2026-07
This release tracker is LLM-curated and based on the official Microsoft product sources listed below. It provides an architect-grade summary of recent features, changes, and announcements. Always verify critical details against the official documentation. List of all raw markdown files for the releases are at https://github.com/pisinger/pisinger.github.io/tree/main/_ms_release_radar
Microsoft Security Release Radar - July 2026
π¦ Azure Container Apps
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π‘ | Azure Container Apps Sandboxes | Preview | Public preview of sandboxed execution environments for improved isolation. Also introduces HTTP traffic logs, additional managed OpenTelemetry destinations for New Relic, Dynatrace, and Elastic, and custom KEDA scale rule overrides for Azure Functions on Container Apps. |
| π΅ | Regional expansion | New/Updated | Azure Container Apps now available in six additional regions: Germany North, New Zealand North, Chile Central, Korea South, Belgium Central, and Jio India Central. |
| π΅ | Bring Your Own Orchestrator for Jobs | New/Updated | Community-maintained templates for connecting existing workflow engines (Airflow, Temporal, Argo Workflows, Durable Functions, Logic Apps Standard, Dapr Workflow) to Container Apps Jobs. |
β΅ AKS
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π’ | Artifact Streaming | GA | Stream container images from Azure Container Registry to AKS. AKS pulls only necessary layers for initial pod startup, reducing deployment time. |
| π’ | Secure TLS bootstrapping | GA/Fix | Now enabled by default in westcentralus and eastasia regions for enhanced cluster security. |
| π’ | Secure Boot for GPU nodes | GA/Fix | Secure Boot now supported when using GPUs with Azure Linux OS. |
| π’ | Trusted Launch management | GA/Fix | vTPM and Secure Boot can now be enabled/disabled on existing Linux node pools. |
| π‘ | Node Disruption Policy | Preview | Control when reimage-triggering operations are allowed so disruptive changes happen during defined windows. |
| π‘ | Automatic zone placement | Preview | AKS dynamically selects best availability zones for node pools without manual specification. |
| π‘ | Prepared Image Specification | Preview | Create preconfigured node images with required container images and customizations for faster node startup. |
| π‘ | Full caching mode for Ephemeral OS | Preview | Cache entire OS locally on nodes, enabling continued operation during remote storage unavailability. |
| π΄ | Istio security fixes | Security | Istio revisions asm-1-28, asm-1-29, and asm-1-30 include fixes for ISTIO-SECURITY-2026-005. Action required: restart Istio workload pods to re-inject newer istio-proxy patch versions. |
| π΄ | containerd CVE patches | Security | Updated from 1.7.32 to 1.7.33, including fixes for CVE-2026-53488, CVE-2026-47262, and CVE-2026-34986. |
| π΄ | Cilium security updates | Security | Cilium, Hubble, and ACNS security agent images updated across Kubernetes versions 1.32, 1.34, and 1.36 with security patches. |
| β« | enableCustomCATrust retirement | Deprecation | On September 14, 2026, enableCustomCATrust preview property retires. Remove βdisable-custom-ca-trust to avoid scaling failures. |
| β« | Windows Server Annual Channel retirement | Deprecation | AKS no longer supports creating node pools with Windows Server Annual Channel for Containers. Existing pools unaffected. |
| β« | Flatcar Container Linux retirement | Deprecation | AKS no longer supports creating node pools or clusters with Flatcar Container Linux. Existing node pools unaffected. |
| β« | Kubernetes 1.30 deprecation | Deprecation | Kubernetes 1.30 deprecated. Upgrade to supported version or opt into long-term support. |
| π΅ | Windows Server 2025 default | New/Updated | Starting with Kubernetes 1.37 (expected October 2026), Windows Server 2025 is default OS SKU for new Windows node pools. |
| π΅ | Node Auto-Provisioning improvements | New/Updated | Sets kubernetes.azure.com/mode: user on default NodePool; uses In-VM spot rebalancing signal for improved eviction notifications. |
| π΅ | Network plugin case insensitivity | New/Updated | AKS now accepts mixed-case networkPlugin values during cluster creation. |
| π΅ | CNI Overlay Dual-Stack | New/Updated | Windows CNI Overlay Dual-Stack no longer requires preview feature registration. |
| π΅ | Bug fixes | New/Updated | Multiple fixes including API Server Authorized IP Ranges enforcement, Container Insights onboarding, kube-proxy configuration, App Routing Istio values, Static Egress Gateway reconciliation, Cilium source IP verification, and Node Auto Provisioning issues. |
Security Bulletin: AKS-2026-0005
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π΅ | Ubuntu 22.04 kernel CVE reclassifications | Update | Canonical reclassified many Linux kernel CVEs from βNeeds evaluationβ to βVulnerableβ status, causing increased scanner findings. Many CVEs are unfixed upstream. AKS consumes kernel packages directly from Canonical and cannot independently remediate unfixed vulnerabilities. Upgrading node images alone may not clear findings until Canonical publishes upstream fixes. |
π Azure Monitor
| Indicator | Feature | Type | Description |
|---|---|---|---|
| β« | Azure Diagnostics extension retirement | Deprecation | WAD and LAD retired March 31, 2026. Migration guidance now available: Azure Monitor Agent for storage, Log Analytics data export for Event Hubs, OpenTelemetry metrics for guest OS performance counters. |
| β« | Legacy Container Insights auth retirement | Deprecation | Legacy authentication retired; clusters running it after September 30, 2026 unsupported. Migrate to managed identity authentication. |
| β« | VM client data to Event Hubs/Storage retirement | Deprecation | Preview feature retires July 31, 2026. Alternatives: custom tables on Auxiliary plan, data export rules. |
| β« | VM Insights Map retirement | Deprecation | VM Insights Map and Dependency Agent retire June 30, 2028. Migration guidance and Azure Advisor recommendations available. |
| π‘ | Mirror Azure Monitor data in Fabric | Preview | Expose Log Analytics tables to Fabric through OneLake shortcuts without copying data for cross-domain operational intelligence. |
| π‘ | Export job for Log Analytics | Preview | Export historical records from Log Analytics workspace to Azure Blob Storage in Parquet format for backup, analysis, and compliance. |
| π‘ | Advanced platform metrics | Preview | Paid tier enabling more granular metrics collection with same Azure Monitor tools and APIs. |
| π‘ | Health Models CLI | Preview | New azure CLI extension for building, updating, and querying health models end-to-end. |
| π΅ | GenAI feedback capture | New/Updated | New section covering thumbs-up/thumbs-down feedback capture for agent responses via OpenTelemetry log records with gen_ai.evaluation.* attributes. |
| π΅ | DCR browse experience default | New/Updated | New data collection rule browse and creation experiences now default in Azure portal. |
| π΅ | Log Analytics autosave | New/Updated | Automatically saves session state (query tabs, work mode, scope, time range) to browser local storage for 30 days. |
| π΅ | Table feature support reference | New/Updated | New reference article listing every Azure Monitor Logs table and support for Basic plan, Auxiliary/Lake plan, DCR transformations, and Logs Ingestion API. |
| π΅ | Log Analytics table plan updates | New/Updated | Merged standalone Auxiliary plan article; highlights new features bringing Auxiliary logs up to Basic and Analytics standards. |
βοΈ Microsoft Defender Cloud Apps
No new features or updates documented for July 2026.
π§ Microsoft Copilot Studio
No specific features documented for July 2026.
π¬ Defender Container Sensor
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π’ | Sensor v0.11.4 | GA | General Availability of EKS/GKE Private clusters support. |
| π’ | Sensor v0.10.6 | GA/Fix | Security fixes patching vulnerabilities in authentication, runtime components, and dependencies addressing credential exposure risks. Performance improvements for process event filtering CPU usage. Improved authentication stability with projected service account tokens (PSAT). |
| π’ | Sensor v0.9.62 | GA/Fix | Security fixes patching vulnerabilities in authentication, runtime components, and dependencies addressing credential exposure risks. Performance improvements for process event filtering CPU usage. |
| π’ | Sensor v0.8.55 | GA/Fix | Security fixes patching vulnerabilities in authentication, runtime components, and dependencies addressing credential exposure risks. Performance improvements for process event filtering CPU usage. |
π¨ Microsoft Security Exposure Management
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π‘ | MAI-Augmented scan profile (on-demand) | Preview | MAI-Augmented scan profile now available for on-demand scans triggered from Microsoft Defender portal. Security teams can select this profile when starting scans from Manage scans. |
| π‘ | MAI-Augmented scan profile (CLI) | Preview | MAI-Augmented profile available via Defender CLI, including MAI-Cyber-1-Flash cyber-specialized model extending the agentic scanner. |
| π΅ | Agentic code scanner | Private Preview | Multi-model agentic AI system detecting code vulnerabilities with greater depth and accuracy than traditional static analysis. Scans runnable from Defender CLI or GitHub connector. |
| π΅ | OT data connectors | New/Updated | Support for Armis, Dragos, and Forescout OT data connectors bringing operational technology asset and vulnerability data into Defender portal for unified IT/OT visibility. |
π‘οΈ Microsoft Defender Cloud
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π’ | Database-level SQL VA recommendations | GA | SQL vulnerability assessment recommendations transitioned from grouped to individual recommendations at database level. Each SQL VA rule surfaced as its own recommendation affecting Cloud Score. |
| π’ | Container-level KSPM recommendations | GA | Agentless container-level Kubernetes misconfiguration recommendations assessing individual containers. Deprecated cluster-level recommendations: HostPath volume mounts, allowed ports, host networking/ports, CAP_SYS_ADMIN capability, AppArmor profile restrictions. |
| π’ | AKS version upgrade recommendation | GA | Actionable recommendation identifying minimum AKS version upgrade required to remediate vulnerabilities in AKS-managed system pods. |
| π’ | Runtime-discovered image VA for EKS/GKE | GA | Vulnerability assessment extended to runtime-discovered container images on Amazon EKS and Google GKE for unified multicloud coverage. |
| π’ | Kubernetes node VA for EKS/GKE | GA | Kubernetes node (host) vulnerability assessment extended to EKS and GKE, providing parity with AKS capability. |
| π’ | Docker Hardened image scanning | GA | Vulnerability scanning support extended to Docker Hardened container images. |
| π’ | Kubernetes misconfiguration enforcement | GA | Evaluates Kubernetes resource configurations at admission time with audit/block capabilities. Available via automatic provisioning for AKS, Azure Arc, AWS, and GCP. |
| π’ | Serverless container discovery and posture | GA | Inventory visibility, security recommendations, and attack path analysis for Azure Container Apps, Azure Container Instances, and Amazon ECS on AWS Fargate. |
| β« | Legacy grouped recommendations | Deprecation | Retirement completed July 31, 2026. Deprecated data no longer accessible via API. Customers should migrate automation and queries to individual recommendations. |
| β« | Deprecated plan onboarding block | Deprecation | Plan enablement API now blocks onboarding to five deprecated plans: Defender for AKS, Defender for ACR, Defender for Key Vault, Defender for DNS, Defender for ARM. Existing subscriptions unaffected. |
| π΅ | Foundational CSPM opt-in model | New/Updated | Starting October 27, 2026, Foundational CSPM moves to opt-in for new Azure subscriptions (no longer enabled by default). Existing subscriptions retain current configuration. |
π‘οΈ Microsoft Defender Cloud - Recommendations & Alerts
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π’ | SQL VA individual recommendations | GA | Over 20 new database-level SQL vulnerability assessment recommendations released in GA as part of grouped-to-individual transition. |
| π’ | AKS system pods VA recommendation | GA | Upgrade Azure Kubernetes Service to remove vulnerabilities from AKS system pods. |
| π’ | Docker Hub image VA recommendation | GA | Container images in Docker Hub registry should have vulnerability findings resolved. |
| π’ | Multicloud recommendations expansion | GA | Over 200 new multicloud security recommendations for AWS and GCP resources across data, identity and access, networking, compute, and container categories affecting Secure Score. |
| π’ | PostgreSQL Flexible Server recommendations | GA | Seven new recommendations for Azure Database for PostgreSQL Flexible Servers including logging, secure transport, private endpoints, and backup configurations. |
| π’ | API endpoint security recommendations | GA | Four new recommendations for Function Apps and Logic Apps: disable unused endpoints, enable authentication on API endpoints. |
| π‘ | EMR cluster security recommendations | Preview | Six new preview recommendations for AWS EMR clusters covering IAM roles, security configuration, network access, Kerberos authentication, termination protection, and logging. |
| π‘ | AWS database and analytics recommendations | Preview | Multiple preview recommendations for Amazon AppFlow, Athena workgroups, EBS volumes, Comprehend, DMS, DataSync, FSx, Kendra, Keyspaces, Kinesis, Amazon MQ, Neptune, and QuickSight covering encryption, access control, backups, and network security. |
| π‘ | Serverless container recommendations | Preview | Eight preview recommendations for ECS Fargate tasks and Azure Container Apps covering IAM/task roles, privileged containers, read-only filesystems, public exposure, ECS Exec logging, authentication, and managed identity least privilege. |
| π΅ | SQL data exfiltration alert | Preview | New preview alert: βAn abnormally large number of rows were extracted from your SQL serverβ for detecting potential data exfiltration. |
π― Microsoft Defender XDR
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π‘ | AI agent posture risk assessment | Preview | Microsoft Defender now assesses posture risk for AI agents (enterprise and local) based on configuration, access, runtime activity, endpoint/user context, and active alerts. Provides recommendations to prioritize risky agents. |
| π’ | Domain investigation page | GA | Active Directory domain security investigation page showing domain properties, deployment health, identity summary, service account breakdown, sensitive entities, recommendations, group policies, and trust relationships. |
| π‘ | Threat detection for Agent 365 agents | Preview | Analyzes runtime signals from agent interactions, tool usage, and execution patterns to surface alerts in Microsoft Defender XDR. Supports Copilot Studio, Foundry, M365 Copilot Agent Builder, and Agent 365 SDK integrations. |
| π’ | Real-time protection for Agent 365 tooling | GA | Evaluates tool invocations and responses against security policies with allow/block capabilities for Work IQ MCP and customer MCP tools onboarded to Agent 365. |
π Microsoft Defender Endpoint
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π‘ | AI agent runtime protection updates | Preview | Enhanced AI agent runtime protection with vendor-supported agent event interfaces on standard channels (no Beta required). Support for Codex CLI, GitHub Copilot app, and network inspection for Node.js-based Claw agents including OpenClaw. |
| π’ | Defender Deployment Tool for Linux | GA | Simplifies deployment by combining installation, onboarding, upgrades, and uninstallation into single workflow. Automates prerequisite validation, supports custom paths, specific versions from preferred update channels, and local repositories. Provides Device Timeline integration, Advanced Hunting queries, and detailed error reporting. |
| π΅ | macOS Build 101.26062.0009 | New/Updated | Release version 20.126062.9.0 with bug/performance fixes and extended network diagnostics via mdatp health --details network_configuration. |
| π΅ | macOS Build 101.26052.0016 | New/Updated | Release version 20.126052.16.0 with security and critical updates. |
| π΅ | Linux Build 101.26052.0012 | New/Updated | Improved antivirus enforcement visibility via mdatp health command. More accurate connectivity tests with inline diagnostics. Fixed FIPS-enabled RHEL 8/9 installation issues and WordPress Core inventory detection. |
| π΅ | Windows Antivirus Platform 4.18.26070.9 | New/Updated | Improved archive scanning performance with dynamic memory scaling. Improved cache builds on Lunar Lake CPUs. Fixed cloud protection service rescan loops and HTTPS connection stalls under Network Protection Block mode. |
πΏ MDE Detailed Releases
Windows
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π΅ | Platform 4.18.26070.9 updates | New/Updated | [Windows] Improved archive scanning performance with dynamic memory scaling based on logical cores. Improved cache builds on Lunar Lake CPUs using TrustedImageIdentifier. Fixed excluded files being resubmitted to cloud protection service. Fixed HTTPS connection stalls under Network Protection Block mode from dropped TCP FIN segments. |
macOS
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π΅ | Build 101.26062.0009 | New/Updated | [macOS] Bug and performance fixes. Extended network diagnostics with mdatp health --details network_configuration. |
| π΅ | Build 101.26052.0016 | New/Updated | [macOS] Security and critical updates. |
Linux
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π΅ | Build 101.26052.0012 | New/Updated | [Linux] Improved antivirus enforcement visibility showing real_time, passive, on_demand, or audit mode. More accurate connectivity tests validating offline security intelligence update paths with inline diagnostics. Fixed FIPS-enabled RHEL 8/9 installation failures. Fixed WordPress Core installations not appearing in software inventory. |
π Microsoft Defender Identity
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π’ | Sensor v2.x to v3.x migration | GA | Migration from v2.x to v3.x sensors now generally available. |
| π’ | Domain investigation page | GA | Active Directory domain security investigation showing domain properties, deployment health, identity summary, service account breakdown, sensitive entities, recommendations, group policies, and trust relationships. |
| π΅ | Sensor v2.255.19295.47272 | New/Updated | Adds support for new Event Tracing for Windows (ETW) provider with other improvements. |
| π΅ | Windows Server 2025 DC migration support | New/Updated | Domain controllers running Windows Server 2025 can now migrate from sensor v2.x to v3.x. |
| π΅ | Migration readiness visibility | New/Updated | Servers marked βNot ready for migrationβ now show tooltips listing specific reasons when hovering over status. |
| π΅ | Automatic RPC auditing | New/Updated | Sensor v3.0.8+ automatically enables RPC auditing on domain controllers without manual tag application. |
| π‘ | Expanded SaaS app password protection | Preview | Password protection page now includes risks from SaaS apps (Salesforce, ServiceNow) connected via Defender for Cloud Apps with SSPM support, in addition to AD, Entra ID, and Okta. |
π’ Microsoft Entra ID
No specific features documented for July 2026.
π± Microsoft Intune
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π΅ | Samsung Knox E-FOTA integration | New/Updated | Manage firmware updates for corporate-owned Samsung devices directly in Intune admin center. Control firmware versions, deploy without user interaction, schedule downloads/installations. Supports COSU, COBO, and COPE enrollment types. |
| π΅ | Windows settings catalog additions | New/Updated | New settings for camera behavior, Keyboard Filter controls (Windows Insider), and Windows Subsystem for Linux (WSL). |
| π΅ | Microsoft Edge templates refreshed | New/Updated | Updated to Edge 149 with 15+ new policies including Local Fonts permissions, M365 authentication in work profiles, Copilot configurations, developer tools availability, and WebSocket connection controls. |
| π΅ | Windows App (AVD) settings | New/Updated | New settings for automatic updates, inactive logoff, First Run Experience skip, release ring policy, and desktop shortcut creation. |
| π΅ | Microsoft Store package removal | New/Updated | New subsetting to specify additional package family names (PFNs) to remove beyond built-in defaults. |
| π΅ | Get Started app disable option | New/Updated | New setting to prevent Windows Get Started app availability to users. |
| π΅ | OneDrive settings expansion | New/Updated | Seven new settings including custom folder names, OIDC authentication for on-prem SharePoint, offline mode restrictions, and hard-delete behaviors for folder shortcuts. |
| π΅ | Visual Studio templates refreshed | New/Updated | Updated to version 1.0.184.40051 with Disable Model Context Protocol (MCP) policy. |
| π΅ | tvOS/visionOS Setup Assistant | New/Updated | Support for hiding/showing Setup Assistant screens (Apple ID, Diagnostics Data, Location Services) during automated enrollment for tvOS and visionOS. |
| π΅ | Zero-touch RBAC permission | New/Updated | Dedicated RBAC permission for Google zero-touch enrollment portal access, independent from app management permissions. |
| π΅ | Windows registry data collection | New/Updated | Collect Windows registry data through properties catalog for richer device state visibility without custom scripts. |
| π΅ | Enhanced Windows on-demand sync | New/Updated | Comprehensive on-demand synchronization across configuration policies, apps, and scripts for faster change reflection. |
| π΅ | macOS custom compliance settings | New/Updated | Define compliance checks using scripts and JSON rules for macOS, similar to Windows and Linux support. |
| π‘ | Controlled Configuration for Defender AV | Preview | Defender antivirus settings from Intune/MDE become authoritative, overriding Group Policy, Config Manager, and local scripts. Extends Tamper Protection for consistent device states. |
| π΅ | Microsoft Store apps regional support | New/Updated | Select region/market when adding Microsoft Store apps, enabling deployment of market-specific apps not available in US catalog. |
| π΅ | APP Multiple Managed Accounts | New/Updated | Outlook on iOS/iPadOS (v5.2626.0+) now supports multiple managed accounts within same app. Gradual rollout. |
π§ Microsoft Defender Office 365
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π΅ | Localized notification templates | New/Updated | Default Mark as and notify email templates now localized to userβs Outlook language preference. Custom templates unaffected. |
| π΅ | Unified RBAC default for new tenants | New/Updated | New Defender for Office 365 Plan 2 organizations use Unified RBAC permission model by default starting July 2026. |
| π΅ | Defender for Office 365 Plan 1 in M365 E3 | New/Updated | Microsoft 365 E3 now includes Defender for Office 365 Plan 1. |
| π‘ | Prompt injection protection | Preview | Detects prompt injection attacks hidden in inbound email. |
π€ Microsoft Security Copilot
No specific features documented for July 2026.
π Microsoft Purview
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π‘ | Network Data Security (DLP) | Preview | Protect sensitive data in text and prompts via Microsoft Entra Global Secure Access integration. Enables network-layer interception and inspection of text/AI interactions, enforcement of restrictive actions based on DLP policies, and Insider Risk Management detection. Prevents sensitive data sharing with untrusted cloud applications. |
| π‘ | Unified alert experience | Preview | Combines Triage Agent and Standard alert dashboards into single alerts list page for Insider Risk Management. View and manage classic and agent-triaged alerts together with agent summary previews. |
| π‘ | Expanded user profile details | Preview | Additional Microsoft Entra signals in unified alert experience: office location, employee type, department, last working date. |
| π‘ | Expanded note capabilities | Preview | Enhanced note capabilities across alerts and cases. System-generated notes automatically applied on status changes, assignment changes, closure, or escalation. |
π Microsoft Fabric
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π’ | Custom CA and mTLS in Eventstream | GA | Use custom CA and client certificates from Azure Key Vault with MQTT, Apache Kafka, AWS MSK, and Confluent Cloud for Apache Kafka source connectors. |
| π’ | Folders in Eventhouse tree | GA | Create, rename, delete, and move folders in Eventhouse UI to organize tables, shortcuts, materialized views, functions, and data streams. |
| π’ | Eventhouse update policies with shortcuts | GA | Update policy queries can now join to accelerated shortcut external tables for governed ingestion-time enrichment. |
| π’ | Fabric Maps tilesets | GA | Create PMTiles from OneLake geospatial data for fast, interactive map rendering in Fabric. |
| π’ | Real-Time Dashboard | GA | Monitor Eventhouse data with live refresh, Copilot-created tiles, drill-down exploration, Activator alerts, and team sharing. |
| π’ | Eventstream SQL operator | GA | Filter, aggregate, window, and route events with SQL. Supports multi-destination fan-out, event-time processing for late/out-of-order events, and built-in per-branch testing. |
| π‘ | Azure Event Hubs workspace identity | Preview | Eventstream Azure Event Hubs source can use workspace identity instead of shared access keys for Microsoft Entra ID-based access. |
| π‘ | Investigator insights in Operations Agent | Preview | Analyzes related data after operations agent alert and surfaces scope, observations, patterns, and recommended next steps in Teams. |
| π‘ | Microsoft Fabric Embed | Preview | Embed Real-Time Dashboards in JavaScript or TypeScript apps with delegated Microsoft Entra access. |
| π‘ | Oracle Database CDC connector | Preview | Stream changes from Oracle database into Fabric as structured change events with before/after values using Oracle LogMiner for on-premises or cloud databases (Oracle 12c+). |
| π‘ | Workspace outbound access protection | Preview | Workspace-level outbound network controls for Eventstream, Eventhouse, KQL QuerySet, Activator, Real-Time Dashboards, and Azure/Fabric events. Block unwanted outbound connections by default, allow approved destinations via data connection rules. |
| π΅ | Enhanced IoT Hub connector metadata | New/Updated | Preview support for enhanced metadata in IoT Hub connector. |
| π΅ | HTTP connector pagination | New/Updated | Preview support for pagination in HTTP connector. |
| π΅ | Outbound access protection for Eventstream | New/Updated | Govern Eventstream sources and destinations with workspace-level data connection rules. |
| π΅ | Business Events and UDFs | New/Updated | Publish business events from User Data Functions and automate event-driven workflows in Fabric. |
| π΅ | Real-Time Hub architecture | New/Updated | Separate publishers from consumers across Business Events, Fabric Events, and Azure Events. |
| π΅ | Customer-intent streaming pattern | New/Updated | Capture CDC events, reshape with DeltaFlow, enrich with AI Functions, publish Business Events, and activate responses. |
| π΅ | Row-to-intelligent-action pattern | New/Updated | Stadium operations scenario: capture database changes with CDC, reshape with DeltaFlow, classify with AI Functions in Spark Structured Streaming, route actionable items. |
| π΅ | Row-to-action with Mirrored Database | New/Updated | Manufacturing quality scenario: mirror operational database, stream Delta Change Data Feed, filter with SQL operators, route to Activator and Eventhouse. |
| π΅ | Fabric IQ conversational analytics | New/Updated | Ask questions over governed Power BI semantic models in Microsoft 365 Copilot Chat and Copilot Cowork using data agents. |
| π’ | Plan in Fabric IQ | GA | Unified no-code platform for collaborative planning, reporting, analytics, data integration, and management. |
| π΅ | Fabric data agent public API | New/Updated | Manage data sources and data agents programmatically from local development, CI/CD pipelines, portals, containers, Azure Functions, and backend services. |
π GitHub Security
| Indicator | Feature | Type | Description |
|---|---|---|---|
| π΅ | CodeQL 2.26.1 | New/Updated | Improves analysis accuracy and framework coverage for Go (log/slog modeling), Java/Kotlin (Apache POI models), JavaScript/TypeScript (Angular @HostListener), C/C++ (models-as-data field names), and Rust (reduced false positives for hard-coded cryptographic values). |
| π΅ | CodeQL 2.26.3 | New/Updated | Adds JavaScript/TypeScript/Vue source modeling (Vue Composition API, Vue Router, Sails Action2), improves GitHub Actions queries (merge_group event, untrusted checkout paths, schedule event classification), removes SelfHostedQuery module, and adds C/C++ Windows registry models. |
| π΅ | Organization code quality trends | New/Updated | Organization-level Code Quality dashboard now includes Trends tab showing open findings over 7/14/30 days, ranked repositories by improvement/decline, and respects repository filters. Available for GitHub Enterprise Cloud and Team plans with Code Quality enabled. |
| π’ | Innersource security advisories | GA | GitHub Advanced Security enterprise customers can publish internal security advisories restricted to enterprise repositories. REST API for managing innersource vulnerabilities with Dependabot notifications and PRs for version updates. |
| β« | npm 2FA-bypass GAT deprecation | Deprecation | npm v12 GA enables install-time security defaults (allowScripts off, βallow-git none, βallow-remote none). 2FA-bypass granular access tokens will stop skipping 2FA for account changes and direct publishing in early August 2026. |
| π‘ | Open source license compliance | Preview | Enterprise-wide license policy with ruleset-based checks blocking noncompliant dependencies before merge. New Enterprise Open Source License Policy Manager role for reviewing closure requests. Available for GitHub Advanced Security Code Security licenses. |
| π΅ | npm publish-time malware scanning | New/Updated | Automatic scanning of packages at publish time before availability (typically ~5 min delay). Blocked packages may receive publisher notifications with appeal options. New contentPolicy field in package.json required for dual-use content with DISCLOSURE file. |
| π΅ | Dependabot malware alerts expansion | New/Updated | GitHub Advisory Database now ingests malware advisories from OpenSSF malicious-packages repository, expanding coverage across npm, PyPI, and more ecosystems. |
| π΅ | GitHub Actions workflow approval | New/Updated | Potentially malicious workflow runs in public repositories held for approval before execution. Repository collaborators with write access must review and approve via authenticated web session. |
| π΅ | Credential revocation by token type | New/Updated | Token-type-specific bulk deauthorization and revocation during security incidents (personal access tokens, SSH keys, OAuth app tokens, GitHub App user tokens). Available at enterprise and organization levels via UI and REST APIs with audit logging. |
| π΅ | Dependabot version update cooldown | New/Updated | Default 3-day cooldown before opening version update PRs after release availability. Reduces supply chain attack risk from compromised releases. Security updates unaffected. Configurable via dependabot.yml. |
| π΅ | Code scanning default setup customization | New/Updated | Apply custom CodeQL configuration files to default setup via github-codeql-config-file repository property. Supports cross-repository configuration references and Git Source private registries for private configs. |
| π΅ | Dependabot branch name customization | New/Updated | Customizable Dependabot PR branch names via prefix, separators, case, and template placeholders in .github/dependabot.yml. Helps maintain CI/CD compatibility and naming conventions. |
| π‘ | Code coverage automatic enablement | Preview | AI-generated code coverage workflow creation via repository settings. Generates PR with coverage workflow that builds code, runs tests, generates report, and uploads to GitHub with least-privilege permissions. |
Top 5 Action Items
| Priority | Action | Due | Affected Product(s) |
|---|---|---|---|
| High | Restart Istio workload pods to apply security patches for ISTIO-SECURITY-2026-005 | Immediate | AKS |
| High | Migrate from legacy grouped recommendations to individual recommendations API | Completed July 31, 2026 | Defender Cloud |
| High | Update containerd from 1.7.32 to 1.7.33 to patch CVE-2026-53488, CVE-2026-47262, CVE-2026-34986 | Immediate | AKS |
| High | Migrate legacy Container Insights authentication to managed identity before September 30, 2026 | September 30, 2026 | Azure Monitor |
| Medium | Remove enableCustomCATrust preview property (βdisable-custom-ca-trust) from AKS configurations | September 14, 2026 | AKS |
| Medium | Prepare for npm 2FA-bypass GAT deprecation by stopping use for account changes and direct publishing | Early August 2026 | GitHub Security |
| Medium | Migrate automation using deprecated Defender plans (AKS, ACR, Key Vault, DNS, ARM) to supported plans | TBD | Defender Cloud |
| Medium | Plan migration for Azure Diagnostics extension (WAD/LAD) retirement | Immediate (retired March 31, 2026) | Azure Monitor |
| Low | Review Ubuntu 22.04 kernel CVE findings and verify actual exposure via Ubuntu CVE Tracker | Ongoing | AKS |
| Low | Evaluate AI agent posture risk assessment and runtime protection capabilities for Agent 365 | Ongoing | Defender XDR, Defender Endpoint |
Security Architect Observations
AI agent security emergence: Microsoft is rapidly building out AI agent security capabilities across Defender XDR (posture risk assessment, threat detection, real-time protection), Defender Endpoint (runtime protection for Codex CLI, GitHub Copilot, Node.js agents), and Defender Office 365 (prompt injection detection). This reflects the industryβs recognition that AI agents represent a new attack surface requiring specialized security controls. Security architects should begin inventorying AI agent deployments and assessing current security posture.
Multicloud security coverage expansion: Over 200 new GA recommendations for AWS and GCP resources, plus EKS/GKE vulnerability assessment and Kubernetes node VA, demonstrate Microsoftβs commitment to unified multicloud security posture management. The serverless container posture capabilities (ACA, ACI, ECS Fargate) complete the container security story. Architects managing hybrid/multicloud environments should evaluate consolidating CSPM tooling.
Supply chain security hardening: GitHubβs npm v12 install-time security defaults (scripts off by default), publish-time malware scanning, Dependabot cooldown periods, and OpenSSF malware advisory ingestion represent significant supply chain security improvements. The innersource advisories capability extends enterprise security boundaries to internal components. Security architects should review dependency management policies and consider adopting these capabilities.
Kubernetes security maturation: AKS artifact streaming GA, container-level KSPM recommendations, Kubernetes misconfiguration enforcement at admission, and prepared image specifications show Kubernetes security moving from basic vulnerability scanning to runtime protection and prevention. The Ubuntu kernel CVE reclassification bulletin highlights the complexity of shared responsibility models. Architects should reassess Kubernetes security strategies beyond basic pod security standards.
Identity-centric Zero Trust expansion: Defender Identity sensor v3.x GA, expanded SaaS app password protection (Salesforce, ServiceNow), automatic RPC auditing, and domain investigation pages strengthen on-premises and hybrid identity security. Intuneβs Controlled Configuration preview extends Tamper Protection to override Group Policy and Config Manager. These capabilities support Zero Trust identity pillars but require careful change management.
Data governance and AI convergence: Microsoft Purviewβs Network Data Security preview (DLP for AI interactions via Entra GSA), Fabricβs Real-Time Dashboard GA, and Eventstream SQL operators blur lines between data governance, real-time analytics, and AI security. Security architects should consider how these capabilities enable new data protection patterns for AI workloads and streaming data.
Security Operations Observations
SOC workflow enhancements: Defender XDRβs domain investigation page GA, unified alert experience in Purview Insider Risk Management, expanded user profile details from Entra ID, and system-generated notes on alerts/cases will improve analyst efficiency and investigation quality. The AI agent posture risk dashboard provides new signals for prioritizing agent-related alerts. SOAR teams should update playbooks to leverage these capabilities.
New detection opportunities: SQL data exfiltration alert preview (βabnormally large number of rows extractedβ), prompt injection protection in Defender Office 365, GitHub Actions malicious workflow approval, and expanded multicloud recommendations create new detection use cases. The MAI-augmented scan profiles in Exposure Management may surface previously missed vulnerabilities. Detection engineering teams should prioritize tuning these new signals.
Alert fatigue risk: Over 200 new multicloud recommendations, 20+ SQL VA individual recommendations, and expanded EMR/database recommendations could significantly increase alert volume if not properly scoped. The Ubuntu kernel CVE reclassification bulletin warns of inflated scanner findings that wonβt resolve via upgrades. SOC teams should implement recommendation filtering and prioritization strategies before enabling all new capabilities.
Operational timeline pressures: Multiple deprecations with hard deadlines (Legacy Container Insights auth September 30, 2026; enableCustomCATrust September 14, 2026; VM Insights Map June 30, 2028) create migration workloads competing with BAU operations. The npm 2FA-bypass GAT changes (early August 2026) may disrupt CI/CD pipelines. Operations teams should triage these by business impact and create migration runbooks.
Container sensor improvements: Defender Container Sensor v0.8-v0.11 security fixes (authentication vulnerabilities, credential exposure), performance improvements (process event filtering CPU), and EKS/GKE private cluster support GA improve visibility into containerized workloads. However, operations teams must plan sensor upgrades across AKS versions and validate no performance regression in production environments.
Endpoint deployment simplification: Defender Deployment Tool for Linux GA with Device Timeline integration, Advanced Hunting queries, and detailed error reporting should reduce Linux onboarding friction and improve troubleshooting. The improved Windows on-demand sync and macOS custom compliance settings in Intune provide faster policy enforcement. Operations teams should test these capabilities in pilot groups before broad deployment.