• All
  • Company
  • Industry
  • News
  • Partners
Detecting and Mitigating NTLM Relay Attacks Targeting Microsoft Domain Controllers

Adversaries often exploit legacy protocols like Windows NTLM that unfortunately remain widely deployed despite known vulnerabilities. Previous CrowdStrike blog posts have covered critical vulnerabilities in NTLM that allow remote code execution and other NTLM attacks where attackers could exploit vulnerabilities to bypass MIC (Message Integrity Code) protection, session signing and EPA (Enhanced Protection for Authentication). The PetitPotam vulnerability, combined with AD-CS relay, is one of the recent severe NTLM relay variations the CrowdStrike Identity Protection research team have seen, which indicates its...

Read More
CrowdStrike’s 2020 Global Security Attitude Survey: How Organizations Fear Cyberattacks Will Impact Their Digital Transformation and Future Growth

Senior IT and security decision-makers around the world are concerned that the global pandemic and rapid adoption of a work-from-anywhere business model could negatively impact future growth, according to our study released today. Results of CrowdStrike’s third annual Global Security Attitude Survey, produced by independent research firm Vanson Bourne, reveal trepidation in how leaders view the current threat landscape and their organization’s cybersecurity readiness. The study surveyed 2,200 senior IT decision-makers and security...

Read More
CrowdStrike CTO Explains “Breakout Time” — A Critical Metric in Stopping Breaches

This video features CrowdStrike® Co-founder and CTO Dmitri Alperovitch discussing why “breakout time” is a critical measurement for organizations trying to stop a breach. As Alperovitch explains, “Breakout time is the time between when an intruder gets on a machine, whether it’s through spear phishing or some sort of strategic web compromise, and when they break out of the beachhead they’ve established and compromise other systems.” Breakout time was first introduced...

Read More
SC Magazine Names CrowdStrike Falcon X Best Threat Intelligence Technology at RSA

CrowdStrike’s incredible success at this year’s RSA event included winning the SC Magazine 2019 Trust Award for Best Threat Intelligence Technology for Falcon X™, our automated threat intelligence solution and part of the comprehensive CrowdStrike® Falcon® platform. In giving Falcon X technology this recognition, SC Magazine cited a January 2018 Gartner Magic Quadrant report that predicted by 2021, endpoint protection platforms “will provide automated, orchestrated incident investigation and breach response.” We believe Falcon...

Read More