




To keep CrowdSec’s Central API (CAPI) reliable as usage continues to grow, we’ve introduced rate limiting. This change helps prevent misconfigured or broken deployments from generating excessive traffic, ensuring fair access and consistent performance for everyone.












While working on some new features for CrowdSec, we also have been experimenting with scenarios focused on post-exploitation behaviors, relying on auditd for Linux. That experiment led to another…how quickly can a machine get compromised? How fast can the CrowdSec network spot this compromised machine? And, how fast will it make its way to the crowdsourced blocklist? This article will answer all these questions and more!



Scenarios are core elements of the CrowdSec detection engine and enable it to recognize suspicious behavior as well as make a decision on whether to block an IP. Discover how to modify existing scenarios, and help make the community safer by creating new ones.

COO Laurent Soubrevilla took a gamble when he started CrowdSec with the other founders but made sure to make all the right decisions to ensure it would withstand the challenges of 2022 and 2023. In this article, he shares the story, strategy, and takeaways from launching an open-source and collaborative software company in the field of cybersecurity.

There are not many FOSS security tools available for Windows servers, but CrowdSec has made the move to change that. Offering a free tool to keep your Windows servers secure, you gain much more than protection with CrowdSec. Let’s dive into the benefits and take a closer look in this article.

You can now integrate CrowdSec CTI into your XSOAR and XSIAM platforms, freeing up time spent investigating each unwanted behavior. Your SOC team will have access to highly accurate and centralized IP reputation data built from a global community of real users, spread across 178 countries.