Trellix Helix 2025.6

Prev Next

The Trellix Helix 2025.6 release includes new features and enhancements. For more information, refer to the Helix Product Guide.

New features and changes

Trellix Hyperautomation enhancements

The following enhancements have been made to Trellix Hyperautomation:

  • On the Integration Hub page, you can pivot to the Trellix Hyperautomation UI to view the available Edges.

  • Before you configure a respond integration, the Integration Hub shows a list of supported Trellix Hyperautomation actions and artifacts. This helps ensure you only configure respond integrations that support the actions you need. If any new actions or artifacts become available after you configure a respond integration, you can view them when you select the integration on the Integration Hub page.

Alert management enhancements

The following enhancements have been made to alert management:

  • When you turn on the Correlated Alerts toggle, the Correlating Attributes column in the alerts table shows the attributes that link the grouped alerts or events. This lets you see why Helix has determined the alerts or events are related. You can also add the column to the standard view of the alerts table, select Settings HelixConnect-Settings.png > Customize Columns > Correlating Attributes.

  • The table view on the Alert Details page groups aggregated events.

  • You can sort and filter columns with the filter icon (HelixConnect-filter.png) in the alerts table. This allows you to quickly find and act on relevant information.

  • The Assets column in the alerts table shows the type of asset, such as Host, User, IP, or Email, as well as the value, such as hostname, username, IP address, or email address.

Common UI enhancements

You can group certain columns in the alerts, case, and tags tables into rows to help you manage and analyze data. Where available, in the column header, select More Options more-options.png > Group by. If you sort the table in this way, you can only take bulk actions on a maximum of 1000 rows. For example:

  • In the alerts or cases table, group by the Severity and Assigned To columns and all alerts with the same severity assigned to each analyst are grouped together.

  • In the tags table, group by the Type column and all tags of the same type are grouped together.

Known issues

The following issues are known in the Trellix Helix 2025.6 release:

Tracking number

Summary

XDR-28991

When you apply a tag to an alert, the count does not update in the Times Applied column in the Tags list.

Supported languages

Trellix Helix supports English only.