontrol">Agentless Vulnerability &amp; Threat Detection</b> category. The following events are recorded:</div>
<ul class="ul" id="RN_2026_03_31_Azure_AVTD_audit_logs_b2c3d4e5_f6a7_8901_2345_678901bcdefg__ul_audit_events">
<li class="li">
<div class="p"><b class="uicontrol">Scan started</b>: Logged per region when a scan begins, including the scan trigger type, cloud provider,
                                 account ID, region, and a count of disks and container images targeted for scanning
                                 in that region.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Scan in progress</b>: Logged per region as the scan advances, showing the current completion percentage.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Scan completed</b>: Logged per region when a scan finishes, highlighting the total duration, and the
                                 number of resources successfully scanned out of the total targeted resources.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Resource scan error</b>: Logged when an individual resource cannot be scanned, including the account ID,
                                 resource type, resource ID, region, and the underlying error message.</div>
</li>
</ul>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancement</b>:</div>
<ul class="ul" id="RN_2026_03_31_Azure_AVTD_audit_logs_b2c3d4e5_f6a7_8901_2345_678901bcdefg__ul_ovn_f5t_r3c">
<li class="li">
<div class="p">Removed automatic creation of the deprecated <code class="codeph">AzureWebJobsDashboard</code> parameter in the Agentless Vulnerability &amp; Threat Detection scanner's Azure Function
                           Apps, eliminating unnecessary configuration settings and aligning with Microsoft's
                           current best practices for improved security and cleaner deployments.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" id="RN_2026_03_31_Azure_AVTD_audit_logs_b2c3d4e5_f6a7_8901_2345_678901bcdefg__cloudAccountsAzurepath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Azure</b></span></div>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-audit-logs-azure</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1582</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201582</link>
    <description><![CDATA[<div class="p">March 23, 2026—Mobile Security for Business app Android version 2.0.1582 includes
               bug fixes and enhancements.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-A3B4C5D6-E7F8-9012-ABCD-EF3456789012__ul_rn_1582_changes">
<li class="li">
<div class="p">Improved the manual log collection process.</div>
</li>
<li class="li">
<div class="p">Enhanced overall stability of the mobile agent for better performance and reliability.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201582</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1176</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201176</link>
    <description><![CDATA[<div class="p">March 23, 2026—Mobile Security for Business app iOS version 2.0.1176 includes bug
               fixes and enhancements.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-B4C5D6E7-F890-1234-BCDE-FA4567890123__ul_rn_1176_changes">
<li class="li">
<div class="p">Improved the manual log collection process.</div>
</li>
<li class="li">
<div class="p">Enhanced overall stability of the mobile agent for better performance and reliability.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201176</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent now supports Red Hat Enterprise Linux 10 ARM64 (AArch64)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-supports-red-hat-10-arm64</link>
    <description><![CDATA[<div class="p">March 23, 2026—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports deployments to endpoint using Red Hat Enterprise
               Linux 10 ARM64 (AArch64).</div><div class="p">Support for Red Hat Enterprise Linux 10 ARM64 (AArch64) includes deploying the agent
               with Server &amp; Workload Protection and XDR for Endpoint (EDR) features. For more information
               on supported systems, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-supports-red-hat-10-arm64</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent now supports SUSE Linux Enterprise Server 16 64-bit (x86-64)</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-supports-suse-server-16-64bit</link>
    <description><![CDATA[<div class="p">March 23, 2026—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports deployments to endpoint using SUSE Linux Enterprise
               Server 16 64-bit (x86-64).</div><div class="p">Support for SUSE Linux Enterprise Server 16 64-bit (x86-64) includes deploying the
               agent with Server &amp; Workload Protection and XDR for Endpoint (EDR) features. For more
               information on supported systems, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-agent-system-requirements#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-xn0jui">TrendAI Vision One™ Endpoint Security agent system requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-agent-supports-suse-server-16-64bit</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Endpoint Inventory provides enhanced information for agent status, filtering, and detailed information</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-new-agent-filter</link>
    <description><![CDATA[<div class="p">March 23, 2026—Endpoint Inventory has enhanced the information available for checking
               the status of your agents and agent components, with new and consolidated data fields
               in the Endpoint Inventory table. This information can be accessed in the detailed
               profile and used to filter the table view. The enhanced information data fields support
               the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent version 202601 and later.</div><div class="p"><b class="uicontrol">Last agent status reported</b> provides a consolidated view of when the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent last connected. It provides both a time range for a quick
               glance and exact time stamp for the last connection. You can filter for endpoints
               by those which connected within a time period or last connected outside of a time
               range (such as within 24 hours or more than 30 days ago). The following data fields
               have been replaced by <b class="uicontrol">Last agent status reported</b>:</div><ul class="ul" id="whatsnew_u13_gld_s3c__ul_z3c_jld_s3c">
<li class="li">
<div class="p">Sensor connectivity</div>
</li>
<li class="li">
<div class="p">Sensor last connected</div>
</li>
<li class="li">
<div class="p">Protection module status</div>
</li>
<li class="li">
<div class="p">Protection module last connected</div>
</li>
</ul><div class="p">The <b class="uicontrol">Credit allocation status field</b> has been renamed to <b class="uicontrol">Package</b> and offers a quick view of which Endpoint Security credits packages are enabled on
               the endpoint. For more information about packages and how credits are calculated,
               see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-credit-calculation-v1es#credit_calculation_for_V1ES_4db2b380_1126_476a_b1de_d61948ad646d">How are credits calculated for TrendAI Vision One™ Endpoint Security?</a>.</div><div class="p">Additionally, the following data fields have been added to provide an overview of
               the status of the endpoint protection features within your environment. Each data
               field provides both the Endpoint Security Policy configuration (enabled/disabled)
               and the status of the module on the endpoint, such as running, not running, or only
               partially running. You can filter by both the configuration setting and module status
               to quickly find endpoints that might need attention.</div><ul class="ul" id="whatsnew_u13_gld_s3c__ul_ajc_jld_s3c">
<li class="li">
<div class="p">Advanced risk telemetry</div>
</li>
<li class="li">
<div class="p">Anti-malware</div>
</li>
<li class="li">
<div class="p">Application Control</div>
</li>
<li class="li">
<div class="p">Browser extension</div>
</li>
<li class="li">
<div class="p">Data security Sensor</div>
</li>
<li class="li">
<div class="p">Device Control</div>
</li>
<li class="li">
<div class="p">Firewall</div>
</li>
<li class="li">
<div class="p">Identity security sensor - Active Directory</div>
</li>
<li class="li">
<div class="p">Integrity monitoring</div>
</li>
<li class="li">
<div class="p">Intrusion prevention</div>
</li>
<li class="li">
<div class="p">Log inspection</div>
</li>
<li class="li">
<div class="p">Sandbox analysis (renamed from Sandbox submission)</div>
</li>
<li class="li">
<div class="p">Web reputation</div>
</li>
<li class="li">
<div class="p">XDR for Endpoints (EDR)</div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-new-agent-filter</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>You can now manage schedules for agent updates using Version Control Policies</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-manage-schedules-agent-updates</link>
    <description><![CDATA[<div class="p">March 23, 2026—Version Control Policies now features options to allow you to manage
               schedules for updating your <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agents.</div><div class="p">Create schedules in Policy Resources and assign them to your policies to control when
               your agents check for software updates. You can control the start time and duration
               window for when agents are allowed to look for updates. Support for scheduling agent
               component updates is coming soon.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-update-policies#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-9q57ks">Version Control Policies</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Version Control Policies</b></span></div>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-manage-schedules-agent-updates</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>New Kubernetes cluster information displayed</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-k8s-createdby-v1cs</link>
    <description><![CDATA[<div class="p">March 23, 2026—You can now see who created a Kubernetes cluster in the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Container Security console. The account or API key that created the cluster is displayed
               in the new <b class="uicontrol">Created by</b> field.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b></span></div>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-k8s-createdby-v1cs</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Flexible notification sequence for Automated Response Playbooks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-flex-note-playbook</link>
    <description><![CDATA[<div class="p">March 23, 2026—Automated Response Playbooks now support a flexible building block
               sequence. You can add a notification action with expanded Workbench alert details
               directly after the target or condition node without requiring a preceding response
               action. This allows security operations teams to forward alert details to third-party
               systems via webhook or email without taking response actions in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-automated-response-playbooks#GUID-BED80320-70E5-47C4-9530-CC26073D469D-36">Manually create Automated Response Playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 23 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-flex-note-playbook</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Helm Chart 3.3.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-335</link>
    <description><![CDATA[<div class="p">March 24, 2026—The Helm Chart 3.3.5 release includes the following:</div><ul class="ul" id="whatsnew_img_f4h_53c__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Features</b></div>
<ul class="ul" id="whatsnew_img_f4h_53c__ul_vqr_sky_qhc">
<li class="li">
<div class="p">Support RBAC audit log collection for EKS, GKE, AKS, and self managed clusters.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_img_f4h_53c__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">Allows scanner and scout to only access the malware scanner.</div>
</li>
<li class="li">
<div class="p">Changed images to be FIPS compliant images.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_img_f4h_53c__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_img_f4h_53c__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.3.5.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_img_f4h_53c__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.5" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.5</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Tue, 24 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-335</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Container Protection for Amazon ECS version 2.0.4</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-ecs-v2-0-4</link>
    <description><![CDATA[<div class="p">March 25, 2026—Container Protection for Amazon ECS version 2.0.4 is now available.</div><ul class="ul" id="whatsnew_x5k_vhy_s3c__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b></div>
<ul class="ul" id="whatsnew_x5k_vhy_s3c__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Amazon Web Services (AWS)</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_x5k_vhy_s3c__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Changed scout, falco, pdig to be FIPS compliant.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Big fixes</b></div>
<ul class="ul" id="whatsnew_x5k_vhy_s3c__ul_z5c_nrd_43c">
<li class="li">
<div class="p">Fixed delay with populating ECS inventory after install.</div>
</li>
<li class="li">
<div class="p">Fixed image URI parameters not using the new default.</div>
</li>
<li class="li">
<div class="p">Fixed occasional issue where Scout init containers are stuck in running status.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Wed, 25 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-ecs-v2-0-4</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Risk Management now supports managing Misconfiguration and Compliance using Terraform</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-terraform-provider-CREM</link>
    <description><![CDATA[<div class="p">March 25, 2026—Cloud Risk Management now supports set up and management of Misconfiguration
               and Compliance features using Terraform. The functionality includes managing the following
               resources:</div><ul class="ul" id="WhatsNew_2026_03_25_CRM_Terraform_Provider_1c00e9d2_3802_4f5a_87d4_368c306984f7__ul_crm_terraform_provider">
<li class="li">
<div class="p">Groups</div>
</li>
<li class="li">
<div class="p">Profiles</div>
</li>
<li class="li">
<div class="p">Custom rules</div>
</li>
<li class="li">
<div class="p">Reports</div>
</li>
<li class="li">
<div class="p">Communication channels</div>
</li>
</ul><div class="p">For details, see the <a class="xref" href="https://registry.terraform.io/providers/trendmicro/vision-one/latest" target="_blank">Vision One provider in the Terraform registry</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Misconfiguration and Compliance</b></span></div>]]></description>
    <pubDate>Wed, 25 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-terraform-provider-CREM</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Updated compliance standards: CIS Foundations Benchmarks</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cis-azure-foundations-benchmark-v5</link>
    <description><![CDATA[<div class="p">March 25, 2026—We have updated our compliance standards to meet the Center of Internet
               Security (CIS) Foundations Benchmarks. You can now filter Checks and download Compliance
               Reports to ensure your cloud environment complies with the latest CIS Foundations
               Benchmarks.</div><ul class="ul" id="cis_azure_v5_wn__ul_cis_azure_v5_standards">
<li class="li">
<div class="p">CIS Azure Foundations Benchmark v5.0.0</div>
</li>
<li class="li">
<div class="p">CIS Oracle Cloud Infrastructure Foundations Benchmark v3.1.0</div>
</li>
</ul><div class="p"><b class="b">Deprecation notice</b></div><div class="p">CIS Azure Foundations Benchmark v3.0.0 is no longer supported and is scheduled for
               removal on <b class="b">April 29, 2026</b>. It will no longer be accessible in filters, preventing the creation of new reports
               or report configurations with this outdated benchmark. If any existing report configurations
               include this compliance standard, it will not be possible to generate new PDF or CSV
               reports. However, previously generated PDF and CSV reports remain available.</div><div class="p">We recommend updating your report configurations to use the latest versions of CIS
               Azure Foundations Benchmark before <b class="b">June 25, 2026</b>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Misconfiguration and Compliance</b></span>
</div>]]></description>
    <pubDate>Wed, 25 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cis-azure-foundations-benchmark-v5</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Virtual Network Sensor version 1.0.1646</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101646</link>
    <description><![CDATA[<div class="p">March 30, 2026—Virtual Network Sensor version 1.0.1646 includes enhancements, bug
               fixes, and
               security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_ljl_hf5_y3c__ul_d2y_xhb_r2c">
<li class="li">
<div class="p">Virtual Network Sensor supports VMware NSX (Network Virtualization and Security
                     Platform).</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-vns-101646</guid>
    <category>Network Security</category>
</item>
<item>
    <title>Cloud Detections for AWS CloudTrail version 1.50.2</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloudtrail-version-1-50-0</link>
    <description><![CDATA[<div class="p">March 30, 2026—The Cloud Detections for AWS CloudTrail version 1.50.2 release includes
               security enhancements and vulnerability fixes.</div><ul class="ul" id="RN_2026_03_30_aws_cloudtrail_1_50_0_b1c2d3e4_5f6a_7b8c_9d0e_1f2a3b4c5d6e__ul_cloudtrail_1_50_0">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: March 30, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: AWS CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Affected features</b>:</div>
<ul class="ul" id="RN_2026_03_30_aws_cloudtrail_1_50_0_b1c2d3e4_5f6a_7b8c_9d0e_1f2a3b4c5d6e__ul_affected_features">
<li class="li">
<div class="p">Cloud Detections for AWS CloudTrail (AWS CloudTrail with Control Tower)</div>
</li>
<li class="li">
<div class="p">Cloud Detections for AWS Security Lake</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancement</b>:</div>
<ul class="ul" id="RN_2026_03_30_aws_cloudtrail_1_50_0_b1c2d3e4_5f6a_7b8c_9d0e_1f2a3b4c5d6e__ul_enhancement">
<li class="li">
<div class="p">Vulnerabilities fix: CVE-2025-45768</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloudtrail-version-1-50-0</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Microsoft Defender for Endpoint Log Collection version 1.0.74</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mde-log-collection-version-1-0-74</link>
    <description><![CDATA[<div class="p">March 30, 2026—Microsoft Defender for Endpoint Log Collection version 1.0.74 introduces
               a redesigned ingestion architecture that improves performance and supports larger
               log entries.</div><div class="important">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">
<div class="p">This release includes a breaking change. The Table Storage ingestion pipeline has
                              been removed and replaced with an event-driven Blob Storage pipeline. Existing data
                              in Table Storage will not be carried over to the new architecture. This is by design,
                              as <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> focuses on real-time threat alerting rather than historical log retention.</div>
</div>
</td>
</tr>
</table>
</div><ul class="ul" id="RN_2026_03_30_MDE_log_collection_1_0_74__ul_mde_log_collection">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Azure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: March 30, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b>:</div>
<ul class="ul" id="RN_2026_03_30_MDE_log_collection_1_0_74__ul_enhancements">
<li class="li">
<div class="p">Redesigned ingestion architecture from Table Storage to an event-driven Blob Storage
                           pipeline, improving scalability and reliability.</div>
</li>
<li class="li">
<div class="p">Increased support for log entries larger than 64 KB, enabling processing of more comprehensive
                           security event data.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Breaking change</b>:</div>
<ul class="ul" id="RN_2026_03_30_MDE_log_collection_1_0_74__ul_breaking_change">
<li class="li">
<div class="p">The Table Storage ingestion pipeline has been completely removed. Existing data stored
                           in Table Storage will not be migrated to the new Blob Storage architecture.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b></span></div>]]></description>
    <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mde-log-collection-version-1-0-74</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Upgraded compliance scan support for new benchmark versions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-upgraded-CS-benchmarks-03-2026</link>
    <description><![CDATA[<div class="p">March 30, 2026—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now has enhanced compliance scanning capabilities for the following latest CIS benchmark
               versions for Container Security:</div><ul class="ul" id="whatsnew_gnb_w1y_s3c__ul_kwf_12n_khc">
<li class="li">
<div class="p">CIS Amazon Elastic Kubernetes Service (EKS) Benchmark v1.8.0</div>
</li>
<li class="li">
<div class="p">CIS Kubernetes Benchmark v1.12.1</div>
</li>
<li class="li">
<div class="p">CIS Google Kubernetes Engine (GKE) Benchmark v1.9.0</div>
</li>
<li class="li">
<div class="p">CIS Azure Kubernetes Service (AKS) Benchmark v1.8.0 </div>
</li>
</ul><div class="p">Select a specific benchmark version to apply to each cluster type, ensuring your Kubernetes
               environments adhere to the latest security standards and best practices.</div><div class="important" id="whatsnew_gnb_w1y_s3c__note_plh_hkn_khc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">
<div class="p">Starting March 30, 2026, the following benchmark versions will start to be deprecated:</div>
<ul class="ul" id="whatsnew_gnb_w1y_s3c__ul_mjf_hby_s3c">
<li class="li">
<div class="p">CIS Amazon Elastic Kubernetes Service (EKS) v1.5.0</div>
</li>
<li class="li">
<div class="p">CIS Kubernetes Benchmark v1.9.0</div>
</li>
<li class="li">
<div class="p">CIS Google Kubernetes Engine (GKE) Benchmark v1.7.0</div>
</li>
</ul>
<div class="p">Support for these versions will end May 30, 2026.</div>
</div>
</td>
</tr>
</table>
</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">Container Security</b> → <b class="uicontrol">Inventory/Overview</b></span></div>]]></description>
    <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-upgraded-CS-benchmarks-03-2026</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>File Security Virtual Appliance has expanded scanning capabilities</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fsva-expanded-scanning-capabilities</link>
    <description><![CDATA[<div class="p">March 30, 2026—File Security Virtual Appliance now supports:</div><ul class="ul" id="whatsnew_lty_bwv_s3c__ul_mz3_kwv_s3c">
<li class="li">
<div class="p">ICAP scans. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-virtual-appliance-support-icap-scan#concept_h4p_2kv_s3c">Virtual Appliance support for ICAP scan</a>.</div>
</li>
<li class="li">
<div class="p">Scan policy configuration. For more information, see<a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fs-va-compressed-file-scan-settings#concept_alq_z4z_r3c">Configure file scan policy settings</a> .</div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">File Security</b> → <b class="uicontrol">Virtual Appliance</b></span></div>]]></description>
    <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fsva-expanded-scanning-capabilities</guid>
    <category>File Security</category>
</item>
<item>
    <title>IP geolocation details now available in Workbench insights and alerts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-ip-geolocation</link>
    <description><![CDATA[<div class="p">March 30, 2026—Geolocation information is now available for IP addresses displayed
               in Workbench insights and alerts. Quickly identify the geographic origin of network
               traffic and determine whether an alert or activity poses a genuine threat to your
               environment.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-alert-details#GUID-545BA457-5C4D-483D-BC65-945C100BA1CB">Alert details</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insight-details#GUID-4BF42FE6-5079-4760-886A-47B8D22D2148">Workbench insight details</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-ip-geolocation</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Email notifications include vulnerability attachments</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-playbooks-vuln-attach</link>
    <description><![CDATA[<div class="p">March 30, 2026—Security Playbook email notifications for risk events related to common
               vulnerabilities and exposures (CVE) now include a detailed comma-separated value (CSV)
               attachment. This CSV file provides comprehensive information such as event metadata,
               risk event details, asset names, and asset attributes, mirroring the content available
               in console exports. With this update, you can quickly access vulnerable device details
               directly from the email notification, eliminating the need to sign in to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> to retrieve the device list.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-create-cves-global-exploit-playbook#GUID-BF745E87-9F19-4B44-8C77-6B4B285B07A5">Manually create CVEs with Global Exploit Activity playbooks</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Workflow and Automation</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-playbooks-vuln-attach</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Enhanced search experience for Workbench alerts and insights</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-search-enhancement</link>
    <description><![CDATA[<div class="p">March 30, 2026—On the All Alerts (<span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Workbench</b> → <b class="uicontrol">All Alerts</b></span>) and Workbench Insights tabs (<span class="menucascade"><b class="uicontrol">Agentic SIEM &amp; XDR</b> → <b class="uicontrol">Workbench</b> → <b class="uicontrol">Workbench Insights</b></span>), you can now search alerts or insights by typing keywords in the search bar and
               pressing enter. This enhancement reduces unnecessary API data loading and provides
               a smoother experience.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-all-alerts#GUID-887C8BBB-C6BD-4859-B3AF-080B4CAC9034">All Alerts</a> and <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-workbench-insights#GUID-86CD9AB6-4CAD-4E08-B948-FA2373A1C555">Workbench insights</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wb-search-enhancement</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Vulnerability search database in Threat Intelligence Hub</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-intelligence-vulnerabilities</link>
    <description><![CDATA[<div class="p">March 30, 2026—Threat Intelligence Hub now provides a Vulnerability tab that provides
               a searchable vulnerability database. You can search any common vulnerability and exposure
               (CVE), offering clear visibility into detection coverage across your environment.</div><div class="p">The Vulnerability tab includes quick access to the following information:</div><ul class="ul">
<li class="li">
<div class="p">Trending vulnerabilities with rising relevance over the past week based on severity,
                     community activity, and other indicators</div>
</li>
<li class="li">
<div class="p">Actively exploited vulnerabilities for CVEs with newly available exploits that may
                     require immediate remediation</div>
</li>
<li class="li">
<div class="p">Detection coverage visibility showing whether Cyber Risk Exposure Management can detect
                     specific vulnerabilities</div>
</li>
<li class="li">
<div class="p">Detailed vulnerability profiles with exploitability information, including whether
                     a vulnerability is actively exploited, has publicly available exploits, or has triggered
                     XDR alerts</div>
</li>
</ul><div class="p">For details, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vulnerabilities" target="_blank">Vulnerabilities</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Threat Intelligence</b> → <b class="uicontrol">Threat Intelligence Hub</b></span></div>]]></description>
    <pubDate>Mon, 30 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-intelligence-vulnerabilities</guid>
    <category>Threat Intelligence</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector version 2.38.0.1783</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-38-0-1783</link>
    <description><![CDATA[<div class="p">March 31st, 2026—Zero Trust Secure Access Private Access Connector Version 2.38.0.1783
               delivers the following new features and enhancements</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_kxt_5x5_w3c__ul_yhh_3y5_w3c">
<li class="li">
<div class="p">Added support for real-time streaming of connector diagnostic logs.</div>
</li>
<li class="li">
<div class="p">Added support for the upcoming South Africa home site.</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_kxt_5x5_w3c__ul_kh1_ky5_w3c">
<li class="li">
<div class="p">Extended the log rotation mechanism to include DNS records.</div>
</li>
<li class="li">
<div class="p">Added retry mechanism and improved error handling for container image pulls from the
                     container registry. Additionally, added local verification for successfully pulled
                     images.</div>
</li>
<li class="li">
<div class="p">Adjusted memory management trigger thresholds to better reflect real-world usage.</div>
</li>
<li class="li">
<div class="p">Added a pause/resume mechanism for the service monitor during upgrade, rollback, and
                     maintenance operations.</div>
</li>
<li class="li">
<div class="p">Added detailed diagnostic logging for improved visibility into memory buffer utilization.</div>
</li>
<li class="li">
<div class="p">Upgraded the OpenSSH package.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-38-0-1783</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Enhanced stability and response speed in Companion sessions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-companion-enhancements</link>
    <description><![CDATA[<div class="p">March 31, 2026—Companion has been updated to provide enhanced stability and response
               speed in sessions. As part of these updates, all prior session history has been discarded.
               If you need a backup file of your session history prior to March 31, 2026, contact
               your support provider. Going forward, Companion session history will be automatically
               purged after 30 days.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-companion#Companion">TrendAI™ Companion</a>.</div>]]></description>
    <pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-companion-enhancements</guid>
    <category>TrendAI Vision One Platform</category>
</item>
<item>
    <title>TrendAI rebranding includes Server &amp; Workload Protection syslog messages</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rebranding-server-workload-syslog</link>
    <description><![CDATA[<div class="p">March 31, 2026—The <code class="codeph">Device Vendor</code> field in Server &amp; Workload Protection syslog messages has updated from <code class="codeph">Trend Micro</code> to <code class="codeph">TrendAI™</code> as part of the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> rebranding.</div><div class="p">This affects syslog messages generated by Server &amp; Workload Protection features installed
               on the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent. <span class="tm">TrendAI™</span> is currently working to rollback the rebranding for syslogs.</div><div class="p">In the meantime, if you currently filter for syslog messages by <code class="codeph">Device Vendor</code>, make sure to update your filters to continue receiving syslog data.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-syslog-message-formats#Syslog_message_formats">Syslog message formats</a>.</div>]]></description>
    <pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rebranding-server-workload-syslog</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Server &amp; Workload Protection supports enabling Intrusion Prevention detection capabilities on endpoints without kernel level support</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-intrusion-without-kernel-support</link>
    <description><![CDATA[<div class="p">March 31, 2026—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports enabling Server &amp; Workload Protection Intrusion
               Prevention detection capabilities on endpoints without kernel level support.</div><div class="p">You can now configure whether agent network drivers operate on kernel level or user
               level even for endpoints with operating systems that do not have kernel level support.
               For these systems, the drivers operate on the user level, providing basic detection
               functions for Firewall, Intrusion Prevention, and Web Reputation. You can manage the
               feature from the <b class="wintitle">Settings</b> menu in the <b class="wintitle">Computer</b> editor.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Server &amp; Workload Protection</b></span></div>]]></description>
    <pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-intrusion-without-kernel-support</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Detect additional Initial Access techniques in Attack Path Prediction</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-atp-new-access-techniques-whatsnew</link>
    <description><![CDATA[<div class="p">March 31, 2026—Attack Path Prediction now includes additional internal detection rules
               for MITRE ATT&amp;CK Initial Access techniques. The additional rules improve your visibility
               into early-stage attack paths.</div><div class="p">New rules cover the following scenarios:</div><ul class="ul" id="whatsnew_mhz_z1v_s3c__ul_gyd_pbv_s3c">
<li class="li">
<div class="p">Valid Accounts</div>
</li>
<li class="li">
<div class="p">Account Manipulation</div>
</li>
<li class="li">
<div class="p">Brute Force</div>
</li>
</ul><div class="p">Detections using the added rules help you identify common entry-point risk events
               such as unusual sign-in patterns, suspicious group membership changes, and password
               guessing or spraying activities. The result is better detection and easier investigation
               of potential compromise paths that originate from identity-based attacks.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-potential-attack-path#concept_qts_zp1_fdc">how to investigate and remediate attack paths in Attack Path Prediction</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Attack Prediction</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Attack Path Prediction</b></span></div>]]></description>
    <pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-atp-new-access-techniques-whatsnew</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS - version 2.29.66</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-v-2-29-66</link>
    <description><![CDATA[<div class="p">April 1, 2026—The latest version of the Zero Trust Secure Access Module for macOS
               has been released. It contains new features, enhancements and resolved issues. It
               replaces macOS versions 2.29.55.</div><ul class="ul" id="whatsnew_icr_jv4_z3c__ul_lqb_c54_z3c">
<li class="li">
<div class="p">New site supported: South Africa</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_icr_jv4_z3c__ul_qrp_vt4_z3c">
<li class="li">
<div class="p">Updated the Speed Test wording in <b class="wintitle">Debug Settings</b>.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_icr_jv4_z3c__ul_qrg_xv4_z3c">
<li class="li">
<div class="p">Resolved connection issues for internal applications containing CNAME records in Private
                     Access.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where debug logging would be turned off every 5 minutes if multiple
                     users logged in.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where updating success notification doesn’t pop up.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 01 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-v-2-29-66</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows server - version 2.33.1033</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-winserver-v-2-33-1033</link>
    <description><![CDATA[<div class="p">April 1, 2026—The latest version of the Zero Trust Secure Access Module for Windows
               has been released. It contains new features, enhancements and resolved issues. It
               replaces Windows version 2.33.1032.</div><ul class="ul" id="whatsnew_aqr_dhp_z3c__ul_lqb_c54_z3c">
<li class="li">
<div class="p">New site supported: South Africa</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_aqr_dhp_z3c__ul_qrp_vt4_z3c">
<li class="li">
<div class="p">Updated the Speed Test wording in <b class="wintitle">Debug Settings</b>.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_aqr_dhp_z3c__ul_oyb_xt4_z3c">
<li class="li">
<div class="p">Resolved connection issues for internal applications containing CNAME records in Private
                     Access.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where two sign-in pop ups appeared after logging into Windows.</div>
</li>
<li class="li">
<div class="p">Resolved a black screen issue that occurred after a fresh installation of ZTSA.</div>
</li>
<li class="li">
<div class="p">Fixed an issue causing <code class="codeph">ZTSAWindows.exe</code> to crash when the <code class="codeph">config.json</code> file was corrupted.</div>
</li>
<li class="li">
<div class="p">Corrected an issue that resulted in inaccurate Speed Test results.</div>
</li>
<li class="li">
<div class="p">Resolved an issue where clicking "Update now" in the Action Center failed to trigger
                     an update on Windows Server 2016.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where Internet Access failed to connect to Secure Web Gateway when
                     the routing table contained two routes with the same metric.</div>
</li>
<li class="li">
<div class="p">Prevented the sign-in page and sign-in pop up from appearing simultaneously.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 01 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-winserver-v-2-33-1033</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security Deepfake detector now supports macOS agents</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deepfake-detector-supports-macos</link>
    <description><![CDATA[<div class="p">April 1, 2026—The <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agent now supports enabling Deepfake detector on your macOS endpoints.</div><div class="p">Deepfake detector can be enabled on agents version 202604 and later deployed to macOS
               13 or later on ARM64 (Apple Silicon) endpoints. Manage your Deepfake detector settings
               by configuring XDR for Endpoints (EDR) in Endpoint Security Policies.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies-endpoint-sensor#concept_ijw_3w5_hfc">XDR for Endpoints (EDR)</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Security Configuration</b> → <b class="uicontrol">Endpoint Security Policies</b></span></div>]]></description>
    <pubDate>Wed, 01 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-deepfake-detector-supports-macos</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>File Security Storage now supports Azure and Google Cloud Platform storage</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-supports-azure-gcp-storage</link>
    <description><![CDATA[<div class="p">April 2, 2026—File Security Storage support for Azure and Google Cloud Platform (GCP)
               is now generally available. You can now scan files stored in Azure storage accounts
               and GCP cloud buckets for malware, in addition to the existing Amazon Web Services
               (AWS) support.</div><div class="p">With this release, File Security Storage extends its anti-malware scanning capabilities
               across all three major cloud service providers, allowing you to integrate automated
               file scanning into your multi-cloud workflows and detect all types of malware including
               viruses, trojans, spyware, and more.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloud-storage-scanning#trend_vision_one_fss">File Security
                  Storage</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cloud Security</b> → <b class="uicontrol">File Security</b></span></div>]]></description>
    <pubDate>Thu, 02 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-supports-azure-gcp-storage</guid>
    <category>File Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.81</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-81</link>
    <description><![CDATA[<div class="p">April 6, 2026—The Zero Trust Secure Access On-premises Gateway version 1.0.81 contains
               new features and enhancements.</div><div class="p"><b class="uicontrol">New Features</b></div><ul class="ul" id="whatsnew_hdf_kfg_53c__ul_els_qgg_53c">
<li class="li">
<div class="p">Added support for configurable settings to unmask/mask the matched DLP/AI content
                     inspection data in log</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_hdf_kfg_53c__ul_wkx_r3g_53c">
<li class="li">
<div class="p">Enhanced file upload scanning for Google Drive</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-81</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access adds PoP site in Azure Austria East</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-adds-pop-azure-austria-east</link>
    <description><![CDATA[<div class="p">April 6, 2026—Zero Trust Secure Access Internet Access now supports the Azure Austria
               East region. Users in the region may configure their service FQDNs to reflect the
               new location. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol">Secure Access Configuration</b> → <b class="uicontrol">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-adds-pop-azure-austria-east</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Endpoint Inventory now supports saving applied filters</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-save-filters</link>
    <description><![CDATA[<div class="p">April 6, 2026—You can now save applied filters in Endpoint Inventory as a custom filter
               to make searching for endpoints easier.</div><div class="p">After applying filters to narrow the Endpoint Inventory view, you can now click the
               save icon (<img alt="save_icon_blue=f658261d-4fca-4dce-be7d-50bbf355a2a7.png" class="image" height="16" id="whatsnew_txc_325_v3c__image_vlf_p25_v3c" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-images/save_icon_blue%3Df658261d-4fca-4dce-be7d-50bbf355a2a7.png"/>) to save your filter settings as a custom filter for later use. Each <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> account can create up to 20 custom filters, which are visible across your organization.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-intro-part#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-hyoar">Endpoint Inventory</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-save-filters</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1179</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201179</link>
    <description><![CDATA[<div class="p">April 7, 2026—Mobile Security for Business app iOS version 2.0.1179 includes bug fixes.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-C7D8E9F0-A1B2-3456-CDEF-AB7890123456__ul_rn_1179_changes">
<li class="li">
<div class="p">Fixed an issue where VPN could fail to turn on in some cases.</div>
</li>
</ul>]]></description>
    <pubDate>Tue, 07 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentios-201179</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Automated tagging now supports operating system version conditions</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-automated-tagging-OS-version</link>
    <description><![CDATA[<div class="p">April 8, 2026—Tag Management now supports operating system version as a condition
               for automated tagging rules, giving you better control over which endpoints get tagged.
               The condition previously labeled "Operating system" has been renamed "Operating system
               and version" to reflect this expanded capability.</div><div class="p">When configuring an operating system and version condition, you can now choose from
               the following:</div><ul class="ul" id="whatsnew_hz4_p2g_w3c__ul_bm4_dfg_w3c">
<li class="li">
<div class="p"><b class="uicontrol">Any of</b>: Select one or more operating systems from a dropdown list.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Contains</b> or <b class="uicontrol">Begins with</b>: Type an operating system version string (for example, “Windows Server 2025 Datacenter”)
                     or partial string (like “Server 2025”) to match endpoints by specific version. As
                     you type, <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> suggests matching values.</div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol" lang="en-us" xml:lang="en-us">Service Management</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Tag  Management</b></span></div>]]></description>
    <pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-automated-tagging-OS-version</guid>
    <category>Service Management</category>
</item>
<item>
    <title>Cloud Risk Management updates to compliance frameworks and standards</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crm-compliance-updates-april-2026</link>
    <description><![CDATA[<div class="p">April 08, 2026—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Cloud Risk Management has released the following compliance updates. You can now
               filter Checks and download Compliance Reports to ensure your cloud environment complies
               with the latest standards.</div><div class="p"><b class="b">New compliance frameworks</b></div><ul class="ul" id="WhatsNew_2026_04_08_CRM_CIS_AWS_v7_e3f4a5b6_c7d8_9012_3456_789012bcdef0__ul_aws_sra_frameworks">
<li class="li">
<div class="p">AWS Security Reference Architecture</div>
</li>
<li class="li">
<div class="p">AWS Security Reference Architecture for AI</div>
</li>
</ul><div class="p"><b class="b">Updated compliance standard</b></div><ul class="ul" id="WhatsNew_2026_04_08_CRM_CIS_AWS_v7_e3f4a5b6_c7d8_9012_3456_789012bcdef0__ul_cis_aws_v7">
<li class="li">
<div class="p">CIS Amazon Web Services Foundations Benchmark v7.0.0</div>
</li>
</ul><div class="p"><b class="b">Deprecation notice</b></div><div class="p">CIS AWS Foundations Benchmark v5.0.0 is no longer supported. Cloud Risk Management
               recommends updating your report configurations to use the latest versions of CIS AWS
               Foundations Benchmark before <b class="b">July 7, 2026</b>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Misconfiguration and Compliance</b></span>
</div>]]></description>
    <pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crm-compliance-updates-april-2026</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1590</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201590</link>
    <description><![CDATA[<div class="p">April 9, 2026—Mobile Security for Business app Android version 2.0.1590 includes bug
               fixes and enhancements.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-7081B1EB-9CDE-48AD-9893-095A1680E8CE__ul_rn_1590_changes">
<li class="li">
<div class="p">Optimized and reduced server API calls from the agent to lower server loading.</div>
</li>
<li class="li">
<div class="p">Improved stability of the ZTSA and VPN module.</div>
</li>
<li class="li">
<div class="p">Fixed an SNI issue for parsing domain names before sending the IP to SWG.</div>
</li>
<li class="li">
<div class="p">Fixed an issue in web reputation with the allow and block URL list.</div>
</li>
<li class="li">
<div class="p">Resolved an issue of temporarily high battery usage by Mobile Security.</div>
</li>
</ul>]]></description>
    <pubDate>Thu, 09 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201590</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>TrendAI Vision One has a new South Africa Data Center</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-south-africa-data-center</link>
    <description><![CDATA[<div class="p">April 10, 2026—<span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span> has opened a data center to support the South Africa region. Users in this region
               may configure their service FQDNs to reflect the new location.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-south-africa-firewall-exceptions#GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-7jvilt">South Africa - firewall exceptions</a>.</div>]]></description>
    <pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-south-africa-data-center</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Helm Chart 3.3.6</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-336</link>
    <description><![CDATA[<div class="p">April 10, 2026—The Helm Chart 3.3.6 release includes the following:</div><ul class="ul" id="whatsnew_mgz_cnn_djc__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_mgz_cnn_djc__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">Upgraded dependencies to address vulnerabilities.</div>
</li>
<li class="li">
<div class="p">Updated admission control webhook to remove unneeded DELETE operations and to improve
                           performance.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_mgz_cnn_djc__ul_vqr_sky_qhc">
<li class="li">
<div class="p">Set sigstore TUF root to a writeable path to fix an issue with signature verification
                           in FIPS images.</div>
</li>
<li class="li">
<div class="p">Fixed log collection for Helm v4.</div>
</li>
<li class="li">
<div class="p">Reverted mistakenly bumped GKE Allowlist version to fix installation issues on GKE
                           Autopilot clusters.</div>
</li>
<li class="li">
<div class="p">Made scout hostNetwork configurable through values.yaml to fix issue with scout
                           initialization in some networks.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_mgz_cnn_djc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_mgz_cnn_djc__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.3.6.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_mgz_cnn_djc__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.6" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.6</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-336</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.606.04062108</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-aws-china-regions</link>
    <description><![CDATA[<div class="p">April 13, 2026—The <span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> version 1.606.04062108 release extends AWS region support to include two AWS China
               regions.</div><ul class="ul" id="RN_2026_04_13_AVTD_AWS_1_606_04062108__ul_avtd_aws_china_regions">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: April 13, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New feature</b>:</div>
<ul class="ul" id="RN_2026_04_13_AVTD_AWS_1_606_04062108__ul_avtd_aws_china_regions_feature">
<li class="li">
<div class="p"><span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> and Cloud Detections for VPC Flow Logs now support the AWS China regions <code class="codeph">cn-north-1</code> and <code class="codeph">cn-northwest-1</code>.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 13 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-aws-china-regions</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.183.b6f9f32</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-management-group-azure</link>
    <description><![CDATA[<div class="p">April 13, 2026—The Agentless Vulnerability &amp; Threat Detection version 1.183.b6f9f32
               release introduces Azure Management Group deployment support, enhances deployment
               reliability with unique resource identifiers, and fixes critical permission and region
               mapping issues.</div><ul class="ul" id="RN_2026_04_13_AVTD_1_183_b6f9f32__ul_azure_avtd_management_group">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Azure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: April 13, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New feature</b>:</div>
<ul class="ul" id="RN_2026_04_13_AVTD_1_183_b6f9f32__ul_avtd_management_group_feature">
<li class="li">
<div class="p">Agentless Vulnerability &amp; Threat Detection now supports deployment at the Azure Management
                           Group level (private preview). Deploy at the management group level to scan all subscriptions
                           under the management group in parallel, streamlining security coverage across your
                           Azure environment.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancement</b>:</div>
<ul class="ul" id="RN_2026_04_13_AVTD_1_183_b6f9f32__ul_avtd_unique_resources">
<li class="li">
<div class="p">Each deployment now generates unique secret tokens and IAM roles to prevent "Resource
                           already exists" errors when deploying multiple instances, improving deployment reliability
                           and flexibility.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b>:</div>
<ul class="ul" id="RN_2026_04_13_AVTD_1_183_b6f9f32__ul_avtd_bug_fixes">
<li class="li">
<div class="p">Resolved issues with dispatcher permissions and Contributor role assignments across
                           Azure regions.</div>
</li>
<li class="li">
<div class="p">Corrected the region mapping logic used when downloading artifacts from AWS to Azure
                           environments.</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" id="RN_2026_04_13_AVTD_1_183_b6f9f32__cloudAccountsAzurepath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Azure</b></span></div>]]></description>
    <pubDate>Mon, 13 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-management-group-azure</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Service Gateway: Forward Proxy Service Version 2.0.11</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-2011</link>
    <description><![CDATA[<div class="p">April 15, 2026—Service Gateway: Forward Proxy Service Version 2.0.11 delivers key
               enhancements, bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_sgfps_2011__ul_sgfps_2011_changes">
<li class="li">
<div class="p">This update improves upgrade configuration management to preserve settings across
                     firmware upgrades.</div>
</li>
<li class="li">
<div class="p">This update fixes cloud proxy connectivity test to route through the configured proxy
                     correctly.</div>
</li>
</ul><div class="p">For detailed update schedules, see <a class="xref" href="https://success.trendmicro.com/en-US/solution/KA-0022226" target="_blank">2026 Release for TrendAI Vision One™ Service Gateway</a> in the Success Portal.</div>]]></description>
    <pubDate>Wed, 15 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-fps-ver-2011</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway Firmware Version 3.0.28</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-3028</link>
    <description><![CDATA[<div class="p">April 15, 2026—Service Gateway Firmware Version 3.0.28 delivers key enhancements,
               bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_sgfw_3028__ul_sgfw_3028_changes">
<li class="li">
<div class="p">This update adds ThingsBoard IoT client support for ZA site connectivity.</div>
</li>
<li class="li">
<div class="p">This update upgrades the base OS to Rocky Linux 9.7 with updated Microk8s.</div>
</li>
<li class="li">
<div class="p">This update fixes incorrect service inbound connection count in appliance metrics.</div>
</li>
<li class="li">
<div class="p">This update fixes available disk space unit display in diagnostics.</div>
</li>
<li class="li">
<div class="p">This update fixes CDT file upload to reject files exceeding the size limit.</div>
</li>
<li class="li">
<div class="p">This update fixes cloud proxy connectivity test to route through the configured proxy
                     correctly.</div>
</li>
<li class="li">
<div class="p">This update fixes upgrade configmap patching to prevent configuration loss during
                     firmware upgrades.</div>
</li>
</ul><div class="p">For detailed update schedules, see <a class="xref" href="https://success.trendmicro.com/en-US/solution/KA-0022226" target="_blank">2026 Release for TrendAI Vision One™ Service Gateway</a> in the Success Portal.</div>]]></description>
    <pubDate>Wed, 15 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-firmware-3028</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Service Gateway: Local Active Update Service Version 3.0.17</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3017</link>
    <description><![CDATA[<div class="p">April 15, 2026—Service Gateway: Local Active Update Service Version 3.0.17 delivers
               key enhancements, bug fixes, and security updates.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="whatsnew_sglaus_3017__ul_sglaus_3017_changes">
<li class="li">
<div class="p">This update improves relay process reliability to prevent single points of failure.</div>
</li>
</ul><div class="p">For detailed update schedules, see <a class="xref" href="https://success.trendmicro.com/en-US/solution/KA-0022226" target="_blank">2026 Release for TrendAI Vision One™ Service Gateway</a> in the Success Portal.</div>]]></description>
    <pubDate>Wed, 15 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-lau-ver-3017</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Endpoint policy overrides now includes settings for security module configurations</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policy-overrides-security-module</link>
    <description><![CDATA[<div class="p">April 15, 2026—You can now configure overrides for Anti-Malware, Intrusion Prevention,
               and Exclusions in Endpoint Inventory.</div><div class="p">The <b class="uicontrol">Override endpoint security policy</b> action has now been enhanced with a more robust design that expands coverage of override
               settings to include these endpoint security modules in addition to Advanced Risk Telemetry,
               XDR for Endpoints (EDR), and Data Security Sensor. These overrides apply to endpoints
               using the unified Endpoint Security Policy to manage endpoint protection features.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-security-policy-overrides#concept_vbr_qzf_tgc">Endpoint security policy overrides</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Endpoint Security</b> → <b class="uicontrol">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Wed, 15 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policy-overrides-security-module</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Recommendation scan now available for Anti-Malware and Exclusions in Endpoint Security Policies</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-recommendation-scan-exclusions</link>
    <description><![CDATA[<div class="p">April 15, 2026—You can now configure policies to exclude recommended applications
               from Anti-Malware scans, and enable the recommendation scan for Exclusions.</div><div class="p">Use Exclusions when configuring your Endpoint Security Policies to manage which recommended
               applications your agents should exclude when running Anti-Malware scans. Additionally,
               you can enable recommendation scan to dynamically exclude applications based on your
               environment. You can also view the list of recommended applications excluded by your
               policy settings in Anti-Malware.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies-exclusions#concept_awr_lw5_hfc">Exclusions</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security Policies</b></span></div>]]></description>
    <pubDate>Wed, 15 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-recommendation-scan-exclusions</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.82</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-82</link>
    <description><![CDATA[<div class="p">April 20, 2026—The Zero Trust Secure Access On-premises Gateway version 1.0.82 contains
               new features and resolved issues.</div><div class="p"><b class="uicontrol">New Features</b></div><ul class="ul" id="whatsnew_fzd_3sj_1jc__ul_els_qgg_53c">
<li class="li">
<div class="p">Added support for warning action in AI Secure Access rules for access control.</div>
</li>
<li class="li">
<div class="p">Enhanced the detection log with the matched item in the allow/deny list.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_fzd_3sj_1jc__ul_wkx_r3g_53c">
<li class="li">
<div class="p">Fixed issues due to public AI services protocol changes.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 20 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-82</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Cloud Detections for AWS VPC Flow Logs version 1.614.04202156</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vpc-flow-logs-version-161404202156</link>
    <description><![CDATA[<div class="p">April 20, 2026—The Cloud Detections for AWS VPC Flow Logs version 1.614.04202156 release
               introduces enhancements for VPC Flow Logs detections in private VPC environments and
               improves encryption compliance with AWS Control Tower policies.</div><div class="p">
<ul class="ul" id="RN_2026_04_20_aws_vpc_flow_logs_1_614_04202156__ul_vpc_flow_logs_1_614_04202156">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: April 20, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: AWS CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b>:</div>
<ul class="ul" id="RN_2026_04_20_aws_vpc_flow_logs_1_614_04202156__ul_vpc_flow_logs_1_614_enhancements">
<li class="li">
<div class="p">Simplified VPC proxy configuration by removing the automatic NO_PROXY connectivity
                              check.</div>
</li>
<li class="li">
<div class="p">Enabled SSE-KMS encryption (with Bucket Key) on the stack resource bucket and SSE-SQS
                              on the VPC Flow Logs event queues to comply with AWS Control Tower policies. Supporting
                              IAM KMS permissions have been added for affected roles.</div>
</li>
</ul>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 20 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vpc-flow-logs-version-161404202156</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Cloud Detections for AWS CloudTrail version 1.52.5</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloudtrail-version-1-52-5</link>
    <description><![CDATA[<div class="p">April 20, 2026—The Cloud Detections for AWS CloudTrail version 1.52.5 release includes
               security enhancements and vulnerability fixes.</div><ul class="ul" id="RN_2026_04_20_aws_cloudtrail_1_52_5_a1b2c3d4_5e6f_7890_1234_567890abcdef__ul_cloudtrail_1_52_5">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: April 20, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: AWS CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Affected features</b>:</div>
<ul class="ul" id="RN_2026_04_20_aws_cloudtrail_1_52_5_a1b2c3d4_5e6f_7890_1234_567890abcdef__ul_affected_features">
<li class="li">
<div class="p">Cloud Detections for AWS CloudTrail (AWS CloudTrail with Control Tower)</div>
</li>
<li class="li">
<div class="p">Cloud Detections for AWS Security Lake</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b>:</div>
<ul class="ul" id="RN_2026_04_20_aws_cloudtrail_1_52_5_a1b2c3d4_5e6f_7890_1234_567890abcdef__ul_enhancements">
<li class="li">
<div class="p">Vulnerability fixes: CVE-2026-25645, CVE-2026-32597</div>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Mon, 20 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-cloudtrail-version-1-52-5</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Attack Surface Discovery Local Apps now extends visibility to executables, allows blocking of untrusted executables</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-attack-surface-discovery-local-apps</link>
    <description><![CDATA[<div class="p">April 20, 2026—Local Apps now extends visibility to executables on your Windows endpoints,
               allowing you to set their status and automatically block untrusted executables found
               in your environment.</div><div class="p">To allow the scanning and hashing of executable files on your endpoints, you must
               enable Advanced Risk Telemetry and configure the executable scanning and hashing settings
               in Endpoint Security Policies.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-applications#GUID-141DFDD9-B2FA-4D52-9FC0-CDF9DD4DF3F3">Applications</a>.</div><div class="p"> To configure Advanced Risk Telemetry in Endpoint Security Policies, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies-advanced-risk-telemetry#concept_oxd_3w5_hfc">Advanced Risk Telemetry</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Continuous Risk Management</b> → <b class="uicontrol">Attack Surface Discovery</b> → <b class="uicontrol">Applications</b></span></div>]]></description>
    <pubDate>Mon, 20 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-attack-surface-discovery-local-apps</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Visibility and alert enhancement for email gateway alerts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-vis-alert-email-continuity</link>
    <description><![CDATA[<div class="p">April 21, 2026—Cloud Email Gateway Protection now includes the <b class="uicontrol">Message delivery history</b> chart on the <b class="uicontrol">Other Statistics</b> tab of the <b class="uicontrol">Dashboards</b> page. Use this chart to monitor the number of email messages in the delivery queue
               and temporary delivery failures for incoming and outgoing email traffic.</div><div class="p">Administrators can also configure business continuity alerts through the <span class="tm">TrendAI Vision One™</span> Notifications app. Alerts trigger when the message count reaches a specified threshold
               for a defined number of consecutive data points. The configured threshold is displayed
               on the dashboard, and notifications are sent when the threshold is reached.</div><div class="p"><span class="menucascade"><b class="uicontrol">Email and Collaboration Security</b> → <b class="uicontrol">Cloud Email Gateway Protection</b> → <b class="uicontrol">Dashboards</b></span></div>]]></description>
    <pubDate>Tue, 21 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-vis-alert-email-continuity</guid>
    <category>Email and Collaboration Security</category>
</item>
<item>
    <title>New compliance standard: CIS Controls version 8.1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crm-cis-controls-8-1</link>
    <description><![CDATA[<div class="p">April 22, 2026—Cloud Risk Management now supports the CIS Controls version 8.1 compliance
               standard. You can filter Checks and download Compliance Reports to ensure your cloud
               environment complies with this standard.</div><div class="p">CIS Controls version 8.1 is available for the following cloud providers:</div><ul class="ul" id="WhatsNew_2026_04_22_CRM_CIS_Controls_v8_1_b91306be_ff89_4c56_865c_cac81fba8930__ul_cis_controls_v8_1">
<li class="li">
<div class="p">AWS</div>
</li>
<li class="li">
<div class="p">Azure</div>
</li>
<li class="li">
<div class="p">Google Cloud</div>
</li>
<li class="li">
<div class="p">OCI</div>
</li>
</ul><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cloud Risk Management</b> → <b class="uicontrol">Misconfiguration and Compliance</b></span>
</div>]]></description>
    <pubDate>Wed, 22 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crm-cis-controls-8-1</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Helm Chart 3.3.7</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-337</link>
    <description><![CDATA[<div class="p">April 23, 2026—The Helm Chart 3.3.7 release includes the following:</div><ul class="ul" id="whatsnew_nkn_hk4_djc__ul_sjz_shc_xgc">
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_nkn_hk4_djc__ul_bx5_l3c_xgc">
<li class="li">
<div class="p">Improved vulnerability detections, particularly for JavaScript packages.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_nkn_hk4_djc__ul_vqr_sky_qhc">
<li class="li">
<div class="p">Fixed an issue where Falco crashed on certain kernels.</div>
</li>
<li class="li">
<div class="p">Fixed a bug where exceptions were mistakenly applied to signature verification
                           admission rules.</div>
</li>
<li class="li">
<div class="p">Fixed a bug where workload image custom resources could remain stuck in
                           <code class="codeph">Waiting</code> status.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Upgrade instructions</b></div>
<ul class="ul" id="whatsnew_nkn_hk4_djc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Sample upgrade command:</div>
<pre class="codeblock" id="whatsnew_nkn_hk4_djc__codeblock_j5k_fgt_fgc">helm upgrade \
--values overrides.yaml \
--namespace trendmicro-system \
trendmicro \
https://github.com/trendmicro/visionone-container-security-helm/archive/3.3.7.tar.gz</pre>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">References</b></div>
<ul class="ul" id="whatsnew_nkn_hk4_djc__ul_cgw_1vp_lgc">
<li class="li">
<div class="p"><a class="xref" href="https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.7" target="_blank">https://github.com/trendmicro/visionone-container-security-helm/releases/tag/3.3.7</a></div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Thu, 23 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-helm-chart-337</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Container Protection for Amazon ECS version 2.1.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-v2-1-0</link>
    <description><![CDATA[<div class="p">April 23, 2026—Container Protection for Amazon ECS version 2.1.0 is now available.</div><ul class="ul" id="whatsnew_lqs_4kr_cjc__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b></div>
<ul class="ul" id="whatsnew_lqs_4kr_cjc__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Amazon Web Services (AWS)</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Features</b></div>
<ul class="ul" id="whatsnew_lqs_4kr_cjc__ul_xrr_tkr_cjc">
<li class="li">
<div class="p">Admission control for Amazon ECS.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_lqs_4kr_cjc__ul_utf_q5p_lgc">
<li class="li">
<div class="p">Policies redesigned to be platform-specific for Kubernetes and Amazon ECS. <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policies#GUID-BED80320-70E5-47C4-9530-CC26073D469D-sn4z4r">Learn more</a>.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_lqs_4kr_cjc__ul_z5c_nrd_43c">
<li class="li">
<div class="p">Fixed scout crashloop race condition.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Thu, 23 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-v2-1-0</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector version 3.0.0.1920</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-version-3001920</link>
    <description><![CDATA[<div class="p">April 27, 2026—Zero Trust Secure Access Private Access Connector version 3.0.0.1920
               contains new features, enhancements, and resolved issues.</div><div class="p"><b class="b">New features</b></div><ul class="ul" id="whatsnew_wp1_xhc_cjc-2__ul_n35_2xc_cjc">
<li class="li">
<div class="p">The Connector OS has been migrated from CentOS 7 to Rocky Linux 9. This transition
                     brings a supported, modernized OS platform with updated networking, system services,
                     and platform integrations.</div>
</li>
<li class="li">
<div class="p">A new <code class="codeph">update</code> CLI command allows administrators to upgrade the Connector in place, without redeploying
                     the virtual appliance.</div>
</li>
<li class="li">
<div class="p">A new <code class="codeph">rollback</code> CLI command enables administrators to revert a failed or problematic Connector upgrade
                     to the previous known-good version.</div>
</li>
<li class="li">
<div class="p">Administrators can now stream Connector logs in real time for faster troubleshooting
                     and operational visibility.</div>
</li>
<li class="li">
<div class="p">Customers can now deploy and register Connectors in South Africa for improved local
                     coverage and reduced latency.</div>
</li>
<li class="li">
<div class="p">The Hyper-V base VM image now supports EFI/UEFI boot, aligning with modern virtualization
                     requirements.</div>
</li>
</ul><div class="p"><b class="b">Enhancements</b></div><ul class="ul" id="whatsnew_wp1_xhc_cjc-2__ul_onr_dxc_cjc">
<li class="li">
<div class="p">Limited <code class="codeph">dig</code> command output and enabled DNS record log rotation to reduce log volume and prevent
                     disk pressure.</div>
</li>
<li class="li">
<div class="p">Added descriptive error messages to upgrade logging for easier troubleshooting of
                     upgrade failures.</div>
</li>
<li class="li">
<div class="p">Added retry logic and improved error handling when pulling ACR images, reducing transient
                     deployment failures.</div>
</li>
<li class="li">
<div class="p">Adjusted the memory check threshold to better reflect real-world workloads.</div>
</li>
<li class="li">
<div class="p">The admin user no longer ships with a default password. Administrators are required
                     to set credentials during initial setup.</div>
</li>
<li class="li">
<div class="p">Disabled secure boot to ensure consistent image boot behavior across supported platforms.</div>
</li>
</ul><div class="p"><b class="b">Resolved issues</b></div><ul class="ul" id="whatsnew_wp1_xhc_cjc-2__ul_mnf_yyc_cjc">
<li class="li">
<div class="p">Fixed SSH password authentication regression.</div>
</li>
<li class="li">
<div class="p">Fixed hostname inconsistency between the Connector and Vision One.</div>
</li>
<li class="li">
<div class="p">Fixed ICMP health check status reporting.</div>
</li>
<li class="li">
<div class="p">Fixed command channel crash-loop when the Connector is unregistered.</div>
</li>
<li class="li">
<div class="p">Fixed <code class="codeph">eth1</code> bring-up delay on Azure.</div>
</li>
<li class="li">
<div class="p">Fixed <code class="codeph">configure dhcp eth0</code> CLI command.</div>
</li>
<li class="li">
<div class="p">Fixed hostname setting behavior.</div>
</li>
<li class="li">
<div class="p">Fixed missing <code class="codeph">zip</code> dependency required for packet capture.</div>
</li>
<li class="li">
<div class="p">Fixed <code class="codeph">find</code> command syntax used during backup file removal.</div>
</li>
<li class="li">
<div class="p">Fixed a race condition between the crontab monitor and firmware update that caused
                     incorrect module counts.</div>
</li>
<li class="li">
<div class="p">Fixed WALinuxAgent installation on Azure.</div>
</li>
<li class="li">
<div class="p">Fixed multiple OpenSSH vulnerabilities with upstream security patches.</div>
</li>
<li class="li">
<div class="p">Added missing systemd timer dependencies.</div>
</li>
<li class="li">
<div class="p">Resolved duplicate Connector status updates sent to the management console.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 27 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-version-3001920</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Playbooks trigger on Threat Intelligence sweeping workbench alerts</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-playbooks-TI-sweep</link>
    <description><![CDATA[<div class="p">May 4, 2026—Workbench alerts generated by Threat Intelligence sweeping can now automatically
               trigger your Automated Response Playbooks, helping you act faster on high‑fidelity
               intelligence matches.</div><div class="p">When Threat Intelligence sweeping matches an indicator against your telemetry and
               raises a workbench alert, any playbook configured for that alert runs automatically
               to execute response actions—such as isolating affected assets, forcing user sign‑out,
               or sending notifications—without requiring manual analyst intervention.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-security-playbooks#GUID-A0CBF62D-9AA9-417D-A3E1-1542F198D387">Security Playbooks</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Workflow and Automation</b> → <b class="uicontrol">Security Playbooks</b></span></div>]]></description>
    <pubDate>Mon, 27 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-playbooks-TI-sweep</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Connector for ServiceDesk Plus Cloud</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-CM-TPI-connector-SDPCloud</link>
    <description><![CDATA[<div class="p">April 27, 2026—<span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> now integrates with ManageEngine ServiceDesk Plus Cloud through the Trend Vision
               One Connector, available on the ManageEngine Marketplace. Security teams can create
               and manage ServiceDesk Plus Cloud tickets directly from <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Case Management, eliminating the need to switch between platforms during incident
               response.</div><div class="p">This connector supports the following capabilities:</div><ul class="ul" id="GUID-F8FAF1DF-7A1E-4C0A-ADA3-6F6FC6CAD49D-95__ul_ps5_312_1jc">
<li class="li">
<div class="p"><b class="uicontrol">Bi-directional synchronization</b>: Case status, priority, and other case data synchronize automatically between <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Case Management and ServiceDesk Plus Cloud. Updates made in either platform reflect
                     in the other.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Automated ticket creation</b>: When someone opens a case in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>, the connector creates a corresponding ticket in ServiceDesk Plus Cloud with all
                     relevant fields automatically populated.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Configurable field mappings</b>: Map <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> case statuses and priorities to their ServiceDesk Plus Cloud equivalents. If a field
                     does not have mapping configured, the connector ignores that field during synchronization.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Tag-based assignment</b>: Automate ticket assignments in ServiceDesk Plus Cloud based on tags set in <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
</ul><div class="p">The Trend Vision One Connector supports ServiceDesk Plus Cloud instances with an Enterprise
               license only. Only users with the SDAdmin role can install the extension. Search for
               the TrendAI Vision One Connector on the <a class="xref" href="https://marketplace.manageengine.com" target="_blank">ManageEngine Marketplace</a> and follow the setup instructions in the connector documentation.</div><div class="p"><span class="menucascade"><b class="uicontrol">Workflow and Automation</b> → <b class="uicontrol">Third-Party Integration</b></span></div>]]></description>
    <pubDate>Mon, 27 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-WN-CM-TPI-connector-SDPCloud</guid>
    <category>Workflow and Automation</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.616.04272125</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-161604272125</link>
    <description><![CDATA[<div class="p">April 28, 2026—<span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> version 1.616.04272125 improves deployment reliability on AWS by automatically provisioning
               a required ECS role before stack deployment.</div><div class="p">
<ul class="ul" id="RN_2026_04_28_agentless_vtd_v1_616_04272125__ul_agentless_vtd_v1_616_04272125">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: April 28, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: AWS CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b>:</div>
<ul class="ul" id="RN_2026_04_28_agentless_vtd_v1_616_04272125__ul_agentless_vtd_v1_616_enhancements">
<li class="li">
<div class="p">Detects and creates the required AWS ECS service-linked role prior to stack deployment,
                              preventing <span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> failures in accounts where the role does not yet exist.</div>
</li>
</ul>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Tue, 28 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-161604272125</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Reverted: TrendAI rebranding includes Server &amp; Workload Protection syslog messages</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-reverted-rebranding-syslog</link>
    <description><![CDATA[<div class="p">April 28, 2026—The rebranding of Trend Micro to <span class="tm">TrendAI™</span> within Server &amp; Workload Protection syslog messages as detailed in <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rebranding-server-workload-syslog#whatsnew_ijj_jnl_bjc">TrendAI™ rebranding includes Server &amp; Workload Protection syslog messages</a> has been reverted.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-syslog-message-formats#Syslog_message_formats">Syslog message formats</a>.</div>]]></description>
    <pubDate>Tue, 28 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-reverted-rebranding-syslog</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>TrendAI Vision One Endpoint Security agent relays and realtime connection policies now available</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-connection-policies-update-relays</link>
    <description><![CDATA[<div class="p">April 28, 2026—You can now use Connection Policies to create and manage connections
               and updates for <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security agents and assign designated agents as relays for downloading updates.</div><div class="p">Connection Policies includes two new features to assist in managing updates and connections:
               Runtime connection policies and Relay management.</div><div class="p">Runtime connection policies moves the Runtime Proxy Settings from Global Settings
               in Endpoint Inventory to be part of Connection Policies. Use Runtime connection policies
               to specify how agents connect to <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> and what source to use to download updates, including the new relay group feature.</div><div class="p">Relay management is where you can create relay groups to act as an update source for
               your agents. Relay groups consist of agents you specify to act as relays for providing
               updates to other agents within your environment, and supports Version Control Policies.
               This feature helps to centralize and replace the Update Agent in Standard Endpoint
               Protection and the Relay feature in Server &amp; Workload Protection.</div><div class="p">For more information about these features, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-connection-policies#concept_kvl_bzf_43c">Connection Policies</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Connection Policies</b></span></div>]]></description>
    <pubDate>Tue, 28 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-connection-policies-update-relays</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>File Security Storage now supports Python 3.13 in AWS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-aws-supports-python-v3-13</link>
    <description><![CDATA[<div class="p">April 28, 2026—The AWS File Security Storage CloudFormation template version 4.0.4
               supports Python runtime version 3.13. The template also includes minor enhancements
               and security updates.</div>]]></description>
    <pubDate>Tue, 28 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-aws-supports-python-v3-13</guid>
    <category>File Security</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector version 3.1.0.1924</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-version-3101924</link>
    <description><![CDATA[<div class="p">May 4, 2026—Zero Trust Secure Access Private Access Connector version 3.1.0.1924 contains
               new features, enhancements, and resolved issues.</div><div class="p"><b class="b">New features</b></div><ul class="ul" id="whatsnew_wp1_xhc_cjc__ul_d4c_k3c_cjc">
<li class="li">
<div class="p">The connector now pulls complete site information from the ZTNA backend at registration
                     time, replacing the previous hardcoded connection-test site list. This improves accuracy
                     of site-to-Connector mapping and simplifies onboarding in new regions.</div>
</li>
</ul><div class="p"><b class="b">Enhancements</b></div><ul class="ul" id="whatsnew_wp1_xhc_cjc__ul_e4c_k3c_cjc">
<li class="li">
<div class="p">CLI command outputs have been reformatted to be easier to read and parse in administrative
                     workflows.</div>
</li>
<li class="li">
<div class="p">DNS caching is now filtered to apply only to Private Access (PA) applications, reducing
                     unnecessary cache entries and improving efficiency for other traffic.</div>
</li>
<li class="li">
<div class="p">The operating system identifier now reflects "TrendAI Vision One Private Access Connector"
                     for clearer platform identification.</div>
</li>
<li class="li">
<div class="p">Updated the Rocky Linux 9 base with the latest security and stability patches and
                     pinned the OS image to ensure reproducible, consistent builds.</div>
</li>
<li class="li">
<div class="p">Adjusted memory check threshold and polling interval to reduce false alerts and better
                     reflect real-world workloads.</div>
</li>
</ul><div class="p"><b class="b">Resolved issues</b></div><ul class="ul" id="whatsnew_wp1_xhc_cjc__ul_d5r_3fq_cjc">
<li class="li">
<div class="p">Fixed OVF guest OS identifier and hardware version for proper ESXi compatibility,
                     resolving deployment issues on VMware ESXi.</div>
</li>
<li class="li">
<div class="p">Fixed a missing import in the firmware updater that could impact connector upgrade
                     execution.</div>
</li>
<li class="li">
<div class="p">Fixed NTP force-update incorrectly invoking the chrony client when the chrony daemon
                     was stopped.</div>
</li>
<li class="li">
<div class="p">Fixed PAM syslog identity incorrectly overriding the sshd identity in system logs.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 29 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-version-3101924</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector version 2.39.0.1910</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-version-23901910</link>
    <description><![CDATA[<div class="p">April 29, 2026—Zero Trust Secure Access Private Access Connector Version 2.39.0.1910
               delivers new features and resolved issues.</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_arc_x1c_cjc__ul_eqn_jbc_cjc">
<li class="li">
<div class="p">Added support for the South Africa (ZA) region, enabling customers to deploy and register
                     connectors in the South Africa region for improved local coverage and reduced latency.</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_arc_x1c_cjc__ul_fqn_jbc_cjc">
<li class="li">
<div class="p">DNS caching logic has been refined so that DNS entries from traffic are now only cached
                     when the traffic is associated with <span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span> applications. This reduces unnecessary cache consumption and improves overall connector
                     efficiency for application traffic.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_arc_x1c_cjc__ul_gqn_jbc_cjc">
<li class="li">
<div class="p">Fixed an issue where connector status updates could be sent or processed multiple
                     times, which could result in redundant events and inconsistent state reporting in
                     the management console.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 29 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-version-23901910</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Mobile Security for Business app version 2.0.1602</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201602</link>
    <description><![CDATA[<div class="p">April 29, 2026—Mobile Security for Business app Android version 2.0.1602 includes
               bug fixes and enhancements.</div><div class="p">This update includes the following changes:</div><ul class="ul" id="GUID-7733996C-FFCC-4E57-9514-F96AEC82AE87__ul_rn_1602_changes">
<li class="li">
<div class="p">Improved the enrollment process to handle cases where enrollment information is not
                     yet available.</div>
</li>
<li class="li">
<div class="p">Optimized crash log collection to prevent excessive data accumulation.</div>
</li>
<li class="li">
<div class="p">Added missing Japanese localization.</div>
</li>
<li class="li">
<div class="p">Fixed an SWG bypass issue by improving domain name resolution handling during proxy
                     connections.</div>
</li>
<li class="li">
<div class="p">Improved stability and performance of the VPN module, including certificate fetch
                     timeout handling and connection leak fixes.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 29 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-mobileagentandroid-201602</guid>
    <category>Mobile Security</category>
</item>
<item>
    <title>Container Protection for Amazon ECS version 2.2.0</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-v2-2-0</link>
    <description><![CDATA[<div class="p">April 30, 2026—Container Protection for Amazon ECS version 2.2.0 is now available.</div><ul class="ul" id="whatsnew_tvd_lms_cjc__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b></div>
<ul class="ul" id="whatsnew_tvd_lms_cjc__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Amazon Web Services (AWS)</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Features</b></div>
<ul class="ul" id="whatsnew_tvd_lms_cjc__ul_xrr_tkr_cjc">
<li class="li">
<div class="p">File integrity monitoring for Amazon ECS. <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-file-integrity-monitoring-container#concept_q43_ld4_3hc">Learn more</a>.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Thu, 30 Apr 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-v2-2-0</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Microsoft Defender for Endpoint Log Collection version 1.0.76</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mde-log-collection-version-1-0-76</link>
    <description><![CDATA[<div class="p">May 4, 2026—Microsoft Defender for Endpoint Log Collection version 1.0.76 improves
               deployment reliability on Azure by strengthening Terraform resource resilience and
               fixing Event Hubs provisioning conflicts.</div><div class="p">
<ul class="ul" id="RN_2026_05_04_mde_log_collection_v1_0_76__ul_mde_log_collection_v1_0_76">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Azure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: May 4, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b>:</div>
<ul class="ul" id="RN_2026_05_04_mde_log_collection_v1_0_76__ul_mde_log_collection_v1_0_76_enhancements">
<li class="li">
<div class="p">Added retry and buffer time in Terraform resources to mitigate Azure Resource Manager
                              API issues.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b>:</div>
<ul class="ul" id="RN_2026_05_04_mde_log_collection_v1_0_76__ul_mde_log_collection_v1_0_76_bugfixes">
<li class="li">
<div class="p">Changed Event Hubs instance creation in Terraform to use the Azure CLI to prevent
                              "eventhub already exists" errors.</div>
</li>
</ul>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Azure</b></span></div>]]></description>
    <pubDate>Mon, 04 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-mde-log-collection-version-1-0-76</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Secure Access Module traffic routing option</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sam-traffic-routing-option</link>
    <description><![CDATA[<div class="p">May 4, 2026—The Secure Access Module has added a traffic routing option that controls
               whether the Windows ZTSA agent forwards management traffic through the XBC proxy or
               directly.</div>]]></description>
    <pubDate>Mon, 04 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sam-traffic-routing-option</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Attack Path Prediction now shows all attack paths for all asset types</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-attack-path-all-asset-types</link>
    <description><![CDATA[<div class="p">May 4, 2026—You can now see attack paths for all asset types in Attack Path Prediction,
               regardless of whether you have Cyber Risk Exposure Management -  Essentials or cloud
               account assessment for Cyber Risk Exposure Management enabled.</div><div class="p">Previously, the attack paths displayed in Attack Path Prediction depended on which
               features were active. Device paths required Cyber Risk Exposure Management -  Essentials,
               and cloud paths required cloud account assessment for Cyber Risk Exposure Management.
               This created an inconsistency with the Predictive Analytics risk factor in Threat
               and Exposure Management, which showed all attack path risk events regardless of feature
               enablement. With this update, having either feature enabled grants full access to
               all attack paths in Attack Path Prediction.</div><div class="p">To view attack paths for an asset type, the assets must be connected to or have been
               discovered by <span class="tm">TrendAI Vision One™</span>.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-attack-path-predict#concept_ts1_jzy_2dc">Attack Path Prediction</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cyber Attack Prediction</b> → <b class="uicontrol">Attack Path Prediction</b></span></div>]]></description>
    <pubDate>Mon, 04 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-attack-path-all-asset-types</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>TrendAI Vision One Vulnerability Management and Threat and Exposure Management now surface ZDI-powered zero-day vulnerability risk events before public disclosure</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-zdi-vulns-whats-new</link>
    <description><![CDATA[<div class="p">May 4, 2026—Risk events powered by <span class="tm">TrendAI™ Zero Day Initiative™</span> now appear in Vulnerability Management and Threat and Exposure Management when a
               zero-day vulnerability affecting software in your environment is identified. ZDI-powered
               events generate before a CVE is publicly disclosed, giving you time to prepare, monitor,
               and isolate affected assets ahead of any patch.</div><div class="p">To help protect your assets, post-exploitation detection models monitor flagged assets
               for suspicious behavior such as shell drops or lateral movement, and trigger workbench
               alerts when activity is observed. For network-based vulnerabilities, virtual patching
               is available through TippingPoint Intrusion Prevention rules that block exploitation
               attempts at the network level while you wait for a vendor patch. For Windows application
               vulnerabilities, application blocking lets you prevent vulnerable application versions
               from launching on protected endpoints.</div><div class="p">To use Application Blocking, endpoints must be protected by <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Endpoint Security with Windows endpoint protection enabled.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-vuln-management-app#concept_zyk_lht_s2c">Vulnerability Management</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Continuous Risk Management</b> → <b class="uicontrol">Vulnerability Management</b></span></div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Continuous Risk Management</b> → <b class="uicontrol">Threat and Exposure Management</b></span></div>]]></description>
    <pubDate>Mon, 04 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-zdi-vulns-whats-new</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>New compliance standards for connected SaaS app compliance violations</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sspm-compliance-standards-update</link>
    <description><![CDATA[<div class="p">May 05, 2026—The connected SaaS app compliance violations widget in Threat and Exposure
               Management now supports the following additional compliance standards and frameworks:</div><ul class="ul" id="WhatsNew_2026_05_05_SSPM_compliance_standards_7ba5a006_ec8f_4766_a2b1_b57419273ec1__ul_sspm_new_standards">
<li class="li">
<div class="p">CIS Critical Security Controls 8.1</div>
</li>
<li class="li">
<div class="p">ISO 27001 (2022)</div>
</li>
<li class="li">
<div class="p">NIST CSF 2.0</div>
</li>
<li class="li">
<div class="p">SOC 2:2019</div>
</li>
</ul><div class="p">These new standards are available alongside the existing standards. The compliance
               standards list is now sorted by standard name.</div><div class="p"><span class="menucascade"><b class="uicontrol">Cyber Risk Exposure Management</b> → <b class="uicontrol">Cyber Risk Overview</b></span> &gt; <b class="uicontrol">Risk Factors</b> &gt; <b class="uicontrol">Connected SaaS app compliance violations</b></div>]]></description>
    <pubDate>Tue, 05 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-sspm-compliance-standards-update</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.617.04292011</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-161704292011</link>
    <description><![CDATA[<div class="p">May 7, 2026—<span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> version 1.617.04292011 resolves an issue with the internal telemetry collector Lambda
               function.</div><div class="p">
<ul class="ul" id="RN_2026_05_07_agentless_vtd_v1_617_04292011__ul_agentless_vtd_v1_617_04292011">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: AWS</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: May 7, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: AWS CloudFormation</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fix</b>:</div>
<ul class="ul" id="RN_2026_05_07_agentless_vtd_v1_617_04292011__ul_agentless_vtd_v1_617_bugfix">
<li class="li">
<div class="p">Fixed an issue where the scheduled internal telemetry collector Lambda function was
                              not running due to a missing EventBridge invocation permission. After the update,
                              the collection resumes automatically.</div>
</li>
</ul>
</li>
</ul>
</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">AWS</b></span></div>]]></description>
    <pubDate>Thu, 07 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-161704292011</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.175.71e5c1c - Notifications</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-notification-center-azure</link>
    <description><![CDATA[<div class="p">May 8, 2026—The <span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> version 1.175.71e5c1c release introduces Notifications integration for Azure. <span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> now sends scan failure alerts through the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Notifications screen, giving security teams immediate notification when completed
               scans encounter elevated failure rates across their Azure environment.</div><ul class="ul" id="RN_2026_05_04_Azure_AVTD_notification_center__ul_azure_avtd_notification_center">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Azure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: May 8, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New feature</b>:</div>
<ul class="ul" id="RN_2026_05_04_Azure_AVTD_notification_center__ul_azure_avtd_nc_feature">
<li class="li">
<div class="p"><span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> now sends notifications through the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Notifications screen when a completed scan's failure rate exceeds a configured threshold.
                           The following notifications are sent:</div>
<ul class="ul" id="RN_2026_05_04_Azure_AVTD_notification_center__ul_azure_avtd_nc_notifications">
<li class="li">
<div class="p"><b class="uicontrol">Email notification</b>: Sent to recipients when the scan failure rate meets or exceeds a configurable threshold
                                 (default 5%). To configure the recipients and the threshold, go to  <span class="menucascade"><b class="uicontrol">Administration</b> → <b class="uicontrol">Notifications</b></span>.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">In-console bell notification</b>: Displayed in the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console Notifications screen when the scan failure rate exceeds 5%. The alert links
                                 directly to <b class="uicontrol">Audit Logs</b>, filtered to the <b class="uicontrol">Agentless Vulnerability &amp; Threat Detection</b> category, for immediate investigation.</div>
</li>
</ul>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" id="RN_2026_05_04_Azure_AVTD_notification_center__cloudAccountsAzurepath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Azure</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Notifications</b></span></div>]]></description>
    <pubDate>Fri, 08 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-notification-center-azure</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 1.200.be30965 - Notifications</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-notification-center-gcp</link>
    <description><![CDATA[<div class="p">May 8, 2026—The <span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> version 1.200.be30965 release introduces Notifications integration for Google Cloud.
               <span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> now sends scan failure alerts through the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Notifications screen, giving security teams immediate notification when completed
               scans encounter elevated failure rates across their Google Cloud environment.</div><ul class="ul" id="RN_2026_05_04_GCP_AVTD_notification_center__ul_gcp_avtd_notification_center">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Google Cloud</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: May 8, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">New feature</b>:</div>
<ul class="ul" id="RN_2026_05_04_GCP_AVTD_notification_center__ul_gcp_avtd_nc_feature">
<li class="li">
<div class="p"><span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> now sends notifications through the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> Notifications screen when a completed scan's failure rate exceeds a configured threshold.
                           The following notifications are sent:</div>
<ul class="ul" id="RN_2026_05_04_GCP_AVTD_notification_center__ul_gcp_avtd_nc_notifications">
<li class="li">
<div class="p"><b class="uicontrol">Email notification</b>: Sent to configured recipients when the scan failure rate meets or exceeds a configurable
                                 threshold (default: 5%). To configure the recipients and the threshold, go to  <span class="menucascade"><b class="uicontrol">Administration</b> → <b class="uicontrol">Notifications</b></span>.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">In-console bell notification</b>: Displayed in the <span class="ph" lang="en-us" xml:lang="en-us"><span class="tm">TrendAI Vision One™</span></span> console Notifications screen when the scan failure rate exceeds 5%. The alert links
                                 directly to <b class="uicontrol">Audit Logs</b>, filtered to the <b class="uicontrol"></b><span class="ph" lang="en-us" xml:lang="en-us">Agentless Vulnerability &amp; Threat Detection</span> category, for immediate investigation.</div>
</li>
</ul>
</li>
</ul>
</li>
</ul><div class="p"><span class="menucascade" id="RN_2026_05_04_GCP_AVTD_notification_center__cloudAccountsGCPpath"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Google Cloud</b></span></div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Administration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Notifications</b></span></div>]]></description>
    <pubDate>Fri, 08 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-avtd-notification-center-gcp</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Container Protection for Amazon ECS version 2.2.1</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-v2-2-1</link>
    <description><![CDATA[<div class="p">May 8, 2026—Container Protection for Amazon ECS version 2.2.1 is now available.</div><ul class="ul" id="whatsnew_vdr_lcq_2jc__ul_cp3_rvp_lgc">
<li class="li">
<div class="p"><b class="uicontrol">Cloud Platform</b></div>
<ul class="ul" id="whatsnew_vdr_lcq_2jc__ul_tbn_xvp_lgc">
<li class="li">
<div class="p">Amazon Web Services (AWS)</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b></div>
<ul class="ul" id="whatsnew_vdr_lcq_2jc__ul_xrr_tkr_cjc">
<li class="li">
<div class="p">Implemented cluster-level exclusion tags to skip automated Fargate patching. <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-exclude-amazon-ecs-cluster-patching#concept_rfp_jgc_2jc">Learn more</a>.</div>
</li>
</ul>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Bug fixes</b></div>
<ul class="ul" id="whatsnew_vdr_lcq_2jc__ul_dn3_scq_2jc">
<li class="li">
<div class="p">Fixed an ECS Fargate init container that sometimes became stuck in running state.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where Fargate tasks were not patched for AWS accounts with certain
                           SCPs.</div>
</li>
</ul>
</li>
</ul>]]></description>
    <pubDate>Fri, 08 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-rn-V1CS-amazon-v2-2-1</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>File Security Storage has released template version 2.0.8 for Google Cloud</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-template-version-2-0-8-for-gcp</link>
    <description><![CDATA[<div class="p">May 11, 2026—File Security Storage has released template version 2.0.8 for Google
               Cloud. It resolves the following issues:</div><ul class="ul" id="whatsnew_lq5_vw1_2jc__ul_d44_5z1_2jc">
<li class="li">
<div class="p">Fixed an issue where the token rotator failed silently after 7 days</div>
</li>
<li class="li">
<div class="p">Fixed minor vulnerabilities</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 11 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-template-version-2-0-8-for-gcp</guid>
    <category>File Security</category>
</item>
<item>
    <title>File Security Storage has released template version 4.0.5 for AWS</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-template-version-405-for-aws</link>
    <description><![CDATA[<div class="p">May 11, 2026—File Security Storage has released template version 4.0.5 for AWS. It
               resolves the following issue:</div><ul class="ul" id="whatsnew_wrz_lkc_2jc__ul_jt5_zkc_2jc">
<li class="li">
<div class="p">Fixed an overly permissive FSS stack set role on the KMS resource</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 11 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-template-version-405-for-aws</guid>
    <category>File Security</category>
</item>
<item>
    <title>File Security Storage has released template version 2.1.5 for Azure</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-template-version-215-for-azure</link>
    <description><![CDATA[<div class="p">May 11, 2026—File Security Storage has released template version 2.1.5 for Azure.
               It contains the following enhancements:</div><ul class="ul" id="whatsnew_a4q_mlc_2jc__ul_alj_mmc_2jc">
<li class="li">
<div class="p">Added Azure Management Group deployment support</div>
<div class="note" id="whatsnew_a4q_mlc_2jc__note_gz3_1k3_2jc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Note" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/note.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Note</h5>
<div class="note-body">
<div class="p">Users who have an existing single-subscription deployment and wish to switch to Management
                                    Group deployment must remove the existing deployment before reinstalling.</div>
</div>
</td>
</tr>
</table>
</div>
</li>
<li class="li">
<div class="p">Added patches for known CVEs affecting Azure Functions dependencies</div>
</li>
<li class="li">
<div class="p">Other minor enhancements</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 11 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-fss-template-version-215-for-azure</guid>
    <category>File Security</category>
</item>
<item>
    <title>Zero Trust Secure Access module for macOS version 2.30.40</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-v-2-30-40</link>
    <description><![CDATA[<div class="p">May 13, 2026—The latest version of the Zero Trust Secure Access Module for macOS has
               been released. It contains enhancements and resolved issues.</div><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_xgq_ldm_fjc__ul_r2m_rdm_fjc">
<li class="li">
<div class="p">Removed non-functional menu items from the system menu bar.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_xgq_ldm_fjc__ul_swq_sdm_fjc">
<li class="li">
<div class="p">Fixed multiple issues that prevented ZTSA from displaying the login page when the
                     Internet Access session expired.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where the sign-in page still appeared after an update, even when <b class="uicontrol">Don't show popup</b> was selected.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where a comment in a PAC file could prevent Internet Access from working
                     correctly.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 13 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-macos-v-2-30-40</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access module for Windows - version 2.34.1035</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-v-2-34-1035</link>
    <description><![CDATA[<div class="p">May 13, 2026—The latest version of the Zero Trust Secure Access Module for Windows
               has been released. It contains new features, enhancements and resolved issues.</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_ncc_vbm_fjc__ul_rrk_3cm_fjc">
<li class="li">
<div class="p">Added a traffic routing option in <span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span> that controls whether the Windows ZTSA agent forwards management traffic through
                     the XBC proxy or directly.</div>
</li>
<li class="li">
<div class="p">Updated the file property from “Trend Vision One™” to "<span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span>".</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_ncc_vbm_fjc__ul_mvr_kcm_fjc">
<li class="li">
<div class="p">Added <code class="filepath">aadcdnjp.msftauth.net</code> and <code class="filepath">aadcdnjp.msauth.net</code> to the allow list for browser-based authentication.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_ncc_vbm_fjc__ul_lqz_jcm_fjc">
<li class="li">
<div class="p">Fixed an issue where the vertical scroll bar was missing on the Connection Details
                     page.</div>
</li>
<li class="li">
<div class="p">Fixed a crash that occurred when the start time or end time in Update Settings was
                     set to 24:00 in <span class="ph" lang="en-us" xml:lang="en-us">
<span class="tm">TrendAI Vision One™</span></span>.</div>
</li>
<li class="li">
<div class="p">Fixed an issue where the Internet Access status repeatedly toggled between connected
                     and disconnected due to a ZTSA service crash.</div>
</li>
<li class="li">
<div class="p">Fixed an issue that prevented users from accessing an internal app when its FQDN,
                     IP, or protocol overlapped with another internal app in a different connector group.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 13 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-module-windows-v-2-34-1035</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access Private Access Connector version 2.40.0.1957</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-40-0-1957</link>
    <description><![CDATA[<div class="p">May 13, 2026—Zero Trust Secure Access Private Access Connector version 2.40.0.1957
               contains resolved issues.</div><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_nnf_cqs_fjc__ul_ldq_kqs_fjc">
<li class="li">
<div class="p">Resolved a JSON parsing error that could cause incorrect keep-alive settings, improving
                     connection stability.</div>
</li>
<li class="li">
<div class="p">Resolved an issue where Private Access traffic could be dropped after the agent automatically
                     reconnected.</div>
</li>
</ul>]]></description>
    <pubDate>Wed, 13 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pa-connector-v-2-40-0-1957</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access On-premises Gateway Version 1.0.83</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-83</link>
    <description><![CDATA[<div class="p">May 18, 2026—The Zero Trust Secure Access On-premises Gateway version 1.0.83 contains
               new features, enhancements, and resolved issues.</div><div class="p"><b class="uicontrol">New features</b></div><ul class="ul" id="whatsnew_p5s_r34_gjc__ul_cz4_bj4_gjc">
<li class="li">
<div class="p">Added support for the new tenancy restriction profile for Anthropic Claude.</div>
</li>
</ul><div class="p"><b class="uicontrol">Enhancements</b></div><ul class="ul" id="whatsnew_p5s_r34_gjc__ul_dz4_bj4_gjc">
<li class="li">
<div class="p">Extended AI file upload inspection support to cover Google Gemini official API-based
                     file uploads, enabling consistent DLP protection for both web and API upload scenarios.</div>
</li>
</ul><div class="p"><b class="uicontrol">Resolved issues</b></div><ul class="ul" id="whatsnew_p5s_r34_gjc__ul_ez4_bj4_gjc">
<li class="li">
<div class="p">Resolved several issues affecting Claude content inspection, including response timeout
                     handling and malicious response detection reliability during add-in interactions.</div>
</li>
<li class="li">
<div class="p">Fixed DeepSeek response detection issues caused by API behavior changes that introduced
                     a retry mechanism when prompts are blocked.</div>
</li>
</ul>]]></description>
    <pubDate>Mon, 18 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-prem-gateway-version-1-0-83</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access adds PoP site in AWS Malaysia</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-aws-malaysia</link>
    <description><![CDATA[<div class="p">May 18, 2026—Zero Trust Secure Access Internet Access now supports the AWS Malaysia
               region. Users in the region may configure their service FQDNs to reflect the new location.
               For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div>]]></description>
    <pubDate>Mon, 18 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-ztsa-pop-site-aws-malaysia</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Zero Trust Secure Access adds PoP site in Google Cloud Chile</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-zts-pop-site-google-cloud-chile</link>
    <description><![CDATA[<div class="p">May 18, 2026—Zero Trust Secure Access Internet Access now supports the Google Cloud
               Chile region. Users in the region may configure their service FQDNs to reflect the
               new location. For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-port-fqdn-ip-address-requirements#GUID-09957805-70E7-401F-A691-F587FCE2CB8B-bkovbg">Port and FQDN/IP address
                  requirements</a>.</div><div class="p"><span class="menucascade"><b class="uicontrol">Zero Trust Secure Access</b> → <b class="uicontrol">Secure Access Configuration</b> → <b class="uicontrol">Internet Access and AI Secure Access Configuration</b></span></div>]]></description>
    <pubDate>Mon, 18 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-zts-pop-site-google-cloud-chile</guid>
    <category>Zero Trust Secure Access</category>
</item>
<item>
    <title>Endpoint Security Policies now supports duplicating policies, increased policy visibility</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-duplicating-policies-visibility</link>
    <description><![CDATA[<div class="p">May 18, 2026 - You can now duplicate policies in Endpoint Security Policies.</div><div class="p">Duplicate policies keep all of the same settings, including which policy resources
               apply to the endpoint security features. To duplicate a policy, select the policy
               you want to copy, and click <b class="uicontrol">Duplicate</b>.</div><div class="p">Additionally, <span class="tm">TrendAI Vision One™</span> Administrator accounts can configure user permissions to allow <span class="tm">TrendAI Vision One™</span> users to view policies outside the user's asset visibility scope. Users can duplicate
               any visible policy, but cannot edit or delete a policy outside their scope.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-policy-configuration#concept_wys_frv_hfc">Policies</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security Configuration</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security Policies</b></span></div>]]></description>
    <pubDate>Mon, 18 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-duplicating-policies-visibility</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>New Endpoint Inventory columns provide unified visibility for agent version and update status</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-columns-visibility-for-version</link>
    <description><![CDATA[<div class="p">May 18, 2026—Endpoint Inventory introduces three new columns to provide enhanced unified
               visibility for how Version Control Policies applies to your agents.</div><div class="p">This update adds the following three columns:</div><ul class="ul" id="whatsnew_fmh_srv_fjc__ul_nwk_wrv_fjc">
<li class="li">
<div class="p"><b class="uicontrol">Agent version</b>: displays the unified agent version (YYYYMM). Hover over the version number to get
                     the detailed Protection Module and Endpoint Sensor versions.</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Agent update setting</b>: displays the applied policy setting for update checks (Always, Scheduled, or Never)</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Agent version status</b>: displays the status of the current agent version, whether it is the latest version
                     allowed by the policy, an update is recommended or required to maintain protection
                     capabilities, or if the OS is not supported</div>
</li>
</ul><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-endpoint-inventory-table-columns#reference_l3v_mrv_k2c">Endpoint Inventory table columns</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Endpoint Inventory</b></span></div>]]></description>
    <pubDate>Mon, 18 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-new-columns-visibility-for-version</guid>
    <category>Endpoint Security</category>
</item>
<item>
    <title>Execution profile enhancements</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-prca-enhancement</link>
    <description><![CDATA[<div class="p">May 18, 2026—Execution profile process chains are now streamlined to stabilize output
               quality, improve accuracy, and prevent unexpected errors without changing detection
               behavior or enforcement logic.</div><div class="p">For more information, see <a class="xref" href="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-execution-profile#GUID-FE1F2827-DCDB-4146-BD35-C9003A0EBD6A">Execution profile</a>.</div><div class="p"><span class="menucascade" lang="en-us" xml:lang="en-us"><b class="uicontrol" lang="en-us" xml:lang="en-us">Agentic SIEM and XDR</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Workbench</b></span></div>]]></description>
    <pubDate>Mon, 18 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-wn-prca-enhancement</guid>
    <category>Agentic SIEM &amp; XDR</category>
</item>
<item>
    <title>Cyber Risk Exposure Management capabilities and related solutions to temporarily be read-only during scheduled maintenance</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crem-backend-maintenance</link>
    <description><![CDATA[<div class="p">May 18, 2026—In June and July 2026, scheduled maintenance will be performed across
               all regions to implement a performance upgrade. During each region's maintenance period,
               the following capabilities and solutions will temporarily be in read-only mode and
               edit actions will be unavailable.</div><div class="p">Affected capabilities and solutions:</div><ul class="ul">
<li class="li">
<div class="p">Cyber Risk Overview</div>
</li>
<li class="li">
<div class="p">Attack Surface Discovery</div>
</li>
<li class="li">
<div class="p">Threat and Exposure Management</div>
</li>
<li class="li">
<div class="p">Vulnerability Management</div>
</li>
<li class="li">
<div class="p">Attack Path Prediction</div>
</li>
<li class="li">
<div class="p">Cloud Security Posture</div>
</li>
<li class="li">
<div class="p">Identity Security Posture</div>
</li>
<li class="li">
<div class="p">Cyber Risk Exposure Management Public API (read operations will remain accessible)</div>
</li>
<li class="li">
<div class="p">Network Overview</div>
</li>
<li class="li">
<div class="p">Zero Trust Secure Access</div>
</li>
<li class="li">
<div class="p">Reports</div>
</li>
<li class="li">
<div class="p">Tag Management</div>
</li>
</ul><div class="p">During the maintenance period, you can still sign in to <span class="tm">TrendAI Vision One™</span> and view your data. However, write operations and data updates will be temporarily
               unavailable until the maintenance is complete.</div><div class="p">The following table lists the planned maintenance schedule.</div><div class="important" id="CREMScheduledMaintenanceReadOnly2026__note_k3f_gym_gjc">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">Exact dates and times are subject to change. Watch for the in-console banners in each
                           affected capability.</div>
</td>
</tr>
</table>
</div><div class="table" id="CREMScheduledMaintenanceReadOnly2026__I_ouj655_">
<table border="1" class="tgroup">
<colgroup class="colspec" style="width: 25%;"></colgroup>
<colgroup class="colspec" style="width: 50%;"></colgroup>
<colgroup class="colspec" style="width: 25%;"></colgroup>
<thead class="thead table-header-style">
<tr class="row">
<td class="entry">
<div class="p">Region</div>
</td>
<td class="entry">
<div class="p">Planned window (EST)</div>
</td>
<td class="entry">
<div class="p">Duration</div>
</td>
</tr>
</thead>
<tbody class="tbody">
<tr class="row">
<td class="entry">
<div class="p">ZA</div>
</td>
<td class="entry">
<div class="p">June 2, 2026, 12:00 PM to 6:00 PM</div>
</td>
<td class="entry">
<div class="p">6 hours</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">UK</div>
</td>
<td class="entry">
<div class="p">June 9, 2026, 12:00 PM to 6:00 PM</div>
</td>
<td class="entry">
<div class="p">6 hours</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">CA</div>
</td>
<td class="entry">
<div class="p">June 11, 2026, 5:00 PM to 11:00 PM</div>
</td>
<td class="entry">
<div class="p">6 hours</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">AU</div>
</td>
<td class="entry">
<div class="p">June 16, 2026, 9:30 AM to 5:30 PM</div>
</td>
<td class="entry">
<div class="p">8 hours</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">IN</div>
</td>
<td class="entry">
<div class="p">June 18, 2026, 9:30 AM to 5:30 PM</div>
</td>
<td class="entry">
<div class="p">8 hours</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">SG</div>
</td>
<td class="entry">
<div class="p">June 23, 2026, 9:30 AM to 5:30 PM</div>
</td>
<td class="entry">
<div class="p">8 hours</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">EU</div>
</td>
<td class="entry">
<div class="p">June 25, 2026, 12:00 PM to June 26, 2026, 12:00 AM</div>
</td>
<td class="entry">
<div class="p">12 hours</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">JP</div>
</td>
<td class="entry">
<div class="p">June 30, 2026, 9:30 AM to 5:30 PM</div>
</td>
<td class="entry">
<div class="p">8 hours</div>
</td>
</tr>
<tr class="row">
<td class="entry">
<div class="p">US</div>
</td>
<td class="entry">
<div class="p">July 4, 2026, 9:30 AM to 5:30 PM</div>
</td>
<td class="entry">
<div class="p">8 hours</div>
</td>
</tr>
</tbody>
</table>
</div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cyber Risk Exposure Management</b></div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Reports</b></div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Tag  Management</b></div><div class="p"><b class="uicontrol" lang="en-us" xml:lang="en-us">Zero Trust Secure Access</b></div>]]></description>
    <pubDate>Mon, 18 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-crem-backend-maintenance</guid>
    <category>Cyber Risk Exposure Management</category>
</item>
<item>
    <title>Agentless Vulnerability &amp; Threat Detection version 20260519.183850</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-20260519183850</link>
    <description><![CDATA[<div class="p">May 19, 2026—Agentless Vulnerability &amp; Threat Detection version 20260519.183850 reduces
               the number of deployed resources and improves stability for Azure deployments.</div><ul class="ul" id="RN_2026_05_19_Azure_AVTD_20260519_183850__ul_azure_avtd_20260519_183850">
<li class="li">
<div class="p"><b class="uicontrol">Cloud platform</b>: Azure</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Release date</b>: May 19, 2026</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Deployment method</b>: Terraform</div>
</li>
<li class="li">
<div class="p"><b class="uicontrol">Enhancements</b>:</div>
<ul class="ul" id="RN_2026_05_19_Azure_AVTD_20260519_183850__ul_azure_avtd_20260519_enhancements">
<li class="li">
<div class="p"><b class="b">Resource consolidation</b>: Reduced the number of deployed resources, including function apps, service plans,
                           and role assignments, by 50%. This change, along with related improvements, also reduced
                           the overall deployment duration by 50%.</div>
</li>
<li class="li">
<div class="p"><b class="b">Stable pattern updates</b>: Improved the stability of pattern updates to ensure successful downloads from the
                           Sentry backend and uploads to customer subscriptions.</div>
</li>
<li class="li">
<div class="p"><b class="b">Function updater fix</b>: Ensured that newly released functions automatically update deployed functions in
                           customer subscriptions.</div>
</li>
<li class="li">
<div class="p"><b class="b">Stable function synchronization</b>: Enhanced synchronization of functions during stack deployment to ensure stability
                           and prevent blocking deployment across multiple regions.</div>
</li>
</ul>
</li>
</ul><div class="important">
<table border="0" cellspacing="0" class="note-layout">
<tr>
<td class="note-icon"><img alt="Important" height="32" src="https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-resources/important.png" width="32"/></td>
<td class="note-text">
<h5 class="note-head">Important</h5>
<div class="note-body">
<div class="p">A stack update is required to apply these changes.</div>
</div>
</td>
</tr>
</table>
</div><div class="p"><span class="menucascade" id="RN_2026_05_19_Azure_AVTD_20260519_183850__cloudAccountsAzurepath_20260519"><b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Security</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Cloud Accounts</b> → <b class="uicontrol" lang="en-us" xml:lang="en-us">Azure</b></span></div>]]></description>
    <pubDate>Tue, 19 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-avtd-version-20260519183850</guid>
    <category>Cloud Security</category>
</item>
<item>
    <title>Service Gateway Appliance Firmware 3.0.29</title>
    <link>https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-appliance-firm-3029</link>
    <description><![CDATA[<div class="p">May 20, 2026—Service Gateway: Service Gateway Appliance Firmware 3.0.29 delivers key
               enhancements, bug fixes, and security updates.</div><ul class="ul">
<li class="li">
<div class="p">Added "configure port list" CLI command to display port status</div>
</li>
<li class="li">
<div class="p">Applied CIS Section 5 security hardening for SSH, PAM, and password policies</div>
</li>
<li class="li">
<div class="p">Enhanced temporary root password generation with CIS-compliant rules</div>
</li>
<li class="li">
<div class="p">Fixed cloud configuration corruption on Rocky Linux 9.7 for Azure image deployments</div>
</li>
<li class="li">
<div class="p">Fixed port disable feature blocking outbound traffic due to incorrect firewall rules</div>
</li>
<li class="li">
<div class="p">Fixed incorrect active connection count calculation in appliance metrics</div>
</li>
<li class="li">
<div class="p">Fixed incorrect input type in temporary root password generation</div>
</li>
<li class="li">
<div class="p">Vulnerability fix</div>
</li>
</ul><div class="p">For detailed update schedules, see <a class="xref" href="https://success.trendmicro.com/en-US/solution/KA-0022226" target="_blank">2026 Release for TrendAI Vision One™ Service Gateway</a> in the Success Portal.</div>]]></description>
    <pubDate>Wed, 20 May 2026 00:00:00 GMT</pubDate>
    <guid isPermaLink="false">https://docs.trendmicro.com/en-us/documentation/article/trend-vision-one-service-gateway-appliance-firm-3029</guid>
    <category>Workflow and Automation</category>
</item>
   </channel>
</rss>
