NEW

2024 True Cost of a Security Breach

Arrow pointing right
ExtraHop Logo
  • Productschevron right
  • Solutionschevron right
  • Why ExtraHopchevron right
  • Blogchevron right
  • Resourceschevron right

Arrow pointing leftBlog

What's New in 8.3 and Reveal(x)

Jeena Khan

December 16, 2020

While release notes provide a comprehensive view of our 8.3 release updates, here is a preview of our most exciting new features.

Detections

Previously, you could adjust the signal-to-noise ratio of your detections by clicking Hide and selecting specific offenders and victims. We've expanded this option, which now appears on detection cards as Tune.

DNS tunnel detection

In 8.3, you can further Tune your detections by adding a trusted domain either from the detection itself...

Detection Tuning

...or by adding a list of known and trusted domains to the Network Localities page. The ExtraHop system will no longer generate detections for potential C&C attacks for these domains.

Trust domains

You can also now filter by CVE IDs or detection type names on the Detections page.

Filter by CVE ID

Overviews

The Security Overview page now shows the top 20 offenders involved in detections across your network.

Overview showing top offenders

And the Perimeter Overview page now includes a halo visualization that shows New Traffic by Country.

View network traffic by country

Records

Previously, clicking Records from the top navigation launched a complete query of all collected records. In 8.3, when you click Records, a New Query window appears and enables you to create a refined query for only the results you need.

Refine records query results

Reveal(x) 360 Only

For ExtraHop Administrators

  • ETA 1150v for Google Cloud Platform is now available.
  • Detection properties are now accessible through the REST and Trigger APIs to support SIEM/SOAR integrations. These properties enable you to retrieve specific information about a detection, such as the protocol that the detection occurred on.

Documentation Website Updates

The ExtraHop Documentation website provides information about all ExtraHop systems. Quickly identify whether a topic applies to your ExtraHop deployment by reviewing the Product Requirements.

Documentation

Any additional required system components, such as a recordstore or packetstore, are also identified.

Required system components

Visit our Customer Community for upgrade options and let us know if you have any questions!

Explore related articles

Experience RevealX NDR for Yourself

Schedule a demo