Trellix DLP Endpoint for Windows - SaaS release information
Release Date - July 11, 2025
Trellix DLP Endpoint for Windows - SaaS 11.12.0 release includes new and enhanced features, and resolved issues.
Every update release is cumulative and includes all features and fixes from the previous release. For the previous release information, see here.
For more information about using Trellix DLP Endpoint for Windows - SaaS, see the Trellix DLP – SaaS Product Guide.
Updated platform, environment, or operating system support
You can get the latest information about supported platforms, environments, and operating systems from KB92445.
As part of our ongoing efforts to enhance security, we have upgraded the following third-party libraries:
Libraries | Versions |
|---|---|
zlib | 1.3.1 |
KeyView | 25.1 |
Microsoft Information Protection (MIP) | 1.14.146 |
OpenSSL | 3.3.1 |
Berkeley DB | 5.3.28 |
7-Zip | 23.01 |
libde265 | 1.0.15 |
libxml2 | 2.12.5 |
New or changed features
This release introduces new features or improves existing features:
Optical Character Recognition - Trellix DLP Endpoint for Windows - SaaS now supports Optical Character Recognition (OCR) to scan and extract text from image files across supported data loss prevention channels, such as file transfers, email attachments, web uploads, and image printing. This enhancement extends Trellix DLP – SaaS capabilities to content embedded within images, enabling more accurate detection and protection of sensitive information.
For more information on Optical Character Recognition (OCR), see the Trellix DLP - SaaS Product Guide.
Note
OCR is not supported for Clipboard Protection or Screen Capture Protection rules.
OCR support for Trellix DLP Endpoint for Windows - SaaS requires a separate add-on license. To learn more or to purchase a license, contact your account management team—Sales or Customer Success.
On the Product Deployment page, make sure that Trellix DLP Endpoint for Windows - SaaS is installed before installing the Trellix DLP Endpoint for Windows OCR add-on.
Manual Classification and Visual Labeling Enhancements:
You can now configure manual classification to allow users to add both metadata and a visual label to Microsoft Office files and emails with a single-click option. By default, separate tabs are available for you to add metadata and visual labels to maintain consistency with existing workflows. To enable single-classification selection, go to Windows Client Configuration → User Interface Components and uncheck the option Allow end users to choose one or more classifications to be added to the document metadata.
You can add a customizable prefix before the classification label to provide additional context in Microsoft Outlook.
You can now color-code classification names in document headers and footers to enhance visual identification.
Enhanced UAS Drive Handling in Removable Storage Rules - Trellix DLP Endpoint for Windows - SaaS now extends UAS (USB Attached SCSI) drive support to these rules:
Removable Storage Device Rule
Removable Storage File Access Rule
To improve detection accuracy, the classification logic for UAS (USB Attached SCSI) drives is enhanced by treating them as removable devices. This refinement allows better differentiation between UAS and SATA drives, reducing false identification and minimizing the need for multiple checks.
Resolved issues
This release resolves known issues and customer reported issues.
For the DLP Extension - SaaS related resolved issues, see the Trellix Data Loss Prevention Extension - SaaS Release Notes.
Reference | Resolution |
|---|---|
DLPW-10066 | Fixed an issue where duplicate evidence entries were generated for a single file upload in Zoom meetings when an Application File Access Protection rule (AFAPR) was triggered. |
DLPW-10124 | Fixed an issue where Trellix DLP Endpoint for Windows - SaaS installation failed during OS imaging using Microsoft Configuration Manager. |
DLPW-10823 | Fixed an issue where Trellix DLP Endpoint for Windows - SaaS failed to block screen captures using the Snipping Tool or Snip & Sketch app on Windows 11 23H2 systems. |
DLPW-12352 | Fixed an issue where the files were unintentionally downloaded from the OneDrive local sync folder during DLP processing. |
DLPW-12520 | Fixed an issue where the Classification Tester incorrectly identified .txt files as encrypted. |
DLPW-14468 | Fixed an issue where the Evidence Path field in the Diagnostic Tool was not displayed when Direct-to-Cloud (D2C) evidence upload was configured through the extension. |
DLPW-14643 | Fixed an issue where emails forwarded from Outlook with the DLP add-in enabled and containing user signatures were encrypted, preventing recipients from viewing them in the Gmail mobile app. |
DLPW-14788 | Fixed an issue in Trellix DLP Endpoint for Windows - SaaS where drag-and-drop actions on complex web forms in Google Chrome incorrectly triggered file handling logic, resulting in JavaScript runtime errors. |
DLPW-14813 | Fixed an issue where enabling Application File Access Protection Rules (AFAPR) caused Notepad to freeze when opening text files from a network share. |
DLPW-14829 | Fixed an issue where unchecking the Manage and protect Chromium Incognito and guest mode settings option in Windows Client Configuration did not update the registry key, causing Incognito mode to remain disabled in Google Chrome and Microsoft Edge browsers. |
DLPW-14852 | Fixed an issue where Microsoft Edge (msedge.exe) was crashing due to conflicts between Trellix DLP – SaaSand other Trellix SaaS products. |
DLPW-15764 | Fixed an issue where launching Microsoft PowerPoint on Windows endpoints triggered Bad Image errors due to DLP Printer and ENS Handlers' interactions with |
DLPW-16235 | Fixed a security vulnerability (CVE-2024-43590) by upgrading the Microsoft Visual C++ Redistributable bundled with the Trellix DLP for Windows installer to version 14.42.34438. |
DLPW-16240 | Fixed an issue where web protection rules for specific URLs did not trigger after upgrading to DLP Agent 11.11.2 or 11.10.300. |
DLPW-16254 | Fixed an issue where the Printer Protection rules failed to block printing of sensitive information in Outlook when using the Aptos font. This issue occurred due to improper rendering of specific character combinations such as 'ff', 'ffi', 'ffl', 'fi', and 'fl'. |
DLPW-16635 | Trellix DLP Endpoint for Windows - SaaS now supports integration with Titus SDK on Microsoft .NET 6.0 and later versions |
Known issues
For a list of current known issues, see: Trellix Data Loss Prevention - SaaS Known Issues.
Comparison of Trellix DLP – SaaS with Trellix DLP on-premises
Trellix is working toward feature parity with the on-premises Trellix DLP product. To know more about the options not available in this release, see article 000012803.