Qualys VMDR Release 2.3 - New Features & Updates

April 07, 2025 

What's New in MITRE ATT&CK 

Enhanced Vulnerability Details 

We have enhanced the Vulnerability Details window to include MITRE ATT&CK Tactics and Techniques. This enhancement offers more profound insights into how vulnerabilities relate to real-world attack strategies and adversary behaviors.

The new MITRE ATT&CK section now presents comprehensive tactical intelligence:

  • Tactic Name & ID: Recognizes the larger strategic goals that attackers seek to accomplish.
  • Technique Name & ID: Outlines adversaries' specific methods to exploit vulnerabilities.

To see this information, go to Vulnerabilities > use any MITRE ATT&CK Group by filter > click a QID in the filtered view > click MITRE ATT&CK. You will find insights into the related Tactics and Techniques, including their names and IDs.

Availability of MITRE ATT&CK in Scan Report Template

We have added MITRE ATT&CK tactics and techniques to the scan report. Now, you can generate a detailed host-based report with tactic and technique names and their IDs.

This enhancement enables faster remediation by aligning threats with MITRE’s prioritization framework. It provides a structured view of how potential or active threats map to known adversary behaviors, helping you take more informed security actions.

For more details, refer to the Qualys Enterprise TruRisk™ Platform Release Notes.

What's New in Responses

Alerting Integration with Microsoft Teams

Integrating alerts with Microsoft Teams empowers security and IT teams to receive real-time notifications directly in their Teams channels. This integration significantly enhances the response to critical evaluations, fosters collaboration, and boosts visibility, enabling teams to take swift action on urgent security alerts without disrupting their workflow.

How It Works

The steps are as follows:

  1. Create a Webhook URL in Microsoft Teams (via an Incoming Webhook connector in a channel).
  2. Go to Responses > Actions > New Action > and select Post to Teams as your Select Action. 
  3. Configure Webhooks in Qualys under the Teams Configuration section. 

Benefits of Microsoft Teams Alerting Integration

Benefits of using Microsoft Teams in VMDR Responses are as follows:

  • Faster Incident Response: Teams get notified immediately and can act without delay.
  • Improved Collaboration: Security and IT teams can discuss issues in real time.
  • Reduced Alert Fatigue: Customizable notifications ensure only critical alerts are surfaced.
  • Seamless Workflow Integration – No need to switch between tools for alert management.