Cloud Security, Network Security, Vulnerability Management
CrowdStrike discloses new technical details behind outage

CrowdStrike said Saturday a bad “sensor configuration update” in its Falcon cybersecurity platform was to blame for a massive global computer outage. The disastrous patch knocked approximately 8.5 million Windows devices offline paralyzing airlines, hospitals and financial institutions globally.Mac and Linux systems were not impacted and Microsoft reported Saturday that many systems been restored. "We currently estimate that CrowdStrike’s update affected 8.5 million Windows devices, or less than one percent of all Windows machines. While the percentage was small, the broad economic and societal impacts reflect the use of CrowdStrike by enterprises that run many critical services," wrote David Weston, Microsoft VP, Enterprise and OS Security in a blog post Saturday.For its' part, CrowdStrike released the most complete picture to date of the technical breakdown that lead to the outage on Saturday. “On July 19, 2024 at 04:09 UTC, as part of ongoing operations, CrowdStrike released a sensor configuration update to Windows systems. Sensor configuration updates are an ongoing part of the protection mechanisms of the Falcon platform,” CrowdStrike explained in a blog post.It explained the “configuration update triggered a logic error resulting in a system crash and blue screen (BSOD) on impacted systems.”In computer parlance, a logic error, sometimes called a semantic error, is a bug found in a program's source code that can trigger abnormal application behavior or system crashes. BSoD is shorthand for blue screen of death, a term used to describe the blue screen displayed indicating a system crash on a Windows computer system.The CrowdStrike Falcon is a breach-prevention platform that uses a “unified set of cloud-delivered technologies that prevent all types of attacks — including malware and much more,” according to marketing material for CrowdStrike Falcon. It has several core functions that include antivirus, endpoint detection and response (EDR), cyber threat intelligence, managed threat hunting abilities and security hygiene. Falcon is described as a “lightweight sensor that is cloud-managed and delivered.”MSSPs Help Organizations Through CrowdStrike IT Outage (MSSP Alert) Analyzing the CrowdStrike Incident and Its Ripple Effects (Security Weekly) Seven tips that offer short-term and long-term fixes following the CrowdStrike outage CrowdStrike confirms faulty update is tied to massive global IT outage: ‘Fix has been deployed’ Security pros brace for manual system-by-system fix to CrowdStrike outage What the CrowdStrike update outage means for cybersecurity CrowdStrike Update Causes Global Outages: Analysis MSPs Come Together to Hasten CrowdStrike Outage Remediation (ChanelE2E)
An In-Depth Guide to Cloud Security
Get essential knowledge and practical strategies to fortify your cloud security.
Related Events
Get daily email updates
SC Media's daily must-read of the most current and pressing daily news
You can skip this ad in 5 seconds