September 2023 Summaries
21 posts from Crowdstrike
Filter
Month:
Year:
Post Summaries
Back to Blog
In September 2025, CrowdStrike has been recognized as a leader in various cybersecurity sectors, including Managed Detection and Response Services in Europe and Exposure Management, while also advancing their capabilities in machine learning against evasive malware through the EMBER2024 initiative. Their recent activities highlight the effectiveness of the Falcon platform, particularly in detecting and preventing sophisticated cyber threats, such as the BRc4 attack at a telecommunications company, using advanced memory scanning and endpoint detection techniques. The company has made significant strides in protecting cloud and application security, enhancing AI integration for security measures, and maintaining a strong position in market evaluations by IDC and Forrester. Additionally, CrowdStrike's commitment to innovation is evident with their AI and machine learning advancements aimed at countering adversarial tactics and improving overall cybersecurity resilience.
Sep 27, 2023
2,077 words in the original blog post.
The text highlights the various advancements and recognitions achieved by CrowdStrike, a cybersecurity company, in 2025. It discusses the September 2025 Patch Tuesday, which revealed two publicly disclosed zero-days and eight critical vulnerabilities among 84 CVEs. CrowdStrike was named a leader in The Forrester Wave for Managed Detection and Response Services in Europe and was also recognized in the IDC MarketScape for CNAPP and Exposure Management. Additionally, the text emphasizes the company's efforts in enhancing automation through Falcon Intelligence Recon, which aids in mitigating risks from digital threats like typosquatting and exposed credentials. The integration of AI and machine learning with security operations is also a focal point, as it supports faster, more efficient responses to cyber threats, reducing the risk and safeguarding organizational reputation.
Sep 26, 2023
2,384 words in the original blog post.
CrowdStrike has introduced Falcon Counter Adversary Operations Elite, an advanced service aimed at enhancing proactive detection and response to sophisticated cyber threats by integrating industry-leading intelligence and threat hunting capabilities. This initiative builds upon the earlier Counter Adversary Operations and combines the expertise of CrowdStrike Falcon Intelligence and Falcon OverWatch to disrupt adversaries using vast telemetry data from the AI-powered CrowdStrike Falcon platform. The service offers tailored threat hunting and intelligence-driven investigations, focusing on rapid response and strategic defense against evolving adversary tactics. Additionally, it extends protection beyond traditional IT environments by leveraging insights from the dark web and adversary infrastructure to address threats such as brand fraud, compromised credentials, and supply chain risks. The program emphasizes a close partnership between assigned analysts and clients, aiming to continuously improve organizational cyber defense and increase the operational costs for adversaries.
Sep 21, 2023
1,787 words in the original blog post.
CrowdStrike's Falcon platform has showcased exceptional performance in the MITRE Engenuity ATT&CK® Evaluations: Enterprise, achieving 100% protection, visibility, and analytic detection against the highly sophisticated adversary VENOMOUS BEAR, also known as Turla. This success underscores the platform's capability to prevent breaches through innovative features such as memory scanning, machine learning, and AI-powered indicators of attack, providing comprehensive, cross-domain threat visibility and protection. The Falcon platform's ability to detect and neutralize advanced tactics, techniques, and procedures (TTPs) without prior knowledge highlights its effectiveness against complex cyber threats, including fileless attacks and kernel-level exploits. CrowdStrike emphasizes the importance of continuous innovation and independent testing to maintain its leadership in cybersecurity, offering customers transparency and assurance in safeguarding against modern adversarial tactics.
Sep 20, 2023
3,059 words in the original blog post.
CrowdStrike, a leader in cybersecurity, has been recognized for its advanced endpoint protection capabilities, particularly through its Falcon platform, which integrates AI-powered solutions to safeguard against cyber threats. The platform is praised for its speed, ease of use, and comprehensive protection across various domains including cloud, identity, and data security. Customers have rated CrowdStrike highly, with a 98% willingness to recommend, according to the 2023 Gartner Peer Insights report. This high rating is attributed to its effectiveness and modular architecture, making it a preferred choice for enterprises aiming to consolidate their cybersecurity efforts. CrowdStrike continues to innovate, recently announcing initiatives such as Threat AI, identity security advancements, and strategic acquisitions to enhance its security offerings in the evolving digital landscape.
Sep 20, 2023
2,217 words in the original blog post.
At the Fal.Con 2023 event, CrowdStrike unveiled a series of groundbreaking innovations aimed at revolutionizing cybersecurity by leveraging generative AI and enhancing the capabilities of its Falcon platform. The company highlighted the introduction of Charlotte AI, designed to streamline workflows for security professionals, and announced platform upgrades to enhance data collection and analysis. They also introduced new modules, including Falcon Data Protection and Falcon Exposure Management, to address data theft and exposure risks more effectively. Furthermore, CrowdStrike revealed its planned acquisition of Bionic to expand its cloud security offerings, reinforcing its leadership in the cybersecurity market and underscoring its commitment to addressing cloud-based threats comprehensively. These developments reflect CrowdStrike's strategy to stay ahead of evolving cyber threats by providing advanced tools that combine AI, data analytics, and user-friendly interfaces, enabling customers to better protect their systems and data in an increasingly complex digital landscape.
Sep 19, 2023
2,394 words in the original blog post.
In a recent series of announcements, CrowdStrike unveiled a suite of innovative cybersecurity solutions aimed at enhancing data protection and exposure management to combat the ever-evolving threat landscape. These include the Falcon Data Protection, which provides unprecedented visibility across endpoints and data, and Falcon Exposure Management, which offers real-time assessments of potential vulnerabilities and aids in prioritizing critical fixes to prevent breaches. Additionally, the Falcon for IT platform consolidates IT and security workflows, utilizing AI-powered tools to streamline processes and improve response times. These advancements underscore CrowdStrike’s commitment to redefining cybersecurity by integrating modern technology and consolidating disparate systems into a unified platform, thereby enhancing efficiency and protection without the need for additional agents.
Sep 19, 2023
1,956 words in the original blog post.
CrowdStrike has announced its acquisition of Bionic, a pioneer in application security posture management (ASPM), to enhance its Falcon Cloud Security platform, aiming to provide comprehensive code-to-runtime cybersecurity. This strategic move is intended to offer unprecedented visibility and protection across cloud environments, addressing the rapidly growing cloud risks due to the increased use of applications and microservices. By integrating Bionic's capabilities, CrowdStrike seeks to deliver a frictionless security experience that spans from application development to production without requiring source-code access. This acquisition is positioned as a significant leap in cloud security, catering to the evolving needs of organizations facing sophisticated cloud-based threats. Despite the promising outlook, the blog notes potential risks in integrating Bionic's technology and operations.
Sep 19, 2023
2,112 words in the original blog post.
CrowdStrike and Intel have formed a strategic collaboration to enhance cybersecurity through AI and hardware-assisted solutions, aiming to tackle modern threat landscapes with improved security measures from edge to cloud. This partnership leverages Intel's processor technologies and CrowdStrike's Falcon platform to deliver accelerated AI operations, memory scanning for fileless attacks, and enhanced exploit detection, providing comprehensive protection for organizations. The collaboration also includes efforts with Dell and Zscaler to develop Zero Trust architectures and integrations that significantly strengthen security operations. Intel's use of the Falcon platform to secure its global endpoints underscores the effectiveness of these joint innovations, with Intel recognized as one of the most cyber-secure companies in the U.S. This partnership exemplifies the power of technology in cybersecurity, delivering advanced threat detection and prevention capabilities that benefit security professionals worldwide.
Sep 18, 2023
2,078 words in the original blog post.
CrowdStrike has launched the CrowdStrike Marketplace, an evolution of its CrowdStrike Store, aimed at helping organizations streamline their IT and security operations by providing access to a comprehensive ecosystem of cybersecurity solutions. Built on the extensible Falcon platform, the Marketplace offers hundreds of integrations and applications designed to unify disjointed tools, reduce operational complexity, and maximize technology investments. The platform also introduces a simplified procurement process with custom-built trials and CrowdCredits, allowing users to efficiently choose and implement new technologies, thereby enhancing overall security posture and operational efficiency. This development underscores CrowdStrike's commitment to providing seamless, end-to-end protection and addressing the evolving cybersecurity needs of its clients.
Sep 18, 2023
1,547 words in the original blog post.
CrowdStrike, a leader in cybersecurity, has actively collaborated with the MITRE Engenuity Center for Threat-Informed Defense on the Summiting the Pyramid project, aiming to enhance the robustness of cybersecurity analytics by utilizing the MITRE ATT&CK framework and the Pyramid of Pain model. This initiative focuses on making analytics more difficult for adversaries to evade by organizing observables and improving analytic robustness, ultimately providing better protection against evolving cyber threats. The project has led to the development of best-practice guidance and the improvement of over 50 analytics from the public Sigma rules repository, showcasing their applicability across different sectors. As part of its commitment to cybersecurity innovation, CrowdStrike continues to enhance its Falcon platform and share its research publicly, contributing to the global advancement of threat-informed defense.
Sep 14, 2023
2,103 words in the original blog post.
The text provides an overview of CrowdStrike's recent advancements and strategic initiatives in cybersecurity, focusing on various aspects such as AI development, data protection, identity security, and threat intelligence. It discusses the launch of new products like Threat AI, the first agentic threat intelligence system, and highlights their efforts in enhancing Falcon Cloud Security and Next-Gen Identity Security. Additionally, CrowdStrike is recognized as a leader in several industry reports and has formed strategic partnerships, such as with Google Chrome Enterprise, to improve threat hunting capabilities through better integration and data ingestion. The company is also expanding its scope to secure AI across enterprise environments and is acquiring companies like Pangea and Onum to bolster its security services and data management capabilities.
Sep 14, 2023
1,457 words in the original blog post.
CrowdStrike's recent initiatives focus on enhancing cybersecurity across various domains, including cloud security, AI development, identity security, and endpoint protection. The company has introduced innovative solutions like the Falcon Cloud Security, which enhances runtime capabilities to prevent container escape attempts, and a unified data protection strategy to stop GenAI data leaks. Additionally, CrowdStrike is advancing next-gen identity security with three new innovations and unveiling Threat AI, the first agentic threat intelligence system. The blog underscores the limitations of legacy antivirus software against modern threats, advocating for modern endpoint security solutions provided by CrowdStrike, which offer proactive defense through next-generation antivirus (NGAV) and endpoint detection and response (EDR). The company has been recognized as a leader in several industry analyses and continues to expand its offerings through strategic acquisitions and partnerships.
Sep 13, 2023
2,275 words in the original blog post.
CrowdStrike has been recognized as a leader in various cybersecurity domains, including the 2025 Forrester Wave for Managed Detection and Response Services in Europe and the IDC MarketScape for Worldwide Incident Response Services. The company's Falcon platform is highlighted for its role in protecting against threats by leveraging AI and machine learning to analyze vast amounts of endpoint data globally. CrowdStrike's efforts in advancing cybersecurity also include the development of new AI security services, integration with ChatGPT for enhanced compliance, and the adaptation of machine learning techniques to improve model stability and threat detection. The company's commitment to innovation is further demonstrated through its strategic acquisitions aimed at transforming data security and its collaborations with major tech firms to harmonize cyber threat attribution. Additionally, CrowdStrike addresses vulnerabilities with effective response strategies and emphasizes the importance of a robust cybersecurity posture, as demonstrated in their detailed analysis of Microsoft's September 2023 Patch Tuesday vulnerabilities.
Sep 12, 2023
1,981 words in the original blog post.
CrowdStrike is enhancing its cybersecurity offerings through several innovative initiatives, such as the launch of Falcon Complete for Service Providers, which allows managed service providers to extend 24/7 managed detection and response services to their clients. This service aims to address critical challenges like the global cybersecurity skills shortage by granting service providers access to CrowdStrike's extensive expertise, thereby enabling them to deliver exceptional protection against sophisticated threats. Additionally, the move towards consolidating cybersecurity tools and services is seen as a way to improve security effectiveness and efficiency, reducing complexity for organizations. CrowdStrike’s Falcon Complete is recognized as a leading solution in the market, offering comprehensive coverage across endpoints, identity, and cloud workloads, which is supported by the AI-powered CrowdStrike Falcon platform. The expansion of Falcon Complete access is part of CrowdStrike's broader strategy to advance cybersecurity standards globally, with the service consistently performing well in industry evaluations and leveraging partnerships to enhance its capabilities.
Sep 12, 2023
1,677 words in the original blog post.
CrowdStrike has been recognized as a leader in various cybersecurity domains, including cloud workload protection, managed detection and response services, and identity security, according to recent accolades from Frost Radar™ and The Forrester Wave™. The company has introduced several innovations, such as Falcon Cloud Security for AI development, and has been working on improving its threat intelligence and identity security offerings. Additionally, CrowdStrike has revamped its Community platform, enhancing user engagement with features like badges, ranks, and a leaderboard to encourage participation and information sharing among customers, partners, and employees. The company continues to emphasize advancements in AI, machine learning, and enterprise security, while actively participating in industry discussions and events to maintain its leadership position in cybersecurity.
Sep 08, 2023
1,674 words in the original blog post.
CrowdStrike has observed a notable rise in eCrime activities, particularly payroll business email compromise (BEC) that targets U.S.-based private schools. This simpler fraud technique involves threat actors impersonating school employees to alter direct deposit details to accounts they control, posing a significant risk to academic institutions as the school year begins. Threat actors use various online platforms, including Telegram channels and forums, to share detailed tutorials on executing payroll BEC campaigns, emphasizing the importance of obtaining staff directories and impersonating employees through spoofed email addresses. To mitigate these risks, organizations are advised to scrutinize "Reply-To" headers in emails, use spam filters to detect common BEC phrases, and employ separate platforms for payroll operations to reduce vulnerability to such fraud.
Sep 07, 2023
1,913 words in the original blog post.
CrowdStrike has identified two new local privilege escalation vulnerabilities in the Ubuntu kernel's OverlayFS module, labeled CVE-2023-2640 and CVE-2023-32629, which can potentially be used to root non-root containers. These vulnerabilities allow files with elevated capabilities from the lower directory to be copied to the upper directory, enabling privilege escalation. The CrowdStrike Falcon® platform is capable of detecting and preventing the exploitation of these vulnerabilities on both hosts and containers. The vulnerabilities exploit a kernel function that fails to restrict file security capabilities, posing a risk of container escape and host compromise. CrowdStrike recommends upgrading Ubuntu kernels, monitoring non-root privileged containers, and using security profiles like Seccomp or AppArmour to mitigate these vulnerabilities. By disabling the creation of new namespaces by unprivileged users, organizations can further protect their systems. The company emphasizes the importance of staying informed about cloud vulnerabilities and showcases its Falcon platform as a comprehensive security solution for multi-cloud and hybrid environments.
Sep 07, 2023
2,611 words in the original blog post.
CrowdStrike's article highlights the limitations of traditional SIEM systems in handling the rapid detection and response required to counter modern cyber threats, particularly focusing on the value of proxy logs in identifying malicious activities. The text emphasizes how legacy SIEMs struggle with performance bottlenecks, especially when processing high volumes of data, which can lead to dangerous visibility blind spots. To address these challenges, CrowdStrike's Falcon LogScale is presented as a next-generation SIEM solution offering high-speed data processing, real-time threat detection, and enhanced search capabilities with significantly reduced costs compared to traditional systems. The article also notes that Falcon LogScale's architecture allows for the retention of large volumes of data over extended periods, thereby improving visibility and compliance. Additionally, the Falcon LogScale Marketplace provides prebuilt packages and dashboards that streamline the integration and analysis of proxy logs, enabling more efficient threat hunting and incident response.
Sep 06, 2023
2,088 words in the original blog post.
CrowdStrike highlights the potential misuse of the Windows Restart Manager by adversaries, such as the Conti ransomware, which leverages this component to enhance its encryption process by terminating processes that lock targeted files. The Restart Manager, originally designed to avoid unnecessary reboots by managing application availability, can be exploited for reconnaissance, defense evasion, and disabling analysis tools, posing a threat to system integrity. CrowdStrike's Falcon platform addresses these vulnerabilities by leveraging behavioral indicators and implementing protection mechanisms like User Interface Privilege Isolation and Protected Processes. By detecting anomalies in the usage patterns of the Restart Manager, Falcon effectively distinguishes between legitimate and malicious activities, thereby enhancing its threat detection and prevention capabilities.
Sep 01, 2023
4,550 words in the original blog post.
The blog post highlights the transformative potential of a "whole-of-state" approach to cybersecurity in K-12 school districts, emphasizing the increased adoption of Chromebooks in classrooms and the associated cybersecurity challenges. By partnering with CrowdStrike and utilizing the Falcon platform, school districts can implement a comprehensive strategy that enhances cybersecurity defenses, protects student data, and addresses budget and staffing challenges. The Falcon Insight for ChromeOS offers endpoint detection and response without requiring a mobile device management solution, providing unified visibility and threat detection across ChromeOS devices. The integration facilitates swift deployment and robust security measures, enabling school administrators to better protect their digital environments. This collaborative strategy encourages shared efforts and insights between schools and state-level entities, fostering a resilient cybersecurity community that can effectively counter evolving threats while supporting a secure and thriving educational environment.
Sep 01, 2023
2,132 words in the original blog post.