New Features in June 2025
Focus
Focus
Advanced DNS Security Powered by Precision AI®

New Features in June 2025

Table of Contents

New Features in June 2025

Review the new features and platform changes for Advanced DNS Security in June 2025.

DNS Security Tunnel Detector Enhancements

June 06, 2025
The DNS Security DNS tunnel detector now provides enhanced identification of malicious DNS tunnel activity by evaluating individual DNS queries in real-time to minimize data leakage. Previously, including with traditional DNS tunnel detectors, DNS Security relied on statistical analysis of query sequences, which can lead to data loss, as they require pattern observation across multiple queries, before detection is possible. However, the revamped DNS tunnel detector is able to evaluate individual DNS queries in real-time, enabling it to identify malicious tunneling activity from the very first query to the last. This can help protect your network from sophisticated strategies designed to evade session-based detectors and minimize initial data loss.
Additional configuration is not required if you have already enabled DNS Security and defined a policy action for Command and Control Domains, which is the parent category for the existing DNS Tunnel Detection DNS threat category.

New Service Region for Advanced DNS Security

June 06, 2025
Palo Alto Networks now provides access to a secondary FQDN (dns-cn.service.paloaltonetworks.com) for This FQDN has an alternative certificate configuration that can help address connectivity issues that might occur when accessing the service from China.