-

CrowdStrike Achieves 100% Prevention in Fourth Round of MITRE Engenuity ATT&CK® Enterprise Evaluations

CrowdStrike was the only vendor to demonstrate native and unified Zero Trust and identity protection capabilities in its platform

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (Nasdaq: CRWD), a leader in cloud-delivered protection of endpoints, cloud workloads, identity and data, today announced its results from the fourth round of the MITRE Engenuity ATT&CK® Enterprise Evaluations. CrowdStrike achieved 100% prevention with comprehensive visibility and actionable alerts – demonstrating the power of the Falcon platform to stop today’s most sophisticated threats.

This round of independent ATT&CK Evaluations for enterprise cybersecurity solutions emulated the WIZARD SPIDER and VOODOO BEAR (Sandworm Team) threat groups, which were chosen because of their sophistication and broad range of post-exploitation tradecraft. The Falcon platform was evaluated among products from 30 vendors.

Falcon Platform Delivers 100% Prevention
The Falcon platform delivered 100% prevention in the ATT&CK Evaluations, consisting of nine test scenarios (including 19 steps and 109 substeps) on Windows and Linux operating systems. According to the 2022 CrowdStrike Global Threat Report, the average breakout time for adversaries -- the time an adversary takes to move laterally from an initially compromised host to another host within the victim environment -- is 98 minutes. Organizations need to be able to stop attackers immediately, before they can move about the network and cause damage. CrowdStrike shuts down attacks before they start.

CrowdStrike Delivers a Unified Platform Approach
CrowdStrike was the only vendor to demonstrate native and unified Zero Trust and identity protection capabilities in its platform. Adversaries are increasingly using legitimate and stolen credentials to try and evade detection. The Falcon platform shuts down identity-based attacks before they can start by delivering powerful capabilities like identity-based security, comprehensive Indicators of Attack (IOAs), machine learning, automated orchestration and threat intelligence through a unified, cloud-native approach. In the ATT&CK Evaluations, the Falcon platform proved these capabilities stop attackers quickly with more than 93% of attacker tactics, techniques and procedures (TTPs) stopped before they could execute.

Falcon Platform Delivers Comprehensive Visibility and Actionable Alerts
The Falcon platform provides comprehensive capabilities and tools for security teams to see, stop and understand an attack – scoring visibility on 96% of substeps in the ATT&CK Evaluations while presenting evidence for 99% of substeps. Visibility is a critical requirement of effective security, as security teams require context, historical visibility and response capabilities. CrowdStrike visually highlights detected attacks with rich context to streamline the triage process and helps security teams focus on the most critical threats first. In the ATT&CK Evaluations, the tested activities are presented in just six incidents, minimizing alert fatigue and giving security teams needed context to understand an attack.

“Achieving 100% prevention in the fourth round of the MITRE Engenuity ATT&CK Evaluation shows the power of the Falcon platform, which was designed to enable organizations to take a unified approach in detecting and preventing attacks across the endpoint, cloud, identity and data. CrowdStrike is setting the industry standard with a cloud-native security platform that is designed to deliver the most robust protections and stop the most sophisticated threats,” said Michael Sentonas, chief technology officer at CrowdStrike.

For more information on CrowdStrike’s test results, please visit the blog.

For full results and more information about the evaluations, please visit the MITRE Engenuity website.

About MITRE Engenuity
MITRE Engenuity, a subsidiary of MITRE, is a tech foundation for the public good. MITRE’s mission-driven teams are dedicated to solving problems for a safer world. Through our public-private partnerships and federally funded R&D centers, we work across government and in partnership with industry to tackle challenges to the safety, stability, and well-being of our nation.

MITRE Engenuity brings MITRE’s deep technical know-how and systems thinking to the private sector to solve complex challenges that government alone cannot solve. MITRE Engenuity catalyzes the collective R&D strength of the broader U.S. federal government, academia, and private sector to tackle national and global challenges, such as protecting critical infrastructure, creating a resilient semiconductor ecosystem, building a genomics center for public good, accelerating use case innovation in 5G, and democratizing threat-informed cyber defense.

About CrowdStrike
CrowdStrike (Nasdaq: CRWD), a global cybersecurity leader, has redefined modern security with one of the world’s most advanced cloud-native platforms for protecting critical areas of enterprise risk – endpoints and cloud workloads, identity and data.

Powered by the CrowdStrike Security Cloud and world-class AI, the CrowdStrike Falcon® platform leverages real-time indicators of attack, threat intelligence, evolving adversary tradecraft and enriched telemetry from across the enterprise to deliver hyper-accurate detections, automated protection and remediation, elite threat hunting and prioritized observability of vulnerabilities.

Purpose-built in the cloud with a single lightweight-agent architecture, the Falcon platform delivers rapid and scalable deployment, superior protection and performance, reduced complexity and immediate time-to-value.

CrowdStrike: We stop breaches.

Learn more: https://www.crowdstrike.com/
Follow us: Blog | Twitter | LinkedIn | Facebook | Instagram
Start a free trial today: https://www.crowdstrike.com/free-trial-guide/

© 2022 CrowdStrike, Inc. All rights reserved. CrowdStrike, the falcon logo, CrowdStrike Falcon and CrowdStrike Threat Graph are marks owned by CrowdStrike, Inc. and registered with the United States Patent and Trademark Office, and in other countries. CrowdStrike owns other trademarks and service marks, and may use the brands of third parties to identify their products and services.

Contacts

Kevin Benacci
CrowdStrike Corporate Communications
press@crowdstrike.com

CrowdStrike

NASDAQ:CRWD

Release Versions

Contacts

Kevin Benacci
CrowdStrike Corporate Communications
press@crowdstrike.com

More News From CrowdStrike

CrowdStrike and Schwarz Digits Partner to Deliver AI-Native and Sovereign Cybersecurity Platform on STACKIT

AUSTIN, Texas & NECKARSULM, Germany--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) and Schwarz Digits today announced a long-term strategic partnership to bring the CrowdStrike Falcon® cybersecurity platform to STACKIT, Schwarz Digits’ sovereign cloud infrastructure. This collaboration will deliver the AI-native Falcon platform with full attack path visibility on a platform fully operated within the EU on STACKIT, enabling enterprises and public institutions to meet Europe’s data sovereignty requ...

Day Zero 2026 Threat Research Summit: Call for Technical Research Now Open

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) is accepting submissions for its inaugural Day Zero Threat Research Summit, an invitation-only event bringing together the brightest minds across the global threat intelligence community to uncover the latest in adversary tradecraft and advance modern cyber defense. The summit will take place August 30 – September 1, 2026 at the Mandalay Bay Hotel and Resort in Las Vegas as part of Fal.Con 2026, the premier cybersecurity event of the ye...

CrowdStrike Fal.Con Gov Accelerates National Cyber Defense in the AI Threat Era

AUSTIN, Texas--(BUSINESS WIRE)--CrowdStrike (NASDAQ: CRWD) today announced Fal.Con Gov 2026 is taking place March 18 in Washington, D.C. Fal.Con Gov gathers government security leaders to advance strategy, operational execution, and AI-driven defense to protect the nation’s most critical systems. Now in its third year, this must-attend event brings together senior policymakers, national security, defense, and public sector cybersecurity leaders, including White House National Cyber Director Sea...
Back to Newsroom