CrowdStrike update caused major outages: Unpacking the issues ???
Last Friday's CrowdStrike update resulted in a major outage, affecting a staggering 8.5 million devices. Theories range from a simple mistake to a sinister plot, but what exactly happened?
This isn't the first time an antivirus update has caused widespread problems. Back in 2010, McAfee accidentally removed a key Windows file, knocking out millions of Windows XP machines.
When we’re writing this, CrowdStrike's stock value has already taken a significant hit, dropping about 15% (roughly $300 million). So, what exactly has happened?:
?? The software – CrowdStrike Falcon Sensor
This program runs silently in the background, constantly scanning for security threats. It has two key components: the driver, which executes code to monitor the system, and the Channel Files, which contain configuration files containing rules to identify new potential attacks.
Here's where things went wrong. During an update to channel file C-00000291-.sys, a logical error caused a complete system crash.
? Why was this update different?
Most applications only crash themselves when there's a bug. However, CrowdStrike operates in a highly privileged area of the system (Ring 0 or kernel mode). This means even a minor bug can cause a complete system crash.
At least, this is what the official sources state.?
领英推荐
?? The cause: Theories and investigations
Several potential explanations are circulating.
?? Was it an attack?
While the investigation is ongoing, a cyberattack seems unlikely.
?? The aftermath and what's next
The industry is watching closely to see how CrowdStrike responds and how this event might shape future cybersecurity practices. We’re yet to find out what exactly happened, probably after the Congressional hearings. Theoretically, it could have been anything – from a stupid mistake to a covered-up cyberattack or a false flag operation.?
What you can do today is reinforce your cybersecurity team with professional security researchers and cybersecurity specialists! DM us to find out how you can find a perfect talent match for your team!?
Copywriter, translator, interpreter, AI content editor
7 个月That’s not the first case when an antivirus mistake leads to huge global problems. The previous happened with McAfee antivirus on the 21st of April 2010, when they accidentally removed the Windows service host file, knocking out millions of computers on Windows XP.? What's funny is that George Kurtz, who used to work for McAfee back in 2010, is now the CEO of CrowdStrike! What a coincidence!!
???? ???? Growth Manager at MWDN | Remote teams, Outstaffing, Recruiting service #standwithIsrael
7 个月Thanks for sharing this! It's important to be aware of such major incidents. ??
Director of Business Development @ MWDN | Delivering the best talents on the global market
7 个月We'll see what's next ????♀?