The flaw affects OpenSSL versions 1.02, 1.1.1, and 3.0, all of which have been patched. OpenSSL is a core component of Unix and Linux-based systems, and is also bundled into software applications that run on Windows.
The fundamental resilience of the global internet is strong, but manipulation of the domain name system (DNS) and Border Gateway Protocol (BGP), denial of service attacks, supply chain exploitation and insiders can still threaten major disruptions, according to the Government Accountability Office.
CrowdStrike CTO Michael Sentonas addressed the recently announced CrowdXDR Alliance and its goal of providing users with an XDR platform featuring a variety of integrated solutions.