Palo Alto
Palo Alto Networks: network security, SASE and security operations platforms.
Recent activity
Stories per weekLatest stories
10 most recent-
Netskope tops Gartner SASE ranking as Palo Alto slips
Gartner's 2026 Magic Quadrant for SASE Platforms ranks Netskope as leader on execution, with Cato Networks moving to second place and Palo Alto Networks downgraded from top position to third. Evaluations emphasize agentic threat suppression, post-quantum cryptography, and AI-driven operational simplicity.
Why it matters SASE vendor shifts signal architectural preferences for zero-trust consolidation; operators evaluating platform transitions should prioritize agentic AI and sovereignty controls alongside traditional security capabilities.
-
Citrix NetScaler zero-days exploited with 50,000 instances exposed
On September 27, 2026, Citrix disclosed eight vulnerabilities affecting NetScaler ADC and Gateway, including two critical RCE flaws actively exploited globally. Palo Alto Networks identified 50,277 exposed instances vulnerable to these CVEs as of September 27.
Why it matters Pre-disclosure attackers exploited these zero-days for 17 days; enterprises must assume compromise on exposed NetScaler appliances and implement forensic response for potential persistence.
-
Network alerts return as SOCs handle 2,566 incidents daily
Optiv and Palo Alto Networks report that SOCs manage 2,566 alerts/incidents daily with 52% reporting significant volume increases; network and UTM alerts now represent 18% of detections (reversing cloud-first dominance), yet 36% of investigations remain manual, creating a detection-response gap for perimeter threats.
Why it matters Network-layer detections are resurging as initial compromise signals; SOC teams relying on endpoint-only visibility miss firewall/VPN attack patterns and must automate network alert triage to keep pace with coordinated VPN/firewall vulnerability campaigns.
-
Palo Alto Automates Vulnerability Hunting as Competitor Pressure Escalates in AI Security
Palo Alto Networks pushed deeper into continuous AI-driven vulnerability hunting, creating direct competition with CrowdStrike in the race to automate more of the security workflow. Palo Alto's Unit 42 used its own AI to uncover over 14,000 unknown vulnerabilities, demonstrating practical machine-speed threat discovery. The real contest is moving beyond endpoint protection toward discovering exposures, deciding which threats matter, and fixing them with less human intervention.
-
Unit 42 Continuous Frontier AI Defense: Agentic Offensive Security with Claude Mythos and GPT-5.6
Palo Alto Networks announced Unit 42 Continuous Frontier AI Defense, an agentic offensive security service leveraging frontier AI models (Anthropic's Claude Mythos and OpenAI's GPT-5.6) to perpetually identify, validate, and remediate enterprise vulnerabilities before attackers exploit them. The service addresses threat actors' new capability to compress breach cycles from weeks to hours.
-
CrowdStrike and Palo Alto Weekly Surge Reflects AI-Driven Security Spending Thesis, But Durability Uncertain
CrowdStrike is up 17.1% over the past week and 14.9% over the past month, trading near a 52-week high of $250.32. CrowdStrike's 51% net new ARR growth is already baked into the price, while Palo Alto's 63% Next-Gen Security ARR still supports its multiple heading into earnings. The rally rests on narrative repricing around AI-driven threats, but upcoming earnings in November and December will determine whether actual bookings validate heightened valuations.
-
Palo Alto Cortex Data Security Unified DDR Now GA: Real-Time Detection Across Cloud, SaaS, AI
Palo Alto Networks released Cortex Data Security with unified Data Detection and Response (DDR) enabling near-real-time detection across cloud data stores, SaaS, and AI infrastructure. The platform centralizes anomalous logins, training data poisoning, data exfiltration, and related detections in a single dashboard with contextual enrichment from DSPM and identity data.
-
CrowdStrike, Palo Alto Networks, Fortinet stocks surge on AI threat recognition and agentic security demand
Cybersecurity stocks CrowdStrike, Palo Alto Networks, and Fortinet were among top S&P 500 gainers on September 14, 2026, with CrowdStrike rising 13.8% to all-time highs, Palo Alto gaining 13% (largest one-day increase since April 2025), and Fortinet up 9%. Analysts cite growing demand for integrated security platforms and agentic AI capabilities as agentic AI security market emerges.
-
Wedbush Initiates Cybersecurity Coverage: Platform Consolidation Over Budget Expansion Reshapes Vendor Hierarchy
Wedbush launched cybersecurity sector coverage on September 11 with outperform ratings on AI-native platform vendors, signaling that cybersecurity budgets are being redistributed rather than expanded, with spending concentrated across select platforms. The firm identifies five key themes reshaping spend: AI defense across the tech stack, vendor consolidation, data security, observability, and vulnerability management disruption.
-
Palo Alto Networks FY2027 Guidance: NGS ARR Growth Moderates, Billings Signal Consolidation Momentum Cooling
Palo Alto Networks reported FY2027 revenue guidance of $14.1–14.2B and NGS ARR guidance of $11.075–11.175B, with next-generation security ARR coming in modestly below market expectations despite 34% YoY revenue growth. Raymond James noted solid results but tempered enthusiasm on platform consolidation momentum, signaling potential headwinds for the sector's unified security narrative.
Coverage history
21 earlier storiesSeptember 2026 1
- Sep 3Palo Alto Networks Acquires Console to Agentify SecurityNetwork World
August 2026 4
- Aug 22Palo Alto Networks beats Q3 earnings with 60% NGS ARR growth; flags 25% false-positive rate in AI models as structural challengeAd Hoc News / Investing.com
- Aug 17Weekly Tech Roundup: AI's Next Battle Is Capital, Trust and Control—Cybersecurity Closes the LoopThe CODEW
- Aug 12CrowdStrike, Palo Alto Hit Record Highs After Black Hat; Analysts See AI Agents as New Foremost Attack VectorQuartz
- Aug 11CrowdStrike, Palo Alto Networks stocks hit new highs after Black Hat—AI agents emerge as foremost attack vectorCNBC
July 2026 10
- Jul 31Cortex XSIAM 3.6 and Cortex AgentiX 1.4: Frontier AI Models and Agentic Response CapabilitiesPalo Alto Networks Blog
- Jul 29NVIDIA Forms 37-Member Open Secure AI Alliance Following Hugging Face Autonomous Agent IncidentNVIDIA Blog
- Jul 23Palo Alto Networks to Acquire Embrace for Real User Monitoring Capabilities in Observability PlatformPalo Alto Networks Investor Relations
- Jul 23Unit 42 2026 Global Incident Response Report: AI Acceleration in Attack Chains Demands Automated DefensePalo Alto Networks Unit 42
- Jul 23AT&T Q2 earnings: $250 billion AI infrastructure commitment, agentic AI reshaping traffic symmetryAT&T Inc. Earnings Call Transcript
- Jul 17Chronosphere Temporal Knowledge Graph Powers AI Agents in ObservabilityComputerWeekly
- Jul 7CrowdStrike Surges 5%, Palo Alto and Okta Gain 4% as Cybersecurity Stocks Rally on Analyst Upgrades24/7 Wall St.
- Jul 3Palo Alto Networks Completes $3.35B Chronosphere Acquisition for Observability-Driven AI SecurityPalo Alto Networks
- Jul 2Palo Alto, CrowdStrike both have best quarter ever as AI threats bolster cyber demandCNBC
- Jul 1Palo Alto Networks Introduces Secure Agentless Access (SAA): Zero Trust for Unmanaged DevicesPalo Alto Networks Blog
June 2026 6
- Jun 24IBM X-Force Advisory: Active Exploitation of Fortinet FortiGate & Palo Alto GlobalProtect VPN CompromiseIBM Security
- Jun 21Palo Alto Networks Raises FY2026 Profit Guidance on AI-Driven Security Platformization AccelerationBloomberg
- Jun 19Zero Trust for AI Agents: SASE Vendors Race to Secure Non-Human UsersFierce Network
- Jun 13Zero Trust for AI Agents: SASE Vendors Race to Secure Non-Human UsersFierce Network
- Jun 13Palo Alto Networks Addresses Cortex XSIAM and XSOAR Vulnerabilities in CommvaultSecurityIQ IntegrationCanadian Centre for Cyber Security
- Jun 12SASE Vendors Race to Secure Non-Human Users as Agentic AI Floods Enterprise NetworksFierce Network