The journey toward an autonomous Security Operations Center (SOC) is advancing with new AI-driven capabilities. Stellar Cyber has announced the release of its Open XDR platform version 6.2, introducing features like AI-generated case narratives and adaptive alert filtering designed to dramatically reduce investigation time and augment the capabilities of security analysts.
Stellar Cyber 6.2 introduces Agentic AI for automatic case analysis and summary generation.
A new Phishing Email Auto-Triage feature automatically scores and routes suspected phishing messages.
The release adds real-time TCP Reset capabilities to its integral NDR to disrupt malicious sessions.
Expanded ecosystem integration includes webhook ingestion and ESET threat intelligence feeds.
Adaptive Alert Filters automatically adjust severity and apply tags to reduce noise.
The update focuses on making AI assistive and explainable for security teams.
A cornerstone of the 6.2 release is Agentic AI-based Case Analysis & Summary. This generative AI capability automatically creates a clear, concise narrative for every security case, providing immediate insight into the root cause, affected entities, and recommended actions. This aims to reduce investigation time from days to minutes, allowing analysts to understand the severity and context of an alert rapidly.
The platform enhances its automated response capabilities with native TCP Reset for its Network Detection and Response (NDR) functionality, allowing it to terminate malicious network sessions in real time without requiring a costly add-on. Additionally, a new Phishing Email Auto-Triage feature leverages AI-driven parsing to automatically identify, score, and route suspected phishing emails, freeing analysts to focus on more complex threats.
“With 6.2, we’re extending our leadership in human-augmented autonomous SOC,” said Subo Guha, SVP Product Management at Stellar Cyber. “We’re bringing even more intelligence to the analyst’s fingertips — from automatic case summaries to adaptive alert filters — while ensuring the ecosystem stays open and connected.”
The update emphasizes platform openness with the introduction of XDR Connect Webhook Ingestion, a framework that allows customers to post JSON data directly from any external system for faster custom integrations. The Threat Intelligence Platform has also been upgraded with new feeds, including an integration with ESET and ASN (Autonomous System Number) enrichment for better IP context.
To further reduce noise and improve precision, version 6.2 introduces Adaptive Alert Filters. These context-aware filters automatically adjust alert severity and apply tags based on business impact. The release also adds Object-Level Access Control for finer-grained permissions and an in-product Resource Center to keep users informed about new features and training.
Stellar Cyber 6.2 represents a significant step in practical, AI-augmented security operations. By focusing on features that directly accelerate analyst workflows and provide explainable insights, the platform empowers SOC teams to operate more efficiently and effectively in the face of evolving threats.
About Stellar Cyber
Stellar Cyber is the only AI-driven SecOps platform purpose-built for MSSPs and lean enterprise security teams. Since 2015, we’ve been illuminating the darkest corners of cybersecurity to help organizations see every threat, know what matters most, and act with speed and confidence — always with the human in the loop.