Symantec CBX is Here

The answer to AI-accelerated threats is now available worldwide

  • AI has supercharged attackers, scaling sophisticated threats and ending forever the notion of “security through obscurity,” even for lean teams.
  • Symantec® CBX brings enterprise-grade, AI-powered XDR to everyone, unifying endpoint, web, and data protection with automatic correlation and a single, no-friction console.
  • Built to empower the humans at the helm, CBX uses AI to predict attacks, simplify investigations, and speed response, leveling the field so strapped teams can fight like big SOCs.

As if resource-strapped security teams haven’t had enough to keep them busy, emergent AI-accelerated threats are a profoundly unwelcome development that all but promises tomorrow’s attacks will be more devastating than today’s. AI hands attackers the ability to automate and scale their assaults, making it easier for even novice bad actors to mount advanced attacks against a wider array of targets.

Those targets now include smaller organizations that once were safe from sophisticated attacks simply because cyber criminals lacked the ability to cast a wider net. The days of “security through obscurity” are over, and it’s a worrisome development for security teams low on budget and resources.

All that changes right now. 

XDR like you’ve never seen before

Today, we’re announcing the availability of Symantec CBX, a unified cloud-based XDR platform that delivers robust protection and cross-domain threat detection and response to security teams of all sizes. Thanks to attack-trained AI and native telemetry correlation, defenders can tap into clear and comprehensive context across endpoints, web traffic, and data movement.

Symantec CBX stands apart from other XDR platforms by arming security teams with capabilities that until now were accessible only to the largest enterprises—the kind that are protected by costly, bespoke defenses that remain out of reach for the vast majority of organizations. CBX levels the playing field by eliminating manual cycles previously spent trying to correlate signals and surfacing clear and actionable insights. 

That combination—extensive visibility and automatic correlation of signals from multiple attack surfaces—puts resource-constrained security teams on a more equal footing with organizations protected by far larger SOCs and security budgets. CBX then builds on that foundation with unique capabilities strategically enabled by AI.  

Starting today, security teams the world over can deploy a level of XDR they’ve never seen before. Driven by the belief that everyone deserves enterprise-grade security, we integrated our industry-leading web protection and data protection (DLP) capabilities directly into CBX. These technologies are typically deployed by large enterprises as critical layers of defense and signal, and often result from extensive, custom integrations. CBX not only includes these capabilities, but leverages them automatically, providing enhanced protection and detection fully integrated into a single XDR console. 

Real-world threats demand these formerly enterprise-only capabilities, and CBX brings them to all organizations, large and small. 

See what’s inside CBX

This is XDR built by the people who pioneered EDR and bolstered by threat intelligence from one of the world’s most respected threat hunting and analysis teams. Think award-winning endpoint protection technology, acclaimed network protection, and relentless data security features in one unified platform. Endpoint, web, and data security layers are all powered by Symantec’s cutting-edge technologies. 

Major organizations including the largest financial institutions rely on these same protections. Now, for the first time, these three capabilities are brought together into a single, easy-to-deploy and manage offering. Protection, detection, comprehensive intelligence, response, and recovery. It’s all here.

In an era of AI-driven attacks, CBX protects at machine speed

CBX’s new AI-powered protection technologies stand in the way of emerging and soon-to-appear AI-driven attacks. These attacks aggressively leverage freshly discovered vulnerabilities, making it impossible for humans to keep up. To proactively block attacks and respond with additional protection in real time, we incorporated two key new technologies:

Adaptive Protection stops AI attacks cold by blocking any anomalous use of legitimate software and OS functions. Vulnerable applications are no longer vulnerable when anomalous behaviors are blocked outright. Adaptive Protection establishes policies based on an organization’s typical use of legitimate software and OS functions in order to ensure business continuity, enabling CBX to block all anomalous activity proactively. To date, not a single enterprise fully enabled with Adaptive Protection has experienced a ransomware event.

Incident Prediction uses AI to forecast an attacker’s next four to five moves at machine speed and stops attackers’ progress, giving teams the time to engage in a comprehensive investigation while also blocking lateral movement, data theft, and damage to the business. Critical protection changes can be implemented instantly, ensuring protection even in the face of entirely new AI-driven attacks. In the field, Incident Prediction predicts attacker actions with nearly 100% accuracy, and it is able to make these predictions on 94% of attacks.

To date, not a single enterprise fully enabled with Adaptive Protection has experienced a ransomware event.

AI that puts humans at the helm

We’ve embedded AI to streamline security workflows and unlock capabilities you won’t find elsewhere. CBX’s exclusive suite of AI-driven features is intended to empower, not replace, the people on your team:

Threat Tracer gives novice and expert analysts alike a single, unified view of attacker activity—showing entry points, attack paths, and data access across endpoint, network, SaaS applications, and cloud. Because it’s visual and dynamically intuitive, Threat Tracer allows even junior analysts to investigate and understand the full blast radius of an attack, helping close the talent gap so many security teams face today.

AI-powered Investigation Summaries pull together key details into clear, actionable guidance so any analyst can effectively respond in seconds. With Investigation Summaries, analysts no longer have to line up disparate alerts to try to understand the context surrounding an incident or attack. CBX does the heavy lifting, while also providing recommended remediation steps, so analysts can immediately focus on understanding what’s happening and engage the best response. 

Stronger protection for network and data

Built around essential features from the award-winning Symantec Secure Web Gateway (SWG) and Symantec DLP solutions (protections that defend some of the world’s largest financial institutions), the network and data protections in CBX stop threats at the edge and keep sensitive data secure. CBX brings web defense and data security signals directly into the investigation workflow without requiring a heavy, full‑scale web protection or DLP deployment. 

By correlating disparate signals from endpoint, cloud, and network, CBX identifies active breaches with precision, alerting the analyst only when an active breach is underway. The combination of millions of endpoint, web, and information data points enables high fidelity investigations with a 99% accuracy rate.

Meanwhile, CBX not only delivers integrated web security capabilities that don’t compromise performance, but it also incorporates support for post-quantum cryptography measures by protecting against “harvest now, decrypt later” attacks. Talk about future proofing.

Faster results, real impact

CBX eliminates tool sprawl with a unified console—cutting SIEM costs, reducing alert fatigue, accelerating response times, and meeting compliance goals. Out-of-the-box policies mean quick deployment and immediate value.

More time to fight bad guys

Most organizations today lack the resources to mount custom integrations of various security point products, so they rely on APIs that work, but only to an extent. This siloed approach still leaves them juggling multiple dashboards or tabs in a stitched-together security environment that leaves visibility gaps and steals precious time. Enter Symantec CBX’s single UI console, which puts endpoint telemetry, alerts, and cross-domain context in one place. This means every analyst gets the same information in a fully correlated and easily digestible format. No more toggling between screens. No more waiting on information from another tool. With a single console and a single agent, taking action is simple, and you have more of what you need most of all: time.

World-class defenses from local experts

Our unique Catalyst Partner go-to-market network ensures that Symantec CBX will come to you straight from the local experts you trust. We designed CBX specifically for the very customers that our Catalyst Partners serve. Our partners view CBX as a way to strengthen security outcomes across their customer ecosystems. It’s the critical foundation for something greater at a time when something greater is very much called for.

Frontier AI isn’t just for the Fortune 50

Defenses like those featured in Symantec CBX were important even before frontier AI models came on the scene. But now that these breakthrough models are here, they’re creating powerful new ways for defenders to discover and prioritize vulnerabilities, detect and investigate complex attacks at scale, and automate targeted responses at machine speed. This isn’t some far-off future aspiration. It’s an operational requirement right now, and it’s ready for you today.

Symantec CBX puts breakthrough capabilities into the hands of organizations of all sizes. CBX is the manifestation of our belief that enterprise-grade security should be available to all, not reserved for the largest enterprises with the most abundant resources. And because we believe every defender deserves frontier AI, Symantec CBX marks the start of a new frontier for resource-constrained teams.

CBX, at your service

Find out what unified (and simplified) XDR looks like in real life. Request your 1:1 demo of Symantec CBX. Or get hands-on with a free trial to see how CBX speeds investigations, eliminates blind spots, and takes you from reaction to prediction.

Want to learn even more? Catch our CBX Fest series where we go deep on every aspect of this remarkable platform.

You might also enjoy

Upcoming Events

See what's next

Threat Updates

Get the latest