CrowdStrike Outage 19 July 2024

Started by deanwebb, July 19, 2024, 07:58:48 AM

Previous topic - Next topic

deanwebb

A gut-punch of a story. CrowdStrike pushes an update to its agent globally, wrecks tons of systems because it's broken.

Yes, I want security updates fast and furious to keep ahead of the baddies.

BUT

I also want my mission-critical servers in banks, airlines, and health care to not crash because of a security update.

 :-\
Take a baseball bat and trash all the routers, shout out "IT'S A NETWORK PROBLEM NOW, SUCKERS!" and then peel out of the parking lot in your Ferrari.
"The world could perish if people only worked on things that were easy to handle." -- Vladimir Savchenko
Вопросы есть? Вопросов нет! | BCEB: Belkin Certified Expert Baffler | "Plan B is Plan A with an element of panic." -- John Clarke
Accounting is architecture, remember that!
Air gaps are high-latency Internet connections.

Otanx

Yep, woke up to this. Glad we didn't get hit ourselves. Several of my wife's coworkers are supposed to be traveling today, but can't. The airline told them probably tomorrow... maybe. The only good thing was that for one of her coworkers they still had their hotel room because the hotel couldn't check them out when they left.

-Otanx

icecream-guy

#2
I always say cloud=bad, giving up security controls to a third party is bad bad bad, especially without an iron clad out. I BET there are going to be alot of law suits.  even today

Crowdstrike Holdings Inc - Class A
As of July 19, 2024 • 4:00 PM EDT
NASDAQ: CRWD
304.96 USD
-38.09(11.10%)

Time to buy some PUT options?


:professorcat:

My Moral Fibers have been cut.

deanwebb

All investment advice presented here is for entertainment purposes only. Do not consider seriously any investment advice from a source that has a smilie like this --> :smug:

I'm all for rapid updates and everything, but maybe just maybe somebody slows the roll by 30 mins and checks to see if the PC we have running in the dev lab survives a reboot after the new code is pushed. And this really is a lesson for *every* firm doing super-agile CI/CD pipeline.

Back in the 90s, we called super-agile CI/CD pipeline "updating production directly". It was a great way to get fired if one did stuff like that.
Take a baseball bat and trash all the routers, shout out "IT'S A NETWORK PROBLEM NOW, SUCKERS!" and then peel out of the parking lot in your Ferrari.
"The world could perish if people only worked on things that were easy to handle." -- Vladimir Savchenko
Вопросы есть? Вопросов нет! | BCEB: Belkin Certified Expert Baffler | "Plan B is Plan A with an element of panic." -- John Clarke
Accounting is architecture, remember that!
Air gaps are high-latency Internet connections.