-

CrowdStrike Sets Record for Fastest Threat Detection in MITRE Engenuity's ATT&CK® Evaluations: Managed Services-Round 2

CrowdStrike detects advanced adversary attack in real-world, closed-book simulation in just four minutes, six to 11 times faster than competitive vendors; scores highest in detection coverage at 98%

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) set a new speed benchmark for cybersecurity threat detection, identifying and alerting on a sophisticated eCrime adversary attack in just four minutes during the closed-book MITRE Engenuity's ATT&CK® Evaluations: Managed Services-Round 2. CrowdStrike Falcon® Complete MDR operates at the speed of the adversary, detecting the security incident six to 11 times faster than competitive vendors, while scoring the highest in detection coverage at 98 percent.

MITRE’s closed book evaluation emulated a real-world eCrime attack without giving the vendors prior knowledge of the threat scenario – creating the most accurate assessment of a vendor’s capabilities. In this scenario, prevention capabilities of the Falcon agent were not permitted and the Falcon platform was operating in detect-only mode, meaning no automated actions could be taken to kill processes. In this rigorous setting, CrowdStrike reported 42 out of the 43 (98%) adversary techniques. MITRE recorded CrowdStrike’s mean-time-to-detect (MTTD) – the average time between when a specific attack activity was performed and an email alert regarding that activity was received – at a record-breaking four minutes, setting a new benchmark for speed in threat detection.

“Stopping breaches requires security teams to operate at the speed of the adversary. The Falcon platform's unique cloud-born, AI-native architecture with one intelligent sensor delivers the best analyst experience and the fastest, most effective cybersecurity outcomes in the industry,” said Michael Sentonas, President of CrowdStrike. “Multiple platforms and stitched-together solutions are hard to use, create operational complexity, and slow security teams down when speed matters most. This is evident in testing scenarios and even more so in real-world environments. The powerful combination of CrowdStrike’s elite team of experts, the Falcon platform, and our knowledge of the adversary is unmatched in delivering the speed and efficacy needed to stop breaches.”

Additional Resources

  • To learn more about how CrowdStrike achieved 98% coverage scores and set the benchmark in threat detection time, read our blog.
  • For full results and more information about the evaluations, visit here.
  • To register for the CrowdStrike CrowdCast on the MITRE ATT&CK® Evaluation: Managed Services on June 27, visit here.

About CrowdStrike

CrowdStrike (Nasdaq: CRWD), a global cybersecurity leader, has redefined modern security with the world’s most advanced cloud-native platform for protecting critical areas of enterprise risk – endpoints and cloud workloads, identity and data.

Powered by the CrowdStrike Security Cloud and world-class AI, the CrowdStrike Falcon® platform leverages real-time indicators of attack, threat intelligence, evolving adversary tradecraft and enriched telemetry from across the enterprise to deliver hyper-accurate detections, automated protection and remediation, elite threat hunting and prioritized observability of vulnerabilities.

Purpose-built in the cloud with a single lightweight-agent architecture, the Falcon platform delivers rapid and scalable deployment, superior protection and performance, reduced complexity and immediate time-to-value.

CrowdStrike: We stop breaches.

Learn more: https://www.crowdstrike.com/
Follow us: Blog | Twitter | LinkedIn | Facebook | Instagram
Start a free trial today: https://www.crowdstrike.com/free-trial-guide/

©2024 CrowdStrike, Inc. All rights reserved. CrowdStrike, the falcon logo, CrowdStrike Falcon and CrowdStrike Threat Graph are marks owned by CrowdStrike, Inc. and registered with the United States Patent and Trademark Office, and in other countries. CrowdStrike owns other trademarks and service marks, and may use the brands of third parties to identify their products and services.

Contacts

Jake Schuster
CrowdStrike Corporate Communications
press@crowdstrike.com

CrowdStrike

NASDAQ:CRWD

Release Versions

Contacts

Jake Schuster
CrowdStrike Corporate Communications
press@crowdstrike.com

More News From CrowdStrike

CrowdStrike Named a Customers’ Choice in the 2026 Gartner® Peer Insights™ ‘Voice of the Customer’ for User Authentication Report

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) today announced it has been named the Customers’ Choice in the 2026 Gartner Peer Insights™ ‘Voice of the Customer’ for User Authentication report.1 CrowdStrike has the most 5-star reviews, the most verified reviews, and the highest product capability rating of 4.7 (tied), of any vendor in the report, based on 179 overall responses as of January 2026 and a 96% Willingness to Recommend score. CrowdStrike is the only platform that secures...

NordVPN Selects CrowdStrike to Deliver Industry-Leading Threat Intelligence to Millions of Consumers

AUSTIN, Texas--(BUSINESS WIRE)--NordVPN has selected CrowdStrike (NASDAQ: CRWD) to power its Threat Protection Pro™ feature, bringing industry-leading threat intelligence trusted by enterprises and governments to millions of consumers worldwide. Through this collaboration, CrowdStrike Threat Intelligence enhances NordVPN’s ability to protect users against modern cyber threats with real-time, adversary-driven intelligence delivered in a simple, privacy-first experience. Powered by CrowdStrike Co...

CrowdStrike is the Only Vendor Named as a Customers’ Choice in the 2025 Gartner® Peer Insights™ ‘Voice of the Customer’ for External Attack Surface Management Report

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) today announced it is the only vendor named a Customers’ Choice in the 2025 Gartner Peer Insights™ ‘Voice of the Customer’ for External Attack Surface Management (EASM) report,1 making CrowdStrike the only company with this distinction in both years the report has been published. Delivered as part of the unified CrowdStrike Falcon® platform, Falcon® Exposure Management helps security teams reduce risk by identifying known and unknown as...
Back to Newsroom