> For the complete documentation index, see [llms.txt](https://cortex-docs.paloaltonetworks.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://cortex-docs.paloaltonetworks.com/cortex-xdr-3.x-rn/cortex-xdr-release-information/features-introduced-in-2024-xdr/june-2024/release-highlights.md).

# Release Highlights

The Cortex XDR 3.11 and Cortex XDR Agent 8.5 release includes the following highlights:

| FEATURE                                                      | DESCRIPTION                                                                                                                                                                                                                                                                                 |
| ------------------------------------------------------------ | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| Shellcode AI Protection Module                               | Shellcode AI Protection Module: New Precision AI™ machine learning rules are being rolled out to prevent in-memory shellcode attacks in Windows.                                                                                                                                            |
| Dynamic Kernel Protection Module                             | New protection module implemented at the kernel level, which loads during the boot process to protect against kernel-level threats like bootkits, rootkits, and susceptible drivers.                                                                                                        |
| Crypto Wallet BTP Support                                    | An update to the behavioral threat protection (BTP) rules in the Financial Malware protection module now prevents attackers trying to steal or manipulate cryptocurrency wallets stored on Windows and MacOS hosts.                                                                         |
| Revamped Causality Chain Interface                           | To enable faster and more intuitive investigations, the alert Causality Chain interface has been revamped. It now provides easier access to key information about each stage of the causality chain, improving analyst workflows.                                                           |
| Enterprise Multi-Tenant & MSSP Flexible License Model (Beta) | Enterprises and MSSPs who require multiple XDR tenants now have access, through our Beta program, to their own pool of XDR licenses which they can allocate to end-customers, subsidiaries, and business units as needed, using Cortex Gateway for central management of all their tenants. |


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://cortex-docs.paloaltonetworks.com/cortex-xdr-3.x-rn/cortex-xdr-release-information/features-introduced-in-2024-xdr/june-2024/release-highlights.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
