Skip to content

Exabeam Confronts AI Insider Threats Extending Behavior Detection and Response to OpenAI ChatGPT and Microsoft Copilot — Read the Release.

What's New at Exabeam

What’s New at Exabeam

Explore the product updates we ship every 90 days. Read release notes, access helpful resources, and register for our upcoming release webinars.

Join the Webinars Read the Press Release

April 2026 Updates

Exabeam logo

NEW ON THE CLOUD-NATIVE PLATFORM

New-Scale Fusion Security Operations Platform

A cloud-native platform that brings threat detection, investigation, and response (TDIR) together with behavioral analytics and AI-driven automation. You get measurable outcomes without added complexity.

Cloud-native architecture

EXPANDED AI THREAT DETECTION

Agent Behavior Analytics

Agent Behavior Analytics (ABA), part of New-Scale Analytics, adds a broader set of detections for AI-driven threats. Coverage now includes the OWASP Agentic Top 10, helping your team detect prompt manipulation, Shadow AI, usage anomalies, and agent misuse.

AI PLATFORM VISIBILITY

Expanded AI Log Source Support

Native log ingestion and parsing for ChatGPT, Microsoft Copilot, and Google Gemini provide visibility into how AI is used across the enterprise. You can baseline behavior, investigate activity, and govern AI usage with data you can trust.

AUTOMATED PHISHING INVESTIGATION

Phishing Collector With Automated Workflow

A new phishing collector ingests reported emails from centralized inboxes and processes them through an automated workflow. Messages, attachments, alerts, and cases are grouped by campaign, reducing manual triage and accelerating investigations.

Prescriptive, outcomes-focused use case coverage

ACCELERATED INVESTIGATIONS

An AI-driven global search helps analysts quickly find users, devices, logs, and events from one interface. Less time navigating tools means faster answers and more efficient investigations.

AUTOMATED RESPONSE ACTIONS

Universal Logout for Okta

Universal Logout for Okta revokes all active user sessions as soon as an account is flagged. Access is cut off immediately, limiting attacker movement and helping your team contain incidents faster.

NEW ON THE SELF-HOSTED PLATFORM

LogRhythm SIEM

A scalable, self-hosted SIEM that delivers comprehensive visibility, threat detection, and protection across environments, systems, and assets. You get control, flexibility, and predictable performance at scale.

AIE Events on Data Indexer Dashboards

Analysts can move from an Advanced Intelligence Engine (AIE) alert to the underlying data with one click. AIE events now appear directly in dashboards, connecting detection to investigation minimizing context switching and reducing mean time to respond.

Refreshed Threat Map

The redesigned Threat Map delivers a more intuitive, real-time view of threat activity. Clearer geographic context helps your team analyze attack patterns and assess business risk faster.

AIE API

A new API for Advanced Intelligence Engine lets teams create, read, update, and delete AIE rules programmatically. MSSPs and large organizations can automate rule management and maintain consistency across deployments.

Improved Salesforce Log Collection

Improved Salesforce log collection provides deeper insight into user activity, permission changes, and potential data exfiltration. Your team can apply advanced analytics to detect threats within Salesforce.

JSON Policy Builder

The new JSON Policy Builder uses a guided web interface to generate valid policy files. It removes manual JSON coding, simplifies automation, and helps reduce configuration errors.

Platform Enhancements

This release includes support for Windows Server 2025 and Rocky 10. It also introduces a new Linux System Monitor Agent with near-feature parity to the Windows agent, along with ongoing security and performance improvements.

Gain actionable insight 

Join the Webinars

Exabeam April Quarterly Webinar | New-Scale | 2026

April 9, 10:00 AM — 11:00 AM MDT

Exabeam April Quarterly Webinar | LogRhythm | 2026

April 7, 10:00 AM — 11:00 AM MDT

See Exabeam in Action

Request more information or request a demo of the industry’s most powerful platforms for threat detection, investigation, and response (TDIR).

Learn more:

  • If self-hosted or cloud-native SIEM is right for you
  • How to ingest and monitor data at cloud scale
  • How monitoring and analyzing AI and automated agent behavior uncovers risky non-human activity
  • How to automatically score and profile user activity
  • See the complete picture using incident timelines
  • Why playbooks help make the next right decision
  • Support compliance mandates

Award-Winning Leaders in Security

  • Cyber Security Excellence Awards 2025 - Winner
  • CRN Security 100 | 2025
  • InfoSec Innovator Awards 2024
  • The Cyber Influencer of the Year | 2024
  • Google Cloud Partner of the Year 2024 Award
  • CRN Security 100 | 2026