Cortex XDR is a technology platform tracked across 5 threat clusters and 6 intelligence report mentions on ThreatCluster. First observed February 18, 2026; most recent activity July 23, 2026.
Cybersecurity researchers have identified a significant evasion technique in Palo Alto Networks’ Cortex XDR agent, enabling attackers to bypass behavioral detections entirely. The vulnerability arises from the ability…
A newly discovered vulnerability in the Palo Alto Cortex XDR Broker Virtual Machine (VM) allows highly privileged, authenticated attackers to access and modify sensitive system information. The issue was identified…
OpenAI has introduced GPT-5.4-Cyber, a specialized AI model for defensive cybersecurity, available only to vetted professionals through its Trusted Access for Cyber (TAC) program. This model is designed to facilitate…
Palo Alto Networks announced the launch of Unit 42 Managed XSIAM 2.0 (MSIAM) on February 17, 2026. This new platform aims to improve cyber resilience by integrating 24/7 expert support with an AI-driven Security…
Research has revealed that attackers can exploit the Cortex XDR Live Terminal feature from Palo Alto Networks to establish command-and-control (C2) communications. This feature operates within a trusted endpoint…