CrowdStrike's Falcon AIDR Runs on Cerebras to Stop Attacks in 27 Seconds

CrowdStrike's Falcon AIDR will run on Cerebras wafer-scale inference, pairing the world's fastest AI hardware with the leading AI-native security platform to stop attacks in real time.

·
·
AuthorCerebras
Read2 min
TopicGpus · Security
  • Partnership announced: CrowdStrike and Cerebras will run Falcon AIDR security models on Cerebras wafer-scale inference hardware.
  • Two-way deal: Cerebras also standardizes on CrowdStrike Falcon to secure its own AI infrastructure, making it a mutual customer relationship.
  • Speed advantage: Cerebras delivers 1,000--3,000 tokens/sec vs. 50--100 tokens/sec on GPU clouds, up to 75x faster than major hyperscalers per Artificial Analysis.
  • Threat context: CrowdStrike's 2026 Global Threat Report found average attacker breakout time has fallen to 29 minutes, with the fastest case at just 27 seconds.
  • Market reaction: CBRS stock jumped 6%, with an intraday peak move of +11.9% following the announcement.
  • AIDR momentum: CrowdStrike reported a fivefold increase in AIDR demand and a record new-ARR quarter for the product ahead of this partnership.

CrowdStrike and Cerebras just announced a strategic partnership that puts the world's fastest AI inference engine directly inside one of cybersecurity's most consequential products. CrowdStrike will run its Falcon AI Detection and Response (AIDR) models on Cerebras's wafer-scale inference hardware, while Cerebras in turn standardizes on the Falcon platform to secure its own operations. It is a two-way deal, and the timing is not accidental.

The arms race that made this inevitable

The threat landscape has been redrawn by AI. According to CrowdStrike's 2026 Global Threat Report, the average eCrime breakout time -- the window between an attacker's first access and when they begin moving laterally -- fell to just 29 minutes, a 65% increase in speed from 2024, with the fastest observed breakout ever recorded at just 27 seconds. Adversaries are also actively exploiting AI systems themselves, injecting malicious prompts into GenAI tools at more than 90 organizations and abusing AI development platforms.

The implication is stark: if an attacker can go from foothold to lateral movement in under 30 seconds, a security model that queues inference requests on a GPU cluster and waits seconds or minutes for a response is already too slow. The detection window has collapsed faster than traditional security architectures can adapt.

What Falcon AIDR actually does

Falcon AIDR safeguards both the use and development of AI by protecting the critical layer where people, systems, and autonomous agents interact. Now generally available in the CrowdStrike Falcon platform, it unifies prompt-layer visibility, real-time threat detection, data protection, access controls, and automated response across endpoints, applications, AI agents, MCP servers, AI/API gateways, and cloud environments -- all through a single sensor and console.

Think of it as EDR (Endpoint Detection and Response) but for the AI layer. Built by the team that pioneered EDR, AIDR applies the same detection-and-response model to the AI attack surface. In practice, that means:

  • Detecting and stopping AI-specific threats, including prompt injection, jailbreaks, malicious entities, harmful content, and unauthorized MCP interactions.

Keep reading

Don't miss what's next in AI

Join 300,000+ engineers and researchers who get the signal, not the noise. Create a free account to read the rest of this story.

  • Full access to in-depth AI research breakdowns
  • Be the first to know what's trending before it hits mainstream
  • Daily curated papers, repos, and industry moves