CrowdStrike and NVIDIA unveiled SafeMind, an agentic cybersecurity system that pairs offensive and defensive artificial intelligence models in an automated feedback loop. NVIDIA reported the launch on Tuesday at CrowdStrike's Fal.Con 2026 conference in Las Vegas.
NVIDIA Chief Executive Jensen Huang joined CrowdStrike Chief Executive George Kurtz before an audience of 10,000 security professionals to outline the technology. Huang stated that automated cyberattacks require automated defenses, while Kurtz noted that defensive teams previously lacked access to frontier AI models available to attackers.
SafeMind integrates models and custom agentic harnesses developed by the CrowdStrike Cyber Superintelligence Lab with defensive models built on NVIDIA Nemotron open architectures. NVIDIA Nemotron 3 Ultra orchestrates the defensive agent harness, while a fine-tuned Nemotron 3 Super model powers an automated rule-generation sub-agent. CrowdStrike internal evaluations showed that its Blue Solano model, based on Nemotron 3 Super, delivered higher accuracy rates than leading frontier models at 99 percent lower cost.
Adversarial testing and simulation
NVIDIA tested SafeMind's models and harnesses within a high-fidelity digital twin simulation of its own accelerated computing infrastructure. In this environment, red-team harnesses execute Recon, Assault, and Compromise sub-agents against blue-team harnesses that monitor activity via Falcon sensors, create detection candidates, and validate security rules.
CrowdStrike also introduced Falcon IQ to operationalize Project QuiltWorks through agentic workload automation. Falcon IQ deploys more than 50 specialized agents within Charlotte AI AgentWorks, CrowdStrike's no-code agent platform, to automate assessment, prioritization, and remediation workflows.
CrowdStrike expanded its Guardian AI safety solution during the event. The company reported that AI-enabled cyberattacks rose 89 percent over the past year, while the fastest eCrime breakout time reached 27 seconds across customer networks that generate trillions of daily security events.
