Home / Companies / Crowdstrike / Blog / December 2023

December 2023 Summaries

9 posts from Crowdstrike

Filter
Month: Year:
Post Summaries Back to Blog
CrowdStrike has been at the forefront of cybersecurity innovation, advancing identity and cloud security with several significant initiatives. The company announced the development of the OceanLotus project, which is the first public adversary emulation plan to combine macOS and Linux, allowing organizations to test their defenses using the MITRE ATT&CK framework. This initiative addresses a gap in coverage, as previous emulation plans were primarily Windows-focused. The project is part of CrowdStrike's broader commitment to cybersecurity research and innovation, which includes partnerships with the MITRE Engenuity Center for Threat-Informed Defense and efforts to enhance the capabilities of its Falcon platform. The Falcon platform recently achieved perfect scores in the MITRE Engenuity ATT&CK Evaluations, demonstrating 100% protection, visibility, and analytic detection. Additionally, CrowdStrike continues to expand its capabilities in AI-driven security solutions, cloud protection, and vulnerability management, underscoring its role as a leader in the cybersecurity industry.
Dec 29, 2023 1,983 words in the original blog post.
CrowdStrike emphasizes the importance of comprehensive cloud security through its Falcon Cloud Security platform, advocating for a Cloud-Native Application Protection Platform (CNAPP) approach to address the growing complexity of cloud environments. The platform focuses on four key factors: comprehensive coverage and integration to cater to diverse workloads, advanced threat detection and response to mitigate fast-moving threats, scalability without impacting performance, and integrating security practices early in the development process, known as "shift-left." CrowdStrike's CNAPP solution offers features like real-time monitoring, automated response, and managed detection and response, aiming to provide a holistic and proactive security stance for organizations facing evolving cloud-based threats.
Dec 27, 2023 2,588 words in the original blog post.
CrowdStrike's blog discusses the introduction of Charlotte AI, a generative AI technology designed to enhance cybersecurity operations by improving speed and accuracy for security teams. This AI system is tailored to work with CrowdStrike's Falcon platform, providing users with precise and auditable responses while safeguarding privacy and preventing unauthorized data exposure. Charlotte AI uses large language models (LLMs) trained on Falcon's documentation and APIs to deliver accurate insights, minimizing the risk of AI "hallucinations" that could lead to incorrect security information. Additionally, the platform incorporates role-based access controls to ensure that data access aligns with user privileges, and it requires analysts to review and approve any operational changes, thereby mitigating risks associated with prompt injection and leakage. The article emphasizes the importance of responsibly adopting generative AI in security, acknowledging the technology's potential to bolster defense mechanisms against increasingly sophisticated adversaries, while also urging organizations to evaluate risks when selecting security vendors. CrowdStrike positions itself as a leader in integrating AI into cybersecurity, offering tools that enhance analyst workflows and capitalize on real-time intelligence.
Dec 20, 2023 2,920 words in the original blog post.
CrowdStrike has been recognized as a leading force in cybersecurity, particularly in managed detection and response services, as evidenced by its high rankings in the 2025 IDC MarketScape and The Forrester Wave™ reports. The company's Falcon Complete platform is praised for its robust threat hunting, intelligence capabilities, and strategic integration with European data privacy laws, ensuring compliance and enhanced security for its European clients. CrowdStrike's advanced extended detection and response (XDR) capabilities and commitment to cybersecurity research distinguish it from competitors, offering a powerful blend of technology and human expertise that effectively detects and mitigates complex cyber threats. The company continues to innovate, expanding its services to include next-gen identity security and AI-powered cybersecurity solutions, while also acquiring Onum to enhance data utilization in security operations centers (SOCs). CrowdStrike remains a dominant player in the cybersecurity market, consistently receiving accolades for its comprehensive protection across various attack surfaces.
Dec 14, 2023 1,806 words in the original blog post.
The text highlights recent developments and achievements by CrowdStrike in cybersecurity, focusing on innovations in AI security, cloud and application security, and identity protection. CrowdStrike has been recognized as a leader in various industry reports, including the 2025 IDC MarketScape for Exposure Management and the Forrester Wave for Managed Detection and Response Services. Notable announcements include the launch of Threat AI, an agentic threat intelligence system, and advancements in next-gen identity security with three key innovations. Additionally, CrowdStrike has introduced new AI security services and tools to prevent data leaks and enhance security operations center (SOC) readiness. The blog also covers the December 2023 Patch Tuesday, detailing critical vulnerabilities and emphasizing the importance of a comprehensive cybersecurity strategy for effective vulnerability management.
Dec 12, 2023 1,835 words in the original blog post.
CrowdStrike has been recognized as a leader in several cybersecurity areas, including The Forrester Wave™ and IDC MarketScape for managed detection and response services and incident response services. The company is advancing its cybersecurity efforts with initiatives like EMBER2024, which enhances machine learning model training against evasive malware, and Secure AI that protects the growing attack surface at machine speed. CrowdStrike's identity threat hunting capability provides 24/7 protection against identity-based attacks, leveraging the Falcon Identity Protection to detect and thwart adversary activities. This capability is part of CrowdStrike Counter Adversary Operations and offers comprehensive coverage against sophisticated threats such as SCATTERED SPIDER and MANGLED SPIDER, employing its unique visibility into identity telemetry to safeguard managed and unmanaged hosts. Additionally, CrowdStrike's commitment to innovation is evidenced by its integration of AI, cloud security, and identity protection, showcasing its continued leadership in the cybersecurity domain.
Dec 11, 2023 2,017 words in the original blog post.
CrowdStrike has been recognized as a leader in several areas, including the 2025 IDC MarketScape for Worldwide Incident Response Services and Exposure Management, and has announced its acquisition of Onum to enhance data-driven capabilities in its Agentic SOC. The company has also highlighted various threats such as the "MURKY PANDA," a trusted-relationship threat in the cloud. In addition, CrowdStrike has demonstrated its proactive approach to cloud security by discovering a vulnerability in Flexera's FlexNet Inventory Agent (CVE-2023-29082), which allows for container breakouts and root access on Linux hosts. The company offers mitigation through its Falcon Cloud Security module, emphasizing the importance of runtime protection and the need for timely updates to prevent exploitation. CrowdStrike continues to lead with advancements in endpoint protection, AI security services, and cloud security, showcasing its commitment to comprehensive cybersecurity solutions across multiple domains.
Dec 08, 2023 1,964 words in the original blog post.
The text discusses the challenges and strategies related to insider threats in cybersecurity, as observed by CrowdStrike Intelligence between January 2021 and April 2023. Insider threats, defined as individuals with legitimate access inadvertently or deliberately causing harm to their organization’s IT systems, have increasingly exploited known vulnerabilities to achieve malicious objectives. CrowdStrike's analysis reveals that 55% of such incidents involved unauthorized privilege escalation, while 45% involved insiders unwittingly introducing risk by downloading offensive tools or exploits. Despite the difficulty in detecting these threats, the report suggests that many defensive measures effective against external cyber threats can also mitigate insider threats. The text emphasizes the importance of vulnerability management, user behavior analysis, and tailored training to prevent such incidents, highlighting the need for a comprehensive defense-in-depth approach and the importance of training employees to follow safe-handling procedures for exploits and offensive tools.
Dec 07, 2023 3,992 words in the original blog post.
CrowdStrike has achieved FedRAMP® High-Impact Level Ready status, marking a significant milestone in its commitment to providing robust compliance for the U.S. federal government. This achievement indicates that the CrowdStrike Falcon® platform is prepared to meet the highest security standards required to protect the federal government's critical systems and data. The platform, which offers comprehensive endpoint protection, cloud security posture management, identity protection, and more, is recognized for its ability to collect and analyze vast amounts of endpoint events daily, ensuring stringent protection. This development follows CrowdStrike's prior successes, including receiving an Impact Level 5 Provisional Authorization from the Department of Defense and being selected by CISA for its endpoint detection and response capabilities. The FedRAMP JAB High Ready designation prepares CrowdStrike for further authorization, enhancing its role in safeguarding the most sensitive government information systems while expanding its compliance from Moderate to High, thus reinforcing its leadership in cybersecurity innovation and government support.
Dec 04, 2023 2,184 words in the original blog post.