CrowdStrike report: AI is rewriting rules of cybersecurity
What happened
CrowdStrike released a Threat Hunting report finding AI-driven activity is accelerating attack speed and that many vulnerabilities are being weaponised within roughly 24–48 hours of disclosure. The finding is based on OverWatch telemetry and large event volumes, making the compressed exploit window operationally real for patching and incident response. Watch whether suppliers can commit to sub-48-hour notification and deliver verifiable proof-of-fix artifacts when critical CVEs appear
Why the category manager should care
Treat faster exploit timelines as an operational constraint that should drive patch SLAs, notification windows and remediation funding obligations in supplier contracts
Key facts
- OverWatch telemetry covering very large security event volumes
- Finding: many vulnerabilities weaponised within 24–48 hours of disclosure
- AI agent-driven behaviour producing significantly more detections than human users