www.prnewswire.com Corelight Enhances Open NDR for AI Threat Detection
Article Content
- •Corelight's Open NDR platform now includes passive asset classification and monitoring.
- •The update addresses AI-driven threats that can exploit vulnerabilities faster than patches.
- •Visibility into all network assets is crucial for effective cybersecurity in the current landscape.
Corelight announced an expansion of its Open NDR platform on June 17, 2026, to include native network performance monitoring and passive asset classification. This enhancement aims to provide security teams with improved visibility over assets and AI services, crucial for defending against AI-powered threats that can exploit vulnerabilities faster than traditional patching methods. The updated platform utilizes a Zeek-based analysis engine to continuously classify every communicating asset, including unmanaged devices and unauthorized AI tools. This development addresses the limitations of conventional endpoint controls and patching strategies, which are now deemed insufficient in the face of advanced AI-driven attacks. Corelight's solution aims to close visibility gaps, ensuring that organizations can detect and respond to potential threats effectively. The platform's capabilities are designed to help organizations prioritize their defenses based on real-time evidence of active attacks.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…