March 3rd, 2026
Improved
Feature

Big update to our CrowdStrike Falcon integration! We've consolidated the experience into a single, modular integration and added Flight Control (MSSP) support — so whether you're managing one tenant or hundreds, the Praetorian Guard Platform (PGP) has you covered.
Your CrowdStrike Falcon deployment already sees your endpoints and their vulnerabilities — now PGP pulls that data in automatically to enrich your attack surface. Hosts sync as assets, open CVEs from Spotlight flow in as risks filtered to network-reachable attack vectors, and everything correlates against your external exposure. The result: you can trace attack paths from the internet to vulnerable internal endpoints and prioritize remediation based on what's actually reachable — not just what has a high CVSS score.
The integration authenticates via OAuth2 client credentials (POST /oauth2/token), with automatic member_cid scoping for Flight Control child tenants. Each module probes its API scope with a lightweight limit=1 query before running to ensure your credentials have the right permissions.
PGP caps concurrent API requests at 10 parallel calls during device hydration and vulnerability fetching. CrowdStrike enforces its own API rate limits on the Falcon side. If you're running into rate limiting issues with large environments, reach out to your Praetorian team and we'll work with you to tune throughput.