Adlumin Q2 Wrap-Up: Broader Coverage. Faster Investigation. Stronger Partner Operations.

Q2 delivered decisive progress on three fronts: expanding threat detection into blind spots, accelerating incident investigation, and removing operational friction for partners. The quarter reflects a shift toward platform-level capabilities that help security teams detect what matters, investigate faster with confidence, and respond at scale.

DNS Disruption Detection: Network Threats Just Got Visible

Modern attackers hide in DNS. DNS-based threats can be difficult to distinguish from legitimate activity. Adlumin’s new DNS Disruption Detection identifies abnormal DNS behavior patterns that deviate from what’s historically normal for each environment, surfacing high-confidence threats without the alert fatigue of rule-based approaches.

Why it matters: Visibility into DNS-based attacks (DDoS, C2 beaconing, data staging) that other tools miss, with environment-aware baselines that adapt to your normal operations.

Check out the full post here

Shadow AI Visibility: Control the Fastest-Growing Blind Spot

Employees use ChatGPT, Copilot, Claude, and dozens of other AI services without IT approval or visibility. Without visibility into this unsanctioned usage, you have a compliance and security blind spot. Adlumin’s new Shadow AI Visibility capability gives you a continuously updated inventory of which AI tools are being used, on which machines, by which users, and through which processes; powered by existing DNS infrastructure, no new agents needed.

Why it matters: Enforce acceptable-use policies before sensitive data leaves the organization, and produce the compliance evidence auditors demand, all without new infrastructure investment.

Check out the full post here

Clear SOC Case Summaries: Faster Incident Review

SOC cases now surface critical insights first, with context-aware recommendations that reflect your current account state. Summaries clearly distinguish between completed actions and in-progress requests, users can see what’s done and what still needs attention while the complete details remain available for full transparency and thorough investigation.

Why it matters: Reduce incident review time and focus on what matters most without digging through all the extra details.

Smarter Microsoft 365 Foreign Country Login Detection

Identifying suspicious account access in globally distributed organizations is hard, false positives drown out real threats. Enhanced detection now evaluates login patterns relative to each tenant’s user distribution, triggering alerts only when login patterns deviate significantly from that tenant’s historical baseline while intelligently suppressing expected regional access.

Why it matters: Better accuracy for global teams, fewer false positives, faster incident response.

Custom Detection Management: Quick Visibility Into Recent Changes

A new Last Modified Date column in the Manage Custom Detections table lets users quickly identify recently edited detections without opening each one. Sortable and auditable.

Why it matters: Reduce the risk of missing critical edits to active detections.

Partner Enablement: Three Operational Wins

Centralized Contact Management with Call Directory

Partners can now define a dedicated emergency contact list, separate from general user directory. Giving you clear visibility into exactly who gets called during critical incidents and in what order

Independent Tenant Management

Partners can now independently create customer tenants without support escalation. No more waiting, faster deployments, partner autonomy, reduced support burden.

Identity Threat Detection and Response Ticketing (ITDR) Integrations

Tenants with ITDR enabled can now integrate directly with Halo PSA, Autotask, and MSP Manager. Unified ticket management between SOC and service desk operations.

Why these matter: Partners operate independently at their own speed. Security teams and service desk collaborate without context switching. Faster incident resolution.

Q2 expanded Adlumin’s reach into previously undefended territory, made incident investigation faster and clearer and gave our partners the autonomy to scale. Our outcome-based approach is demonstrating value to our customers through acceleration: detecting what matters, investigating faster, responding with confidence all while removing operational friction.

For full details, review the Release Notes.

This entry was posted in Adlumin. Bookmark the permalink.