Pre-zero-day exposure detection and mitigation actions from Recommendations
We're extending Exposure Management (XM) with two capabilities that bring XM and Extended Detection and Response (XDR) closer together — helping you catch risk earlier and act on it faster, without leaving the Recommendation view.
Pre-zero-day exposure detection
For customers running both XM and XDR, XM can now surface exposure risks that traditional vulnerability scanning misses entirely: privilege-escalation vulnerabilities spotted in real time from endpoint detection data, before a CVE even exists. You’ll see a new finding and recommendation in your Exposure dashboard describing the risk and the recommended action, including guidance on next steps such as reinstalling or patching affected software.
Take mitigation action straight from a Recommendation
For customers running both XM and XDR, the Recommendation view now offers response actions matched to the type of asset affected — so you can act immediately instead of switching tools.
Depending on the type of fix the recommendation requires, you’ll be able to isolate a device or update file permissions. Later on, recommendations related to Identities will offer the option to reset a password, block user access, or end a user's active session..
Select the affected assets in the Recommendation view and trigger the action directly — no need to pivot to a separate XDR console.
Web Scan and OWASP Top Ten 2025
Our Vulnerability Management Web Scan engine has been updated to detect and classify findings according to the latest OWASP Top Ten (2025) categories, alongside continued coverage of the 2017 and 2021 lists. Findings from Web Scan contain tags for OWASP categories.