Axonius Release Notes 8.0.4
Release Date: November 30th 2025
These Release Notes contain new features and enhancements added in version 8.0.4.
Exposures New Features and Enhancements
The following new features and enhancements were added to Exposures:
Supporting Query Conditions when Calculating Risk Score
The settings for Risk Score calculation were enhanced to include Query Conditions in addition to the existing Field Conditions. Users can now assign risk values based on whether an asset exists within a selected query. For example, assign one value to a Device Risk Score if the device is found in a specified query, and a fallback value if it is not.
SaaS Applications New Features and Enhancements
Application Settings
Axonius updated the coverage for Application settings for both NIST 800 53 (Version 5.2 that was released in August 2025) and CIS version 8.1.
Axonius Platform New Features and Enhancements
New Asset Type ‘Repositories’
A new ‘Repositories’ asset type was added to the system. A sub-asset of Application Resources, it contains only assets where the Application Resource Type is a repository. A code-based repository is a version-controlled space where source code and related files are stored, tracked, and collaboratively updated.
System Settings New Features and Enhancements
The following updates were made to various System settings:
Enterprise Password Managers
Access Management - AWS Secrets Manager Users can now authenticate to AWS Secrets Manager using an instance profile, which assumes the role assigned to the Axonius Instance installed on their EC2 instance. When authenticating with an instance profile, there is no need to provide AWS Access Key ID and AWS Access Key Secret.
CyberArk Vault
The CyberArk Vault password manager now supports access using a proxy.
Enhanced Gateway Health Checks and New Health Statuses
Gateway health checks have been expanded, and new health statuses now clearly indicate the health of a gateway or any issues with connectivity. Tooltips provide a description of each status. The following health statuses are assigned to gateways and indicated in the Health Status field of the Gateways page: Healthy, Host Unreachable, Agent Unreachable, Disconnected and Pending.
Adapter and Enforcement Action Updates
New Adapters
The following new adapters were added:
- Bindplane
- Bindplane is a telemetry-pipeline tool that provides unified collection, processing and export of metrics, logs and traces from diverse sources to target platforms. (Fetches: Devices)
- Cisco Identity Intelligence
- Cisco Identity Intelligence is an AI-powered solution that provides unified visibility across identity stores, analyzes identity behavior, and enables action on risky access attempts. (Fetches: Users)
- E-Quip
- E-Quip is an asset management software that provides inventory control and equipment lifecycle management. (Fetches: Devices)
- Skillcast
- Skillcast is a platform that offers compliance training and e-learning solutions. (Fetches: Users)
Adapter Updates
Custom Parsing New Hyperlink Capability
In adapters that support Custom Parsing, an option was added to create a hyperlink (clickable field) for items within the asset table that redirect to a different page within the system. To achieve that, users need to select the module they want to link to (Devices, Users, etc.) and provide an AQL expression to use in the link.
The following adapters were updated:
-
Amazon Web Services (AWS) - Added an option to fetch S3 Outposts Buckets when certain advanced settings are enabled.
-
Amdocs TMF639 Inventory - This adapter now supports Layer7 API Gateway authentication.
-
Apple Business Manager - Added an option to fetch organization devices information. When you enable this option, you must authenticate using OAuth2.
-
BIND -
- Name Server IP Address added to the connection configuration for DNS Zone Transfer.
- Added the capability to select which record types to ingest as devices.
-
Cisco Unified Communications Manager - Added the option to fetch IP addresses of phones and enrich them with this information.
-
CrowdStrike Falcon - Added an option to calculate the number of agent versions behind the latest available version.
-
GoDaddy - Added the capability to use DNS lookup to get the full DNS chain.
-
Google Cloud Platform (GCP) - Added an option to fetch Google Cloud projects as Accounts/Tenants.
-
Harness - Added the capability to configure the endpoints Axonius connects to.
-
Invicti - Added the option to parse URLs as devices.
-
Kenna Security Platform - Added an option to fetch CVE Enrichments from Kenna VI+.
-
-
Orca Cloud Visibility Platform - Added an option to fetch vulnerable packages.
-
SAP SuccessFactors This adapter now supports User Custom Parsing.
-
SolarWinds Network Performance Monitor - Added proxy parameters to the connection configuration for this adapter.
-
Statseeker - This adapter now supports token-based authentication.
-
VMware Workspace ONE (AirWatch) renamed Omnissa Workspace ONE (AirWatch)
-
VMware vRealize Operations (vROps) - Added an option to fetch Alerts and enrich them with Symptoms information.
New Enforcement Actions
The following Enforcement Actions were added:
- Omnissa Workspace ONE (Airwatch) - Tag Devices - Add tags to devices in Omnissa Workspace ONE.
Updated Enforcement Actions
The following Enforcement Actions were updated:
- ServiceNow - Create Assets - When creating assets using IRE, added the ability to populate a ServiceNow reference field with a reference to the main asset or to the related asset on the main asset.
