You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
- Released: **August 9, 2023 (Engine and Platform)**
100
+
- Platform: **4.18.23070.1004**
101
+
- Engine: **1.1.23070.1005**
102
+
- Support phase: **Security and Critical Updates**
103
+
104
+
### What's new
105
+
106
+
- Improved output for [Get-MpComputerStatus](/powershell/module/defender/get-mpcomputerstatus) if scan results fail to retrieve
107
+
- Extended management options for configuring security intelligence updates with Intune, Group Policy, and PowerShell
108
+
- Extended management options for disabling IOAV scans over the network using Intune, Group Policy, and PowerShell. The new setting is `ApplyDisableNetworkScanningToIOAV` for [Set-MpPreference](/powershell/module/defender/set-mppreference).
109
+
- Improved the Unified agent installation process to handle [MsMpEng.exe](troubleshooting-mode-scenarios.md#scenario-2-high-cpu-usage-due-to-windows-defender-msmpengexe) debugger extensions, if present
110
+
- Fixed an issue pertaining to showing the exclusions list with PowerShell [Get-MpPreference](/powershell/module/defender/get-mppreference) on systems managed by Intune
111
+
- Fixed warn notifications for two attack surface reduction (ASR) rules ([Block Office applications from injecting code into other processes](attack-surface-reduction-rules-reference.md#block-office-applications-from-injecting-code-into-other-processes) and [Block credential stealing from the Windows local security authority subsystem](attack-surface-reduction-rules-reference.md#block-credential-stealing-from-the-windows-local-security-authority-subsystem))
112
+
- Fixed an issue with running `Update-MpSignature -UpdateSource:MMPC` when using a nonelevated PowerShell console (see [Update-MpSignature](/powershell/module/defender/update-mpsignature))
113
+
- Fixed an issue with [ASR rules deployed via Intune](enable-attack-surface-reduction.md#intune) to display accurately in the Microsoft 365 Defender portal
114
+
- Fixed [tamper protection management](prevent-changes-to-security-settings-with-tamper-protection.md) for customers who have Microsoft 365 E3 or [Defender for Endpoint Plan 1](defender-endpoint-plan-1.md)
115
+
- Improved installation and uninstallation logic on Server SKUs using the modern, unified agent (see [Defender for Endpoint onboarding Windows Server](onboard-windows-server.md))
116
+
- Fixed an issue where `AntivirusSignatureLastUpdated` was incorrect when executing [Get-MpComputerStatus](/powershell/module/defender/get-mpcomputerstatus)
117
+
- Addressed a deadlock caused by Microsoft Defender Antivirus in rare cases
118
+
- Added `ProcessId` to ASR Warn exclusion events (see [ASR rules configuration summary card](attack-surface-reduction-rules-report.md#asr-rules-configuration-summary-card))
119
+
- Fixed an issue where values specified in [ThreatSeverityDefaultAction](/windows-hardware/customize/desktop/unattend/security-malware-windows-defender-threatseveritydefaultaction) weren't honored intermittently
120
+
- Improved error reporting in the [modern, unified agent installer](configure-server-endpoints.md#new-windows-server-2012-r2-and-2016-functionality-in-the-modern-unified-solution)
121
+
- Fixed the overriding logic in the ASR rule [Block all Office applications from creating child processes](attack-surface-reduction-rules-reference.md#block-all-office-applications-from-creating-child-processes) configured in warn mode
122
+
- Added support for scanning Zstandard (Zstd) containers/archives
123
+
124
+
### Known issues
125
+
126
+
- None
127
+
96
128
### May-2023 *UPDATE* (Platform: 4.18.23050.9)
97
129
98
-
*Microsoft has released an additional platform update (**4.18.23050.9**) for the May 2023 release.*
130
+
*Microsoft has released a platform update (**4.18.23050.9**) for the May 2023 release.*
- Fixed an issue with [ASR rules deployed via Intune](/mem/intune/protect/endpoint-security-asr-policy) to display accurately in the Microsoft 365 Defender portal
121
-
- Fixed a performance issue when building and validating Defender cache
153
+
- Fixed a performance issue when building and validating the Microsoft Defender Antivirus cache
122
154
- Improved performance by removing redundant exclusion checks
*Microsoft has released a platform update (**4.18.23050.5**) for the May 2023 release. Note that an [additional update](#may-2023-update-platform-418230509) has been released.*
162
+
*Microsoft released a platform update (**4.18.23050.5**) for the May 2023 release, followed by [an additional update](#may-2023-update-platform-418230509).*
- Support phase: **Security and Critical Updates**
182
-
183
-
#### What's new
184
-
185
-
-**Beginning in May 2023, the Platform and Engine version schema have a new format**. Here's what the new version format looks like:
186
-
- Platform: `4.18.23050.1`
187
-
- Engine: `1.1.23050.63000`
188
-
- Fixed memory leak in behavior monitoring
189
-
- Improved resiliency of signature loading and platform updates
190
-
- Quarantine and restore support for [WMI](use-wmi-microsoft-defender-antivirus.md)
191
-
- Fixed attack surface reduction (ASR) rule output with [Get-MpPreference](/powershell/module/defender/get-mppreference)
192
-
- Fixed MSERT to only use release engine version
193
-
- Improved the enforcement of exclusions
194
-
- Added support for enabling real-time protection and signature updates during OOBE
195
-
- Fixed localization for Defender events
196
-
- Deprecated real-time signature delivery setting
197
-
- Updated missing setting (ValidateMapsConnection) in [MpCmdRun.exe](command-line-arguments-microsoft-defender-antivirus.md)
198
-
- Fixed abandoned threats in the Windows Security app
199
-
- Fixed a service-hang issue that caused invalid outputs to display in [Get-MpComputerStatus](/powershell/module/defender/get-mpcomputerstatus)
200
-
201
-
#### Known issues
202
-
203
-
- None
204
-
205
207
### Previous version updates: Technical upgrade support only
206
208
207
209
After a new package version is released, support for the previous two versions is reduced to technical support only. For more information about previous versions, see [Microsoft Defender Antivirus updates: Previous versions for technical upgrade support](msda-updates-previous-versions-technical-upgrade-support.md).
Copy file name to clipboardExpand all lines: microsoft-365/security/defender-endpoint/msda-updates-previous-versions-technical-upgrade-support.md
+32-1Lines changed: 32 additions & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -6,7 +6,7 @@ ms.author: deniseb
6
6
author: denisebmsft
7
7
ms.localizationpriority: medium
8
8
ms.reviewer: pahuijbr, mkaminska, v-vutrieu
9
-
ms.date: 07/06/2023
9
+
ms.date: 08/07/2023
10
10
manager: dansimp
11
11
audience: ITPro
12
12
ms.collection:
@@ -26,6 +26,37 @@ search.appverid: met150
26
26
27
27
Microsoft regularly releases [security intelligence updates and product updates for Microsoft Defender Antivirus](microsoft-defender-antivirus-updates.md). It's important to keep Microsoft Defender Antivirus up to date. When a new package version is released, support for the previous two versions is reduced to technical support only. Versions that are older than the previous two versions are listed in this article and are provided for technical upgrade support only.
0 commit comments