Home / Companies / Crowdstrike / Blog / August 2022

August 2022 Summaries

17 posts from Crowdstrike

Filter
Month: Year:
Post Summaries Back to Blog
CrowdStrike has been recognized as a leader in various cybersecurity sectors, including Managed Detection and Response Services in Europe and Worldwide Incident Response Services, according to multiple reports such as The Forrester Wave™ and IDC MarketScape in 2025. The company continues to innovate in AI security, cloud detection, and response, using advanced machine learning models to combat emerging threats like evasive malware. Their Falcon platform plays a crucial role in preventing security breaches and enhancing endpoint protection by leveraging AI-powered threat detection and response. CrowdStrike's expertise is highlighted in their detailed analysis of threat actors' use of the Impacket toolkit for lateral movement and command execution in networks. Through strategic partnerships and acquisitions, CrowdStrike aims to transform data security, while their research and intelligence services provide tailored adversary insights to better equip their clients against potential cyber threats.
Aug 31, 2022 3,947 words in the original blog post.
The text highlights CrowdStrike's recent advancements and recognitions in cybersecurity, focusing on their Falcon platform's capabilities in cloud workload protection, identity security, and data retention. Notably, CrowdStrike has been named a leader in various industry reports, including the Frost Radar and Forrester Wave, reflecting their strength in cloud security and managed detection services. Their Falcon Long Term Repository (LTR) offers extended data retention and cost-effective threat hunting capabilities, allowing security teams to conduct fast searches and smarter investigations. Additional innovations include securing AI development, preventing data leaks, and enhancing threat intelligence, demonstrating CrowdStrike's commitment to addressing evolving cybersecurity challenges.
Aug 25, 2022 1,782 words in the original blog post.
CrowdStrike's blog post delves into the intricacies of wiper malware, specifically focusing on how threat actors exploit legitimate third-party kernel drivers to execute malicious activities. These drivers, such as ElRawDisk and EPMNTDRV, enable wipers to operate covertly by bypassing security mechanisms and gaining unrestricted access to disk operations. This method allows malware to destabilize operating systems by wiping raw disk sectors, though it paradoxically offers a slight advantage to victims since system crashes may halt the wiping process, potentially enabling some data recovery. The article highlights several wiper families, including Shamoon, Destover, and ZeroCleare, which utilize these drivers to achieve their destructive objectives. CrowdStrike's Falcon platform is presented as a robust defense, providing continuous monitoring and visibility to counteract such threats effectively.
Aug 24, 2022 2,863 words in the original blog post.
CrowdStrike has been recognized as a leader in multiple cybersecurity sectors according to the 2025 IDC MarketScape reports, including Worldwide Incident Response Services and Exposure Management. The company announced its acquisition of Onum, aiming to enhance data-driven capabilities for the Agentic SOC, a move that aligns with its ongoing efforts to transform cybersecurity with advanced AI and machine learning techniques. CrowdStrike's Falcon Platform continues to receive accolades, such as being named a leader in the Gartner® Magic Quadrant™ for Endpoint Protection Platforms for the sixth consecutive year, while also expanding its services with new AI security tools and integrations with platforms like Microsoft Edge for improved enterprise security. The company remains proactive in threat detection and response with innovative approaches like using agentic AI for cloud breaches and maintaining a strong focus on adversary intelligence tailored to customer environments. Additionally, CrowdStrike's annual Adversary Quest challenges the cybersecurity community to solve complex security scenarios, showcasing the company's commitment to advancing skills in identifying and mitigating threats.
Aug 23, 2022 5,287 words in the original blog post.
CrowdStrike has been recognized as a leader in several key areas of cybersecurity, including Managed Detection and Response Services and Incident Response Services, according to reports such as The Forrester Wave™ and IDC MarketScape for 2025. The company is advancing its cybersecurity capabilities through innovations in AI and machine learning, as seen in its EMBER2024 initiative to bolster defenses against evasive malware. CrowdStrike's Falcon platform continues to receive accolades for its role in preventing supply chain attacks and enhancing endpoint security. The organization is also focusing on integrating security into cloud-native application development, emphasizing the importance of "shifting left" to incorporate security measures early in the development process. Moreover, CrowdStrike is expanding its partnerships and product offerings, including new AI security services and enhanced cloud security solutions, to address the growing complexities of the cybersecurity landscape.
Aug 23, 2022 1,923 words in the original blog post.
CrowdStrike has been recognized as a leader in various cybersecurity domains, including incident response and exposure management, as highlighted in the 2025 IDC MarketScape reports. The company is actively expanding its capabilities through strategic acquisitions, such as the recent move to acquire Onum, aimed at enhancing data-driven security operations centers (SOC). CrowdStrike's focus on leveraging advanced technologies like AI and machine learning is evident in its efforts to streamline security operations and address the challenges of modern threats. The company is also at the forefront of promoting extended detection and response (XDR) solutions, which integrate diverse security data to improve threat detection and response times. Despite the term XDR being frequently misused, CrowdStrike emphasizes its importance in overcoming the complexities of security operations, as discussed in their collaboration with ESG on SOC modernization. Additionally, CrowdStrike continues to innovate in areas like cloud security and endpoint protection, maintaining its position as a leader in the cybersecurity industry.
Aug 16, 2022 1,810 words in the original blog post.
CrowdStrike is recognized as a leader in cybersecurity, particularly in endpoint security, due to its innovative use of artificial intelligence and machine learning to prevent both malware and malware-free attacks. The company's Falcon platform is highlighted for its comprehensive capabilities, which extend beyond endpoint protection to include cloud security, identity protection, and vulnerability management. CrowdStrike's focus on innovation and integration has driven significant growth in its customer base across various regions, and it has consistently been recognized by industry analysts for its leadership and technological advancements. The platform's unified approach, which contrasts with traditional multi-product solutions, allows for enhanced protection and efficiency. Additionally, CrowdStrike has been acknowledged for its rapid growth and market share gains, positioning itself as a dominant force in the global endpoint security market.
Aug 16, 2022 1,940 words in the original blog post.
The blog post from CrowdStrike provides an in-depth analysis of wiper malware, a type of destructive software designed to erase user data beyond recoverability, often used by threat actors to cause disruption or cover traces of an intrusion. The post outlines various techniques employed by wipers, such as targeting specific files or entire disks, and compares these methods to ransomware, highlighting that wipers are designed to irreversibly destroy data rather than demand ransom for its recovery. The text also discusses the evolution and resurgence of wipers, citing historical incidents and detailing the technical methods used to overwrite or delete data, including the use of APIs for file manipulation, and strategies for disk destruction to increase operation speed and effectiveness. Additionally, the blog emphasizes the importance of advanced detection and protection mechanisms, like those offered by the CrowdStrike Falcon® platform, which employs machine learning and behavior-based detection to mitigate such threats.
Aug 11, 2022 3,639 words in the original blog post.
CrowdStrike's comprehensive cybersecurity platform, Falcon, focuses on protecting AI development, stopping data leaks, and enhancing identity security through innovations and threat intelligence systems. The company's recent advancements include the introduction of Falcon Cloud Security to prevent container escape attempts and the announcement of Threat AI, an agentic threat intelligence system. CrowdStrike has been recognized as a leader in various reports for its managed detection and response services and exposure management, alongside its efforts to redefine vulnerability management through risk-based patching. The platform also emphasizes securing AI across enterprises, tackling critical vulnerabilities in Microsoft products, and promoting cybersecurity within small businesses. With its extensive suite of tools and integrations, CrowdStrike aims to ensure robust protection against evolving cyber threats, aiding organizations in maintaining a proactive and informed security posture.
Aug 11, 2022 2,376 words in the original blog post.
The text highlights various developments and initiatives led by CrowdStrike, a cybersecurity firm, aimed at enhancing security measures against evolving digital threats. It mentions the company's recent advances, such as the introduction of the Open Cybersecurity Schema Framework (OCSF), a collaborative open-source project designed to streamline data exchange and analysis for security teams. The framework, supported by numerous industry partners, aims to eliminate data silos and improve threat detection and investigation. Additionally, CrowdStrike has been recognized as a leader in various cybersecurity domains and continues to innovate by integrating AI, cloud security, and identity protection solutions. The company's efforts to collaborate with industry leaders underscore its commitment to addressing the challenges faced by security teams worldwide, facilitating more efficient and effective cybersecurity practices.
Aug 10, 2022 1,989 words in the original blog post.
CrowdStrike has introduced AI-powered Indicators of Attack (IOAs), an advancement in cybersecurity that combines cloud-native machine learning with human expertise to enhance threat detection and prevention. These AI-powered IOAs, now available to customers at no additional cost, leverage the speed and scalability of cloud-based machine learning models trained on extensive telemetry data from the CrowdStrike Security Cloud. This innovation allows for the rapid identification and prediction of adversarial patterns, even in the absence of specific malware or tools, thereby improving the overall efficacy and accuracy of threat detection while reducing false positives. The approach builds on CrowdStrike's industry-first IOAs by expanding detection capabilities and enabling a proactive defense strategy against emerging threats, including fileless attacks and sophisticated post-exploitation payloads. Through the integration of expert threat hunting knowledge and advanced ML techniques, CrowdStrike aims to maintain a leading edge in cybersecurity by offering comprehensive and scalable protection across various environments.
Aug 10, 2022 2,369 words in the original blog post.
The text provides a detailed overview of recent developments and highlights from CrowdStrike, focusing on advancements in cybersecurity technologies and strategies. It covers various aspects such as the introduction of Threat AI, the first agentic threat intelligence system, enhancements in cloud security with Falcon Cloud Security, and innovations in next-gen identity security. Additionally, it discusses CrowdStrike's efforts in stopping GenAI data leaks through unified data protection, their leadership in the 2025 IDC MarketScape for CNAPP, and their recognition as a leader in managed detection and response services in Europe. The text also features a walkthrough of the Adversary Quest 2022, which challenges participants to tackle cybersecurity threats like those posed by the fictional TABLOID JACKAL, demonstrating the practical application of reversing engineering and vulnerability exploitation in cybersecurity contexts.
Aug 09, 2022 4,732 words in the original blog post.
CrowdStrike has introduced a new team called the Gap Analysis Team (GAT) to enhance the detection capabilities of its Falcon platform through innovative strategies that focus on automation and scalability. GAT's approach includes the development of a tool-agnostic testing framework called RTFACT Detonation, which utilizes cloud-native technologies like Docker, Kubernetes, and Ansible to automate the testing of red team tools and adversarial emulations. This framework aims to reduce manual testing steps and improve the time-to-detect adversarial tactics, techniques, and procedures (TTPs). By leveraging advanced log aggregation tools such as Humio and Splunk, RTFACT Detonation provides comprehensive data analysis to assess and improve the Falcon platform's detection content. The team is also exploring further automation opportunities to streamline the testing process, allowing analysts to focus on enhancing detection content, ultimately aiming to stay ahead of increasingly sophisticated threat actors.
Aug 08, 2022 1,940 words in the original blog post.
CrowdStrike, a leading cybersecurity company, has been recognized as a leader in various security sectors, including the 2025 IDC MarketScape for Worldwide Incident Response Services and Exposure Management, and the Gartner Magic Quadrant for Endpoint Protection Platforms for six consecutive years. The company is actively expanding its capabilities by acquiring Onum to enhance the data-driven Agentic Security Operations Center (SOC) and integrating AI technologies to improve threat detection and response. CrowdStrike emphasizes the importance of extended detection and response (XDR), which builds upon endpoint detection and response (EDR) to increase visibility and streamline operations across diverse IT environments. The firm is committed to addressing challenges like security tool fatigue and alert overload, which frequently burden security teams, and continues to innovate in areas such as cloud application security and next-gen identity security. With its Falcon platform, CrowdStrike aims to provide comprehensive protection and real-time threat detection, fostering resilience and trust among its clients.
Aug 03, 2022 1,657 words in the original blog post.
The document outlines various achievements and initiatives by CrowdStrike, a leading cybersecurity firm, including their recognition as a leader in the Forrester Wave™ for Managed Detection and Response Services in Europe and the IDC MarketScape for Worldwide Incident Response Services in 2025. It highlights CrowdStrike's advancements in cybersecurity technologies such as AI and machine learning, cloud security, and threat hunting, and details events like the EMBER2024 project aimed at enhancing machine learning models against malware. The text also describes the Adversary Quest 2022, a challenge event where participants solved cybersecurity challenges involving ransomware campaigns and decryption tasks, showcasing the company's commitment to improving cybersecurity through innovation and collaboration. Additionally, it notes CrowdStrike's partnerships and strategic moves, such as the acquisition of Onum to enhance their Security Operations Center capabilities.
Aug 03, 2022 6,893 words in the original blog post.
CrowdStrike is actively engaged in enhancing cybersecurity across various sectors by leveraging the Infrastructure Investment and Jobs Act (IIJA), which allocates substantial federal funding to bolster the resilience of critical infrastructures against cyber threats. The company highlights its integrated Falcon platform's capabilities in providing comprehensive protection and managed services, which are crucial for organizations lacking immediate response resources. The IIJA provides targeted funding to federal, state, local, tribal, and territorial governments to improve cybersecurity in transportation, energy, and water systems, among others. CrowdStrike's approach includes endpoint and cloud security, threat intelligence, and identity protection, aiming to reduce risks and enhance cyber defense capabilities. The company emphasizes the urgency for organizations to adopt these measures, given the increasing sophistication of cyber threats, and offers resources and consultations to assist entities in securing IIJA funding to improve their cybersecurity posture.
Aug 01, 2022 2,536 words in the original blog post.
CrowdStrike, a prominent cybersecurity firm, is recognized for its leadership in various industry assessments, including The Forrester Wave and IDC MarketScape, particularly in managed detection and response services in Europe and worldwide incident response services. The company plays a significant role in advancing cybersecurity through initiatives like EMBER2024, which focuses on enhancing machine learning models against evasive malware, and its Falcon platform, which addresses challenges like preventing supply chain attacks and tracing attack paths in the cloud. Additionally, CrowdStrike is proactive in addressing risks associated with expired SSL certificates, offering solutions that help organizations manage their external attack surfaces and ensure timely certificate renewals. The company's comprehensive approach spans areas such as AI security, identity protection, and cloud security, with a dedicated focus on threat detection, prevention, and response, positioning it as a leader in the cybersecurity landscape.
Aug 01, 2022 2,363 words in the original blog post.