June 2022 Summaries
20 posts from Crowdstrike
Filter
Month:
Year:
Post Summaries
Back to Blog
The blog post highlights the persistent evolution and sophistication of ransomware attacks, emphasizing the role of ransomware-as-a-service (RaaS) platforms that enable even less advanced cybercriminals to participate by offering technical support and a share of the profits. These platforms allow for a community-based business model where operators handle technical tasks like ransomware packaging and cryptography, while affiliates distribute the ransomware and collect the majority of the ransom. Access brokers play a crucial role by selling access credentials, making it easier for adversaries to infiltrate targets. The post also discusses how cybercriminals monetize their activities through various payment forms, showcasing the financial impact of ransomware as detailed by reports from organizations like FinCen. CrowdStrike actively monitors these trends, offering intelligence and insights to help organizations strengthen their defenses against the constantly evolving eCrime ecosystem.
Jun 30, 2022
2,429 words in the original blog post.
CrowdStrike's Falcon OverWatch and OverWatch Elite services exemplify the integration of human expertise and advanced technology in threat hunting and cybersecurity. By leveraging the extensive data available through the CrowdStrike Security Cloud, OverWatch conducts proactive threat hunting across more than a trillion events daily, identifying subtle signs of malicious activity. The OverWatch Elite service further enhances this by providing personalized customer engagement and tailored threat hunting, including expert coaching and dedicated communication channels. This collaboration between analysts and customers allows for the fine-tuning of threat hunting strategies to meet specific organizational needs, ensuring rapid response to potential threats. OverWatch Elite's unique offerings, such as 60-minute call escalations and private communication channels, underscore its commitment to customer-centric service and effective breach prevention.
Jun 30, 2022
1,904 words in the original blog post.
The text details various cybersecurity advancements and initiatives by CrowdStrike, particularly focusing on its Falcon platform and associated security solutions. The company has made significant strides in AI and cloud security, developing tools to protect against data leaks and enhance identity security. Notably, they introduced Threat AI, described as the first agentic threat intelligence system, and expanded capabilities for detecting and mitigating NTLM relay attacks. Additionally, CrowdStrike's Falcon platform has evolved to lead in the agentic security era, integrating identity protection to combat sophisticated threats. The text also highlights CrowdStrike's recognition as a leader in several industry reports, its efforts to secure AI use across enterprises, and its strategic acquisitions aimed at enhancing data security and SOC operations.
Jun 30, 2022
2,121 words in the original blog post.
The text highlights recent advancements and achievements by CrowdStrike, a cybersecurity company, emphasizing its efforts in enhancing data protection, identity security, and AI development. Key developments include the launch of Threat AI, a pioneering threat intelligence system, and the introduction of next-gen identity security innovations. CrowdStrike has also been recognized as a leader in various industry reports, such as the IDC MarketScape for cloud security and Forrester Wave for managed detection and response services. The company's Falcon platform has consistently excelled in independent evaluations, particularly in macOS malware protection, earning it multiple awards from AV-Comparatives. Moreover, CrowdStrike has made strategic acquisitions to bolster its AI security capabilities and continues to expand its offerings across different sectors, including public and small businesses, while maintaining a strong focus on research and innovation in machine learning and endpoint security.
Jun 28, 2022
1,751 words in the original blog post.
CrowdStrike, a prominent cybersecurity firm, has been recognized as a leader in various industry reports, such as the 2025 IDC MarketScape for Worldwide Incident Response Services and Exposure Management. The company's strategic acquisition of Onum aims to enhance the data capabilities of its Agentic Security Operations Center (SOC). CrowdStrike's Falcon platform leverages advanced artificial intelligence (AI) and machine learning (ML) to process vast amounts of security data, which aids in detecting and mitigating cyber threats. The platform's strength lies in its integration of high-fidelity telemetry data and human expertise, creating a robust system for threat hunting and incident response. Additionally, CrowdStrike's commitment to innovation is reflected in its continuous development of AI-driven analytics and security solutions, such as the Falcon XDR and SOAR capabilities, to streamline security operations and improve response times.
Jun 23, 2022
2,307 words in the original blog post.
CrowdStrike Services recently investigated a security breach involving a Mitel VOIP appliance, where a threat actor exploited a novel remote code execution vulnerability, identified as CVE-2022-29499, to gain access. The exploit involved manipulating HTTP requests to bypass security restrictions and execute commands locally on the device. Despite the threat actor's use of anti-forensic techniques, CrowdStrike successfully recovered forensic data, including the initial exploit and related malicious activities, such as a reverse shell creation and the use of a tunneling tool named Chisel. The investigation highlights the importance of layered security defenses, timely patching, and network segmentation to protect critical assets from sophisticated attacks. CrowdStrike's Falcon Complete managed detection and response (MDR) team played a crucial role in identifying and mitigating the intrusion, demonstrating the effectiveness of continuous threat monitoring and remediation.
Jun 23, 2022
2,688 words in the original blog post.
The text provides an extensive overview of CrowdStrike's recent advancements and strategic initiatives in cybersecurity, highlighting their efforts to address various security challenges through innovative solutions and collaborations. Key developments include the launch of Threat AI, a pioneering agentic threat intelligence system, and advancements in next-generation identity security with three new innovations. The company is actively partnering with AI leaders to enhance security across enterprises and has been recognized as a leader in multiple industry reports, including the IDC MarketScape for exposure management and the Forrester Wave for managed detection and response services. Additionally, CrowdStrike's Falcon platform continues to evolve, integrating AI and machine learning to improve threat detection, vulnerability management, and incident response, while maintaining a strong focus on protecting cloud environments and small businesses. The text also discusses the significance of regular patch updates and vulnerability management, emphasizing the importance of proactive security measures in mitigating risks associated with evolving cyber threats.
Jun 16, 2022
2,847 words in the original blog post.
CrowdStrike is actively advancing its cybersecurity offerings across multiple domains, including data protection, identity security, and AI integration, to enhance security measures against modern threats. The company recently introduced several key innovations, such as the Threat AI, an agentic threat intelligence system, and advanced identity security features to safeguard diverse digital environments. Collaboration with AI leaders aims to bolster security across enterprise operations, addressing the growing attack surfaces presented by AI technologies. Additionally, CrowdStrike is recognized as a leader in various industry reports and continues to support small businesses and public sector initiatives through strategic acquisitions and cutting-edge solutions. The company also hosts engaging events like the Adversary Quest to foster community involvement and enhance cybersecurity skills among enthusiasts.
Jun 16, 2022
1,426 words in the original blog post.
CrowdStrike's blog highlights a range of cybersecurity advancements and achievements, showcasing its leadership in managed detection and response services in Europe and recognition in the 2025 IDC MarketScape for various security domains. The blog emphasizes the importance of immediate threat visibility, real-time response, and enterprise remediation in modern incident response, particularly against the backdrop of sophisticated ransomware attacks. Additionally, CrowdStrike's recent innovations include enhanced training for machine learning models to combat evasive malware, AI security services, and the integration of AI in threat detection and response. The company's approach to cybersecurity is characterized by its rapid response capabilities and continuous threat monitoring, aiming to minimize business disruptions and ensure complete adversary removal from networks, as detailed in their Incident Response eBook.
Jun 08, 2022
1,761 words in the original blog post.
CrowdStrike has developed robust defensive capabilities against a novel technique for extracting sensitive data from Chromium browser memory, as recently researched by CyberArk Labs. This technique involves leveraging existing access to a targeted system to extract valid authentication tokens, potentially enabling identity-based attacks that bypass multi-factor authentication (MFA). CrowdStrike's Falcon platform has been equipped to detect and prevent such attacks by implementing machine learning and behavior-based indicators to identify malicious processes attempting to access browser memory. This aligns with the company's emphasis on a unified security approach that enforces Zero Trust principles and strengthens identity protection across enterprises. With identity-driven breaches on the rise, CrowdStrike emphasizes the importance of using its Falcon platform's comprehensive protection features to stop attackers in real time, thereby safeguarding organizations against sophisticated threats.
Jun 08, 2022
2,158 words in the original blog post.
In a blog post detailing their participation in the 2021 Pwn2Own Austin security contest, CrowdStrike researchers describe how they successfully identified and exploited multiple vulnerabilities in the Lexmark MC3224i printer, leading to a $20,000 prize that was donated to charity. The researchers discovered vulnerabilities that allowed unauthenticated remote code execution and privilege escalation, which they exploited using a combination of authentication bypass, shell command injection, and manipulation of a root-owned SUID binary. The process involved resetting the printer's non-volatile memory to bypass password protection, injecting shell commands via the printer's web interface, and ultimately gaining root access to start an SSH daemon. The researchers shared their findings to enhance product security and encourage responsible disclosure practices, while also inviting readers to explore their other successful target, the Cisco RV340 router, during the same contest.
Jun 07, 2022
2,757 words in the original blog post.
The blog post highlights CrowdStrike's recognition as a leader in various cybersecurity sectors, including Managed Detection and Response Services in Europe by The Forrester Wave™ and Worldwide Incident Response Services by IDC MarketScape in 2025. It emphasizes the company's advancements in cybersecurity technologies, such as the introduction of the CrowdStrike Asset Graph for improved asset observability and the expansion of the CrowdXDR Alliance to enhance Extended Detection and Response (XDR) capabilities. The post also discusses the unveiling of Humio for Falcon, which extends data retention to bolster threat analytics and compliance, and mentions CrowdStrike's innovations in AI and machine learning to secure against evolving threats. Additionally, it touches on the company's participation in RSAC 2022, showcasing new tools and strategies to counter sophisticated cyberattacks and highlighting its commitment to staying ahead of adversaries in a rapidly changing digital landscape.
Jun 06, 2022
2,398 words in the original blog post.
CrowdStrike has been recognized as a leader across various cybersecurity sectors, including managed detection and response services, incident response services, and CNAPP, according to reports like The Forrester Wave™ and IDC MarketScape. The company has also been at the forefront of advancing cybersecurity machine learning models, particularly against evasive malware, and has introduced innovations such as the Humio for Falcon for extended data retention and enhanced threat analytics. CrowdStrike’s efforts to expand its XDR capabilities through partnerships and improved data integration are part of its strategy to offer comprehensive protection across endpoints, cloud, identity, and network security. At the 2022 RSA Conference, they emphasized transformation in cybersecurity, unveiling new automation features in their CROWDSTRIKE FALCON® XDR and announcing strategic partnerships to enrich data sharing and improve security outcomes. CrowdStrike's approach is heavily centered on leveraging AI, expanding data analytics, and ensuring rapid incident response, aiming to empower customers with actionable insights to prevent breaches in an increasingly complex threat landscape.
Jun 06, 2022
2,852 words in the original blog post.
CrowdStrike has introduced the CrowdStrike Asset Graph, a new graph database within its Falcon platform, aimed at enhancing security posture management by providing a comprehensive view of an organization's assets and their interactions. This innovation addresses the growing complexity in managing the vast number of assets that organizations face due to the shift to cloud and new technologies. Asset Graph dynamically monitors and tracks interactions among assets, offering insights that help bridge IT and security operations, thereby empowering teams to proactively manage security risks without disrupting IT functions. The platform leverages advanced graph technologies, including the renowned Threat Graph and the new Asset Graph, to deliver a unified view of assets across various environments, enhancing visibility and risk management. Through innovations like Falcon Discover 2.0, CrowdStrike enables organizations to better understand their technology environment, assess risk posture, and adapt security measures proactively while maintaining operational efficiency.
Jun 06, 2022
2,476 words in the original blog post.
CrowdStrike's comprehensive cybersecurity platform focuses on safeguarding enterprises against various threats, including supply chain attacks, through a range of innovative tools and strategies. The Falcon platform, a key component of their offerings, provides cloud-native security by utilizing Falcon Cloud Workload Protection to monitor software dependencies and detect compromised packages, thereby preventing breaches. Recent incidents, such as the compromise of Python packages ctx and PHPass, highlight the significance of account takeovers in supply chain attacks, which pose a significant risk due to the increased adoption of cloud and CI/CD pipelines. CrowdStrike emphasizes the importance of a Zero Trust security approach and offers solutions to enhance visibility and protection across cloud and hybrid environments, ensuring organizations can secure their operations with confidence.
Jun 03, 2022
2,038 words in the original blog post.
The recent blog post from CrowdStrike highlights the company's significant achievements and developments in cybersecurity for 2025. CrowdStrike has been recognized as a leader in various IDC MarketScape reports, including Worldwide Incident Response Services and Exposure Management, and has announced its acquisition of Onum to enhance data-driven operations in Security Operations Centers (SOCs). The blog also discusses the company's ongoing efforts to address cloud security threats like MURKY PANDA and advancements in endpoint security, as evidenced by its top ranking in the Frost Radar for Managed Detection and Response (MDR). Additionally, CrowdStrike's Falcon Platform continues to play a crucial role in threat detection and prevention, particularly in combatting browser hijacking campaigns targeting macOS users, showcasing its capability in providing real-time visibility and protection across different environments.
Jun 02, 2022
3,237 words in the original blog post.
The text discusses a series of CrowdStrike's achievements and initiatives as of 2025, including being named a leader in various global cybersecurity service rankings such as The Forrester Wave and IDC MarketScape. It highlights the company's advancements in cybersecurity technologies, particularly in AI and machine learning, and details their proactive approaches to threat detection and response. The text further explores CrowdStrike's role in managed threat hunting, emphasizing the importance of continuous monitoring and response to evolving cyber threats, such as the Follina vulnerability, through its Falcon platform. Additionally, it covers the company's efforts in cloud and endpoint security, as well as its strategic partnerships aimed at harmonizing cyber threat attribution.
Jun 02, 2022
2,234 words in the original blog post.
CrowdStrike's blog highlights the company's advancements in cybersecurity, emphasizing its leadership in managing detection and response services, as recognized by The Forrester Wave™ for Europe in Q3 2025 and IDC MarketScape for Worldwide Incident Response Services. The blog details the introduction of Falcon Identity Threat Protection in the GovCloud-1 environment, aimed at enhancing identity security for U.S. public sector organizations. This solution aligns with the White House's Executive Order on improving national cybersecurity by implementing Zero Trust Architecture principles, which include modernizing federal cybersecurity, enhancing software supply chain security, and improving incident detection and response capabilities. The blog also explores the role of Falcon Identity Threat Protection in addressing identity-related security challenges across the U.S. Department of Defense's Seven Pillars of Zero Trust, highlighting its ability to detect and prevent identity-based attacks, enforce multifactor authentication, and integrate with various identity directories. Through detailed scenarios, the blog illustrates how CrowdStrike's solutions can secure both on-premises and cloud environments, offering insights into their application in a cybersecurity context and setting the stage for future discussions on risk and threat perspectives.
Jun 01, 2022
3,466 words in the original blog post.
CrowdStrike has been recognized as a leader in various cybersecurity sectors, including Managed Detection and Response Services, as highlighted in The Forrester Wave™ for Europe Q3 2025 and the IDC MarketScape for Worldwide Incident Response Services. The company's Falcon platform is noted for its robust protection capabilities, such as defending against the Follina vulnerability, utilizing machine learning and behavior-based indicators of attack to deliver real-time threat mitigation. CrowdStrike also emphasizes innovation in AI, cloud security, and next-gen SIEM to enhance its security offerings. The Falcon platform's Spotlight module provides organizations with automated vulnerability management to improve their security posture. Additionally, CrowdStrike's commitment to cybersecurity is seen in its proactive threat-hunting, strategic partnerships, and its leadership position in various industry reports, reflecting its comprehensive approach to defending against sophisticated threats.
Jun 01, 2022
1,706 words in the original blog post.
CrowdStrike's comprehensive approach to enhancing machine learning model training for cybersecurity applications involves leveraging advanced technologies and infrastructure for significant efficiency gains. By transitioning feature extraction processes from Python to Rust, the company has reduced the training time for its TensorFlow models. The implementation of GPU-enabled Amazon Web Services (AWS) instances and Docker containers further accelerates training by optimizing the use of hardware resources and eliminating dependency issues. Additionally, employing TensorFlow's prefetching and caching capabilities drastically cuts down training times, enabling a model to be trained in just six hours compared to previous durations of several days. This streamlined process not only improves the speed and performance of machine learning models but also facilitates parallel training sessions, thereby reducing overall development time. Through these innovations, CrowdStrike sets a new industry benchmark for securing clients against advanced threats, ensuring fast and reliable machine learning operations within its Falcon platform.
Jun 01, 2022
3,086 words in the original blog post.