Several cybersecurity vendors and experts have announced new developments aimed at improving security operations centers (SOCs) and threat detection capabilities. ManageEngine has released a major upgrade to its Log360 SIEM platform, introducing a revamped threat detection engine with a central detection console, object-level filters, and over 1,500 updated detection rules to reduce alert noise and speed up response times. Arctic Wolf has expanded its Threat Intelligence Plus service, providing real-time, operationally proven indicators of compromise and enhanced integration with SIEM and threat intelligence tools for more effective threat hunting and incident response. Industry analysis highlights the convergence of SIEMs and data lakes, with modern platforms integrating advanced analytics, UEBA, and SOAR to address legacy challenges and support evolving SOC requirements. These developments reflect a broader trend toward automation, AI integration, and unified threat intelligence in security operations.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
A market analysis article described the convergence of SIEMs and data lakes, outlining market evolution, key players, and future direction. The reference was published on September 24, 2025, but does not clearly identify a separate discrete real-world event beyond the analysis itself.
Arctic Wolf announced an expansion of its threat intelligence service. The development was publicly reported on September 24, 2025.
ManageEngine announced a revamp of threat detection capabilities in its Log360 platform. The reference indicates this product update was publicly reported on September 24, 2025.
3 references tracked. Mallory keeps watching after this page renders.
softwareanalyst.substack.com
Open sourcescworld.com
Open sourcescworld.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.