2026-04-24: New capabilities and improvements for on-premise environments
Endpoint scanning with Device Agent now available for OnPrem
Endpoint scanning using Device Agent is now available in the OnPrem package, bringing agent-based vulnerability detection to Windows endpoints in on-premise environments. This new capability enables continuous, operating system-level assessment of endpoint vulnerabilities, complementing traditional network-based scanning. It provides deeper visibility into installed software, missing patches, and endpoint‑specific risks that are often difficult to detect remotely.
By introducing Device Agent scanning to on-premise deployments, customers can now implement a more comprehensive vulnerability management strategy across both servers and workstations, while maintaining full control over data and infrastructure within their own environment.
Read about the new requirements when using Device Agent here.
Remediation 2.0 now available for OnPrem
Remediation 2.0 is now available for OnPrem, introducing enhanced workflows for managing vulnerability remediation through tickets. This update delivers greater flexibility and structure to ticket management, making it easier to create, assign, track, and resolve remediation tasks within your on-premise environment. With support for team-based workflows and modernized ticket handling, Remediation 2.0 streamlines collaboration and strengthens accountability across both security and operations teams.
Extended scan duration on Scanner Appliances
In this new on-premise version, Scanner Appliances now support an extended web and API scan duration of up to 5 days, allowing long-running scans to complete without interruption. This enhancement is especially valuable for large and complex web targets, where thorough scanning requires additional time, ensuring more complete coverage and more reliable results.
Automatic hostname inheritance for network assets
With this OnPrem release, network assets can now automatically inherit their hostname from the most recent scan. This ensures asset names remain accurate and up to date as environments evolve, making it easier to identify systems, track vulnerabilities, and maintain a reliable asset inventory - all without manual updates.
Enhanced asset tag rules with OR conditions
This OnPrem release includes improvements to asset tagging rules, introducing support for OR conditions when matching certain asset properties, such as asset names. This enhancement enables more flexible and powerful tagging logic, making it easier to classify assets accurately and reducing the need for multiple overlapping rules.
API enhancements with expanded filtering
This OnPrem release introduces several API improvements, including new filtering capabilities. You can now filter results directly through the API, with support for filtering by tags, making it easier to query, integrate, and automate workflows based on specific asset or vulnerability criteria.
Please note: These features are being rolled out to customers gradually - if you don't see them yet, they will become available to you soon.