Webroot — Recent Moves (20 tracked, last 90 days)

Webroot

Webroot is a security vendor whose recent activity is dominated by its absorption into the OpenText Cybersecurity brand, alongside a steady stream of product, pricing, and practitioner-sentiment signals. Across 20 tracked moves spanning late June to mid-August 2026, Webroot appears less as a standalone brand and more as a portfolio line inside a larger cybersecurity organization, with consumer and SMB promotions running in parallel to enterprise positioning.

Watching Webroot right now matters because the moves show a company in transition: branding is consolidating under OpenText, discounts are being pushed hard to consumer and SMB buyers, and practitioner commentary is surfacing friction around performance and product gaps. For anyone tracking the SMB and MSP security space, these signals indicate where Webroot is investing attention and where it is vulnerable.

20

Moves tracked (90d)

IndustryLens

1

Confirmed-tier moves

IndustryLens

2026-06-28

First tracked

IndustryLens

Brand consolidation under OpenText: In early August 2026, Webroot's Business Security Portfolio was integrated under the OpenText Core brand, and Webroot web pages began carrying OpenText Cybersecurity branding. By mid-August, the business was described as operating under a unified OpenText Cybersecurity brand identity. This pattern signals that Webroot is being repositioned as a product line within a broader portfolio rather than a standalone identity, which matters for buyers evaluating long-term brand and support continuity.

Aggressive consumer and SMB pricing: In early August 2026, Webroot ran a 62% discount on its cloud-based antivirus suite, repeated across consumer and SMB multi-device protection offers. Around the same time, Webroot Essentials was promoted in a student safety campaign. The repetition of the same discount across multiple offers suggests a coordinated demand-generation push into consumer and small-business segments, likely to defend install base while the brand transition settles.

Enterprise and MSP positioning with acknowledged gaps: Webroot released MSP educational content targeting cloud backup revenue streams in early August 2026, while OpenText Cybersecurity positioned core EDR with SIEM and SOAR as no-cost integrations in mid-July. At the same time, enterprise posture was reported to show feature gaps in Linux support and event logging, and MSP practitioners cited performance drag and product quality as barriers to adoption in early July. The contrast between no-cost integration messaging and reported gaps suggests Webroot is competing on bundling economics while still working through technical objections.

Threat research and detection claims: Webroot released its 2026 Threat Report in late July 2026 highlighting a 206% surge in phishing attacks, and OpenText Cybersecurity was promoting 25-30% MDR detection improvement in late June. These research and detection claims serve as credibility anchors for the portfolio during the brand transition, giving sales teams current data points even as practitioner friction is reported.

User friction and quality perception: Across early to mid-August 2026, users reported aggressive false positives, suspected interference with core Windows services, macOS high CPU usage and native security conflicts, and heuristics causing friction for gamers. Users also identified product tech and reporting gaps. This cluster of observed friction is strategically significant because it coincides with the discounting and brand consolidation, potentially undercutting adoption among performance-sensitive buyers.

What to watch: Track whether the OpenText branding consolidation is followed by clearer product roadmap commitments, especially around the reported Linux and event-logging gaps. Also watch whether the 62% discounting persists, which would suggest continued pressure on consumer and SMB acquisition, and whether practitioner friction reports translate into measurable churn or remediation messaging.

Notable moves

  • WebrootWebroot Business Security Portfolio Integrated Under OpenText Core Brand
  • WebrootWebroot Business Operates Under Unified OpenText Cybersecurity Brand Identity
  • WebrootWebroot Offers 62% Discount on Cloud-Based Antivirus Suite
  • WebrootWebroot Offers 62% Discount on Consumer and SMB Antivirus Suite
  • WebrootWebroot Releases 2026 Threat Report Highlighting 206% Surge in Phishing Attacks
  • WebrootOpenText Cybersecurity Positions Core EDR With SIEM and SOAR as No-Cost Integrations
  • WebrootWebroot Enterprise Posture Shows Feature Gaps in Linux Support and Event Logging
  • WebrootMSP Practitioners Cite Performance Drag and Product Quality as Barriers to Webroot Adoption
  • WebrootWebroot Users Identify Product Tech and Reporting Gaps
  • WebrootWebroot macOS Users Report Pattern of High CPU Usage and Native Security Conflicts
  • WebrootWebroot Releases MSP Educational Content Targeting Cloud Backup Revenue Streams
  • WebrootOpenText Cybersecurity Currently Promoting 25-30% MDR Detection Improvement
All 20 tracked moves

Webroot

  • Webroot Business Security Portfolio Integrated Under OpenText Core Brand
  • Webroot Web Pages Feature OpenText Cybersecurity Branding
  • Webroot Resource Center Lists New Managed Security Case Studies
  • Webroot Users Identify Product Tech and Reporting Gaps
  • Webroot heuristics cause friction for gamers and suspicion of system service interference.
  • Webroot causes user friction through aggressive false positives and suspected interference with core Windows services.
  • Webroot Business Operates Under Unified OpenText Cybersecurity Brand Identity
  • Webroot Promotes Webroot Essentials in Student Safety Campaign
  • Webroot Offers 62% Discount on Cloud-Based Antivirus Suite
  • Webroot Offers 62% Discount on Consumer and SMB Antivirus Suite
  • Webroot Offers 62% Discount for Cloud-Based Multi-Device Antivirus Protection
  • Webroot macOS Users Report Pattern of High CPU Usage and Native Security Conflicts
  • Webroot Releases MSP Educational Content Targeting Cloud Backup Revenue Streams
  • Webroot Enterprise Posture Shows Feature Gaps in Linux Support and Event Logging
  • Webroot Releases 2026 Threat Report Highlighting 206% Surge in Phishing Attacks
  • OpenText Cybersecurity Positions Core EDR With SIEM and SOAR as No-Cost Integrations
  • OpenText Cybersecurity Provides Email Archiving Guidance for Regulatory Compliance Readiness
  • OpenText Cybersecurity Reports £10,000 Cloud Cost Recovery for Managed Service Provider Seriun
  • MSP Practitioners Cite Performance Drag and Product Quality as Barriers to Webroot Adoption
  • OpenText Cybersecurity Currently Promoting 25-30% MDR Detection Improvement

See how IndustryLens stacks up — free

IndustryLens is a competitive intelligence platform built for B2B SaaS — pricing pages, changelogs, ads, reviews, social, Reddit, hiring and news, in one weekly cited briefing. Published pricing. No demo gate.

Webroot — frequently asked questions

What does Webroot do?
Based on its recent moves, Webroot provides security products spanning consumer, SMB, and enterprise segments, including cloud-based antivirus, EDR, MDR, and managed security offerings. Its business security portfolio was integrated under the OpenText Core brand in early August 2026, and its web pages now carry OpenText Cybersecurity branding. It also publishes threat research, such as its 2026 Threat Report highlighting a 206% surge in phishing attacks.
Where does Webroot stand right now?
Webroot is in a brand transition, operating under a unified OpenText Cybersecurity identity as of mid-August 2026 while still promoting its own antivirus discounts and student safety campaign. It is simultaneously pushing enterprise and MSP messaging, including no-cost EDR integration with SIEM and SOAR and MSP content on cloud backup revenue. At the same time, users and MSP practitioners have reported performance drag, false positives, and feature gaps in Linux support and event logging.
What should I watch from Webroot next?
Watch whether the OpenText branding consolidation leads to concrete roadmap commitments addressing the reported Linux support and event-logging gaps. Also monitor whether the 62% discounting on consumer and SMB antivirus continues, which would indicate sustained acquisition pressure. Finally, track whether the reported user friction around false positives and macOS CPU usage translates into remediation efforts or continued adoption barriers.

About the author

Naveed Ratansi

Naveed Ratansi

Founder, IndustryLens

Naveed Ratansi is the Founder of IndustryLens. He works with B2B SaaS sales, marketing, and product teams to turn competitor activity across 350+ data sources into weekly intelligence they can act on.

Connect on LinkedIn ->