Endpoint Security - Cortex XSIAM

Cortex XSIAM 3.x Release Notes

Product
Cortex XSIAM
Last date published
2026-06-09
FEATURE DESCRIPTION LICENSE/ADD-ON

Container as a Service (CaaS) support for AWS ECS Fargate

Embed the XDR Agent within the container image for CaaS workloads and get real-time monitoring and protection against active threats.

Cortex XSIAM Premium and Enterprise licenses

Advanced prevention for macOS

New macOS kernel behavioural monitoring identifies and neutralizes privilege escalation attempts in near-real-time.

Cortex XSIAM Premium and Enterprise licenses

Shared objects file examination

Secure your Linux environment against hidden threats. You can now automatically block malicious code from executing through non-standard loading methods. We updated the Cortex XDR agent to examine and stop harmful shared object files before they impact your system.

Cortex XSIAM Premium and Enterprise licenses

On-write malicious file detection

Stop cross-platform threats from entering your network. You can now detect malicious mach-o files and non-native macOS binaries (such as Windows PEs and Linux ELFs) the moment they are saved to your system. We updated the Cortex XDR agent to provide comprehensive on-write detection for these binary types.

Cortex XSIAM Premium and Enterprise licenses

Advanced Java malware protection

Prevent cyberattacks from compromising your applications. You can now automatically detect and block malicious Java-based threats the moment they appear or are saved to your system. We added real-time on-write protection for all Java files.

Cortex XSIAM Premium and Enterprise licenses