EA-2026-7-16-WIN
Features or Fixes
Feature: The Endpoint Agent now automatically detects and restarts crashed protection components, ensuring continuous protection without requiring manual intervention.
Feature: Updated the diagnostic connectivity check to use current ThreatDown service addresses, ensuring accurate and reliable connection validation results.
Feature: Improved the upgrade process to automatically retry failed engine updates on the next restart.
Feature: Improved the Endpoint Agent's handling of failed component initialization, enabling more reliable automatic recovery.
Feature: The Endpoint Agent no longer displays a leftover tray icon after completing a product update.
Feature: Improved DNS Content Filtering compatibility with Google Chrome, ensuring DNS-based protection rules are enforced even when Chrome's built-in DNS resolver is active.
Feature: Updated the Endpoint Agent tray menu with an improved layout for a more intuitive user experience.
Feature: The Endpoint Agent now automatically reverts from debug to info level diagnostic logging after 14 days, preventing unnecessary performance impact on the endpoint.
Feature: Diagnostic log collections now include a component version summary file, making it easier to identify which versions of each component were active at the time of collection.
Feature: Reduced the size of diagnostic log files by removing an unnecessary file from the collected data.
Fix: Resolved an issue where uninstalling the Endpoint Agent was blocked when Early Launch Anti-Malware (ELAM) protection was enabled.
Fix: Resolved an issue where the DNS protection plugin failed to initialize after upgrading on ARM-based devices.
Fix: Resolved an issue where running commands would fail with a "Named pipe server is not available" error while the endpoint tray process was running.
Fix: Resolved an issue where diagnostic log collection initiated from the ThreatDown console failed to upload.
Fix: Resolved an issue where the Endpoint Agent stopped running after upgrading to a newer version.
Fix: Resolved an issue where device information was not visible in the ThreatDown console after upgrading from an earlier version of the Endpoint Agent.
Fix: Resolved an issue where the protection component failed to initialize after upgrading, leaving the endpoint without active protection.
Fix: Resolved an issue where Application Block rules configured by category were not being enforced on endpoints.
Fix: Resolved an issue where collecting diagnostic logs via the command-line tool failed on the second attempt, resulting in delayed or missing log files.
Fix: Resolved an issue where the Endpoint Agent tray icon was repeatedly refreshing, causing a disruptive experience for users.
Fix: Resolved an issue where errors occurred immediately after installation when the Endpoint Agent attempted to retrieve the quarantine list.
Fix: Resolved a security finding where a temporary script file created during service restart was written to a predictable location in the system's temporary folder.
Fix: Resolved a critical security finding related to hardcoded values in a core protection component.
Refer to the table below for the changes to the Endpoint Agent on Windows and Windows ARM included in this release.
| Component Name | Version |
|---|---|
Agent Updated | 2.5.0.22 |
Agent Service Updated | 2.5.0.22 |
User Agent | 2.2.0.61 |
Asset Manager Updated | 2.2.0.82 |
Endpoint Protection Updated | 2.2.0.69 |
Endpoint Detection and Response | 2.2.0.53 |
Software management SDK | 4.3.6077 |
Endpoint Service Monitor Updated | 2.0.0.21 |
Protection Service | 4.7.9.510 |
Component Package | 1.0.2853 |
Brute Force Protection | 2.2.0.50 |
Active Response Shell | 2.0.0.54 |
DNS Content Filtering Updated | 2.2.0.56 |
DNS Crypt Proxy | 2.1.88 |
SIEM Updated | 2.2.0.51 |
Browser Phishing Protection | 2.2.0.22 |
Firewall Management | 2.2.0.50 |
EA-2026-7-9-WIN
Features or Fixes
Feature: Added support for an upcoming feature: detecting AI tools used by endpoints.
Refer to the table below for the changes to the Endpoint Agent on Windows and Windows ARM included in this release.
| Component Name | Version |
|---|---|
Agent Updated | 2.2.0.73 |
Agent Service Updated | 2.2.0.73 |
User Agent Updated | 2.2.0.61 |
Asset Manager | 2.2.0.73 |
Endpoint Protection Updated | 2.2.0.68 |
Endpoint Detection and Response | 2.2.0.53 |
Software management SDK | 4.3.6077 |
Endpoint Service Monitor | 2.0.0.20 |
Protection Service | 4.7.9.510 |
Component Package | 1.0.2853 |
Brute Force Protection | 2.2.0.50 |
Active Response Shell | 2.0.0.54 |
DNS Content Filtering | 2.2.0.53 |
DNS Crypt Proxy | 2.1.88 |
SIEM | 2.2.0.10 |
Browser Phishing Protection | 2.2.0.22 |
Firewall Management | 2.2.0.50 |
EA-2026-7-28-MAC
Features or Fixes
Fix: Resolved an issue with updating VS Code.
Refer to the table below for the changes to the Endpoint Agent on macOS included in this release.
Component Name | Version |
|---|---|
Agent | 1.7.0.4115 |
User Agent | 1.7.0.4112 |
Asset Manager Updated | 1.7.0.222 |
Endpoint Protection | 1.7.252 |
| Endpoint Detection and Response | 1.7.0.439 |
Software management SDK Updated | 4.3.5762 |
Protection Service | 5.11.1.674 |
| DNS Content Filtering | 1.7.0.70 |
| DNS Proxy Extension | 1.7.42 |
EA-2026-7-14-MAC
Features or Fixes
Feature: Added support for an upcoming feature: detecting AI tools used by endpoints.
Feature: The Mac Endpoint Agent now performs an automatic threat scan upon installation, providing immediate protection from the moment it is deployed.
Feature: Improved Mac Endpoint Agent reliability by detecting and recovering from unresponsive states.
Feature: The Mac Endpoint Agent now supports three new command-line options: -syncnow, -updatesoftware, and -updateprotection, allowing users to manually trigger policy syncs, software updates, and protection database updates on demand from the machine locally.
Fix: Resolved an issue where the macOS software update prompt for Slack would not close after being dismissed.
Fix: Resolved an issue where the domain name for Mac endpoints was not displaying correctly in OneView.
Refer to the table below for the changes to the Endpoint Agent on macOS included in this release.
Component Name | Version |
|---|---|
Agent Updated | 1.7.0.4115 |
User Agent | 1.7.0.4112 |
Asset Manager | 1.7.0.218 |
Endpoint Protection Updated | 1.7.252 |
| Endpoint Detection and Response | 1.7.0.439 |
| Software management SDK | 4.3.4141 |
Protection Service | 5.11.1.674 |
| DNS Content Filtering | 1.7.0.70 |
| DNS Proxy Extension | 1.7.42 |