Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

The Threat Intel Workflow is Broken

A critical alert shouldn’t come with a scavenger hunt. But answering the obvious questions can still send analysts bouncing between threat reports, adversary profiles, underground activity, vulnerability data, and hunting tools. See how CrowdStrike’s Threat Intelligence Agent, powered by Charlotte AI, brings those answers together and helps turn them into action, from hunting queries and dark web monitoring to vulnerability checks and automated workflows. The analyst stays in control. The busywork doesn’t.

Intelligent Telemetry Control and Federated Search with Falcon Next-Gen SIEM

See how CrowdStrike combines intelligent telemetry control with Falcon Next-Gen SIEM Federated Search to optimize data costs without sacrificing investigative depth. Learn how Falcon Onum filters, enriches, masks, and routes telemetry in motion before ingestion.

CrowdStrike Named Strongest Overall Leader in 2026 Frost Radar: Cloud Workload Protection Platforms

We are proud to announce that Frost & Sullivan has named CrowdStrike as the strongest overall leader in the Frost Radar: Cloud Workload Protection Platforms, 2026. CrowdStrike earned the highest scores in Innovation and Growth among 18 companies benchmarked from a field of more than 45 qualified participants. Today’s cloud attacks are designed to hide in plain sight.

How CrowdStrike Delivers Falcon Privileged Access

Breaches don’t always start with malware. Increasingly, adversaries simply log in with valid credentials and when those credentials come with standing privileges, attackers inherit that access instantly. In this Lightboard Lab, learn how CrowdStrike is rethinking traditional privileged access with Modern Privileged Access. See how continuous evaluation of identity, device trust, security risk and business context can eliminate standing privileges and help ensure the right person gets the right access, in the right context, right when they need it.

Benchmaxxing: When the Benchmark Becomes the Target

Public benchmarks in AI provide important signals and allow for regression testing, directional validation of model updates, and public discussion of capabilities and limitations. But the more attention a benchmark receives, the stronger the incentive to optimize for it. Once a score becomes the goal, teams start benchmaxxing: optimizing for the benchmark rather than the capability it is meant to measure. This is a familiar problem in the AI space.

Falcon Exposure Management Custom Sensor Scanning: Demo Drill Down

In this Demo Drill Down, learn how Manual Sensor Scan enables teams to create targeted Python-based checks for pre-CVE vulnerabilities, supply chain risks, proprietary software, and other environment-specific conditions. See how built-in helper functions simplify custom detection logic and how identified findings are brought directly into Falcon Exposure Management for investigation, prioritization, and remediation.

Falcon AIDR: Complete Endpoint AI Coverage

AI has moved beyond the browser. It now runs in the terminal, the IDE, and desktop apps with your users' full privileges, where most security tools can't see it. In the AI era, the endpoint is where AI executes. This video shows how CrowdStrike Falcon AI Detection and Response (AIDR) extends the Falcon sensor you already run to the AI interaction layer. One sensor and one browser extension deliver visibility and control over every AI interaction on the endpoint and in the browser, from the Falcon console you already use.

CrowdStrike Threat Hunts for Shell Command Obfuscation on VMware ESX

VMware ESX systems are a recurring target in ransomware campaigns. Threat groups including SCATTERED SPIDER, BlackBasta, Royal (aka BlackSuit), Akira, and the ESX-focused ransomware as a service (RaaS) platform shinysp1d3r have demonstrated that once an adversary reaches the hypervisor layer, they can rapidly encrypt virtual machines, disable logging, and cripple an entire data center.

How AI Is Accelerating Adversary Activity | Adam Meyers on Yahoo Finance

AI is changing the threat landscape and the pace defenders have to keep up with. Adam Meyers, Head of Counter Adversary Operations at CrowdStrike, joined Yahoo Finance to unpack key findings from the latest CrowdStrike Threat Hunting Report, including: Watch the full interview for Adam’s take on how AI is reshaping adversary activity and what defenders need to know.

Secure Agent Harness Execution: Preventing Escape

At CrowdStrike, we conduct extensive red-team testing of agentic systems using diverse models, tools, and adversarial evaluation harnesses designed to probe for containment failures. To date, none of our offensive agents have escaped their intended sandbox boundaries.