Skip to main content

Search

Items tagged with: Crowdstrike


- Microsoft outage last night
- CrowdStrike outage today

TWO DIFFERENT THINGS.

Having said that, I will apologize preemptively for the following meme. #crowdstrike


Another lesson perhaps for organizations running mission-critical services - do not auto-update all your servers and clients is one fell-swoop.

Stage them. With some soak time in between.

This is quite standard practice when pushing our own custom software into our own distributed network products.

#Outage #CrowdStrike
11/n


My guesses for the cause of this CrowdStrike driver update worldwide snafu -

1. A last minute "trivial" change to the software after all testing was completed
2. Something went wrong in the packaging or delivery or installation of the software update.
3. Some AI-generated code segment 😜

What else can you think of?

#Outage #CrowdStrike
10/n


Snapshot of some outage graphs from https://downdetector.com/

Not the kind of rising lines one wants to see on Friday or any other day.

The disruption is widespread, far beyond the more visible ones in the airline industry.

#Outage #CrowdStrike
9/n


Steps for public cloud or similar environment including Virtual Machines:

Detach the OS disk volume from the impacted virtual server
Create a snapshot or backup of the disk volume as a precaution
Attach/mount the volume to to a new virtual server
Navigate to the C:\Windows\System32\drivers\CrowdStrike dir
Delete files “C-00000291*.sys”
Detach the volume from the new virtual server
Reattach the fixed volume to the impacted virtual server

More at https://www.eye.security/blog/crowdstrike-falcon-blue-screen-issue-updates
#Outage #CrowdStrike
8/n


Microsoft recommends restoring Windows from backups. Easier said than done.

For Virtual Machines running Windows Client and Windows Server, VM restarts (as many as 15 may be required) seem to be effective??

https://status.cloud.microsoft/
#Outage #Microsoft #CrowdStrike
7/n


The offending software is called the "CrowdStrike Falcon Sensor software."

R U ready for some AI-powered upgrades?

"CrowdStrike Falcon® Complete Next-Gen MDR utilizes AI-native technology and world-class expertise to stop breaches across the entire enterprise attack surface."

https://www.crowdstrike.com/blog/crowdstrike-unifies-threat-data-and-ai-for-mdr/

#Outage #Microsoft #CrowdStrike
6/n


George Kurtz, President & CEO CrowdStrike, tweeted about 2 hours ago that -
"The issue has been identified, isolated and a fix has been deployed."

Wonder what "deployed" means. How does one deploy the fix (delete certain driver files) to remote devices that cannot boot normally? 🤔

So, are planes flying again?

#Outage #Microsoft #CrowdStrike
5/n


xkcd comic for today 😅

Title text: We were going to try swordfighting, but all my compiling is on hold.

Touché.

Source and explanation: https://www.explainxkcd.com/wiki/index.php/Main_Page
#Outage #CrowdStrike #xkcd
12/n


Remember when I mentioned hours ago that plenty of malicious entities were going to be paying attention to today just to gather information?

This.

This right here.

They're paying attention to this.

https://www.digitaltrends.com/computing/southwest-cloudstrike-windows-3-1/

#crowdstrike


Remember! Restart your computer 15 to 20 times.
#crowdstrike


I'm very thankful to #Microsoft and #Crowdstrike for this timely demonstration to make it clear, that the budget cuts to the #NGI by the @EUCommission endanger Europe's #digitalsovereignty

https://www.theregister.com/2024/07/17/foss_funding_vanishes_from_eus/


Ist ja schön und gut, wenn es für das #CrowdStrike Problem einen Workaround gibt. Schön, dass man nur eine Datei löschen muss.
Scheiße ist ja nur, wenn man für den Boot in den abgesicherten Modus einen Bitlocker Schlüssel braucht (bzw. zum Löschen dieser Datei) dieser Schlüssel aber nicht existiert. Was macht diese IT-Abteilung eigentlich?!?!?!
Ich sprenge hier gleich alles in die Luft! 🤬


#CrowdStrike is a different scale, but it reminds me of Patch Tuesday causing Skype to collapse: https://www.wired.com/2007/08/microsofts-patc/

Skype used to run a hybrid p2p network that bootstrapped off two supernodes that were run by Skype. But the network was so stable they switched those off, and kind of forgot how to use them.

1/2


ONGOING WAVES OF SMUGNESS FROM LINUX AND APPLE USERS "COULD LAST DAYS", EXPERTS WARN. #crowdstrike


Hmm, that's never good. BSOD on all your displays. (screenshot snagged off a random TikTok account) #ATL #BSOD #crowdstrike


What it looks like in the air when a closed-source security company breaks a software update.

This is a 12 hour timelapse of Delta, American Airlines, and United flights.

#crowdstrike


"I'm no security expert but [biting and insightful question that will receive a longer, more deflective and less insightful answer than it deserves]"

Sky News: "Global IT outage: 'We're deeply sorry', CrowdStrike CEO George Kurtz says"

https://farside.link/invidious/xySnsTQLqB8

https://youtu.be/xySnsTQLqB8

#crowdstrike


Damn #crowdstrike this is a whole new impact level. It’s like a 30s fix.. but doing each physically takes resources.


Too funny: In 2010 McAffe caused a global IT meltdown due to a faulty update. CTO at this time was George Kurtz. Now he is CEO of #crowdstrike

https://www.zdnet.com/article/defective-mcafee-update-causes-worldwide-meltdown-of-xp-pcs/



Welcome today as we witness the largest IT outage of all time.

#windows #microsoft #crowdstrike #cybersecurity

edit: source of the picture is https://www.crowdstrike.com/en-us/


@Sou
some may ask why they didn't use ai 😂

"Whiteboards being used at
@belfastairport
as all the screens are blue. Passenger Martin McElroy took this, and told us that it's like “the dark ages, but to be fair they’re making it work, which you have to give them credit for.”

#outage #crowdstrike #microsoft


Oh, Fatima. I bet you wish you'd stayed in ballet now, don't you.
#CrowdStrike


Oh nein, jetzt muss Linux wieder Windows helfen 🧐 #crowdstrike


I've posted (manual) recovery instructions for the CrowdStrike SNAFU: https://pomeroy.me/2024/07/crowdstrike-bricking-how-to-boot-into-windows/

#CrowdStrike #BSOD #recovery