Microsoft Defender for Cloud Apps Updates & Release Notes

Follow

6 updates curated from 1 source by the Releasebot Team. Last updated: Jul 20, 2026

Get this feed:
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 20, 2026
    Microsoft logo

    Microsoft Defender for Cloud Apps by Microsoft

    Increased availability of App governance unused app insights feature (Preview)

    Microsoft Defender for Cloud Apps adds unused app insights to help manage Microsoft 365-connected OAuth apps and improve security.

    The Microsoft Defender for Cloud Apps app governance unused app insights feature helps administrators identify and manage unused Microsoft 365-connected OAuth apps, enforce policy-based governance, and use advanced hunting queries for better security. This feature is now available for most commercial cloud customers. For more information, see Secure apps with app hygiene features.

    Original source
  • Jun 1, 2026
    • Date parsed from source:
      Jun 1, 2026
    • First seen by Releasebot:
      Jul 20, 2026
    Microsoft logo

    Microsoft Defender for Cloud Apps by Microsoft

    June 2026

    Microsoft Defender for Cloud Apps expands Salesforce connector protections in preview with near real-time event monitoring, richer OAuth threat detection, and new app governance insights for Connected Apps and External Client Apps. It also announces file policy retirement as file-based protection moves to Microsoft Purview.

    File policies retiring January 6, 2027

    File-based data protection is moving from Defender for Cloud Apps to Microsoft Purview. File policies retire on January 6, 2027. Review your existing file policies and recreate them as Microsoft Purview DLP or auto-labeling policies before the retirement date. For detailed guidance, including parity gaps and governance action mapping, see Migrate file policies to Microsoft Purview.

    Salesforce connector enhancements (Preview)

    Modern Salesforce attacks increasingly abuse OAuth tokens, connected apps, sessions, and APIs, often bypassing MFA and traditional controls. The Salesforce connector for Microsoft Defender for Cloud Apps is now better equipped to detect these attacks. The connector ingests Salesforce Real-Time Event Monitoring data for near real-time detection of identity and OAuth threats with richer investigation context, and adds OAuth app governance for Salesforce Connected Apps and External Client Apps (ECAs).

    We recommend that Salesforce administrators enable Real-Time Event Monitoring in the Salesforce console for the best detection coverage. Enabling it gives you better latency and more robust detections.

    • Real-time event monitoring: When a Salesforce administrator enables Storing data for the relevant events in Salesforce Event Manager, the Salesforce connector ingests Salesforce Real-Time Event Monitoring data within minutes. This improves detection coverage for OAuth abuse, session hijacking, credential stuffing, and anomalous API activity, and the OAuth apps inventory includes Salesforce Connected Apps and External Client Apps (ECAs). For more information, see Enable Salesforce real-time event monitoring.
    • Highly privileged and Unused app insights for Salesforce OAuth apps: The OAuth apps tab on the Application inventory now includes Highly privileged apps and Unused apps as actionable insights for Salesforce. These insights also contribute to the Highly privileged and Unused statistics on the Non-human identities tab of the Identity inventory.
    • Permissions visible for Salesforce OAuth apps: The Permissions list on the App governance page now includes Salesforce Connected Apps and External Client Apps (ECAs), so you can review the permissions granted to each Salesforce OAuth app. For more information, see View your app details with app governance.
    Original source
  • All of your release notes in one feed

    Join Releasebot and get updates from Microsoft and hundreds of other software products.

    Create account
  • May 1, 2026
    • Date parsed from source:
      May 1, 2026
    • First seen by Releasebot:
      Jul 20, 2026
    Microsoft logo

    Microsoft Defender for Cloud Apps by Microsoft

    May 2026

    Microsoft Defender for Cloud Apps adds a toggle to suppress informational alerts for unsanctioned app access while keeping blocking active.

    Disable informational alerts for unsanctioned app access (Preview)

    You can now disable informational alerts generated when users access unsanctioned apps. A new Generate alert for blocked app access toggle in the Microsoft Defender for Endpoint settings lets you suppress these alerts while keeping blocking enforcement active. For more information, see Disable informational alerts for unsanctioned app access.

    Original source
  • Mar 1, 2026
    • Date parsed from source:
      Mar 1, 2026
    • First seen by Releasebot:
      Jul 20, 2026
    Microsoft logo

    Microsoft Defender for Cloud Apps by Microsoft

    March 2026

    Microsoft Defender for Cloud Apps updates Secure Score category calculations for more accurate identity and app scoring.

    Updates to Secure Score category calculations for increased accuracy

    To improve accuracy and better protect organizational identities, some security recommendations categorized as Cloud apps recommendations are now considered identity-related and grouped under the Identity category. While the total Secure Score remains unchanged, individual identity and app scores may change.

    Original source
  • Jan 1, 2026
    • Date parsed from source:
      Jan 1, 2026
    • First seen by Releasebot:
      Jul 20, 2026
    Microsoft logo

    Microsoft Defender for Cloud Apps by Microsoft

    January 2026

    Microsoft Defender for Cloud Apps updates its Workday connector to use a least-privilege permission model with View-only access.

    Workday connector updated to least-privilege permission model

    The Workday connector now requires only “View” permissions to function. We have removed the “Modify” permission requirement to better align with the principle of least privilege. While existing configurations will continue to work, admins are encouraged to update the Workday account settings to remove these unnecessary rights as a security best practice.

    For more information see: How Defender for Cloud Apps helps protect your Workday environment.

    Original source
  • Similar to Microsoft Defender for Cloud Apps with recent updates:

  • Dec 1, 2025
    • Date parsed from source:
      Dec 1, 2025
    • First seen by Releasebot:
      Jul 20, 2026
    Microsoft logo

    Microsoft Defender for Cloud Apps by Microsoft

    December 2025

    Microsoft Defender for Cloud Apps now supports unified RBAC permissions worldwide.

    Microsoft Defender for Cloud Apps permissions are now integrated with Microsoft Defender unified RBAC

    Integration of Microsoft Defender for Cloud Apps permissions with Microsoft Defender unified RBAC is now available worldwide. For more information, see Map Microsoft Defender for Cloud Apps permissions to the Microsoft Defender unified RBAC permissions. To activate the Defender for Cloud Apps workload, see Activate Microsoft Defender unified RBAC.

    Original source

This is the end. You've seen all the release notes in this feed!

Releasebot

Curated by the Releasebot team

Releasebot is an aggregator of official product update announcements from hundreds of software vendors and thousands of sources.

Our editorial process involves the manual review and audit of release notes procured with the help of automated systems.