Blogs
The Blogs page offers insights into new product features, cybersecurity solutions, and updates relevant to the Palo Alto Networks cybersecurity community. Dive into in-depth technical articles on our innovations, robust systems, and cutting-edge cybersecurity solutions from Palo Alto Networks Engineering.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Blogs
The Blogs page offers insights into new product features, cybersecurity solutions, and updates relevant to the Palo Alto Networks cybersecurity community. Dive into in-depth technical articles on our innovations, robust systems, and cutting-edge cybersecurity solutions from Palo Alto Networks Engineering.

Browse the Community

Community Blogs

LIVEcommunity blogs cover new product features and updates, cybersecurity solutions, and news pertinent to the Palo Alto Networks cybersecurity community.

1375 Posts

Engineering Blogs

Discover in-depth technical insights on our journey to create robust, scalable systems and deliver cutting-edge cybersecurity solutions. Explore our innovations and gain a deeper understanding of Palo Alto Networks Engineering.

16 Posts

Activity in Blogs

Agent Observability: Measuring Tools, Plans, and Outcomes

7 min read

Agent Observability: Measuring Tools, Plans, and Outcomes AI agents have moved well beyond simple prompt-and-response interactions. In production environments today, they plan multi-step strategies, make branching decisions, invoke external tools via protocols like the Model Context Protocol (MCP), and loop through reasoning chains before produc...

drshah by L1 Bithead
  • 33 Views
  • 0 replies
  • 0 Likes

Network Channels: Securely Reaching AI Systems Behind Enterprise Firewalls

7 min read

An internal support agent with access to customer account records sits on a private subnet with no public DNS. Our AI red teaming platform cannot send it a single adversarial prompt. Neither can an attacker who is outside the network, which is why it was deployed there. Production is also the wrong place to test. Finding a jailbreak in a syste...

Network Broker - Blog.png
Network Broker - Blog (1).png

Palo Alto Networks Announces Cloud NGFW Credit Unification

4 min read

Cloud NGFW is a cloud-native Next-Generation Firewall fully managed by Palo Alto Networks. Starting August 2026, Palo Alto Networks customers can use Software NGFW (VM-Flex) credits to fund Cloud NGFW for AWS and Azure resources. This feature establishes a single, unified currency for both Software NGFW and Cloud NGFW services, offering unmatche...

title.png
tenant usage details.png
SmartCredit Used.png
bcreado by L0 Member
  • 684 Views
  • 0 replies
  • 0 Likes

Software NGFW Credits for Cloud NGFW

1 min read

Managing firewall resources across different deployment models should be flexible and straightforward. Customers using a combination of self-managed and Palo Alto Networks-managed Software NGFW products have traditionally had to manage separate credit models, adding complexity to purchasing and resource allocation. With Software NGFW Credits f...

JayGolf by Community Team Member
  • 215 Views
  • 0 replies
  • 1 Likes

Why Reliability in AI Applications Is Now a Competitive Differentiator

6 min read

AI has moved beyond pilots and proofs of concept. It now underpins critical applications across industries, from powering customer experiences to automating internal workflows. As AI becomes foundational to business operations, expectations around its reliability have shifted accordingly. The cost of downtime is no longer theoretical. Recent out...

How to Add Enterprise Controls to Open WebUI: Cost Tracking, Access Governance, and Runtime Security

5 min read

Open WebUI is a widely adopted open-source platform for deploying self-hosted AI interfaces. For platform teams and IT administrators managing shared Open WebUI instances, however, a critical gap remains: while Open WebUI handles user-facing AI interactions effectively, it does not currently include the centralized operational and security co...

n8n Best Practices: Adding AI Policies Across Workflow Automation

8 min read

n8n handles workflow orchestration well in small-scale setups. The picture changes when AI Agent nodes begin calling LLMs across shared teams and environments. Token usage is hard to track, provider credentials are spread across configurations, and workflows depend on model endpoints without any policy layer governing what gets sent or returne...

avayadav by L1 Bithead
  • 312 Views
  • 0 replies
  • 1 Likes

AI Cost Observability: A Practical Guide to Understanding and Managing LLM Spend

10 min read

In most organizations, model access has scaled faster than cost visibility. Teams know their total monthly spend but not which model, prompt, or workspace is responsible for it. This lack of granularity makes optimization reactive rather than strategic. AI cost observability bridges that gap. It brings clarity to the most opaque part of AI opera...

tshenoi by L1 Bithead
  • 463 Views
  • 0 replies
  • 0 Likes

GitHub Copilot Best Practices for Teams: Securing AI-Assisted Development at Scale

7 min read

GitHub Copilot feels simple when a few developers use it. When entire engineering teams depend on it daily, and platform engineers are expected to explain who is using it, how requests are routed, and where usage appears across environments, operational complexity grows quickly. At this stage, Copilot becomes part of your shared AI infrastructur...

Bringing Precision AI to the network layer to block attacker internet infrastructure with Advanced IP Defense

8 min read

As adversaries deploy increasingly automated, machine-speed evasion tactics, traditional security models are hitting a critical bottleneck. Historically, network perimeters have relied on Layer 7 payload analysis, domain reputations, and URL filters to block threats. While highly effective at inspecting traditional traffic, these L7 controls hav...

Precision AI.png
davchen by L2 Linker
  • 514 Views
  • 0 replies
  • 3 Likes

Secure Edge Simplified: Announcing Native Layer 2 Switching on Palo Alto Networks NGFWs

4 min read

If you manage branch locations, whether retail stores, clinics, bank branches, or kiosks, you know the pain. Every site requires a firewall, a router, and a switch. That's three separate devices to procure, deploy, configure, monitor, upgrade, and troubleshoot, multiplied across dozens or hundreds of locations. The result? Spiraling capital c...

Secure Edge.png
PA-560.png
before-after.png
WAN connectivity.png
alele by L2 Linker
  • 292 Views
  • 0 replies
  • 0 Likes

Remote Browser Isolation Is Now Available for FedRAMP Moderate

3 min read

Remote Browser Isolation Is Now Available for FedRAMP Moderate The mandate is clear. The browser is still the gap Executive Order 14028 told federal agencies to stop trusting the network perimeter and start verifying every session. OMB Memorandum M-22-09 turned that into a federal Zero Trust strategy, and agencies spent the years since re-ar...

Securing_Federal_Browser_Web_Sessions.png
shv by L4 Transporter
  • 339 Views
  • 0 replies
  • 0 Likes

Browser Threat Brief: OAuth Phishing Turns a Legitimate Login Into Account Access

6 min read

This blog was written by Almas Raza As organizations strengthen account security with multifactor authentication, attackers are changing how they target users. Rather than always trying to steal passwords, they are increasingly abusing trusted OAuth authorization workflows to gain access to email, files and cloud applications. In these attacks...

tuvu01 by L3 Networker
  • 1410 Views
  • 0 replies
  • 3 Likes

Announcing the Prisma SD-WAN Enterprise Agreement (EA)

3 min read

Palo Alto Networks introduces the Prisma SD-WAN Enterprise Agreement (EA) to resolve the logistical burden and complexities of fragmented global renewals and high-volume SKU quoting. Read about our customer-focused features that are included in the EA and how it can provide a clear path for expansion with stabilized ramp-up costs. Say Hello to...

screen.png

Real-Time Inline Prevention with EP Advanced File Handling

3 min read

Author: Pranesh Neelakrishnan (@prneelakrish) , Principal Product Manager (Prisma Access) In today’s threat landscape, the "Patient Zero" problem–where a never-before-seen malicious file reaches an endpoint before a signature can be created–remains one of the most significant gaps in enterprise security. Traditional signature-based defenses oft...

screen.png