Press Release | Media on CrowdStrike

CrowdStrike to Advance Threat Intelligence Offerings With Industry-Leading Situational Awareness

New module, CrowdStrike Falcon® Intelligence Recon, will empower customers with unprecedented visibility into raw intelligence from the hidden recesses of the web to better understand adversaries’ next moves

SUNNYVALE, Calif.  – October 22, 2020 – CrowdStrike Inc. (Nasdaq: CRWD), a leader in cloud-delivered endpoint and cloud workload protection, today announced the new CrowdStrike Falcon® Intelligence Recon module that will provide customers an increased level of situational awareness through the deep, broad collection of data from digital sources. CrowdStrike Falcon® Intelligence Recon will help uncover potential malicious activity so security teams can better protect their brand, employees and sensitive data.

CrowdStrike Falcon® Intelligence Recon is designed to go beyond the dark web to include forums with restricted access on the deep web, breach data, source code repositories, paste sites, mobile greyware stores, unsecured cloud storage,  public social media posts and messaging apps. In today’s evolving threat landscape, malicious actors may use one or more of these resources to more effectively target their victims and monetize their efforts. These sites are virtual watering holes, where adversaries congregate and underground digital economies thrive.

CrowdStrike Falcon® Intelligence Recon is being introduced to proactively collect and inform CrowdStrike customers about fraudulent activity, stolen data, threats to enterprises, and identified exploits and tools in the adversaries’ arsenals. CrowdStrike Falcon® Intelligence Recon will automate the collection of data from thousands of forums, marketplaces, messaging platforms and more, bringing scalability to network defenders so they can stay ahead of threats. By delivering situational awareness with relevant, real-time warnings, organizations can instantly identify data exposure and threats to the enterprise.

“CrowdStrike Falcon® Intelligence Recon is an important addition to our CrowdStrike Intelligence product suite. It will advance organizations along the threat intelligence maturity curve to go beyond threat feeds generated from past attacks,” said Adam Meyers, senior vice president of Intelligence, CrowdStrike. “With the addition of CrowdStrike Falcon® Intelligence Recon, CrowdStrike will broaden its delivery of automated industry-leading threat intelligence, allowing companies to more easily find that needle in the haystack.”

CrowdStrike Falcon® Intelligence Recon provides the following features:

  • Data Collection: At the heart of CrowdStrike Falcon® Intelligence Recon is a deep and broad collection of data from the cyber underground. Users will be able to quickly search and automatically monitor in real-time thousands of clandestine forums, markets, paste sites, messaging and chat rooms.
  • Situational Awareness (SA) Dashboards: This unified control center is designed to provide visibility into alerts that are the most relevant to the organization. The dashboards contain high-priority alerts and trends, and enable users to drill down into additional details. Custom dashboards can also be created by users to track and monitor the threats that are the most relevant to their remediation and response activities. 
  • Universal Search: This feature will enable users to perform on-demand searches across all licensed modules of the Falcon platform, returning results in easy-to-read cards where users can view the original threat actor posts with additional context about the actor and the site. In addition, results will be automatically translated from many other languages using augmented translation with hacker slang dictionaries.
  • Selectors: These define important information about an organization, including its executives and assets. Users will be immediately alerted when a selector matches with information found in the hidden web.
  • Notifications: Users will be able to customize how team members are notified and how often they receive alerts.


CrowdStrike Falcon® Intelligence Recon will join CrowdStrike’s award-winning family of threat intelligence solutions.  Built on the CrowdStrike Falcon® platform, CrowdStrike Falcon® Intelligence brings endpoint protection to the next level by combining malware sandboxing, malware search and threat intelligence into an integrated solution. CrowdStrike Falcon® Intelligence Premium adds threat intelligence reporting and research from CrowdStrike experts — enabling organizations to get ahead of nation-state, eCrime and hacktivist attacks.

CrowdStrike Falcon® Intelligence Recon is expected to be available in early 2021.

About CrowdStrike

CrowdStrike® Inc. (Nasdaq: CRWD), a global cybersecurity leader, is redefining security for the cloud era with an endpoint and workload protection platform built from the ground up to stop breaches. The CrowdStrike Falcon® platform’s single lightweight-agent architecture leverages cloud-scale artificial intelligence (AI) and offers real-time protection and visibility across the enterprise, preventing attacks on endpoints and workloads on or off the network. Powered by the proprietary CrowdStrike Threat Graph®, CrowdStrike Falcon® correlates 4 trillion endpoint-related events per week in real time from across the globe, fueling one of the world’s most advanced data platforms for security.

With CrowdStrike, customers benefit from better protection, better performance and immediate time-to-value delivered by the cloud-native Falcon platform.

There’s only one thing to remember about CrowdStrike: We stop breaches.

Qualifying organizations can gain full access to Falcon Prevent™ by starting a free trial.

Learn more:

Follow us: Blog | Twitter

© 2020 CrowdStrike, Inc. All rights reserved. CrowdStrike, the falcon logo, CrowdStrike Falcon® and CrowdStrike Threat Graph are marks owned by CrowdStrike, Inc. and registered with the United States Patent and Trademark Office, and in other countries. CrowdStrike owns other trademarks and service marks, and may use the brands of third parties to identify their products and services.

Forward-Looking Statements

This press release contains forward-looking statements about CrowdStrike’s expectations, plans, intentions, and strategies, including but not limited to statements regarding the future availability, functionality and benefits of CrowdStrike Falcon® Intelligence Recon. Statements including words such as “anticipate”, “believe”, “estimate”, “expect” or “future” and statements in the future tense are forward-looking statements. These forward-looking statements involve risks and uncertainties, as well as assumptions, which, if they do not fully materialize or prove incorrect, could cause our results to differ materially from those expressed or implied by such forward-looking statements. The risks and uncertainties include our ability to release the CrowdStrike Falcon® Intelligence Recon module on the timeline and with the features as expected, as well as those described in CrowdStrike’s documents filed with or furnished to the Securities and Exchange Commission. All forward-looking statements in this press release are based on information available to CrowdStrike as of the date hereof. CrowdStrike assumes no obligation to update these forward-looking statements.


CrowdStrike, Inc.

Ilina Cashiola, 202-340-0517