- Product
Product Overview
Sophisticated security with unmatched simplicityCloud SIEM
Pre-configured detections across your environmentHoneypots
Deception technology to detect lateral movementEndpoint Visibility
Real-time monitoring with added detection & responseSecurity Reports
Data visualizations, compliance reports, and executive summariesAutomated Response
Detect, prioritize, and neutralize threats around the clockIntegrations
Cloud, on-prem, and open API connectionsXDR Platform
A complete view to identify risk, and things operational
- Pricing
- Why Blumira
Why Blumira
The Security Operations platform IT teams loveWatch A Demo
See Blumira in action and how it builds operational resilienceUse Cases
A unified security solution for every challengePricing
Unlimited data and predictable pricing structureCompany
Our human-centered approach to cybersecurityCompare Blumira
Find out how Blumira stacks up to similar security toolsIntegrations
Cloud, on-prem, and open API connectionsCustomer Stories
Learn how others like you found success with Blumira
- Solutions
- Partners
- Resources
Release Notes Summary
In May, we announced new subscription options for folks that are currently on our Free SIEM edition and want the ease of monthly commitments with the benefits of features like Blumira Agent and Security Operations and Technical Support. We also added a 1Password integration to our growing list of Cloud Connectors, and improved how new Microsoft 365 integrations are validated to ensure long-term stability.
Feature and Platform Updates
- Self-Service Subscriptions: Organizations currently on the Free SIEM edition who want the ease of purchasing and managing billing options directly in the app without a large annual commitment can upgrade to SIEM Starter or SIEM Starter + Compliance, detailed here. To review the new options in the app, navigate to the Billing page (Settings > Billing) and then update your subscription and billing information in Blumira if interested.
- New Cloud Connector: Our new 1Password integration helps you collect and centralize your password manager logs to increase your visibility of activity and meet compliance needs.
Detection Updates
Log Type | Detection Details |
---|---|
SonicWall Traffic | SonicWall: Login Failure We deprecated this original indicator detection rule and replaced it with the windowed detection rule described below. This original rule was generating findings with excessive numbers (many thousands) of rows of evidence, which led to crashes and prevented finding resolution in the app. |
SonicWall Traffic | NEW - SonicWall: 5 or More Login Failures in 15 Minutes This new windowed detection rule replaces the “SonicWall: Login Failure” rule. It triggers a finding when there are five or more login attempts that fail on a device within a 15-minute window. |
HTTP Access (Apache/IIS/NginX) | ConnectWise ScreenConnect SetupWizard Authentication Bypass CVE-2024-1709 We lowered the priority of this detection from a P1 to a P3 Threat. |
Bug Fixes and Improvements
We added clear messaging in the Blumira Investigate results window when there are no results for the search so users are not left wondering whether the page is blank due to a loading error.
We released several improvements to error handling during the configuration of M365, SentinelOne, Google Workspace, and OneLogin Cloud Connectors. Users now see actionable errors and troubleshooting help when a new integration fails to successfully connect.
April Release Notes
In case you missed the April updates, you can find and review those notes here.
More from the blog
View All Posts
Product Updates
11 min read
| August 5, 2025
July 2025 Product Releases
Read More
Compliance Security Frameworks and Insurance
7 min read
| July 17, 2025
Blumira's Compliance Reports: Making Audit Assessments a Breeze
Read More
Product Updates
5 min read
| July 15, 2025
Streamline Your SecOps with the New Blumira API
Read MoreSubscribe to email updates
Stay up-to-date on what's happening at this blog and get additional content about the benefits of subscribing.