Explore OpenCTI or OpenAEV platform with 30 days Free Trial!
XTM Hub by Filigran
Sign Up
CrowdStrike Falcon Recon logo

CrowdStrike Falcon Recon

Automatic deploy
Supported by community
Brand, Digital Risk & Underground Exposure

Overview

CrowdStrike Falcon Recon imports exposure monitoring alerts (typosquatting, leaked credentials, dark web posts) as OpenCTI Incidents with associated observables.

CrowdStrike Falcon Recon provides real-time notifications about external threats targeting your organization, including typosquatting domains, leaked credentials, dark web posts, and exposed files.

The OpenCTI CrowdStrike Recon connector imports these alerts as Incidents into OpenCTI, with associated observables (domains, emails, URLs, user accounts, malware) and relationships. It supports filtering by topic, notification type, and priority, and includes detailed Markdown reports attached to each Incident.

Basic information

CrowdStrike Falcon Recon
Connectors
7.260710.0
7.260710.0
0

    We use cookies to run XTM Hub. Necessary cookies are always on, optional cookies (functionality, analytics, marketing) are used with your consent. Accept all, reject all, or manage your choices anytime in "Cookie settings".