Open
Conversation
Contributor
✅ Vale Linting ResultsNo issues found on modified lines! The Vale linter checks documentation changes against the Elastic Docs style guide. To use Vale locally or report issues, refer to Elastic style guide for Vale. |
Contributor
🔍 Preview links for changed docs |
jonwalstedt
approved these changes
Feb 19, 2026
|
The notes for #250921, #251656, #251962 and #252263 looks good |
gabriellandau
requested changes
Feb 19, 2026
| * Adds a `region` field to the Amazon Bedrock connector [#252960]({{kib-pull}}252960), [#252956]({{kib-pull}}252956). | ||
| * Improves Automatic Migration performance by reducing the number of {{es}} calls when updating field mappings [#252431]({{kib-pull}}252431). | ||
| * Updates the `fast-xml-parser` package dependency to version 5.3.4 [#251644]({{kib-pull}}251644). | ||
| * Further reduces {{elastic-defend}} behavioral protection CPU usage for trusted applications. |
Contributor
There was a problem hiding this comment.
This one landed in the final 9.3.0 BC.
Suggested change
| * Further reduces {{elastic-defend}} behavioral protection CPU usage for trusted applications. |
| * Reduces {{elastic-defend}} CPU usage when suppressing activity from trusted applications on Windows. This might be especially noticeable in applications that are JIT-heavy like PowerShell and .NET. | ||
| * Improves {{elastic-defend}} visibility into image load events in mixed-architecture scenarios, such as during .NET library loading when the library and main executable might use different architectures. This only applies to Windows 10, version 1709 and later. | ||
| * Refactors {{elastic-defend}} Windows file scanning behavior to reduce the risk of file sharing conflicts with other applications and improve the reliability of malware-on-write and event enrichments that rely on file contents such as code signatures and imphashes. | ||
| * Improves the accuracy of thread CPU usage reported in {{elastic-defend}} metrics documents. |
Contributor
There was a problem hiding this comment.
Suggested change
| * Improves the accuracy of thread CPU usage reported in {{elastic-defend}} metrics documents. | |
| * Further reduces {{elastic-defend}} behavioral protection CPU usage for trusted applications. |
nikitaindik
approved these changes
Feb 19, 2026
nikitaindik
left a comment
There was a problem hiding this comment.
Thanks! 👍 Rule Management team owned updates LGTM.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Resolves #5101: adds the 9.3.1 Security and Endpoint release notes.
Generative AI disclosure
Tool(s) and model(s) used:
Cursor, claude-4.5-opus-high