Time is of the essence when it comes to protecting your data, and often, teams are sifting through hundreds or thousands of alerts to try to pinpoint truly malicious user behavior. Manual triage and response takes up valuable resources, so machine learning can help busy teams prioritize what to tackle first and determine what warrants further investigation. The new Detections … [Read more...] about Falcon Fusion SOAR and Machine Learning-based Detections Automate Data Protection Workflows
Falcon
Falcon Fund Invests in Nagomi
Preventable breaches are a common problem. According to research by Nagomi, a leader in the nascent field of automated security control assessment, 80% of breached organizations already had a tool in place that could have prevented it. One solution is to maximize the use of security tools they already have. Many enterprises grapple with ineffective and reactive security … [Read more...] about Falcon Fund Invests in Nagomi
CrowdStrike Falcon Wins Best EDR Annual Security Award in SE Labs
CrowdStrike wins third consecutive Best Endpoint Detection and Response 2024 Award from SE Labs The award recognizes that the CrowdStrike Falcon® platform demonstrates consistent results in detecting real-world adversary tradecraft, both in SE Labs testing and in real-world scenarios CrowdStrike remains committed to participating in independent testing that provides … [Read more...] about CrowdStrike Falcon Wins Best EDR Annual Security Award in SE Labs
Secure More GCP Workloads with GKE Autopilot Supported by Falcon Cloud Security
In the ever-evolving landscape of cloud security, staying ahead of the curve is paramount. Today, we are announcing an exciting enhancement: CrowdStrike Falcon® Cloud Security now supports Google Kubernetes Engine (GKE) Autopilot. This integration marks an important milestone in our commitment to providing cutting-edge DevSecOps-focused security and solutions for modern cloud … [Read more...] about Secure More GCP Workloads with GKE Autopilot Supported by Falcon Cloud Security
Eliminate Repetitive Tasks and Accelerate Response with Falcon Fusion
Adversaries are becoming more sophisticated and faster with their attacks. According to the CrowdStrike 2023 Threat Hunting Report, the average eCrime breakout time is just 79 minutes. This is partly due to adversaries taking advantage of tools that leverage automation like password-cracking tools, exploit kits for web browser vulnerabilities, and marketplaces that sell stolen … [Read more...] about Eliminate Repetitive Tasks and Accelerate Response with Falcon Fusion
Falcon and Red Hat OpenShift Service on AWS (ROSA)
As organizations increasingly deploy business-critical workloads to managed cloud services, enforcing strong security practices needs to be a top priority. While many managed cloud service providers do a good job of protecting the cloud and infrastructure itself, it’s the responsibility of the customer to protect what’s running inside the cloud. This is commonly known as the … [Read more...] about Falcon and Red Hat OpenShift Service on AWS (ROSA)
Getting Value from Your Proxy Logs with Falcon LogScale
All web traffic flowing out of your company network should be passing through a web proxy. These proxy logs are a great resource for threat hunting and security investigations, yet they often translate into extremely large volumes of data.In a previous blog post, we shared the value of proxy logs in addressing a range of use cases, including hunting for threats, investigating … [Read more...] about Getting Value from Your Proxy Logs with Falcon LogScale
Falcon for Mobile to Accelerate Detection and Response for Mobile Threats
Mobile devices have become critical endpoints for accessing enterprise applications, systems and data. Adversaries know this all too well, as evidenced by the growing numbers of attacks that target mobile devices. Verizon’s 2022 Mobile Security Index found almost half (45%) of enterprises had recently suffered a mobile-related compromise involving devices in the last 12 months … [Read more...] about Falcon for Mobile to Accelerate Detection and Response for Mobile Threats
Falcon Complete: Zero-Day Exploit Case Study
CrowdStrike Counter Adversary Operations is committed to analyzing active exploitation campaigns and detecting and blocking zero-days to protect our customers. In July 2023, the CrowdStrike Falcon® Complete managed detection and response (MDR) team discovered an unknown exploit kit leveraging a still-unknown vulnerability affecting the Windows Error Reporting (WER) component. … [Read more...] about Falcon Complete: Zero-Day Exploit Case Study
Falcon Complete MDR Thwarts VANGUARD PANDA Tradecraft
VANGUARD PANDA Background On May 24, 2023, industry and government sources detailed China-nexus activity in which the threat actor dubbed Volt Typhoon targeted U.S.-based critical infrastructure entities. CrowdStrike Intelligence tracks this actor as VANGUARD PANDA. Since at least mid-2020, the CrowdStrike Falcon® Complete managed detection and response (MDR) team and the … [Read more...] about Falcon Complete MDR Thwarts VANGUARD PANDA Tradecraft