CrowdStrike launched CrowdStrike SafeMind, a set of special security models and tools from the CrowdStrike Cyber Superintelligence Lab. The SafeMind system will work directly in the CrowdStrike Falcon® platform. Trusted access for individual models and tools will be included in the Project QuiltWorks program.
SafeMind – Providing the First Smart System for Cybersecurity Defenders SafeMind is different from other AI models. It works as one system to ensure safety. It has a part that finds attack paths and another that blocks them, all working together in one process.
SafeMind training data comes from CrowdStrike Falcon sensor info, which is the biggest cyber dataset. The training also uses CrowdStrike’s threat data, Falcon Complete MDR event notes, and fifteen years of work stopping security breaches. SafeMind starts with two different models that offer special security skills:
Red Tempest: Offensive red team model release, built for advanced attack scenarios, emulating AI adversaries.
Blue Solano: Defensive blue team model release, built for protecting enterprise assets by deploying battle-tested measures that defenders use in real-life.
CrowdStrike makes the models with NVIDIA Nemotron open models together with NVIDIA, its AI design partner. The program also uses CoreWeave’s AI Cloud for training and testing.
SafeMind’s harnesses use both the red and blue CrowdStrike models in a system that keeps testing them against each other to get better. The harnesses also support new and open-source models, giving users more options and control over costs. Frontier labs can warn a defender about a risk. CrowdStrike can do more with harnesses that act on risks by themselves.
“The future of cybersecurity won’t be defined by AI that simply identifies threats, it will be defined by AI that defeats them,” said George Kurtz, CEO and founder of CrowdStrike. “SafeMind brings offensive and defensive models together in a system trained on CrowdStrike’s unique cyber data. It finds weaknesses, strengthens protection, and gets smarter with every cycle, advancing our mission to stop breaches at machine speed.”
“Cybersecurity in the age of AI will be a continuous contest between adversaries using AI to scale attacks and defenders using AI to expand detection and response. Cyber defense will be among the most compute-intensive applications of AI,” said Jensen Huang, founder and CEO of NVIDIA. “SafeMind combines NVIDIA Nemotron open models with CrowdStrike’s deep cybersecurity expertise, trusted security data, purpose-built agent harnesses, rigorous evaluations, and safeguards – creating a frontier agentic cybersecurity stack designed to operate at machine speed.
Powered by NVIDIA accelerated computing, SafeMind makes AI a force multiplier for defenders.”
“The real test of AI is what it can do in production, at scale, when the stakes are highest. Few environments put that to the test more than cybersecurity,” said Michael Intrator, co-founder and chief executive officer, CoreWeave. “We’re proud to power SafeMind across training and inference as CrowdStrike puts specialized AI to work against real-world threats.”
What Evaluations Show
Compared to leading frontier models and open-source baselines, SafeMind delivers:
29% higher detection rate
6x faster end-to-end remediation
99% cost savings on detection and remediation
“Our models are the start of a new chapter for cyberdefense,” said Dr. Bartley Richardson, chief AI and autonomous systems officer at CrowdStrike. “With the models and harnesses together in a co-evolving agentic system, defenders can now act at machine speed. This is the foundation for the next decade of AI security, and CrowdStrike is the only company that owns the entire stack, from sensor to harness to model.”
Related News:
Microsoft, NVIDIA and CrowdStrike Initiate Alliance for Open-Source AI Security
CrowdStrike Shows 5 New Prompt Injection Techniques for AI Agents
InfoSecBulletin Cybersecurity for mankind
