CrowdStrike has announced the general availability of Falcon® AI Detection and Response (AIDR), an extension of the Falcon® platform designed to secure the AI prompt and agent interaction layer, identified as a rapidly expanding attack surface. The new offering aims to provide a unified platform to secure every layer of enterprise AI, from data and models to agents, identities, infrastructure, and user interactions, across development and workforce usage.
According to Michael Sentonas, president of CrowdStrike, “Prompt injection is a frontier security problem. Adversaries are injecting hidden instructions into GenAI tools to weaponize the very systems transforming how work gets done.” He added that Falcon AIDR secures every prompt, response, and agent action in real time, extending the Falcon platform’s capabilities to the interaction layer and delivering protection across customers’ AI infrastructure.
CrowdStrike, known for its work in modern endpoint security with EDR, applies a similar architectural approach to AI with AIDR. The solution is designed to protect the interaction layer where AI systems reason, decide, and take action. The company highlights that adversaries are increasingly targeting this layer using hidden instructions to hijack agents, manipulate outcomes, and access sensitive data, characterizing AI interaction layer prompts as a new form of malware.
Falcon AIDR provides unified, real-time protection for development workflows and workforce AI usage, securing prompts, responses, and agent actions at enterprise scale. Key capabilities include gaining visibility into employee AI use and agent operations through runtime logs for compliance and investigations, blocking prompt injection attacks and unsafe content in real time based on research into adversarial prompt datasets and over 180 known prompt injection techniques, stopping risky AI use and containing malicious agent actions with real-time policy enforcement, protecting sensitive data by automatically detecting and blocking credentials or regulated information before it reaches models or external AI systems, and accelerating secure AI innovation by offering built-in safeguards for developers.
As part of the Falcon platform, Falcon AIDR establishes a unified security model for AI, covering environments where AI operates and the interaction layer. This integration aims to provide organizations with a single, comprehensive approach to protecting AI across its development and use within the enterprise.
Additional information regarding Falcon AIDR is available on the CrowdStrike blog and website. CrowdStrike is also hosting a virtual AI Summit titled “Accelerating Secure AI Adoption and Development” on January 21, 2026 (AMER), January 22 (APJ), and January 27 (EMEA).
CrowdStrike (NASDAQ: CRWD) is a global cybersecurity provider specializing in cloud-native platforms for protecting enterprise risk areas such as endpoints, cloud workloads, identity, and data. The CrowdStrike Falcon® platform utilizes the CrowdStrike Security Cloud and AI to deliver detections, automated protection, threat hunting, and vulnerability observability.