CrowdStrike is to acquire Seraphic Security, a California-based firm specialising in browser runtime security, for an undisclosed price.
Founded in 2020, Seraphic operates in the enterprise browser security market, developing patented technology to transform any browser into a secure platform with robust protection and detection features.
The company’s solution facilitates secure access to SaaS and private web applications by employees and third parties from both managed and personal devices. This approach eliminates the complexity and cost associated with virtual desktop infrastructure (VDI) and virtual private networks (VPN).
Seraphic’s technology is designed to be invisible to the end-user and supports all browsers as well as SaaS desktop applications such as Teams, Discord, Slack, and WhatsApp. In January 2025, Seraphic secured $29m Series A funding, which included investment from the CrowdStrike Falcon Fund.
The acquisition aims to enhance CrowdStrike’s Falcon platform by incorporating Seraphic’s browser-native protection. The integration will enable advanced security measures directly within popular browsers such as Chrome, Edge, Safari, and Firefox. This approach is expected to address a significant gap in cybersecurity, as most professional activities occur via web browsers.
Seraphic CEO and co-founder Ilan Yeshua said: “The browser is where modern work happens.
“In joining CrowdStrike, we are bringing platform-level protection to the most important execution layer in the enterprise, ensuring that zero trust is a continuous reality, not just a gateway check.”
The addition of Seraphic will empower CrowdStrike’s security operations centre (SOC) by enabling it to analyse extensive endpoint data alongside real-time browser telemetry. This enhancement is designed to advance next-generation identity security through dynamic access management based on session and risk assessments, effectively countering cyber threats by modifying permissions as needed.
Furthermore, the integration offers several key benefits. These include securing AI applications within the browser, implementing zero trust policies with dynamic control, and preventing data leaks with AI-driven content filtering.
The integrated solution also extends protection to unmanaged and bring-your-own devices without requiring complete endpoint agents.
Financial terms of the acquisition include a combination of cash and stocks subject to vesting conditions. The transaction is expected to finalise in CrowdStrike’s first fiscal quarter of 2027, pending standard closing procedures.



























