Trellix EDR Release Notes (Cloud) - July 31, 2024 release

Prev Next

This Trellix Endpoint Detection and Response - Cloud July 31, 2024 release includes export threat details feature in the Trellix EDR monitoring dashboard.

Every update release is cumulative and includes all features and fixes from the previous release.

The Trellix EDR Monitoring dashboard includes Export feature

The Trellix EDR Monitoring dashboard now includes an Export feature that allows users to export threat details into a .csv file for threat analysis. This feature enables users to export threat details within a specific time frame, according to the threat retention policy configured for the tenant. For more information, refer to the Threat Details section in the Trellix Endpoint Detection and Response Product Guide.

Note

The export option will not be visible in the Trellix EDR Monitoring dashboard if there are no threats present for the selected time frame.

Resolved issues

Reference

Resolution

SEC-123132

This release resolves the issue of creating threat exclusions beyond 1000 entries in the EDR monitoring or configuration dashboard. The threat exclusion limit has now been increased from 1000 to 1500.

SEC-183975

This release enhances the Activity Feed output by including the start time, end time, and device name information associated with each threat. This addition allows users to differentiate between the threats sent to SIEM.

Installation information

The Trellix Endpoint Detection and Response Installation Guide has all the information you need to install the product for the first time and to migrate from Trellix® Active Response.

Known issues

For a list of known issues in this product release, see KB91275.