Changelog
Follow up on the latest improvements and updates.
RSS
Autotask PSA integration is officially moving out of beta to general availability! Customers can now configure incident reports and billing information to be populated in their instance of Autotask.
For existing SAT customers who also have EDR and/or ITDR, when an Incident Report is provided the Huntress Managed Security Platform will automatically recommend the corresponding SAT episode(s) that can be assigned to individual learners or an entire organization. A new tab called 'Recommendations' will list the suggested episode(s) and this can be one-click assigned from the report itself and tracked in the SAT portal for completion monitoring and reporting.
This new feature enables just-in-time, targeted training to reduce future risks from similar attacks to help businesses be more resilient, and to get even more value when using multiple Huntress products (EDR, ITDR, and SAT).
Huntress EDR for macOS now has visibility into XProtect alerts! XProtect is the antivirus built into macOS. Huntress is able to trigger very high-fidelity signals based on XProtect detections. Signals can be seen on a new Antivirus page on the Mac agent detail pages in the Portal.
Also released is a Microsoft Defender for Endpoint (MDE) integration, which will generate Signals based on MDE alerts. Additionally, the Antivirus page in the Portal shows the status of Defender, as well as supports tasks such as requesting a Defender scan and signature update.
We've introduced correlation signals designed to detect bursts of Defender Antivirus activity within short timeframes. These detections trigger when the number of antivirus signals exceed defined thresholds within a specified time window. Now, multiple weaker, lower-fidelity signals will be combined into a single, powerful higher-fidelity signal and reported as part of a single report.
new
Managed ITDR
GCC High Integrations Now Available for Managed ITDR
We are excited to share that partners with Microsoft GCC (Government Community Cloud) High tenants can now fully integrate with Huntress Managed ITDR.
GCC High is a different Microsoft 365 cloud environment designed for U.S. government and cleared contractor use, and supporting these types of specialized tenants has been an ongoing request from Managed ITDR partners.
Initially, this functionality will require a few manual steps to set up and is available by request only. If you are interested in learning more, please reach out to your account manager!
Usage data for SAT and SIEM are now included in billing information sent to Autotask and ConnectWise billing integrations. Customers who have configured their integration prior to April 29th will need to update the mapping in the Portal to propagate the counts to their PSA. Counts are also available via the Organizations API endpoint.
The report API (https://api.huntress.io/docs#summary-reports) previously only returned a link to a Report PDF. The API has been updated to return the raw data contained in a report so that it can be ingested into your own dashboards and reports.
When Felix gets pulled into the digital world, he discovers his weak passwords have left his online accounts defenseless against looming cyber threats. As the “chosen one,” he must train with the Passmaster and level up his security skills before the Titans destroy everything!
Learning Objectives:
- Explain why strong passwords are essential
- Identify common password risks
- Provide steps to create strong, memorable passwords
- Understand the importance of using a password manager
We've now gathered enough data with thousands of Microsoft Teams messages successfully delivered in 'Early Access' and are excited to officially move that feature to general availability (GA).
You can now add comments directly to Incident Reports in your Huntress Dashboard!
This is especially helpful for anyone who is triaging incidents and wants to leave notes for teammates — whether it's to provide additional context, share ticket numbers, or ensure smooth handoffs during shift changes.
Please Note:
Comments are for internal partner/customer use only. While our SOC and Support teams can view these comments, they won’t be responding to them. If you require help with an incident, please go through your normal channels to reach the Huntress SOC.Load More
→