|
By Exabeam
Quick disclaimer before we start: I have a strict rule against ambulance chasing. You’ve seen vendor blogs that pounce on a breach headline just to pitch a product and claim it never would have happened with their tool installed. This isn’t that. The reported OpenAI and Hugging Face sandbox incident points to something bigger. Security teams are entering an era where autonomous AI agents can spot opportunities, adapt on the fly, and operate at machine speed.
|
By Exabeam
AI agents don’t hack their way in. They don’t need to. They carry real credentials. They run inside approved systems. They read data, call APIs, and execute workflows on their own. Every action looks authorized because it is. That’s exactly the problem. The risk doesn’t show up in any single action; it emerges in the pattern as behavior shifts and drifts over time.
|
By Exabeam
Not every SIEM solution is built for modern security operations. While Splunk is widely used for log management, many teams face unpredictable pricing, complex tuning, and slow investigations as environments scale. New-Scale Fusion takes a different approach, It combines behavioral analytics, dynamic risk scoring, and coordinated AI agents to help teams detect risk earlier and move investigations forward faster. Here are six ways Exabeam improves outcomes compared to Splunk.
|
By Exabeam
Insider risk detection requires long-term memory because misuse depends on retaining behavioral history long enough to evaluate change. Detection models that rely on short correlation windows reset context too frequently to recognize progression or prioritize developing risk.
|
By Exabeam
Low and slow attacks look normal because they are intentionally distributed into small, permissible actions that avoid detection thresholds. Each step appears legitimate on its own, which prevents detection systems from recognizing the overall progression. The issue is not that security teams lack telemetry. The issue is that traditional detection often evaluates activity in fragments. When each action stays below a rule or threshold, the broader pattern can remain invisible.
|
By Exabeam
The LogRhythm SIEM July 2026 release adds new investigation workflow features, expands automation for administration and archiving, and broadens telemetry coverage across cloud, identity, collaboration, endpoint, and email environments. Organizations running on-premises and hybrid environments often need tight control over data to meet sovereignty and operational requirements.
|
By Exabeam
Exabeam expands Behavior Intelligence to address risks introduced by agentic AI. This release introduces open-source projects for agent verification and telemetry, expanded AI observability with Anthropic Claude support, more than 50 new Agent Behavior Analytics (ABA) detections (bringing total to 90), Exabeam Nova Content Creator, and OWASP Agentic Top 10 coverage scoring in Outcomes Navigator, enabling teams to continuously verify, observe, analyze, and improve AI agent security.
|
By Exabeam
Short correlation windows miss insider risk because misuse develops gradually, often over longer periods than detection models track. Short correlation windows miss insider risk because misuse often spans longer periods than detection models track. When context resets at fixed intervals, small behavioral changes fail to accumulate into visible risk. When context resets at fixed intervals, behavior is evaluated in disconnected segments.
|
By Exabeam
Insider threats often don’t trigger alerts because the activity relies on valid credentials, approved tools, and authorized workflows. When viewed as individual events, this behavior looks normal and stays below traditional rule thresholds. Risk accumulates across otherwise valid actions without producing a signal that meets alert thresholds.
|
By Exabeam
Every CISO has prepared for a budget conversation by building the strongest possible business case. The right data, the right framing, the right numbers. But the security leaders who consistently earn CFO support are not necessarily the ones with the most polished decks. They are the ones who built the relationship that made the ask credible before it ever landed on the table. That distinction came through clearly in a recent conversation between Exabeam CISO Kevin Kirkwood and Exabeam CFO Mike Byron.
|
By Exabeam
The rise of AI agents is transforming the enterprise — and redefining insider risk. As organizations deploy AI agents alongside human employees, understanding behavior has become essential to detecting threats that traditional security approaches miss. Exabeam secures both human and AI agents with Behavior Intelligence, combining behavioral analytics and agent-powered security operations to reduce risk, accelerate threat detection, investigation, and response, and help organizations confidently secure the agentic enterprise.
|
By Exabeam
What if your next breach came down to a token budget? In this episode, Steve Moore is joined by Lou Rabon, Founder and CEO of Cyber Defense Group, for a conversation on the modern CISO's world—from how to interview for the seat, to why AI agents are the next insider threat, to research that reframes breach cost as a token calculation.
|
By Exabeam
Subscribe for more product demos and cybersecurity insights!
|
By Exabeam
What separates a CISO who survives from one who shapes the boardroom? In this episode, Steve Moore sits down with Walt Powell, Lead Field CISO at CDW and author of The CISO 3.0, to unpack the modern CISO playbook—why technical credentials alone no longer cut it, how to build personal eminence, and why most security leaders are still treated as second-class C-suite citizens.
|
By Exabeam
What happens when an AI agent inside your company starts behaving like an insider threat? In part two, Steve Moore picks the thread back up with former FBI operative Eric O'Neill to explore how agentic AI is rewriting cybersecurity, the legal traps that follow a breach, and why the modern CISO must think like a spy hunter.
|
By Exabeam
What does it feel like to stand in the smoking ruin of a ransomware attack? In this episode, Steve Moore is joined by former FBI undercover operative Eric O'Neill—the man who helped capture Robert Hanssen—to explain why modern cybercrime is just traditional espionage repackaged, and why the dark web has quietly become the world's third-largest economy.
|
By Exabeam
Cybersecurity debates tend to center on tools, frameworks, and threats. But Rob Knoblauch has built a 25-year career in global security leadership by focusing on the soft skills that determine whether a CISO survives, thrives, or burns out. In this episode of The New CISO, Rob joins Steve Moore to trace the through-line from running a multi-node BBS as a kid to serving as Deputy CISO of one of the world’s largest banks — and the career lessons he’s carried through every chapter.
|
By Exabeam
What does sharpening a knife over a case of onions have to do with incident response? For Myke Lyons, CISO at Cribl, the answer is everything. Myke trained at the Culinary Institute of America — learning speed and accuracy under the clock of a professional kitchen — before a summer IT job in Manhattan set him on an entirely different path. In this episode of The New CISO, host Steve Moore traces that journey and the surprising parallels between culinary craft and security leadership.
|
By Exabeam
Security teams today face machine-speed threats, growing complexity, and overwhelming data. Exabeam helps you stay ahead with powerful AI, behavioral analytics, and automation designed to accelerate threat detection, investigation, and response (TDIR). With hyper-fast search, advanced analytics, and intelligent automation, Exabeam enables security teams to uncover threats faster, reduce manual work, and gain insights other tools miss. Since 2014, we’ve put AI and machine learning at the core of security operations—helping organizations modernize their SOC and improve outcomes at scale.
|
By Exabeam
The small but mighty cyber security team at SA Power Networks, the sole electricity distributor for the state of South Australia, was challenged to keep up with numerous responsibilities, including preventive controls, patch management, and detect/respond functions. After choosing and implementing Exabeam, the platform has delivered the anticipated value: streamlining and accelerating the company’s TDIR function, strengthening security team bonds and collaboration, and cementing the critical link between security and business initiatives.
|
By Exabeam
Two variants of Ransomware as a Service (RaaS) - REvil and Conti - are behind some of the most widespread and successful cyberattacks today. Don't let these ransomware attacks siege your operations. Download this white paper to learn how to use the MITRE ATT&CK Framework to improve your security posture, plus discover insightful tactics, techniques, and procedures (TTPs) used by REvil and Conti.
|
By Exabeam
In today's rapidly evolving digital landscape, the escalating frequency and sophistication of cyber threats underscore the critical need for robust IT security measures. The NIS2 Directive is the EU's latest effort to bolster cybersecurity across Member States, setting stringent security requirements for critical infrastructure and essential services.
|
By Exabeam
There are many tactics cybercriminals use to defeat MFA security measures, but one successful method is a tactic known as MFA Fatigue. In this white paper, we cover what MFA Fatigue is and how it functions, share examples of attacks, and provide guidance for detection and mitigation.
|
By Exabeam
When growing and maturing your security operations program, it's critical that you evaluate your program's overall effectiveness. After all, you will need to prove the value of your program to your board in order to gain future budgetary support. But what should you measure? And how do you start tracking your program's success?
|
By Exabeam
How do you prioritize the many threats to your organization? How do you address them with the tools you already have? MITRE ATT&CK, an open framework and knowledge base of adversary tactics and techniques based on real-world observations, provides a structured method to help you answer these questions. ATT&CK is a powerful way to classify and study adversary techniques and understand their intent. You can use it to enhance, analyze, and test your threat hunting and detection efforts.
- August 2026 (1)
- July 2026 (9)
- June 2026 (8)
- May 2026 (3)
- April 2026 (12)
- March 2026 (6)
- February 2026 (4)
- January 2026 (8)
- December 2025 (2)
- November 2025 (8)
- October 2025 (11)
- September 2025 (4)
- August 2025 (10)
- July 2025 (1)
- May 2025 (1)
- April 2025 (13)
- March 2025 (3)
- February 2025 (4)
- January 2025 (6)
- July 2024 (2)
Exabeam is a leader in intelligence and automation that powers security operations for the world’s smartest companies. As a global cybersecurity leader, Exabeam provides industry-proven, security-focused, and flexible solutions for faster, more accurate threat detection, investigation, and response (TDIR).
Realize the full potential of your security operations with the cloud-native New-Scale Security Operations Platform, or the self-hosted LogRhythm SIEM Platform.
Leading AI-Driven Security Operations:
- Industry-Leading Detection: Expose the threats that other tools miss. Support strategic use cases with guidance on how to improve. Meet your compliance objectives.
- Faster, More Accurate TDIR: Reduce alert fatigue and accelerate your triage. GenAI-powered workflows speed analyst routines and up-level their skills.
- Rapid-Value, Unmatched Flexibility: Deploy a fully-featured SIEM with hundreds of integrations and the market’s most flexible deployment options: self-hosted, hybrid, or cloud-native.
Real Intelligence. Real Security. Real Fast.