Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Playbook for Endpoint Detection

This playbook provides systematic remediation steps to investigate malware alerts triggered on a host or endpoint (For example, a malicious file detection).

When CrowdStrike alerts are triggered on a host or endpoint, you can use the Endpoint Detection playbook in the Flow Designer for guidance and help optimize the investigation of these malicious files.

Parent Topic:Flow-based Playbooks