City
Epaper

Microsoft outage: CrowdStrike explains what exactly went wrong

By IANS | Updated: July 20, 2024 11:50 IST

New Delhi, July 20 As millions of Windows computers were left crippled for hours, disrupting the services of ...

Open in App

New Delhi, July 20 As millions of Windows computers were left crippled for hours, disrupting the services of airlines, banks, hospitals and stock exchanges worldwide, cyber-security platform CrowdStrike on Saturday tried to explain what actually went wrong at their end.

According to the company which provides third-party security updates to the Satya Nadella-run tech giant, on July 19, at 9.30 a.m. (India time), it released a sensor configuration update to Windows systems.

Sensor configuration updates are an ongoing part of the protection mechanisms of the Falcon platform.

“This configuration update triggered a logic error resulting in a system crash and blue screen (BSOD) on impacted systems,” said CrowdStrike.

In a technical blog, the company said the sensor configuration update that caused the system crash was remediated at around 10.57 a.m.

“This issue is not the result of or related to a cyberattack,” it said.

Millions of customers running Falcon sensor for Windows version 7.11 and above that were online were impacted.

“Systems running Falcon sensor for Windows 7.11 and above that downloaded the updated configuration from 9.30 a.m. to 10.57 a.m. -- were susceptible to a system crash,” the company said.

According to it, this is not a new process and the architecture has been in place since Falcon’s inception.

The update that occurred at 9.30 a.m. was designed to target newly observed, malicious named pipes being used by common C2 frameworks in cyberattacks.

The configuration update triggered a logic error that resulted in an operating system crash.

“CrowdStrike has corrected the logic error by updating the content in Channel File 291. No additional changes to Channel File 291 beyond the updated logic will be deployed. Falcon is still evaluating and protecting against the abuse of named pipes,” the company explained.

Systems that are not currently impacted will continue to operate as expected, continue to provide protection, and have no risk of experiencing this event in the future.

“We understand how this issue occurred and we are doing a thorough root cause analysis to determine how this logic flaw occurred. This effort will be ongoing,” said CrowdStrike.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Open in App

Related Stories

InternationalPM Modi's visit to Ethiopia elevates bilateral ties to a 'Strategic Partnership'

International"Had this visit been in accordance with normal diplomatic process...": PM Modi on Ethiopia's "love and affection" that brought him to African nation within 24 days

EntertainmentOscars 2026: Neeraj Ghaywan's Homebound gets shortlisted for Best International Feature Film

EntertainmentAamir Khan says he would love to attend Kumbh Mela

FootballMessi thanks India for "warm welcome, great hospitality" following "GOAT India Tour" conclusion

Technology Realted Stories

TechnologyWorkers’ welfare has always been a focal point of Govt's initiatives: Minister

TechnologyIndia-made locomotives gain global traction as BLW sends 6th engine to Mozambique

TechnologyFSSAI orders nationwide enforcement drive to curb adulteration of milk, paneer and khoya

TechnologyApple clocks record exports growth in India in November

TechnologyReview of Eureka Forbes AP 355 Smart Purifier: Delhi's Saviour?