Posted inEmergent Tech

CrowdStrike introduces industry’s first AI powered IoAs

Delivered on the CrowdStrike Falcon platform and powered by the CrowdStrike Security Cloud, these new detection and response capabilities stop emerging attack techniques

Amol Kulkarni, chief product and engineering officer at CrowdStrike
Amol Kulkarni, chief product and engineering officer at CrowdStrike

CrowdStrike introduced the industry’s first AI-powered Indicators of Attack (IoAs), new innovations for fileless attack prevention at scale and enhanced visibility for stealthy cloud intrusions. Delivered on the CrowdStrike Falcon platform and powered by the CrowdStrike Security Cloud, these new detection and response capabilities stop emerging attack techniques and enable organisations to optimise the threat detection and response lifecycle with speed, scale and accuracy. 

More than a decade ago, CrowdStrike invented IoAs, which brought a fundamentally new approach to stopping breaches based on real adversary behavior, irrespective of the malware or exploit used in an attack. CrowdStrike has also pushed the boundaries of applying AI in cybersecurity to identify and stop the most advanced, emerging attacks. Now, CrowdStrike is leveraging powerful AI techniques to create new IoAs at machine speed and scale.

Amol Kulkarni, chief product and engineering officer at CrowdStrike, said, “We are changing the game again with the addition of AI-powered Indicators of Attack, which enable organisations to harness the power of the CrowdStrike Security Cloud to examine adversary behavior at machine speed and scale to stop breaches in the most effective way possible.”

With the Falcon platform, organisations can:

  • Detect new classes of attacks, faster than ever: Find emerging attack techniques with new IoAs created by continuously learning AI models trained on real-world adversary behavior and the world’s richest threat intelligence.
  • Drive automated prevention with high-fidelity detections: Shutdown attacks based on a chain of behaviors, irrespective of the specific malware or tools used, with cloud-native AI models constantly delivered to the Falcon agent with newly-found IoAs. 
  • Activate IoAs at cloud scale, trained on human-led expertise: Synthesise insights with AI-powered IoAs from CrowdStrike’s world-renowned threat hunting team to minimise false positives, maximise analyst productivity and deploy threat hunting at scale.

Of note, AI-powered IoAshave identified over 20 never-before-seen adversary patterns, which have been validated by experts and enforced on the Falcon platform for automated detection and prevention.

According to the 2022 CrowdStrike Global Threat Report, 62 percent of all attacksare malware-free. These fileless attacks can be carried out entirely in memory, creating a blindspot for threat actors to exploit.