docsignal
Data
Docs
Track a custom list
Palo Alto Networks product updates
paloaltonetworks.com
Scheduled
Date
Area / Type
Change
Product
Source
2026-09-30
analytics-reporting
feature removed
Prisma Access incidents dashboard to be retired September 30, 2026
Strata Cloud Manager
docs
Latest activity
Date
Area / Type
Change
Product
Source
2026-09-11
analytics-reporting
capability expanded
Cortex XSIAM XQL adds SLA tracking functions is_sla_breached and sla_time_remaining
Cortex XSIAM
docs
2026-09-11
analytics-reporting
capability expanded
Email DLP logs add Retry and Purge actions for queued emails
Enterprise DLP
docs
2026-09-11
analytics-reporting
capability expanded
Incident settings framework adds ZTNA application object incident settings
Strata Cloud Manager
docs
2026-09-11
api-platform
endpoint added
New SBOM repository endpoint with query-parameter repoId and streamed response
Cortex XSIAM
docs
2026-09-11
api-platform
feature tier change
SBOM API license requirement broadened beyond Cortex XSIAM Premium
Cortex XSIAM
docs
2026-09-11
api-platform
endpoint deprecated
SBOM organization endpoint moves orgName from path to query parameter
Cortex XSIAM
docs
2026-09-11
api-platform
endpoint added
SBOM organization export now returns a downloadable ZIP bundle
Cortex XSIAM
docs
2026-09-11
api-platform
endpoint deprecated
SBOM repository endpoint moves repoId from path to query parameter
Cortex XSIAM
docs
2026-09-11
deployment-topology
feature added
Agentic AI model selector extends Gemini 3.5 Flash to CA and DE regions
Cortex XSIAM
docs
2026-09-11
deployment-topology
capability expanded
Cortex Data Security CSP onboarding adds Alibaba Cloud support
Cortex Data Security
docs
2026-09-11
integrations-ecosystem
capability expanded
Cortex XSIAM documents Alibaba Cloud onboarding with Terraform and Workload Identity Federation
Cortex XSIAM
docs
2026-09-11
integrations-ecosystem
capability expanded
MongoDB Atlas (Posture) onboarding documented
Cortex Cloud Posture Management
docs
2026-09-11
integrations-ecosystem
capability expanded
Salesforce near-real-time log and data ingestion documented
Cortex Cloud Posture Management
docs
2026-09-11
network-transport
capability expanded
Agent Proxy Communication limit raised to 10 proxies per agent
Cortex XDR Agent
docs
2026-09-11
network-transport
limit change
Cortex XDR agent raises proxy limit from 5 to 10 per agent
Cortex XDR Agent
docs
2026-09-11
permissions-governance
capability expanded
Alibaba Cloud least-privilege onboarding permission model documented
Cortex Cloud Posture Management
docs
2026-09-11
permissions-governance
feature added
Cortex User role in the Customer Support Portal now required for tenant visibility
Cortex XDR 5.x
docs
2026-09-11
search-retrieval
capability expanded
Code-to-Cloud lineage filtering reference documentation added
Cortex Cloud Posture Management
docs
2026-09-11
security-compliance
capability expanded
Cortex XDR adds Alibaba Cloud cloud service provider onboarding
Cortex XDR 5.x
docs
2026-09-11
security-compliance
capability expanded
DSPM Database applet activation documented for on-premises PostgreSQL and MySQL
Cortex Cloud Posture Management
docs
2026-09-11
security-compliance
capability expanded
Strata Cloud Manager adds centralized per-tenant master key management and sync to managed firewalls
Next-Generation Firewall
docs
2026-09-11
threat-defense
capability expanded
App Security expands location coverage to more Prisma Access regions
Prisma Access
docs
2026-09-11
threat-defense
feature added
Cloud Identity Engine now required to activate Identity Analytics detection rules
Cortex XDR 5.x
docs
2026-09-11
threat-defense
capability expanded
Sonatype Nexus registry scanning connector documented with scan modes and image scoping
Cortex Cloud Posture Management
docs
Last 10 weeks
By product and area
Strata Cloud Manager
analytics-reporting
████████
11
Cortex XDR Content Updates
threat-defense
██████
8
Prisma SD-WAN
network-transport
██████
8
Strata Cloud Manager
fleet-management
██████
8
Prisma AIRS
threat-defense
█████
7
Next-Generation Firewall
network-transport
████
6
Prisma Access
threat-defense
████
6
Cortex Analytics Content
threat-defense
████
5
Cortex XSIAM
api-platform
████
5
Cortex XDR 5.x
api-platform
███
4
Cortex XSIAM
integrations-ecosystem
███
4
Enterprise DLP
threat-defense
███
4
Prisma Agent
network-transport
███
4
Prisma Agent
security-compliance
███
4
Autonomous DEM
analytics-reporting
██
3
Cortex Data Security
deployment-topology
██
3
Cortex XDR 5.x
security-compliance
██
3
Enterprise DLP
analytics-reporting
██
3
Next-Generation Firewall
analytics-reporting
██
3
Prisma Access
network-transport
██
3
Prisma Access Browser
threat-defense
██
3
Prisma Agent
mobile-desktop
██
3
Prisma AIRS
integrations-ecosystem
██
3
Cortex Cloud Posture Management
integrations-ecosystem
█
2
Cortex Cloud Runtime Security
threat-defense
█
2
Cortex Data Security
permissions-governance
█
2
Cortex XDR 5.x
deployment-topology
█
2
Cortex XDR Agent
network-transport
█
2
Cortex XSIAM
billing-administration
█
2
Cortex XSIAM
threat-defense
█
2
Cross-product
permissions-governance
█
2
Cross-product
workflow-automation
█
2
Enterprise DLP
mobile-desktop
█
2
Enterprise DLP
permissions-governance
█
2
IoT / Device Security
billing-administration
█
2
IoT / Device Security
performance-scale
█
2
Next-Generation Firewall
permissions-governance
█
2
Next-Generation Firewall
security-compliance
█
2
Prisma Access Browser
security-compliance
█
2
Prisma AIRS
analytics-reporting
█
2
Prisma AIRS
deployment-topology
█
2
Strata Cloud Manager
billing-administration
█
2
Strata Cloud Manager
network-transport
█
2
Advanced Threat Prevention
analytics-reporting
█
1
Advanced Threat Prevention
performance-scale
█
1
Advanced URL Filtering
developer-experience
█
1
Advanced URL Filtering
performance-scale
█
1
Advanced WildFire
performance-scale
█
1
AI Access Security
performance-scale
█
1
AI Access Security
threat-defense
█
1
Autonomous DEM
mobile-desktop
█
1
Cloud NGFW for AWS
fleet-management
█
1
Cloud NGFW for AWS
performance-scale
█
1
Cloud NGFW for AWS
permissions-governance
█
1
Cloud NGFW for AWS
threat-defense
█
1
Cortex AgentiX
ai-agents
█
1
Cortex AgentiX
billing-administration
█
1
Cortex Cloud Application Security
analytics-reporting
█
1
Cortex Cloud Application Security
integrations-ecosystem
█
1
Cortex Cloud Posture Management
billing-administration
█
1
Cortex Cloud Posture Management
deployment-topology
█
1
Cortex Cloud Posture Management
performance-scale
█
1
Cortex Cloud Posture Management
permissions-governance
█
1
Cortex Cloud Posture Management
search-retrieval
█
1
Cortex Cloud Posture Management
security-compliance
█
1
Cortex Cloud Posture Management
threat-defense
█
1
Cortex Cloud Runtime Security
ai-agents
█
1
Cortex Cloud Runtime Security
deployment-topology
█
1
Cortex Cloud Runtime Security
integrations-ecosystem
█
1
Cortex Cloud Runtime Security
security-compliance
█
1
Cortex Data Security
security-compliance
█
1
Cortex XDR 3.x
integrations-ecosystem
█
1
Cortex XDR 3.x
performance-scale
█
1
Cortex XDR 5.x
billing-administration
█
1
Cortex XDR 5.x
integrations-ecosystem
█
1
Cortex XDR 5.x
performance-scale
█
1
Cortex XDR 5.x
permissions-governance
█
1
Cortex XDR 5.x
threat-defense
█
1
Cortex XDR Agent
deployment-topology
█
1
Cortex XDR Agent
integrations-ecosystem
█
1
Cortex XSIAM
ai-agents
█
1
Cortex XSIAM
analytics-reporting
█
1
Cortex XSIAM
deployment-topology
█
1
Cortex XSIAM
performance-scale
█
1
Cortex XSOAR 8 (on-prem)
data-import-export
█
1
Cross-product
billing-administration
█
1
Cross-product
fleet-management
█
1
Cross-product
threat-defense
█
1
DNS Security
deployment-topology
█
1
DNS Security
integrations-ecosystem
█
1
DNS Security
performance-scale
█
1
Enterprise DLP
integrations-ecosystem
█
1
GlobalProtect
network-transport
█
1
IoT / Device Security
analytics-reporting
█
1
IoT / Device Security
developer-experience
█
1
IoT / Device Security
security-compliance
█
1
Next-Generation Firewall
fleet-management
█
1
Next-Generation Firewall
performance-scale
█
1
PAN-OS
analytics-reporting
█
1
Prisma Access
mobile-desktop
█
1
Prisma Access
performance-scale
█
1
Prisma Access
permissions-governance
█
1
Prisma Access
security-compliance
█
1
Prisma Access Browser
api-platform
█
1
Prisma Access Browser
mobile-desktop
█
1
Prisma Access Browser
network-transport
█
1
Prisma Access Browser
permissions-governance
█
1
Prisma Agent
fleet-management
█
1
Prisma Agent
permissions-governance
█
1
Prisma AIRS
ai-agents
█
1
Prisma AIRS
permissions-governance
█
1
Prisma AIRS
security-compliance
█
1
Prisma SD-WAN
deployment-topology
█
1
Prisma SD-WAN
security-compliance
█
1
SaaS Security
integrations-ecosystem
█
1
SaaS Security
performance-scale
█
1
SaaS Security
permissions-governance
█
1
Strata Logging Service
analytics-reporting
█
1
Strata Logging Service
data-import-export
█
1
VM-Series
analytics-reporting
█
1
Integrations
−
symantec-dlp
Prisma Browser drops the Symantec DLP file-scanning integration
2026-09-03
−
yazamtech
Prisma Browser drops the YazamTech SelectorIT file-scanning integration
2026-09-03
+
oracle-cloud-infrastructure
Prisma Access RBI Adds Oracle Cloud Infrastructure as a Deployment Platform
2026-09-04
+
amazon-route-53
Advanced DNS Security for Amazon Route 53 (Early Access)
2026-08-20
+
aws
Advanced DNS Security for Amazon Route 53 (Early Access)
2026-08-20
+
gcp
Prisma Access integrates with Google Cloud Network Connectivity Center gateways
2026-08-01
Capabilities added
Cortex User role in the Customer Support Portal now required for tenant visibility
User access documentation adds a prerequisite: to make users visible in the Cortex tenant, an administrator must first assign them the Cortex User role on the Edit User screen in the Manage User Console of the Customer Support Portal; this role assignment controls both tenant visibility and CSP authentication. SSO-only access is achieved by assigning the Cortex User role without a tenant or Gateway role, and users with no role assigned in the Cortex Gateway or tenant cannot access the tenant and are subsequently revoked.
Cloud Identity Engine now required to activate Identity Analytics detection rules
The Cloud Identity Engine setup guidance changes from describing the service as purely optional to noting that it is required to activate Identity Analytics detection rules. The engine must still be activated in the same region as Cortex XDR.
Agentless Disk Scanning on Azure narrowed to resource-group scope
Cortex's Agentless Disk Scanning (ADS) for Azure now uses three RBAC roles instead of five: ADSScannedAssetsRole and ADSOutpostRole grant read-only access across the onboarded scope, while the new ADSEphemeralResourcesRole holds every permission that creates or deletes a disk, snapshot or gallery image and is confined to the Cortex-created resource group, so Cortex can no longer delete a disk, snapshot or image anywhere else in the tenant.
Role-Based Access Control for Secure Agentless Access
Strata Cloud Manager now lets admins restrict who can view, create, modify or delete Secure Agentless Access configurations, via predefined or custom roles. Access requires role assignments in both All Apps and Services and Cloud Identity Engine; existing predefined roles automatically carry SAA permissions.
Strata Cloud Manager adds security policy rule targeting
A new "Configure Rule Targeting" page describes restricting a container-scoped Strata Cloud Manager security policy rule to a named list of NGFW serial numbers at push time — the Strata Cloud Manager equivalent of Panorama's existing rule-targeting. Migrated Panorama device-group rule targets convert to the enabled-devices format and land disabled for review. Corroborated by the same-day "Network Security: Security Policy" entry in the company's recently-updated documentation index.
Advanced and Legacy Routing Engine coexistence in one Strata Cloud Manager tenant
Strata Cloud Manager now manages both Advanced Routing Engine (Logical Router) and Legacy Routing Engine (Virtual Router) configurations within a single tenant via device-level routing mode selection, so a mixed-generation firewall fleet migrating from Panorama no longer needs separate tenants. The Panorama-to-Strata-Cloud-Manager migration tool converts and pushes both configuration types simultaneously.
Advanced DNS Security adds automatic recovery for degraded DNS signature lookups
A new Advanced DNS Security feature, DNS Signature Lookup Automatic Recovery, keeps DNS traffic flowing when the Advanced DNS Security cloud is unreachable or slow. A DNS Signature Lookup Health Monitor passively tracks the success, failure and timeout rates of live lookup traffic to the cloud, and when connectivity degrades the firewall preserves DNS responses instead of dropping them. It is disabled by default and is enabled per management plane: Strata Cloud Manager under Configuration > NGFW and Prisma Access > Security Services > DNS Security > Settings, or PAN-OS and Panorama under Device > Setup > Content-ID > Realtime Signature Lookup. Operational state is readable from the CLI with 'show running dns-rtsig-monitor'.
Cloud NGFW for AWS gains User-ID based policy through Panorama
Panorama can now author User-ID based security policies for Cloud NGFW for AWS. An AWS Resource Gateway, backed by AWS PrivateLink, privately connects cloud firewalls to VPC or on-premises identity stores - LDAP, Active Directory and User-ID redistribution agents - or to an on-premises Panorama acting as a redistribution agent, without exposing that infrastructure publicly. Rules use the Source User field in Cloud NGFW device groups; user-to-group mappings come from LDAP or Cloud Identity Engine; usernames appear in the Panorama Log Viewer. Requires Panorama 11.2.14 or later with AWS Plugin 5.5.1. Cloud NGFW cannot itself act as a redistribution or User-ID agent, and IPv6 is not supported.
Device Security adds a China license activation path and drops the Precision AI bundle path
Device Security's license activation documentation adds a new "China" activation flow for the Device Security China subscription — selecting the China data-ingestion region and requiring Cloud Identity Engine activation for the tenant — alongside the existing Strata Cloud Manager, Prisma Access add-on and Device Security X paths. The previously documented "Precision AI" bundling-license activation path is removed from the same page.
Device Security firewall preparation for a China tenant
Device Security documents a China-hosted tenant deployment: a new Prepare Your Firewall for Device Security in a China Tenant page, plus a Device Security Getting Started support table for Firewall Only (China Tenant). The vendor doc-updates table dates it 21 August 2026 and marks it [New], and the docs index gained two pages this run.
Prisma AIRS adds Managed AI Runtime Security for AWS, a managed dual-data-plane firewall service in private preview
An entire Managed AI Runtime Security for AWS documentation tree - roughly 27 pages spanning deploy, protect, monitor, manage and reference - appears under Prisma AIRS Administration, newly advertised by the docs index (which grew from 242 to 272 links). It extends standard cloud firewall capability with a dual-data-plane architecture aimed at AI pipelines: distributed training clusters, containerized Kubernetes pods and LLM infrastructure. Documented surface spans deployment from Strata Cloud Manager, endpoint creation and traffic redirection, securing VPC and Amazon EKS traffic, policy authoring, logs in Strata Cloud Manager or natively in AWS, limits, pricing and Software NGFW credit procurement. The overview page (18 August 2026) states it is a private preview reached by emailing Palo Alto with a Strata Cloud Manager TSG ID. It does not appear on the Prisma AIRS August 2026 new-features page.
PAN-OS 12.2 adds a Smart Connect AI tab for Vehicle Ignition Monitoring on ruggedized firewalls
A new Device > Setup > Smart Connect AI page appears in the PAN-OS 12.2 web interface help (page dated 4 August 2026), advertised for the first time from the Device Setup index. The tab enables, configures and monitors VIMS (Vehicle Ignition Monitoring System), which uses the firewall's IGN+ and BATT+ hardware inputs to detect vehicle ignition and manage the current drawn from the vehicle's primary power source. Support is limited to the PA-52R-5G, PA-54R-POE and PA-54R-POE-D-5G, and configuration can only be enabled once the firewall-to-vehicle connection is established - tying this to the PA-50R ruggedized launch in the same release.
Prisma AIRS AI Red Teaming adds Live Scan Progress for running scans
The Prisma AIRS August 2026 new-features page adds 'Enhancements for Live Scan Progress in AI Red Teaming'. The scan detail page now shows an Error Rate percentage covering rate limiting, connection timeouts and content filtering; an Estimated Completion derived from remaining attacks and current throughput (displaying 'Calculating...' for the first five minutes); and a Scan Progress Tracker whose display varies by scan type - per-category progress for Attack Library scans across Security, Safety and Brand, the current phase (Profiling, Goal Generation, Attack Execution) for Agent scans, and the current prompt set for Custom Prompt Set scans. A 'Currently Attacking' indicator is available for Attack Library and Custom Prompt Set scans only. Palo Alto frames the problem as failures accumulating silently for hours against rate-limited endpoints or agents behind content guardrails.
Prisma AIRS AI Red Teaming adds Memory Poisoning as an agent attack goal category
The Prisma AIRS August 2026 new-features page adds Memory Poisoning Detection for AI Agents. Selecting Memory Poisoning as a goal category tests whether an agent's persistent memory can be corrupted through ordinary conversation, with results scored in the agent's scan report on a dedicated scale: (High) Vulnerable when the agent stored the false information and relied on it in a later session, (Medium) Partially Vulnerable for partial storage or influence, (Low) Not Vulnerable when rejected. A successful attack raises an informational banner prompting the operator to review and sanitize the agent's memory before resuming normal operation. Palo Alto scopes the test to agents that persist state across sessions - user preferences, past conversation context or shared knowledge bases - and calls out healthcare, finance and customer service.
Prisma SD-WAN adds DC symmetric return with Branch Gateway co-existence
Addresses routing asymmetry in triangular deployments where a branch and a Branch Gateway hold separate active connections to different ION devices in a clustered data center. Route advertisements are adjusted by VPN path state: the direct VPN path is preferred, metric 30 is applied to the Branch Gateway transit path as a secondary backup when the direct path is down, and the prefix is withdrawn when both are unavailable. Works with BGP and OSPF, though OSPF is unsupported when clustered data center ION devices share a common core subnet, and route metrics are unsupported with VRF route leaking. Requires ION software 6.8.1 or higher.
Prisma SD-WAN adds hop count-based path selection for Branch Gateways
A new Branch Gateway page documents hop count as a primary routing metric: candidate paths are filtered to the lowest hop count before standard path policy is applied, and a lower hop count overrides the Active/Backup preference. Path re-evaluation is deferred while the current path is healthy to avoid session churn, and WAN-to-WAN asymmetry is corrected by moving return traffic to the lower-hop path. Requires physical or virtual ION devices on software 6.8.1 or higher. The vendor index grew by exactly three pages this run, matching the three new Branch Gateway pages.
Prisma SD-WAN documents Branch Gateway full mesh topology
Branch Gateways can act as regional transit points in a full-mesh topology with standard branches and data centers. Branch-to-branch traffic prefers routing through interconnected Branch Gateways rather than transiting the data center, with the data center retained as a backup path when no direct Branch Gateway connection exists. Loop prevention is applied dynamically during path selection by excluding paths that route traffic back toward its origin. Requires ION devices on software 6.8.1 or higher.
Advanced Threat Prevention Operator Dashboard Added to Strata Cloud Manager
A new subscription-specific Advanced Threat Prevention dashboard in Strata Cloud Manager Insights surfaces efficacy metrics such as top malicious verdicts and blocked exploits, C2 attribution and geolocation, known-versus-unknown detection method, and source attribution for policy refinement. Requires Strata Cloud Manager, Strata Logging Service and an Advanced Threat Prevention subscription.
Page load waterfall charts
The ADEM browser extension now captures timing for every full page load and lays it out as a phase-by-phase waterfall covering network connection, response waiting and rendering, with a root-cause engine writing natural-language explanations and remediation steps.
Separate device memory, CPU and disk metrics
Device visibility split into separate memory, CPU and disk metrics with trend charts updating every 30 seconds, correlated with page load data so resource constraints can be ruled in or out as the cause of a slow load.
WebRTC call quality monitoring in the browser
The ADEM browser extension starts monitoring automatically when it detects a WebRTC session on a supported domain such as Dialpad, Genesys Cloud CX, Five9, RingCentral, Cisco Webex or Google Meet, correlating call telemetry with endpoint CPU and memory pressure to attribute degradation to device, network or application, with centralized dashboards showing network-wide call performance and geographic distribution.
Strata Cloud Manager adds a context menu for policy and object list views
Rule-level actions (clone, copy, delete, enable or disable, move, add), field-level actions (edit, paste, clear, filter by value) and object-level actions (view resolved value including variable resolution, edit, remove, filter, open Config Search pre-filtered to every reference) are now available from the list views without opening each item. Covers Security, Decryption, NAT, Policy Based Forwarding, Application Override, QoS, DoS Protection and SD-WAN policies, plus Addresses, Services, Interfaces, Zones, IPSec and GRE Tunnels, DNS Proxies, GlobalProtect and Logical Routers.
Strata Cloud Manager adds policy rule targeting to specific NGFWs at push time
A disabled rule at container scope can carry a list of target NGFWs; Strata Cloud Manager then delivers that rule only to the named devices on push and skips the rest of the scope. This matches Panorama rule targeting, and Panorama configurations holding rules with target nodes migrate automatically, with affected rules marked disabled for review. Available for security, NAT and other rulebases in the policy editor.
Anthropic inference hooks integration
Anthropic sends prompts from Claude surfaces in a configured enterprise tenant to the Prisma AIRS Runtime API for inspection before inference, and a block verdict stops the prompt reaching the model, returning a customizable error to the user. Existing scan profiles apply to all Claude traffic, blocks happen on the inference path rather than after the fact, and each denial carries a reference ID that ties back to the scan report. Covers Claude, Claude.ai, Design and Cowork, US region and text content only.
OpenAI Codex Enterprise integration
Prisma AIRS integrates natively with OpenAI Codex Enterprise from its admin dashboard, with no plugin, traffic steering or developer workflow change: every prompt across the organization is routed for inline inspection and a block verdict stops it before the model or any connected MCP server sees it. Coverage spans secrets, credentials, PII and proprietary code on the DLP side and malicious code patterns, malicious URLs and prompt manipulation on the threat side.
Changes
Date
Area / Type
Change
Product
Source
2026-09-08
threat-defense
capability expanded
Cortex XDR content 2420 updates Behavioral Threat Protection rules
Cortex XDR Content Updates
docs
2026-09-08
threat-defense
capability expanded
Cortex XDR content 2420 updates Child Process Protection module
Cortex XDR Content Updates
docs
2026-09-08
threat-defense
capability expanded
Cortex XDR content 2420 updates DPI packet inspection rules
Cortex XDR Content Updates
docs
2026-09-08
threat-defense
capability expanded
Cortex XDR content 2420 updates EDR detection module rules
Cortex XDR Content Updates
docs
2026-09-08
threat-defense
capability expanded
Cortex XDR content 2420 updates Java Protection module rules
Cortex XDR Content Updates
docs
2026-09-08
threat-defense
capability expanded
Cortex XDR content 2420 updates Local Analysis Protection allow list
Cortex XDR Content Updates
docs
2026-09-08
threat-defense
capability expanded
Cortex XDR content 2420 updates Local Threat-Evaluation Engine rules
Cortex XDR Content Updates
docs
2026-09-08
threat-defense
capability expanded
Cortex XDR content 2420 updates vulnerability assessment detection database
Cortex XDR Content Updates
docs
2026-09-06
api-platform
endpoint added
GET /public_api/appsec/v1/sbom/repository takes repoId as a query parameter
Cortex XDR 5.x
docs
2026-09-06
api-platform
endpoint deprecated
Organization SBOM export drops the {orgName} path parameter
Cortex XDR 5.x
docs
2026-09-06
api-platform
endpoint added
Organization SBOM export returns a ZIP archive of per-repository SBOMs
Cortex XDR 5.x
docs
2026-09-06
api-platform
endpoint deprecated
SBOM repository export drops the {repoId} path parameter
Cortex XDR 5.x
docs
2026-09-06
performance-scale
limit change
Asset group count capped at just under 2000
Cortex Cloud Posture Management
docs
2026-09-06
permissions-governance
capability expanded
Alibaba Cloud onboarding permissions published for Cortex Data Security
Cortex Data Security
docs
2026-09-06
security-compliance
capability expanded
Cloning a compliance standard now includes a control selection step
Cortex XDR 5.x
docs
2026-09-06
threat-defense
capability expanded
AI-determined alert-causality correlation gains 46 named attack-chain combinations
Cortex Analytics Content
docs
2026-09-06
threat-defense
capability expanded
AWS coverage adds Route53 logging, KMS key policy and versioned-S3 deletion detectors
Cortex Analytics Content
docs
2026-09-06
threat-defense
other
Cortex analytics content release 2026.08.26
Cortex Analytics Content
docs
2026-09-06
threat-defense
capability expanded
Email coverage adds mailbox-access anomaly detectors
Cortex Analytics Content
docs
2026-09-06
threat-defense
capability expanded
Endpoint coverage adds JS-runtime credential theft and net-command user management
Cortex Analytics Content
docs
2026-09-05
billing-administration
plan added
Prisma Pro license appears as an entitlement for Enterprise DLP, AI Access Security and SaaS Security
Cross-product
docs
2026-09-04
ai-agents
capability expanded
Agentic Assistant's Help Center agent gains tenant diagnostics and ticket prefill
Cortex Cloud Runtime Security
docs
2026-09-04
ai-agents
capability expanded
Cortex AgentiX Help Center system agent gains cross-suite diagnostics and auto-prefilled tickets
Cortex AgentiX
docs
2026-09-04
ai-agents
capability expanded
Help Center Agent Gains Cross-Product Diagnosis and Ticket Prefill
Cortex XSIAM
docs
2026-09-04
analytics-reporting
capability expanded
Business Application inventory gains business-unit and asset bulk actions
Cortex Cloud Application Security
docs
179 more
2026-09-04
billing-administration
capability expanded
Cortex AgentiX compute-unit quota moves from daily to yearly allocation
Cortex AgentiX
docs
2026-09-04
billing-administration
other
Enhanced Application Logs Become Non-Billable
Cortex XSIAM
docs
2026-09-04
mobile-desktop
capability expanded
Endpoint DLP peripheral control policy adds desktop app scoping
Enterprise DLP
docs
2026-09-04
mobile-desktop
capability expanded
Endpoint DLP peripheral inventory adds desktop app support (Google Drive, OneDrive)
Enterprise DLP
docs
2026-09-04
performance-scale
capability expanded
Advanced Forwarding configurable through Strata Cloud Manager
SaaS Security
docs
2026-09-04
performance-scale
capability expanded
Advanced Forwarding extends to Prisma Access
Advanced WildFire
docs
2026-09-04
performance-scale
capability expanded
App Acceleration Expands to Nine Additional Prisma Access Locations
Prisma Access
docs
2026-09-04
permissions-governance
capability added
Agentless Disk Scanning on Azure narrowed to resource-group scope
Cortex Data Security
docs
2026-09-04
permissions-governance
capability added
Role-Based Access Control for Secure Agentless Access
Prisma Access
docs
2026-09-04
security-compliance
capability expanded
Compliance controls can attach to multiple standards
Cortex Cloud Runtime Security
docs
2026-09-04
security-compliance
capability expanded
Custom compliance standards decouple controls from a single category hierarchy
Cortex XDR 5.x
docs
2026-09-04
threat-defense
new product
Advanced IP Defense Emerges as a Separately Licensed Palo Alto Networks Capability
Cross-product
docs
2026-09-04
threat-defense
capability expanded
App Security Expands to Nine Additional Prisma Access Locations
Prisma Access
docs
2026-09-04
threat-defense
capability expanded
Identity Threat Detection and Response Adds CyberArk ISP Integration
Cortex XSIAM
docs
2026-09-04
threat-defense
capability expanded
ITDR adds CyberArk ISP as an audit-event source
Cortex Cloud Runtime Security
docs
2026-09-04
threat-defense
new integration
Prisma Access RBI Adds Oracle Cloud Infrastructure as a Deployment Platform
Prisma Access
docs
2026-09-04
threat-defense
capability expanded
Remote Browser Isolation Adds Oracle Cloud Infrastructure Hosting
Prisma Access
docs
2026-09-03
api-platform
capability expanded
Prisma Browser adds a Hide Sensitive Data from Extensions control
Prisma Access Browser
docs
2026-09-03
fleet-management
capability added
Strata Cloud Manager adds security policy rule targeting
Cross-product
docs
2026-09-03
mobile-desktop
capability expanded
Prisma Browser Extension deployment generator drops Safari from its browser selection list
Prisma Access Browser
docs
2026-09-03
permissions-governance
capability expanded
Prisma Browser adds CIDR range support for private application definitions
Prisma Access Browser
docs
2026-09-03
threat-defense
capability expanded
Prisma Browser adds an Enhanced Tracking Protection control
Prisma Access Browser
docs
2026-09-03
threat-defense
integration removed
Prisma Browser drops the Symantec DLP file-scanning integration
Prisma Access Browser
docs
2026-09-03
threat-defense
integration removed
Prisma Browser drops the YazamTech SelectorIT file-scanning integration
Prisma Access Browser
docs
2026-09-02
network-transport
capability added
Advanced and Legacy Routing Engine coexistence in one Strata Cloud Manager tenant
Strata Cloud Manager
docs
2026-09-01
analytics-reporting
capability expanded
PAN-OS replaces the transient _cliuser telemetry account with a permanent __telemetryuser system account
Next-Generation Firewall
docs
2026-09-01
analytics-reporting
capability expanded
PAN-OS replaces the transient _cliuser telemetry account with a permanent __telemetryuser system account
PAN-OS
docs
2026-09-01
billing-administration
feature tier change
Cloud Posture Management narrows its bundled Cortex Data Security to DSPM; DLP and DDR move behind a paid add-on
Cortex Cloud Posture Management
docs
2026-09-01
data-import-export
capability expanded
Cortex XSOAR 8 On-prem adds on-demand incident export and a UI abort for running exports
Cortex XSOAR 8 (on-prem)
docs
2026-09-01
integrations-ecosystem
other
AWS log-collection connectors now require sqs:GetQueueAttributes
Cortex XSIAM
docs
2026-09-01
integrations-ecosystem
other
AWS log-collection connectors now require sqs:GetQueueAttributes
Cortex XDR 5.x
docs
2026-09-01
integrations-ecosystem
other
AWS log-collection connectors now require sqs:GetQueueAttributes
Cortex XDR 3.x
docs
2026-09-01
integrations-ecosystem
other
AWS log-collection connectors now require sqs:GetQueueAttributes
Cortex Cloud Runtime Security
docs
2026-09-01
integrations-ecosystem
capability expanded
Cortex XDR agent for iOS gains a documented Microsoft Intune deployment path
Cortex XDR Agent
docs
2026-09-01
performance-scale
capability added
Advanced DNS Security adds automatic recovery for degraded DNS signature lookups
DNS Security
docs
2026-09-01
permissions-governance
capability expanded
Cortex Gateway adds Cortex AgentiX tenant activation
Cross-product
docs
2026-09-01
permissions-governance
capability expanded
Cortex Gateway publishes a predefined role set for Cortex AgentiX
Cross-product
docs
2026-09-01
threat-defense
capability expanded
Cloud Runtime Security enumerates four bundled Cortex Data Security modules, including Data Access Governance
Cortex Cloud Runtime Security
docs
2026-09-01
workflow-automation
capability expanded
Cortex commands API adds eleven read commands across findings, datasets, IOC rules and exceptions
Cross-product
docs
2026-09-01
workflow-automation
capability expanded
Cortex commands API adds YARA rule management and endpoint YARA scanning
Cross-product
docs
2026-08-31
billing-administration
capability expanded
Cortex Audit Logs made non-billable; two ingestion widgets added
Cortex XSIAM
docs
2026-08-31
billing-administration
capability expanded
Cortex Audit Logs made non-billable; two ingestion widgets added
Cortex XDR 5.x
docs
2026-08-31
deployment-topology
capability expanded
AWS CloudTrail connector renames its IAM role and reroutes notifications via SNS
Cortex XDR 5.x
docs
2026-08-31
deployment-topology
capability expanded
Manual deployment method added to cloud service provider onboarding
Cortex XDR 5.x
docs
2026-08-31
deployment-topology
capability expanded
Manual deployment method added to cloud service provider onboarding
Cortex Cloud Posture Management
docs
2026-08-31
deployment-topology
capability expanded
Manual deployment method added to cloud service provider onboarding
Cortex Cloud Runtime Security
docs
2026-08-31
deployment-topology
capability expanded
Manual deployment method added to cloud service provider onboarding
Cortex Data Security
docs
2026-08-31
integrations-ecosystem
feature removed
Argo CD dropped from discovered CI/CD providers
Cortex Cloud Application Security
docs
2026-08-31
integrations-ecosystem
capability expanded
AWS CloudTrail connector renames its IAM role and reroutes notifications via SNS
Cortex XSIAM
docs
2026-08-31
integrations-ecosystem
capability expanded
Manual deployment method added to cloud service provider onboarding
Cortex XSIAM
docs
2026-08-31
performance-scale
limit change
2,000-field per-dataset limit documented
Cortex XSIAM
docs
2026-08-31
performance-scale
limit change
2,000-field per-dataset limit documented
Cortex XDR 5.x
docs
2026-08-31
performance-scale
limit change
2,000-field per-dataset limit documented
Cortex XDR 3.x
docs
2026-08-30
deployment-topology
capability expanded
Cortex Data Security adds a Custom Control Tower mode for AWS audit log collection
Cortex Data Security
docs
2026-08-30
permissions-governance
capability expanded
PAN-OS 12.2 replaces the User Context cloud service setting with a User Context Cloud Redistribution Service
Next-Generation Firewall
docs
2026-08-29
analytics-reporting
capability expanded
Device Security device dictionary gains 231 profiles, 96 vendors and 469 models across four August 2026 updates
IoT / Device Security
docs
2026-08-29
analytics-reporting
other
Strata Cloud Manager documents Essentials-tier limits on the command center
Strata Cloud Manager
docs
2026-08-29
analytics-reporting
other
Strata Cloud Manager marks Activity Insights columns, filters and widgets as Pro-only
Strata Cloud Manager
docs
2026-08-29
billing-administration
other
Strata Cloud Manager publishes a 30-day activation window for Essentials-to-Pro upgrades
Strata Cloud Manager
docs
2026-08-29
integrations-ecosystem
capability expanded
Prisma AIRS publishes the LLM API formats it inspects, separate from model-ID configurability
Prisma AIRS
docs
2026-08-29
security-compliance
capability expanded
Cortex Data Security adds Microsoft Teams channel and chat message scanning
Cortex Data Security
docs
2026-08-29
threat-defense
feature tier change
Cortex XSIAM Registry Scanner entitlement extends to the Cloud Posture Security add-on
Cortex XSIAM
docs
2026-08-27
fleet-management
capability expanded
Prisma Agent app settings rules gain device attribute match criteria
Prisma Agent
docs
2026-08-27
mobile-desktop
capability expanded
Prisma Agent adds Ubuntu 26.04 LTS support on x86_64 and ARM64
Prisma Agent
docs
2026-08-27
mobile-desktop
capability expanded
Prisma Agent drops the sudo -E requirement for Linux install, upgrade and uninstall
Prisma Agent
docs
2026-08-27
mobile-desktop
capability expanded
Prisma Agent on iOS can share diagnostic logs from the enrollment page
Prisma Agent
docs
2026-08-27
network-transport
capability expanded
Prisma Agent dynamic location-based traffic steering extends to Linux
Prisma Agent
docs
2026-08-27
network-transport
capability expanded
Prisma Agent enforces forwarding profile policy on Linux Docker container traffic via eBPF
Prisma Agent
docs
2026-08-27
network-transport
capability expanded
Prisma Agent extends Best Available - Fail Safe to Linux agents
Prisma Agent
docs
2026-08-27
network-transport
capability expanded
Prisma Agent IPv6 dual-stack support reaches iOS
Prisma Agent
docs
2026-08-27
security-compliance
capability expanded
Prisma Agent adds client certificate authentication on Linux
Prisma Agent
docs
2026-08-27
security-compliance
capability expanded
Prisma Agent LDAP authentication reaches iOS
Prisma Agent
docs
2026-08-27
security-compliance
capability expanded
Prisma Agent moves granular certificate selection into Agent Settings
Prisma Agent
docs
2026-08-27
security-compliance
capability expanded
Prisma Agent on iOS can use the default system browser for SAML authentication
Prisma Agent
docs
2026-08-26
performance-scale
limit change
Cloud NGFW for AWS raises the multi-VPC endpoint ceiling to 300
Cloud NGFW for AWS
docs
2026-08-26
threat-defense
capability expanded
Enterprise DLP is auto-provisioned when Cloud NGFW for AWS links a policy manager
Cloud NGFW for AWS
docs
2026-08-25
deployment-topology
capability expanded
Advanced DNS Security for Amazon Route 53 leaves Early Access
DNS Security
docs
2026-08-24
fleet-management
capability expanded
Strata Cloud Manager auto-discovers Cloud NGFW resources
Cloud NGFW for AWS
changelog
2026-08-24
performance-scale
capability expanded
Advanced Forwarding transport extends to Prisma Access
AI Access Security
docs
2026-08-24
permissions-governance
capability added
Cloud NGFW for AWS gains User-ID based policy through Panorama
Cloud NGFW for AWS
changelog
2026-08-24
threat-defense
capability removed
AI Access Security drops GenAI response threat inspection
AI Access Security
docs
2026-08-23
deployment-topology
other
Cortex XDR agent 9.0 and 9.0.1 reach end of life
Cortex XDR Agent
docs
2026-08-23
mobile-desktop
other
Palo Alto renames Prisma Access Agent to Prisma Agent
Prisma Access
docs
2026-08-21
analytics-reporting
capability expanded
Prisma AIRS cloud discovery extends to Cloud NGFW for AWS and Azure
Prisma AIRS
docs
2026-08-21
analytics-reporting
other
Strata Logging Service NGFW service alerts and connectivity email notifications disabled
Strata Logging Service
docs
2026-08-21
billing-administration
feature added
Device Security adds a China license activation path and drops the Precision AI bundle path
IoT / Device Security
docs
2026-08-21
billing-administration
feature removed
Device Security drops the Precision AI bundle license activation path
IoT / Device Security
docs
2026-08-21
deployment-topology
capability expanded
Managed AIRS for AWS gains documented policy authoring in Strata Cloud Manager
Prisma AIRS
docs
2026-08-21
mobile-desktop
capability expanded
Autonomous DEM Agent 6.0 adds ARM64 Windows support
Autonomous DEM
docs
2026-08-21
network-transport
limit change
Remote Network High Performance maximum CIR raised from 2000 to 3000 Mbps
Prisma Access
docs
2026-08-21
security-compliance
capability added
Device Security firewall preparation for a China tenant
IoT / Device Security
docs
2026-08-20
analytics-reporting
capability expanded
NGFW incident reference adds Firewall Traffic Disruption Detected
Next-Generation Firewall
docs
2026-08-20
analytics-reporting
capability expanded
Shadow Data Discovery adds editable groups above its AI-generated categories
Enterprise DLP
docs
2026-08-20
analytics-reporting
limit change
Shadow Data Discovery file cap cut from 100,000 to 50,000
Enterprise DLP
docs
2026-08-20
analytics-reporting
capability expanded
Strata Cloud Manager audit-logs notification profile and incident setting changes
Strata Cloud Manager
docs
2026-08-20
integrations-ecosystem
new integration
Advanced DNS Security for Amazon Route 53 (Early Access)
DNS Security
docs
2026-08-20
security-compliance
capability expanded
Prisma Browser for Mobile adds mTLS client certificate authentication
Prisma Access Browser
docs
2026-08-20
threat-defense
capability expanded
AI Red Teaming target scanning adds German, Portuguese and Spanish
Prisma AIRS
docs
2026-08-19
analytics-reporting
capability expanded
NGFW incidents reference adds a High Packet Buffer Utilization incident
Next-Generation Firewall
docs
2026-08-19
analytics-reporting
feature added
PAN-OS OpenConfig Plugin 2.1.3-h2 adds leaf paths for SNMP OID parity
VM-Series
changelog
2026-08-19
analytics-reporting
capability expanded
Strata Cloud Manager's Unified Incident Framework absorbs Prisma Access, Cloud NGFW and WildFire incidents
Strata Cloud Manager
docs
2026-08-19
billing-administration
other
Strata Cloud Manager drops the Pro-and-platinum-support restriction on in-app support case creation
Strata Cloud Manager
docs
2026-08-19
deployment-topology
capability added
Prisma AIRS adds Managed AI Runtime Security for AWS, a managed dual-data-plane firewall service in private preview
Prisma AIRS
docs
2026-08-19
fleet-management
capability added
PAN-OS 12.2 adds a Smart Connect AI tab for Vehicle Ignition Monitoring on ruggedized firewalls
Next-Generation Firewall
docs
2026-08-19
integrations-ecosystem
capability expanded
Enterprise DLP documents 90-day inspection caching and per-hash ICAP forwarding
Enterprise DLP
docs
2026-08-19
network-transport
feature added
Palo Alto ships the PA-1500 Series branch firewall with integrated Layer 2 switching and PoE
Next-Generation Firewall
docs
2026-08-19
network-transport
feature added
Palo Alto ships the PA-3500 Series, its fifth-generation ML-powered mid-range firewall
Next-Generation Firewall
docs
2026-08-19
network-transport
feature added
Palo Alto ships the PA-50R Series ruggedized firewalls for industrial, transport and in-vehicle deployment
Next-Generation Firewall
docs
2026-08-19
network-transport
feature added
Palo Alto ships the PA-520-5G with an embedded 5G Sub-6 GHz modem for branch WAN
Next-Generation Firewall
docs
2026-08-19
network-transport
capability expanded
Prisma Browser replaces its DNS-over-HTTPS toggle with a DNS Resolution control backed by Advanced DNS Security
Prisma Access Browser
docs
2026-08-19
network-transport
capability expanded
Prisma SD-WAN adds OSPF default route advertisement toward LAN peers
Prisma SD-WAN
docs
2026-08-19
network-transport
capability expanded
Prisma SD-WAN Layer 3 loopbacks gain Custom VRF support and extended services
Prisma SD-WAN
docs
2026-08-19
network-transport
capability expanded
Strata Cloud Manager consolidates network profile types onto one Network Profiles page
Strata Cloud Manager
docs
2026-08-19
performance-scale
feature added
Palo Alto ships the PA-5510/5520/5530 with 400 Gbps hardware L4 forwarding offload and MACsec
Next-Generation Firewall
docs
2026-08-19
security-compliance
capability expanded
Prisma Browser adds fully automatic sign-in from the Windows account
Prisma Access Browser
docs
2026-08-19
threat-defense
capability expanded
Endpoint DLP data-at-rest scanning gains OCR detections
Enterprise DLP
docs
2026-08-19
threat-defense
capability expanded
Enterprise DLP Exact Data Matching adds CJK and Thai datasets, plus comma and pipe delimiters
Enterprise DLP
docs
2026-08-19
threat-defense
capability expanded
Enterprise DLP publishes a per-console platform matrix for data pattern archive and restore
Enterprise DLP
docs
2026-08-19
threat-defense
capability expanded
Enterprise DLP publishes per-pattern local detection support across the predefined pattern catalog
Enterprise DLP
docs
2026-08-19
threat-defense
capability added
Prisma AIRS AI Red Teaming adds Live Scan Progress for running scans
Prisma AIRS
docs
2026-08-19
threat-defense
capability added
Prisma AIRS AI Red Teaming adds Memory Poisoning as an agent attack goal category
Prisma AIRS
docs
2026-08-19
threat-defense
capability expanded
Prisma AIRS red teaming reports gain multilingual native-script rendering and attack modality filtering
Prisma AIRS
docs
2026-08-18
deployment-topology
capability expanded
Prisma SD-WAN AWS Transit Gateway CloudBlade gains virtual ION model selection
Prisma SD-WAN
docs
2026-08-18
security-compliance
capability expanded
NGFW Authentication Portal negotiates TLS 1.3 without an SSL/TLS service profile from PAN-OS 12.2
Next-Generation Firewall
docs
2026-08-17
network-transport
other
GlobalProtect 6.3.3-h12 suppresses IPv6 provisioning on IPv4-only endpoints, Windows and Mac
GlobalProtect
docs
2026-08-12
network-transport
capability added
Prisma SD-WAN adds DC symmetric return with Branch Gateway co-existence
Prisma SD-WAN
docs
2026-08-12
network-transport
capability added
Prisma SD-WAN adds hop count-based path selection for Branch Gateways
Prisma SD-WAN
docs
2026-08-12
network-transport
capability added
Prisma SD-WAN documents Branch Gateway full mesh topology
Prisma SD-WAN
docs
2026-08-10
permissions-governance
capability expanded
Enterprise DLP adds GenAI app coverage for 27 further applications
Enterprise DLP
docs
2026-08-10
permissions-governance
feature added
Enterprise DLP extends inline app support to 32 applications and download inspection to 8
Enterprise DLP
docs
2026-08-05
developer-experience
capability expanded
Network Discovery plugin 3.2.1 adds PA-1500 series firewall support
IoT / Device Security
docs
2026-08-01
ai-agents
capability expanded
Native n8n connection method
Prisma AIRS
changelog
2026-08-01
analytics-reporting
capability added
Advanced Threat Prevention Operator Dashboard Added to Strata Cloud Manager
Advanced Threat Prevention
changelog
2026-08-01
analytics-reporting
capability expanded
Cloud Tracer released for multi-cloud and cross-region path tracing
Prisma AIRS
docs
2026-08-01
analytics-reporting
capability added
Page load waterfall charts
Autonomous DEM
changelog
2026-08-01
analytics-reporting
capability added
Separate device memory, CPU and disk metrics
Autonomous DEM
changelog
2026-08-01
analytics-reporting
capability expanded
Strata Cloud Manager adds six Cloud NGFW capacity incidents ahead of configuration limits
Strata Cloud Manager
docs
2026-08-01
analytics-reporting
capability expanded
Strata Cloud Manager ships a Threat Insights operator dashboard for Advanced Threat Prevention
Strata Cloud Manager
docs
2026-08-01
analytics-reporting
capability expanded
Strata Cloud Manager ships a Threat Insights operator dashboard for Advanced URL Filtering
Strata Cloud Manager
docs
2026-08-01
analytics-reporting
capability expanded
Strata Cloud Manager ships a Threat Insights operator dashboard for Advanced WildFire
Strata Cloud Manager
docs
2026-08-01
analytics-reporting
capability expanded
Strata Cloud Manager ships a Threat Insights operator dashboard for DNS Security
Strata Cloud Manager
docs
2026-08-01
analytics-reporting
capability expanded
Strata Cloud Manager signs webhook deliveries with a per-profile HMAC-SHA256 secret
Strata Cloud Manager
docs
2026-08-01
analytics-reporting
capability added
WebRTC call quality monitoring in the browser
Autonomous DEM
changelog
2026-08-01
fleet-management
capability added
Strata Cloud Manager adds a context menu for policy and object list views
Strata Cloud Manager
docs
2026-08-01
fleet-management
capability expanded
Strata Cloud Manager adds a predefined Snippet Library to snippet management
Strata Cloud Manager
docs
2026-08-01
fleet-management
capability added
Strata Cloud Manager adds policy rule targeting to specific NGFWs at push time
Strata Cloud Manager
docs
2026-08-01
fleet-management
capability expanded
Strata Cloud Manager dates the ZTP Installer Web App for phone-based branch NGFW activation to August 2026
Strata Cloud Manager
docs
2026-08-01
fleet-management
other
Strata Cloud Manager populates ZTNA Connector Tags automatically on Dynamic Address Group creation
Strata Cloud Manager
docs
2026-08-01
fleet-management
capability expanded
Strata Cloud Manager Site Management adds exports, onboarding-rule visibility and pagination
Strata Cloud Manager
docs
2026-08-01
fleet-management
other
Strata Cloud Manager stops overwriting non-recurring schedule time slots when a slot is added
Strata Cloud Manager
docs
2026-08-01
fleet-management
capability expanded
Unified Application Dictionary naming extends across all policy and configuration pages
Strata Cloud Manager
docs
2026-08-01
integrations-ecosystem
capability added
Anthropic inference hooks integration
Prisma AIRS
changelog
2026-08-01
integrations-ecosystem
capability expanded
Jira cloud onboarding moves to Atlassian Forge
SaaS Security
docs
2026-08-01
integrations-ecosystem
capability added
OpenAI Codex Enterprise integration
Prisma AIRS
changelog
2026-08-01
network-transport
capability expanded
Branch Gateways use hop count in forwarding decisions in BGW mode
Prisma SD-WAN
docs
2026-08-01
network-transport
capability expanded
Custom VRF and expanded services on loopbacks
Prisma SD-WAN
changelog
2026-08-01
network-transport
capability expanded
Fabric default route advertisement into OSPF
Prisma SD-WAN
changelog
2026-08-01
network-transport
capability expanded
PAN-OS adds IPv6 multicast routing with PIMv6 and MLD
Next-Generation Firewall
docs
2026-08-01
network-transport
capability expanded
PAN-OS adds per-security-policy express forwarding for low-latency trading traffic
Next-Generation Firewall
docs
2026-08-01
network-transport
capability expanded
Prisma Access adds native IPv6 support for service connections and remote networks
Prisma Access
docs
2026-08-01
network-transport
new integration
Prisma Access integrates with Google Cloud Network Connectivity Center gateways
Prisma Access
docs
2026-08-01
performance-scale
limit change
Device Security Asset Attribute Polling supports subnets up to /16
IoT / Device Security
docs
2026-08-01
performance-scale
capability expanded
Network Discovery Plugin polling scales to /16 subnets per job
IoT / Device Security
docs
2026-08-01
permissions-governance
capability expanded
PAN-OS widens Subscriber and Equipment object matching and adds Subscriber and Equipment Groups
Next-Generation Firewall
docs
2026-08-01
permissions-governance
capability expanded
Prisma Agent enforces Jamf MDM posture checks for macOS tunnel authorization
Prisma Agent
docs
2026-08-01
permissions-governance
capability added
Prisma AIRS adds customer-managed encryption keys for AI scan data
Prisma AIRS
docs
2026-08-01
permissions-governance
capability expanded
SSPM administrator activity logging
SaaS Security
changelog
2026-08-01
security-compliance
capability added
AI discovery through Cortex AI-SPM
Prisma AIRS
changelog
2026-08-01
security-compliance
capability expanded
Post-quantum cryptography for Standard VPN on ION 6.8.1
Prisma SD-WAN
docs
2026-08-01
security-compliance
capability expanded
Prisma SASE FedRAMP Moderate adds Prisma Access Agent, IP Optimization and Remote Network High Performance
Prisma Access
docs
2026-08-01
threat-defense
capability expanded
Device-ID based Security policies extended to mobile users
Prisma Access
docs
2026-08-01
threat-defense
capability expanded
Prisma Access extends IoT Device-ID based policies to mobile users
Prisma Access
docs
2026-08-01
threat-defense
capability added
Prisma AIRS adds AI Skill Security for scanning agent skill packages
Prisma AIRS
docs
2026-08-01
threat-defense
capability expanded
Prisma AIRS AI Red Teaming adds attack verdict override and score re-evaluation
Prisma AIRS
docs
2026-08-01
threat-defense
capability expanded
Prisma AIRS Edge Service prunes IP-Tags to those referenced by active security policies
Prisma AIRS
docs
2026-07-30
developer-experience
capability expanded
PAN-OS 12.2.2 adds detailed PAN-DB cloud connection diagnostics
Advanced URL Filtering
docs
2026-07-30
performance-scale
capability expanded
Advanced Forwarding Extended to Prisma Access and Strata Cloud Manager Management
Advanced Threat Prevention
docs
2026-07-30
performance-scale
capability expanded
Advanced Forwarding extends to Prisma Access
Advanced URL Filtering
docs
2026-07-26
data-import-export
capability expanded
Strata Logging Service forwards to Microsoft Sentinel over the Log Ingestion API
Strata Logging Service
docs
Named in changes
47
alibaba-cloud
Alibaba Cloud least-privilege onboarding permission model documented
2026-09-11 · 4 changes
gemini-3-5-flash
Agentic AI model selector extends Gemini 3.5 Flash to CA and DE regions
2026-09-11
mongodb
MongoDB Atlas (Posture) onboarding documented
2026-09-11
mysql
DSPM Database applet activation documented for on-premises PostgreSQL and MySQL
2026-09-11
postgres
DSPM Database applet activation documented for on-premises PostgreSQL and MySQL
2026-09-11
salesforce
Salesforce near-real-time log and data ingestion documented
2026-09-11
sonatype
Sonatype Nexus registry scanning connector documented with scan modes and image scoping
2026-09-11
terraform
Alibaba Cloud least-privilege onboarding permission model documented
2026-09-11 · 4 changes
alibaba
Alibaba Cloud onboarding permissions published for Cortex Data Security
2026-09-06
amazon-s3
AWS coverage adds Route53 logging, KMS key policy and versioned-S3 deletion detectors
2026-09-06
aws
AWS coverage adds Route53 logging, KMS key policy and versioned-S3 deletion detectors
2026-09-06 · 4 changes
git
Endpoint coverage adds JS-runtime credential theft and net-command user management
2026-09-06
35 more
mitre-attack
AI-determined alert-causality correlation gains 46 named attack-chain combinations
2026-09-06
cyberark
Identity Threat Detection and Response Adds CyberArk ISP Integration
2026-09-04 · 2 changes
oracle-cloud-infrastructure
Remote Browser Isolation Adds Oracle Cloud Infrastructure Hosting
2026-09-04
safari
Prisma Browser Extension deployment generator drops Safari from its browser selection list
2026-09-03
microsoft-intune
Cortex XDR agent for iOS gains a documented Microsoft Intune deployment path
2026-09-01
yara
Cortex commands API adds YARA rule management and endpoint YARA scanning
2026-09-01
argo-cd
Argo CD dropped from discovered CI/CD providers
2026-08-31
amazon-bedrock
Prisma AIRS publishes the LLM API formats it inspects, separate from model-ID configurability
2026-08-29
azure
Prisma AIRS publishes the LLM API formats it inspects, separate from model-ID configurability
2026-08-29
google-vertex-ai
Prisma AIRS publishes the LLM API formats it inspects, separate from model-ID configurability
2026-08-29
microsoft-teams
Cortex Data Security adds Microsoft Teams channel and chat message scanning
2026-08-29
openai
Prisma AIRS publishes the LLM API formats it inspects, separate from model-ID configurability
2026-08-29 · 2 changes
docker
Prisma Agent enforces forwarding profile policy on Linux Docker container traffic via eBPF
2026-08-27
ios
Prisma Agent on iOS can use the default system browser for SAML authentication
2026-08-27 · 5 changes
ldap
Prisma Agent LDAP authentication reaches iOS
2026-08-27 · 2 changes
linux
Prisma Agent extends Best Available - Fail Safe to Linux agents
2026-08-27 · 5 changes
ubuntu
Prisma Agent adds Ubuntu 26.04 LTS support on x86_64 and ARM64
2026-08-27
amazon-route-53
Advanced DNS Security for Amazon Route 53 leaves Early Access
2026-08-25
arm64
Autonomous DEM Agent 6.0 adds ARM64 Windows support
2026-08-21
android
Prisma Browser for Mobile adds mTLS client certificate authentication
2026-08-20
mtls
Prisma Browser for Mobile adds mTLS client certificate authentication
2026-08-20
amazon-eks
Prisma AIRS adds Managed AI Runtime Security for AWS, a managed dual-data-plane firewall service in private preview
2026-08-19
openconfig
PAN-OS OpenConfig Plugin 2.1.3-h2 adds leaf paths for SNMP OID parity
2026-08-19
snmp
PAN-OS OpenConfig Plugin 2.1.3-h2 adds leaf paths for SNMP OID parity
2026-08-19
tls-1-3
NGFW Authentication Portal negotiates TLS 1.3 without an SSL/TLS service profile from PAN-OS 12.2
2026-08-18
anthropic
Anthropic inference hooks integration
2026-08-01
atlassian-connect
Jira cloud onboarding moves to Atlassian Forge
2026-08-01
atlassian-forge
Jira cloud onboarding moves to Atlassian Forge
2026-08-01
fedramp
Prisma SASE FedRAMP Moderate adds Prisma Access Agent, IP Optimization and Remote Network High Performance
2026-08-01
jamf
Prisma Agent enforces Jamf MDM posture checks for macOS tunnel authorization
2026-08-01
jira
Jira cloud onboarding moves to Atlassian Forge
2026-08-01
ml-kem
Post-quantum cryptography for Standard VPN on ION 6.8.1
2026-08-01
n8n
Native n8n connection method
2026-08-01
webrtc
WebRTC call quality monitoring in the browser
2026-08-01
microsoft-sentinel
Strata Logging Service forwards to Microsoft Sentinel over the Log Ingestion API
2026-07-26
Select a row