This Trellix Endpoint Detection and Response - Cloud April 22, 2025 release includes new features, enhancements, and resolved issues.
Every update release is cumulative and includes all features and fixes from the previous release.
Email Notification feature in Trellix EDR
The Email Notification feature is now available in Trellix EDR. Register your email address to receive hourly notifications about new threats and updates to existing threats with severity changes. Each email includes threat details, severity level, and the last updated timestamp.
For more information about the Email Notification feature, see the Trellix EDR Product Guide.
Historical Search now supports parentheses
The Historical Search feature now supports parentheses in EDR Query Language (EDR QL) searches. This enhancement enables you to combine multiple queries and define their precedence using parentheses, eliminating the need to execute queries multiple times.
For more information, see Trellix EDR Product Guide.
Enhancements for host remediation APIs
The host remediation API enhancements include the following:
-
POST edr/v2/remediation/host - Provides additional backend-supported actions, increasing the capability from QuarantineHost and UnquarantineHost actions.
-
GET edr/v2/remediation/host-info - Retrieve the list of hosts and their aGuid values, which can be input for other APIs.
-
POST edr/v2/remediation/* and edr/v2/remediation/actions - Addition of SOAR headers to track the SOAR actions using action history (edr/v2/remediation/actions) note column.
For more information about the enhancements for host remediation APIs, see Trellix EDR Product Guide.
Additional supported fields and operators for Historical Search
Additional supported fields and supported operators are added to the Trellix EDR Historical Search feature. You can use the new additions to improve queries. For more information, see KB94584.
Resolved issues
|
Reference |
Resolution |
|---|---|
|
SEC-197430 |
Resolves the issue where users cannot access information in the Trellix Developer's portal and Trellix Marketplace because of Developer HUB SKU errors and API SKU errors. |
Installation information
The Trellix Endpoint Detection and Response Installation Guide provides information for installing the product and migrating from Trellix® Active Response.
Known issues
For a list of known issues in this product release, see KB91275.