CrowdStrike API Connector: Multi-Domain Support for Enterprise Deployments

CrowdStrike API connector now supports multiple domain configurations with unique aliases, enabling organizations to ingest data from different CrowdStrike instances simultaneously. Read More →

AWS S3 and CrowdStrike Connectors: Non-Analytics Tier Query Support for Basic/Auxiliary Plans

AWS S3 and CrowdStrike Falcon S3 Data Replicator connectors now support Usage table fallback queries for deployments using Basic/Auxiliary Log Analytics plans. Read More →

CrowdStrike Content Doctor Enhancement: Improved Detection Logic and Alert Customization

Content Doctor improvements to CrowdStrike Falcon detection rules enhancing KQL logic, MITRE mappings, and alert presentation for critical/high severity detections. Read More →

New Cyren-CrowdStrike Threat Intelligence Solution: Automated IOC Sync for Enhanced Threat Detection

Logic App playbook now available to automatically sync Cyren IP reputation and malware URL indicators to CrowdStrike Falcon for streamlined threat blocking. Read More →

CrowdStrike Falcon Data Replicator: Incorrect Deprecation Reversed, Connector Restored to Active Status

CrowdStrike’s Function App-based data replicator was incorrectly deprecated and has been restored to active status to maintain government deployment support. Read More →

New Vaikora-CrowdStrike Integration: AI Agent Behavioral Signals to Custom IOCs

Logic App Playbook introduced to poll Vaikora AI agent signals and push high-risk actions as Custom IOCs to CrowdStrike Falcon for automated threat prevention. Read More →

Function App Connectors Deprecated: Four Solutions Migrate to CCF Framework

Legacy Azure Function connectors for Atlassian Jira, Auth0, Box, and CrowdStrike are now deprecated as solutions transition to the modern CCF architecture. Read More →

Microsoft Sentinel Training Lab: Comprehensive Hands-On Security Operations Environment Now Available

New deployment-ready training lab delivers 14 guided exercises with pre-recorded telemetry, detection rules, and automation workflows for practical Microsoft Sentinel skill development. Read More →

CrowdStrike Adversary Intelligence Connector: Function App Deployment Fix

Version constraint fix restores Function App deployment after Azure Functions runtime compatibility issue. Read More →

CrowdStrike Connector: Enhanced Rate Limiting and GA Release

CrowdStrike API Data Connector moves to General Availability with advanced rate limit handling for Alerts and Detections data ingestion. Read More →

CrowdStrike API Connector: Critical Fix Restores Full Alert and Detection Data Ingestion

CrowdStrike API connector fix implements nested API calls to retrieve complete alert/detection details after prior version only captured alert IDs. Read More →

TacitRed CrowdStrike Playbook: Authentication Fix for Multi-Region API Endpoints

Fixed hardcoded CrowdStrike API URL default causing authentication failures for customers in US-1 and EU-1 regions. Read More →

TacitRed CrowdStrike IOC Automation: Critical Deployment Fix and Template Visibility

Fixed InvalidResourceLocation deployment error and missing playbook template discovery for TacitRed CrowdStrike IOC automation solution. Read More →

CrowdStrike Falcon: Enhanced Threat Intelligence Connector with Improved Error Handling

Updated CrowdStrike Falcon Adversary Intelligence connector with better configuration validation, error handling, and code quality improvements. Read More →