Release Notes Through 2025-09-11

Overview

M365 Remediation & Hardening (Beta)

Liongard is excited to introduce a new feature for our M365 inspector: “Automated Remediation and Hardening for M365.” This solution allows partners to manage security issues by alerting them to misconfigurations and enabling automated remediation.

Key Objectives:

  • Enhanced Security: Automate responses to potential threats, minimizing human error and improving response times.
  • Operational Efficiency: Streamline processes by reducing the need for manual intervention, allowing IT teams to focus on strategic tasks.
  • Proactive Management: Provide partners with the tools to anticipate and mitigate security risks before they escalate into serious issues.

Available Remediation Alerts:

  • Azure Active Directory | High-Level and At-Risk User Identified
  • Microsoft 365 | Stale Users with Licenses 90 days
  • Microsoft 365 | Disabled Users with Licenses
  • Microsoft 365 | Accounts with weak password
  • Microsoft 365 | Privileged Users with Licenses
  • Microsoft 365 | Internal Forwarding Rule Summary
  • Microsoft 365 | External Forwarding Rule Summary
  • Microsoft 365 | Users without a MFA Conditional Access Policy

To learn how to take advantage of this feature, review our documentation.



Minor Updates and Bug Fixes

Platform Minor Updates and Bug Fixes

  • Fixed issue preventing date-time filtering of Asset Inventory Devices tables.
  • Fixed issues related to date sorting on the Reports table.
  • Deactivating users in Liongard will now deactivate users in Visual Insights.
  • Fixed an issue where exports of Asset Inventory data contained empty columns for Tags and MFAStatus.
  • Added the "UserActivityLog” feature flag to enable/disable the view in the UI.
  • Fixed an issue with being unable to delete a user in certain cases.
  • Assign access to the Platform Integration Status section for System Integrators.
  • Fixed Auto-Activation functionality when creating an Environment.
  • Users can now see when dashboards were last updated from the Admin > Reports page for Visual Insights.
  • Fixed an issue where the details under the templates column were not present in CSV export for Actionable Alert Rules.
  • Resolved an issue where the column filters and operators in the Changes tab of the Environment Overview were not functioning as expected.
  • Added support for multiple column filters in the Environment Overview, changes tab, while improving filter header texts to display properly.
  • Resolved an issue with rules logic using numbers that would be triggered inadvertently when a string value using a number was returned.
  • Resolved an issue with the reports filter "Is Not Empty" not properly removing entries that are empty.
  • Fixed the issue to enable filtering on the Details column of the Events table.
  • Fixed an issue that caused incorrect sorting when sorting by Status for Active Inspectors on the Admin > Inspectors screen.

Integration and Inspector Minor Updates and Bug Fixes

  • Actionable Alerts
    • Upgrade the Actionable Alerts page to use the new Table view.
    • In the Actionable Alerts Builder, when creating a rule, improved the dropdown option "ANY" to be fully visible when selected.
  • Asset Inventory
    • Resolved inconsistent behavior in the Asset Inventory, Identities, and Accounts, where the icons found in the dropdown were not aligned with the main grid rendering.
    • Resolved an issue with CSV exports from the Asset Inventory, Account & Identity table not showing the MFA Status correctly.
    • Improved the alert message given when a user with a "Reader" role attempts to add a tag to a Device in the Device Information tab, informing the user they do not have sufficient permissions for this action.
    • Resolved an issue on the tables found in the Cyber Asset Inventory where performing bulk actions on the last page would not properly refresh remaining row, page, or viewed entry counts.
  • Cisco Meraki
    • Friendly Firmware name has been added to Meraki Inspector.
  • ConnectWise
    • Fixed issues with the ConnectWise configuration setup 'Troubleshoot' actions, which in specific cases could result in missing or duplicated questions, as well as inspection errors.
    • Removed functionality to delete unexpected questions from ConnectWise configuration types and IT Glue flexible asset types, allowing partners to properly add their own additional fields to Liongard-managed configuration/flexible asset types.
    • Updated ConnectWise configuration setup "Troubleshoot" help text for clarity.
  • IT Glue
    • Improved IT Glue Integration to handle large requests to avoid rate limiting in certain scenarios.
  • Metrics
    • New metrics have been added for Visual Insights users: 'Hostname [VI]' for Windows Workstations and Servers, and 'List of Installed Software [VI]' for macOS.
  • Microsoft 365
    • Added the ability to use refresh tokens in the Microsoft 365 Remediation feature.
    • Added a new feature to the Microsoft 365 Inspector to be able to return Microsoft product license SKUs, helping maintain data integrity across the inspector and Cyber Risk Dashboard.
  • Windows Workstation
    • Fixed an issue where the Windows Workstation Inspector's Software List would intermittently return an incomplete list.

Liongard Library

Have you checked out the Liongard Library yet? Share custom Metrics and learn best practices from other Partners to get the most out of the platform. Access it in the Support drop-down menu in your instance.

Visit the Liongard Library today!