Home / Companies / Crowdstrike / Blog / September 2022

September 2022 Summaries

14 posts from Crowdstrike

Filter
Month: Year:
Post Summaries Back to Blog
The CrowdStrike Falcon® platform has identified a new supply chain attack involving a trojanized installer for the Comm100 Live Chat application, which was downloadable from the company's website and affected various sectors in North America and Europe. This attack, occurring between September 27 and September 29, 2022, involved the delivery of malware via a signed installer and is believed to have a China nexus, based on moderate-confidence assessments by CrowdStrike Intelligence. The platform employs advanced machine learning and artificial intelligence to detect and mitigate such threats in real-time by using a defense-in-depth approach. CrowdStrike's investigation revealed that the malicious installer contained a JavaScript backdoor, which facilitated further malicious activities, including the installation of additional malware. Comm100 has since released an updated installer, and affected users are advised to update their software promptly. The incident highlights the critical role of advanced cybersecurity measures in protecting against sophisticated breaches like supply chain attacks.
Sep 30, 2022 2,740 words in the original blog post.
The CrowdStrike blog post highlights a sophisticated cyber campaign where threat actors exploited GitHub's misconfigured repositories to deploy malware through a technique resembling a watering hole attack. The attackers used newly created GitHub accounts to edit the wikis of popular repositories, redirecting download links to malicious files. Falcon Complete, CrowdStrike's managed detection and response team, detected this unusual activity by analyzing process trees and internet history, revealing that users unknowingly downloaded malware disguised as legitimate administrative tools. The threat actor leveraged multiple malware-as-a-service (MaaS) offerings to distribute various types of malware, showcasing how less technically skilled adversaries can execute complex attacks. CrowdStrike's investigation emphasizes the importance of securing GitHub repositories and demonstrates their continuous efforts to protect against evolving cyber threats.
Sep 30, 2022 3,248 words in the original blog post.
The text is a comprehensive overview of various cybersecurity advancements and analyses presented by CrowdStrike, focusing on their Falcon platform and related technologies. It highlights CrowdStrike's efforts in enhancing AI security and SOC readiness, protecting against threats like GenAI data leaks, and advancing identity security through innovations. The blog delves into technical aspects of wiper malware, specifically detailing the use of Input/Output Control (IOCTL) codes for operations like file enumeration, locating Master File Tables (MFT), and disk volume management. It emphasizes the capabilities of CrowdStrike's Falcon platform in providing continuous monitoring, threat detection, and automated protection, illustrating its effectiveness in combating complex cyber threats, including malware that uses sophisticated techniques to disrupt systems. The discussion is set against a backdrop of CrowdStrike's market leadership and strategic acquisitions aimed at securing AI development and enterprise environments.
Sep 26, 2022 2,355 words in the original blog post.
CrowdStrike has announced its acquisition of Reposify to enhance its external attack surface management (EASM) capabilities, aiming to help organizations identify and mitigate risks associated with internet-facing assets before they can be exploited by adversaries. This strategic move comes in response to the expanding digital footprint of modern organizations, which has led to increased vulnerabilities due to cloud adoption, IoT, and digital supply chains. Reposify's proprietary scanning technology offers a comprehensive view of external attack surfaces, enabling better asset identification and vulnerability management. This acquisition aligns with CrowdStrike's mission to provide proactive security solutions and integrate these capabilities into its existing threat intelligence and ITSecOps product lines, ultimately enhancing its customers' ability to protect against cyber threats.
Sep 20, 2022 2,045 words in the original blog post.
The text highlights CrowdStrike's significant achievements and developments in the cybersecurity sector, including its recognition as a leader in various industry reports such as The Forrester Wave™ and IDC MarketScape for Managed Detection and Response Services and Worldwide Incident Response Services. It outlines CrowdStrike's innovations, such as the introduction of Falcon LogScale, which integrates security and observability through a single agent, and the expansion of extended detection and response (XDR) capabilities for all endpoint detection and response (EDR) customers. The text also details CrowdStrike's strategic acquisitions, like that of Reposify Ltd., to enhance its external attack surface management offerings, as well as its efforts to strengthen AI security and cloud infrastructure entitlement management. Throughout, the focus is on advancing cybersecurity capabilities to mitigate risk and protect organizations from evolving threats across various domains, including cloud, IoT, and operational technology.
Sep 20, 2022 2,296 words in the original blog post.
CrowdStrike has been actively advancing its cybersecurity technology and services across various domains, including AI, cloud security, endpoint protection, and log management. The company has announced its acquisition of Pangea to enhance enterprise AI security and development, and it has introduced the Falcon Complete Hub to improve managed detection and response (MDR) capabilities. CrowdStrike's Falcon LogScale, formerly Humio, is now available as a standalone module to improve log management and observability, while Falcon Complete LogScale provides a managed service to assist organizations in real-time log data analysis. The company has also been recognized as a leader in several industry reports, such as the 2025 IDC MarketScape for CNAPP and the Forrester Wave for MDR services, underscoring its position in the cybersecurity sector. With the integration of AI and machine learning, CrowdStrike is addressing the growing attack surface and enhancing its threat detection capabilities.
Sep 20, 2022 1,678 words in the original blog post.
CrowdStrike has been recognized as a leader in several cybersecurity domains by prestigious industry analyses, including the 2025 IDC MarketScape and Gartner Magic Quadrant. The company is expanding its capabilities through strategic acquisitions, such as the planned acquisition of Onum, aiming to enhance data-driven security operations. CrowdStrike is also actively engaging with key partners, exemplified by awards given to its partners during the 2022 Fal.Con event, which highlighted the company's commitment to collaborative cybersecurity solutions. The company's innovations span various areas, including AI, cloud security, and endpoint protection, demonstrating its focus on addressing the evolving threat landscape and strengthening client defenses. Additionally, CrowdStrike's partnerships with major players like AWS and Zscaler illustrate its strategy of integrating technology alliances to provide comprehensive protection and value to its customers.
Sep 19, 2022 2,444 words in the original blog post.
CrowdStrike's blog highlights a range of cybersecurity innovations and updates, focusing on their Falcon Cloud Security, AI advancements, and vulnerability management strategies. Recent developments include the announcement of Threat AI, a pioneering threat intelligence system, and improvements in next-gen identity security through three key innovations. The blog also covers September 2022's Patch Tuesday, detailing critical vulnerabilities such as remote code execution and elevation of privilege issues, emphasizing the importance of prioritizing these within organizational patching strategies. CrowdStrike is recognized as a leader in various cybersecurity sectors, including exposure management and managed detection and response services, and is actively involved in collaborations to secure AI and enhance vulnerability management through tools like Falcon Spotlight. The company continues to develop solutions for endpoint security, cloud security, and machine learning model stability, while maintaining a focus on integrating security strategies with broader organizational goals.
Sep 15, 2022 2,189 words in the original blog post.
CrowdStrike is highlighted as a leader in various cybersecurity sectors, including Managed Detection and Response Services and Incident Response Services, as recognized by The Forrester Wave™ and IDC MarketScape. The company continues to focus on advancing cybersecurity strategies through its annual Fal.Con conference, which brings together industry experts and stakeholders to discuss innovations and trends in security. Notable sessions at the conference include discussions on cloud-native application security, fileless attack protection, and the integration of endpoint and identity security. CrowdStrike also emphasizes collaboration between the public and private sectors to address evolving cyber threats, as demonstrated by special guest speakers such as Kemba Walden and Kevin Mandia. Additionally, CrowdStrike's commitment to innovation is reflected in its acquisition strategies and the development of AI and machine learning capabilities to enhance security measures across cloud environments and other critical domains.
Sep 14, 2022 2,093 words in the original blog post.
CrowdStrike's recent updates highlight significant advancements in cybersecurity, emphasizing the company's efforts to enhance data protection, identity security, and threat intelligence. Notably, CrowdStrike has introduced its Threat AI, the first agentic threat intelligence system, and has made strides in next-gen identity security with three core innovations. The company has also been recognized as a leader in the IDC MarketScape for various services, including cloud-native application protection and incident response. Additionally, CrowdStrike's Falcon OverWatch threat hunting program has reported a substantial increase in interactive intrusion activity, leveraging insights to improve the Falcon platform's preventive capabilities. The 2022 Falcon OverWatch Threat Hunting Report underscores the importance of proactive, human-driven threat hunting in addressing both emerging and persistent cyber threats.
Sep 13, 2022 1,638 words in the original blog post.
CrowdStrike's comprehensive approach to cybersecurity is evident through its consistent recognition as a leader in various industry reports, including the IDC MarketScape for Worldwide Incident Response Services and Exposure Management in 2025. The company is actively enhancing its cybersecurity offerings by acquiring Onum to transform data utilization in the Agentic Security Operations Center (SOC) and is leveraging AI-driven technologies to secure cloud environments and detect threats at machine speed. Key initiatives include the integration of external attack surface management (EASM) with Zero Trust architecture through its Falcon Surface module, which provides real-time mapping and management of digital assets to mitigate risks from unknown exposures and shadow IT. Additionally, CrowdStrike continues to innovate in endpoint protection and identity security, as highlighted by its consistent ranking in the Gartner Magic Quadrant for Endpoint Protection Platforms, and its collaborative efforts with Microsoft to enhance cyber threat attribution. The company's strategic focus on AI and machine learning, cloud security, and next-gen security information and event management (SIEM) reflects its commitment to addressing the evolving threat landscape and providing robust protection solutions for diverse industries.
Sep 12, 2022 1,934 words in the original blog post.
CrowdStrike emphasizes the importance of a unified security platform to combat the rising threat of identity-driven cyberattacks, which constitute 80% of modern breaches. The company advocates against standalone identity security solutions due to challenges like integration overhead, agent sprawl, lack of threat correlation, and slower response times. Instead, CrowdStrike promotes its Falcon® Identity Threat Protection solution, which integrates telemetry across endpoints, workloads, identities, and data, offering real-time automated responses and reducing alert fatigue for security operations centers. The unified approach not only simplifies deployment and maintenance but also enhances threat detection and response capabilities, supported by the comprehensive CrowdStrike Security Cloud. Additionally, CrowdStrike provides a fully managed identity threat protection service to address organizations' needs lacking in-house resources, reinforcing the importance of consolidating identity protection within a unified security framework.
Sep 06, 2022 2,303 words in the original blog post.
CrowdStrike has been recognized as a leader in multiple cybersecurity domains, including Managed Detection and Response Services in Europe and Worldwide Incident Response Services, according to the Forrester Wave™ and IDC MarketScape reports for 2025. The company is actively advancing cybersecurity through various initiatives, such as EMBER2024, which focuses on training machine learning models against elusive malware, and the introduction of Sandbox Scryer, an open-source threat-hunting tool that utilizes the MITRE ATT&CK Framework to organize and analyze threat data. CrowdStrike is also expanding its capabilities in AI and machine learning, cloud security, and endpoint protection, while integrating innovative technologies like AI-powered threat detection and extending protection across SaaS environments. With strategic acquisitions and partnerships, including a notable collaboration with Microsoft for cyber threat attribution, CrowdStrike is working to enhance its security operations and threat intelligence offerings, addressing both the growing attack surface and the evolving needs of different sectors, including public, healthcare, and small businesses.
Sep 01, 2022 2,472 words in the original blog post.
CrowdStrike has been recognized as a leader in several prestigious cybersecurity evaluations, including The Forrester Wave™ for Managed Detection and Response Services in Europe and the IDC MarketScape for Worldwide Incident Response Services, underscoring its prominent role in the cybersecurity sector. The company is advancing its machine learning capabilities through initiatives like EMBER2024, which focuses on training models against evasive malware, and is enhancing its presence in cloud and AI security. CrowdStrike's sixth annual cybersecurity conference, Fal.Con 2022, highlighted its commitment to addressing the evolving digital threat landscape by bringing together industry professionals for keynotes, workshops, and discussions on topics such as endpoint security, cloud security architecture, and threat intelligence. Additionally, CrowdStrike continues to innovate, as seen in its integration with the ChatGPT Enterprise Compliance API and its recognition as a leader in the GigaOm Radar for SaaS Security Posture Management. These efforts are aimed at bolstering enterprise resilience and securing data, workloads, and identities against emerging cyber threats.
Sep 01, 2022 1,605 words in the original blog post.