API & Integrations - CrowdStrike Falcon Threat Share Integration v2 - May 2025

Service Update

Availability May 28th, 2025
Product(s) Email Security Cloud Gateway (CG)
Who's affected Email Security Cloud Gateway (CG), Administrators

Overview

Mimecast is pleased to introduce the availability of v2 of the CrowdStrike Falcon Threat Share Integration.

The CrowdStrike Falcon Threat Share integration v2 enables the sharing of malicious file hashes and domains between your Mimecast and CrowdStrike account. When Mimecast’s Targeted Threat Protection inspects an email, threats identified as malicious attachments, phishing sending domains, and malicious URLs will result in action being taken on the email (depending on the transmission direction).

This integration also allows Mimecast to send telemetry to CrowdStrike’s Falcon platform to help identify the threat if it arrives on an endpoint from another attack vector. In addition to sending telemetry to CrowdStrike’s Falcon platform, Mimecast can receive telemetry from Falcon alerts and the IOC Management list. This telemetry can be used to block threats and remediate associated emails.

What's changing

  • Administrators will see a new Integration Tile for CrowdStrike Threat Share in the Integrations / Integrations Hub section of the Mimecast Administration Console.

Recommended actions

No action is required as a result of this integration, and it can be configured as required by administrators. For more information on configuring the integration, see API & Integrations - CrowdStrike Falcon Threat Share Integration v2.

Was this article helpful?
0 out of 0 found this helpful

Comments

0 comments

Please sign in to leave a comment.