Salt Security and CrowdStrike introduce comprehensive suite of API security integrations

April 7, 2025
Salt now delivers API discovery through CrowdStrike Falcon Foundry.

Salt Security, an API security company, today announced API integrations with the CrowdStrike Falcon platform to enhance and accelerate API discovery, posture governance, and threat protection.

Addressing a critical cause of breach incidents, Salt Security and CrowdStrike have developed an innovative Foundry application, enabling rapid and efficient API discovery within minutes. Salt Security is also natively integrated with CrowdStrike Falcon Next-Gen SIEM, delivering real-time threat insights while blocking attacks through the unified CrowdStrike Falcon Firewall Management.

APIs have become essential for organizations modernizing their operations, streamlining processes, and integrating various systems. Salt's Q1 2025 State of API Report reveals the extent of this reliance, with 53% of surveyed organizations managing over 1,000 APIs. While APIs offer significant developmental benefits, they also introduce security vulnerabilities and hidden risks. Salt's research underscores this concern, showing that 99% of security teams experienced an API security incident in 2024.

APIs are the building blocks of modern applications, but their rapid adoption and lack of governance have made them prime targets for attackers. In 2022, the Falcon Fund, CrowdStrike’s strategic investment vehicle, invested in Salt Security. Since then, the two companies have collaborated to pioneer API threat detection and improve organizations’ overall API security posture.

The Salt Security Falcon Foundry Application, designed to deploy Salt Security's sensor, provides comprehensive API asset discovery within the customer's environment. Leveraging a pre-built template available to all CrowdStrike customers, the Salt sensor deploys onto existing CrowdStrike Falcon endpoints, minimizing integration overhead and eliminating complex configuration procedures.

And as a natively integrated solution with Falcon Next-Gen SIEM, Salt combines its API attack telemetry with a rich dataset encompassing endpoint, identity, cloud, and other security/IT data, along with AI and automation. This holistic approach delivers visibility into the modern attack surface, accelerating threat detection and response.

"APIs are a key component of modern digital transformation, and they’ve also become a prime target for attackers,” said Daniel Bernard, Chief Business Officer at CrowdStrike. “Together with Salt Security, we’re making it seamless for CrowdStrike customers to deploy Salt’s sensor through a CrowdStrike Foundry app. This integration arms organizations with visibility into their API landscape, helping them identify vulnerabilities, proactively mitigate threats, and secure their most critical data and systems—all within the Falcon platform. Such collaboration showcases CrowdStrike’s open ecosystem platform approach to revolutionizing cybersecurity and maximizing customer ROI."

CrowdStrike customers can now deploy the Salt sensor, assign target hosts, and initiate API traffic capture. Within minutes, the solution begins ingesting API traffic metadata, effectively mapping the attack surface and mitigating potential vulnerabilities across the API ecosystem. Once collected, organizations can integrate API data from Salt directly into Falcon Next-Gen SIEM with a single click. This streamlined deployment and data acquisition process enables real-time visibility into API activity, facilitating proactive security posture management.

"The increasing prevalence of API attacks necessitates a robust security posture, as these interfaces become prime targets for data exfiltration and reconnaissance," said Roey Eliyahu, co-founder and CEO at Salt Security. "The inherent complexity of API ecosystems, characterized by diverse functionalities and usage patterns, makes comprehensive attack surface management a significant challenge. Our market-leading integrations with CrowdStrike address this challenge by combining our specialized API security capabilities with the Falcon platform's established threat detection and response framework. This unified approach provides enhanced visibility and actionable intelligence needed to proactively identify vulnerabilities and neutralize advanced threats."

Customers can purchase or download Salt Security directly from the CrowdStrike Marketplace.