CrowdStrike Falcon Hybrid Analysis
Introduction
This guide tells you how to authenticate the CrowdStrike Falcon Hybrid Analysis connector in Swimlane using API Key Authentication.
You will generate an API key in CrowdStrike Falcon Hybrid Analysis, collect the required connection details, and configure the connector in Swimlane.
Prerequisites
CrowdStrike Access Requirements
You must have permissions to:
- Access the CrowdStrike Falcon Hybrid Analysis portal
- Generate or manage API keys
- Submit samples and retrieve analysis reports
- Access Hybrid Analysis API functionality
Required Credentials
During setup, you will collect:
- API Key
- Host URL
Host URL
Environment | Host URL |
|---|---|
CrowdStrike Falcon Hybrid Analysis |
CrowdStrike Falcon Hybrid Analysis Setup
Take the following steps to generate an API Key:
- Log in to the CrowdStrike Falcon Hybrid Analysis portal.
- Navigate to your User Profile or API Settings.
- Open the API Keys section.
- Click Create API Key or Generate API Key.
- Enter a descriptive name for the API key.
- Assign the required permissions for API access.
- Click Save or Generate.
- Copy and securely save the generated API key.
The generated value will be used as the API Key in Swimlane.
Connector configuration in Swimlane
- Log in to Turbine.
- From the left-hand navigation pane, click ORCHESTRATION and click Assets. Asset homepage opens.
- Click the plus icon to open the Configure your Connector Asset window.
- Select CrowdStrike Falcon Hybrid Analysis from the Asset type list.
- Fill in the Asset Settings and Asset Input as shown:
Field | Description | Required/Optional |
|---|---|---|
url | CrowdStrike Falcon Hybrid Analysis API URL | Required |
api-key | API Key generated from CrowdStrike Falcon Hybrid Analysis | Required |
verify_ssl | Enable/Disable SSL Verification | Optional |
http_proxy | Optional proxy configuration | Optional |
Fields with * marks are required.
- Click Create.

Troubleshooting
Authentication Failed
Ensure:
- The API key is copied correctly
- The API key has not expired or been revoked
- The correct API URL is being used
Permission Errors
Ensure the API key has sufficient permissions to:
- Submit files or URLs
- Retrieve reports
- Search hashes and terms
- Access submission details
SSL Verification Errors
If SSL validation fails:
- Verify the endpoint certificate is trusted
- Temporarily disable verify_ssl for testing purposes if allowed by your organization
You have successfully authenticated the CrowdStrike Falcon Hybrid Analysis Connector in Swimlane.
Sources
- CrowdStrike Falcon Hybrid Analysis API Documentation: https://www.hybrid-analysis.com/docs/api/v2ο»Ώ
- CrowdStrike Falcon Hybrid Analysis Portal: https://www.hybrid-analysis.com/ο»Ώ