MadeDaily Logo

TECH NEWS

The CrowdStrike Outage: How a Malformed Update Crippled the Internet

Blue fiber cables
[Image: JJ Ying]

In recent months, one of the most significant internet outages was linked to CrowdStrike, a leading endpoint security software provider. CrowdStrike helps large organizations safeguard their systems by monitoring suspicious software, network connections, and memory activity to prevent attacks like ransomware. However, a faulty update from CrowdStrike, combined with a Windows change, resulted in a widespread system crash.

 

The issue arose due to a mismatch in input fields between CrowdStrike’s driver and Windows, causing systems to crash repeatedly with the infamous blue screen of death. Thousands of large companies were affected, and because these crashes couldn’t be resolved remotely, IT teams had to manually address each machine. The situation was made worse by BitLocker encryption, which required proper key management for recovery. This outage not only caused billions in losses but also disrupted critical infrastructure, including 911 systems and hospitals.

 

This incident highlights the importance of thorough testing between software and operating systems, as well as the risks organizations face when relying heavily on third-party security providers.

 

FEATURED IN PODCAST EPISODE 02