Skip to main content
News
PPBK
PPBK

News from our partners

Risk Exposure Management 

with ADManager Plus

    We're excited to announce a new guided demo for ManageEngine ADManager Plus, focusing on Risk Exposure Management - now available in build 8020 as part of our GRC add-on. As previously shared with partners, this feature proactively identifies and visualizes potential attack paths within Active Directory environments.

Key highlights:

  • Visualize potential AD attack paths and view remediation recommendations

  • Understand AD object relationships and their contribution to overall risk exposure

  • Identify privileged entities with elevated permissions (default and custom groups)

  • Use built-in queries to uncover security risks and attack vectors

Monthly Newsletter from ManageEngine

Check out what's going on at ManageEngine including announcement, guides, updates and more.

Software update news

What is new in IAM and SIEM? 
May 2026 edition

Please find the list of new releases from IAM and SIEM in the month of May.

1. EventLog Analyzer

New integration support for NetFlow Analyzer and Firewall Analyzer
NetFlow Analyzer and Firewall Analyzer can now be added as supported log sources in Log360. Logs from both solutions can be collected via syslog, processed, and analyzed within a unified console. Know more

2. Log360 Cloud
Introducing an agentic AI platform and conversational AI capabilities for enhanced security operations.

Ask Zia
A built-in conversational AI assistant accessible from anywhere in the Log360 console, enabling analysts to interact with their security data using natural language.

Zia Agent Studio
Log360 Cloud now supports Zia Agent Studio, which allows security teams to hire prebuilt agents from the Zia Agent Store and build custom AI agents to carry out specific security tasks or functions. Zia Agent Studio currently offers two prebuilt agents for Log360 Cloud for user activity review and alert correlation, ready to deploy.

Zoho MCP Integration
Log360 Cloud now supports the Model Context Protocol (MCP) through the Zoho MCP Server, enabling Log360 to participate in multi-product agentic workflows and communicate with external AI clients.

License Management:

Log360 Cloud now introduces infrastructure-based licensing. Licenses are now purchased independently for each component—Log Sources, Domain Controllers, File Servers, Cloud Accounts, and Endpoints—allowing you to scale each dimension of your deployment separately.

A native Security Orchestration, Automation, and Response (SOAR) capability built directly into Log360 Cloud to automate investigations, orchestrate response actions, and accelerate threat containment from a centralized interface.


Playbook automation: Log360 Cloud now includes a low-code visual playbook builder with default playbooks and reusable sub-playbooks for investigation, decision-making, remediation, and notification workflows.

Extensions and automated actions
Introduced 7 marketplace extensions including CrowdStrike Falcon, Bitdefender GravityZone, Okta and more, and support for 300+ response actions across endpoint security, identity, cloud, and threat intelligence platforms.

Log Collection Failure Alerts
Stay informed about log collection issues across your environment. Identify log collection failures through periodic health checks to ensure continuous monitoring.

3. DataSecurity Plus

File Audit
File auditing for Amazon FSx: Track all file accesses and modifications across Amazon FSx for Windows file server.
Risk Analysis
Scan schedules are now fully customizable. Choose from weekly, monthly, or custom intervals, or run a one-time scan at a specific date and time.

4. ADAudit Plus

DataEngine support for Microsoft Entra ID reports
Microsoft Entra ID Logon, Management, and Intune reports are now powered by ADAudit Plus' DataEngine, enabling faster search and retrieval. Release notes

ADAudit Plus Build 8700 
expands Entra ID reporting and cloud visibility

We are pleased to announce the release of ADAudit Plus Build 8700, introducing significant enhancements to reporting performance, cloud visibility, and audit capabilities across hybrid IT environments. The key highlights from the release are listed below:


Faster Microsoft Entra ID reporting:

  • Microsoft Entra ID Logon, Management, and Intune reports are now powered by ADAudit Plus' DataEngine, enabling faster search and retrieval performance.

Expanded Cloud Directory visibility:

  • New Microsoft 365 reports for Exchange Online, SharePoint, and OneDrive provide improved visibility into user activity and operations in the cloud.

  • Introduced new Cloud Directory reporting capabilities to improve detection of sign-in risks and privilege changes:

    • Risk Detection

    • Risk Resolved

    • Role Management

    • Device-Based Sign-In Activity

  • Enhanced Microsoft Entra ID sign-in auditing now includes additional application details such as resource name and resource ID. 

Improved archive experience:

  • The Archive Events page now clearly indicates missing archive files with an “Archive file not found” status.

Enhanced event auditing and coverage:

  • Extended registry auditing with improved message formatting which now includes the registry path variable.

  • Expanded file and folder auditing support for Dell PowerScale / Dell Isilon 9.10.

Performance and stability improvements:

  • Enhancements implemented in Analytics module to improve performance and overall stability.

Compatibility Update

  • If Log360 integration is enabled, upgrade Log360 to Build 13025 or later to ensure compatibility with ADAudit Plus Build 8700.

We recommends  upgrading to build 8700 to benefit from improved performance, expanded visibility, and enhanced operational insights.

 

View the full release notes for more details.

Log360 Cloud
Agentic & Conversational AI Capabilities

We're excited to share that Log360 Cloud is launching agentic and conversational AI capabilities this week, a major step forward in our AI roadmap.


Here's a quick overview of what's new:


Ask Zia: A conversational AI assistant built into the Log360 console. Analysts can query logs, alerts, and technician activities in plain English and get results instantly. It's accessible from anywhere in the product.


Zia Agent Studio: Customers can now deploy prebuilt agents or build custom agents to carry out specialized security tasks. Two prebuilt agents (User Activity Review and Alert Correlation) ship ready to deploy from the Zia Agent Store. Custom agents can leverage published Log360 APIs to query data and take actions across Log360, ManageEngine, and Zoho apps.


Zoho MCP Integration: Log360 now supports the Model Context Protocol, enabling external AI clients like Copilot, Claude, and Cursor to perform threat hunting and investigation directly against Log360 data. Prebuilt API tools work out of the box with no additional configuration.

Ask Zia and Zia Agents are available in the Professional edition, whereas Zoho MCP integration is available for all users.


This is a strong differentiator in customer conversations, especially with prospects evaluating AI capabilities in their SOC stack.


Learn more

ADSelfService Plus
extend SSPR and MFA capabilities to Entra ID 

We're excited to announce that ADSelfService Plus will soon support Microsoft Entra ID environments.

With this release, ADSelfService Plus will become a powerful extension to Entra ID environments, helping your customers strengthen identity security beyond what native Entra ID offers.

What’s coming

ADSelfService Plus will integrate directly with Microsoft Entra ID, enabling organizations to:
  • Enforce MFA for Windows logins, UAC prompts, system unlocks, and RDP access on Entra ID and hybrid joined devices

  • Choose from 17 authentication methods, including Duo, RSA SecurID, YubiKey, custom TOTP authenticators, and security questions

  • Stack up to 3 authentication factors in a single MFA workflow for stronger, layered security

  • Keep endpoints protected with offline MFA, even without internet connectivity

  • Go beyond Entra ID's password controls with advanced password policies featuring regex rules, dictionary checks, and real-time strength analysis