keneci
News • Science & Tech • Comedy
CrowdStrike, Microsoft Release Preliminary Reports Following Disruptive Buggy Software Update That Affected Windows Computers Worldwide
July 29, 2024
post photo preview

Following the cybersecurity company's July 19 software update debacle which affected Windows computers worldwide, and the ensuing disruptions, CrowdStrike has released a Preliminary Post Incident Review(PIR) on the Content Configuration Update Impacting the Falcon Sensor and the Windows Operating System (BSOD). This will be more detailed in the company's full investigation in the forthcoming Root Cause Analysis that will be released publicly, according to CrowdStrike.

"On Friday, July 19, 2024 at 04:09 UTC, as part of regular operations, CrowdStrike released a content configuration update for the Windows sensor to gather telemetry on possible novel threat techniques," the company wrote in the preliminary review. "These updates are a regular part of the dynamic protection mechanisms of the Falcon platform. The problematic Rapid Response Content configuration update resulted in a Windows system crash. Systems in scope include Windows hosts running sensor version 7.11 and above that were online between Friday, July 19, 2024 04:09 UTC and Friday, July 19, 2024 05:27 UTC and received the update. Mac and Linux hosts were not impacted. The defect in the content update was reverted on Friday, July 19, 2024 at 05:27 UTC. Systems coming online after this time, or that did not connect during the window, were not impacted."

As to what Went wrong and why? The company writes: "CrowdStrike delivers security content configuration updates to our sensors in two ways: Sensor Content that is shipped with our sensor directly, and Rapid Response Content that is designed to respond to the changing threat landscape at operational speed. The issue on Friday involved a Rapid Response Content update with an undetected error."

The report continues:

"Sensor Content provides a wide range of capabilities to assist in adversary response. It is always part of a sensor release and not dynamically updated from the cloud. Sensor Content includes on-sensor AI and machine learning models, and comprises code written expressly to deliver longer-term, reusable capabilities for CrowdStrike’s threat detection engineers.

"These capabilities include Template Types, which have pre-defined fields for threat detection engineers to leverage in Rapid Response Content. Template Types are expressed in code. All Sensor Content, including Template Types, go through an extensive QA process, which includes automated testing, manual testing, validation and rollout steps.

"The sensor release process begins with automated testing, both prior to and after merging into our code base. This includes unit testing, integration testing, performance testing and stress testing. This culminates in a staged sensor rollout process that starts with dogfooding internally at CrowdStrike, followed by early adopters. It is then made generally available to customers. Customers then have the option of selecting which parts of their fleet should install the latest sensor release (‘N’), or one version older (‘N-1’) or two versions older (‘N-2’) through Sensor Update Policies.

"The event of Friday, July 19, 2024 was not triggered by Sensor Content, which is only delivered with the release of an updated Falcon sensor. Customers have complete control over the deployment of the sensor -- which includes Sensor Content and Template Types."

Microsoft in a blog post, also examined the CrowdStrike outage and provided a technical overview of the root cause.

The computing giant explains why security products use kernel-mode drivers today and the safety measures Windows provides for third-party solutions. And shares how customers and security vendors can better leverage the integrated security capabilities of Windows for increased security and reliability. Microsoft also provides a look into how Windows will enhance extensibility for future security products.

Microsoft also confirms CrowdStrike’s analysis that this was a read-out-of-bounds memory safety error in the cybersecurity developed CSagent.sys driver.


CrowdStrike Software Bug Causes Global IT Outage, Disruptions In Aviation, Other Sectors

A software update from a United States cybersecurity firm CrowdStrike on Friday(July 19), caused a widespread IT outage and 'blue screens of death,' affecting millions of Microsoft Windows devices worldwide. The incident resulted in significant disruptions to various industries, including aviation.

Hundreds of flights were canceled or delayed globally, with Delta Air Lines being particularly affected. The outage impacted airport systems, including baggage handling and security screening, causing long lines and congestion at the airports, as passengers were unable to check in or access flight information.

Many Fortune 500 companies, including airlines, are estimated to have lost up to $5.4 billion in revenues and gross profit due to the outage. The health care and banking sectors were also severely affected, with estimated losses of $1.94 billion and $1.15 billion, respectively.

In the United Kingdom, some hospitals experienced issues with electronic patient records and medical equipment. Flights were canceled or delayed, with British Airways and EasyJet among the airlines affected. Firms relying on CrowdStrike’s cybersecurity services, such as security monitoring and incident response, were also affected. Ambulance and fire services faced difficulties with communication and dispatch systems.

Also impacted in the the UK, are thousands of businesses and organizations using Microsoft products, such as Windows and Office. Amazon Web Services (AWS) users also experienced issues with their cloud services.

The cybersecurity firm has since released a software update to fix the bug.

CrowdStrike CEO George Kurtz faced backlash for his initial response on X, to the debacle. “CrowdStrike is actively working with customers impacted by a defect found in a single content update for Windows hosts,” Kurtz wrote Friday. “Mac and Linux hosts are not impacted. This is not a security incident or cyberattack. The issue has been identified, isolated and a fix has been deployed.”

Kurtz initially struggled to provide a timeline for when systems would be restored, leaving customers and regulators in the dark. His response was criticized for being too technical and lacking a personal touch.

Lulu Meservey, chief executive of public relations company Rostra, posted a scathing critique of the statement on social media platform X earning over 15,000 likes as she lambasted Kurtz for using “weapons-grade corpo speak.”

“Let’s be clear. Legalese doublespeak is designed to dodge and obfuscate rather than inform or communicate,” said Meservey. “This statement was obviously written by a committee of lawyers and middle managers whose only goal was to avoid legal risk and threats to their own job security. If you can’t understand what the statement is even saying, it’s working as intended.”

She criticised Kurtz for adopting a “passive voice” and described the statement as “almost comical in its efforts to dodge assigning responsibility,” before pointing out a lack of an apology.

“The first words should be ‘I’m sorry,’” she said. “This outage knocked out 911 call centres and hospitals. People literally might have died. And the company’s CEO is out here playing it down as if it’s not a big deal.”

To make matters worse, CrowdStrike offered a $10 UberEats voucher as a token of apology to its staff and partners. This gesture was widely panned as insufficient and insensitive, particularly given the significant financial losses incurred by affected businesses, estimated to be around $5.4 billion.

Kurtz, in a statement on the company’s website late on Friday afternoon, apologized once again for the outage and said that CrowdStrike was working to help restore systems.

“Nothing is more important to me than the trust and confidence that our customers and partners have put into CrowdStrike,” Kurtz said. “As we resolve this incident, you have my commitment to provide full transparency on how this occurred and steps we’re taking to prevent anything like this from happening again.”

The CEO told NBC’s Today Show in the US that the problem was down to a bug in a single update. “We identified this very quickly and remediated the issue,” he said, adding that CrowdStrike was now “working with each and every customer to make sure that we can bring them back online.”

Kurtz said there had been a “negative interaction” between the update and Microsoft’s operating system, which had then caused computers to crash, sparking the global outage, which remains ongoing.

Asked how one faulty update could cause such global chaos, he said: “We have to go back and see what happened here, our systems are always looking for the latest attacks from adversaries that that are out there.”

He reiterated that there was no possibility it was a cyber-attack. However, although the problem had been identified and a fix issued, Kurtz said “it could be some time for some systems” to return to normal, stressing that they would not “just automatically recover.”

Authorities in the UK and the US Department of Transportation are investigating the incident, and airlines are reviewing their contingency plans to mitigate the impact of future outages. Kurtz is due to testify in a US congressional hearing.

 

community logo
Join the keneci Community
To read more articles like this, sign up and join my community today
0
What else you may like…
Videos
Posts
Articles
SpaceX Starlink Internet Satellites

With Starlink internet, data is continuously being sent between a ground dish and a Starlink satellite orbiting 550km above. Furthermore, the Starlink satellite zooms across the sky at 27,000 km/hr! MORE VIDEOS ON KENECI NETWORK RUMBLE CHANNEL: https://rumble.com/c/Keneci

00:28:08
Elon Musk, DOGE Speak On Waste And Fraud

US Department of Government Efficiency Services (USDS) led by Elon Musk speak on the "mind-boggling" fraud and waste in UInited States federal government

00:00:45
January 17, 2025
SpaceX Launches Starship 7th Test Flight

SpaceX successfully executed its second-ever “chopsticks” catch of a Super Heavy booster (or Booster 14) using the “Mechazilla” launch tower on Thursday(Jan. 16), during the seventh uncrewed test flight of the company's 123-meter Starship rocket. However, the megarocket's upper stage(or Ship 33) was lost approximately 8.5 minutes into the flight in a “rapid unscheduled disassembly(RUD)” or explosion

00:10:30
Welcome to Keneci Network!

Join the conversations!

December 09, 2025
Bitcoin White Paper By Satoshi Nakamoto

Bitcoin white paper

Bitcoin_White_Paper.pdf
September 17, 2024
Charges Against Sean 'Diddy' Combs In Grand Jury Indictment

The rapper was charged with racketeering conspiracy, sex trafficking by force, fraud or coercion, and transportation to engage in prostitution in the indictment unsealed Tuesday(Sept. 17)

Combs-Indictment-24-Cr.-542.pdf
post photo preview
U.S. Bars EU Censorship Officials From Entering The Country

The U.S. State Department, under Secretary of State Marco Rubio, has imposed visa restrictions barring five Europeans from entering the United States, accusing them of leading efforts to pressure American tech firms to censor or suppress American viewpoints online.

The move announced Tuesday, is part of a broader President Trump administration campaign against foreign influence over online speech, using immigration law rather than platform regulations or sanctions.

The targeted individuals include former European Union Commissioner Thierry Breton, leaders of German anti-hate group HateAid, and heads of organizations focused on so-called disinformation and digital hate

Breton, former EU Commissioner for Digital Affairs, was sanctioned for his role in enforcing the EU’s Digital Services Act (DSA), which has clashed with tech companies like Elon Musk’s X. He previously sent a letter to Musk demanding compliance with the DSA ahead of a Trump interview.

Imran Ahmed, CEO of the Centre for Countering Digital Hate, was targeted for his organization’s 2022 “Disinformation Dozen” report, which highlighted anti-vaccine figures including Robert F. Kennedy Jr.

Clare Melford, CEO of the Global Disinformation Index, was sanctioned for allegedly using U.S. taxpayer funds to advocate for censorship and blacklisting of American speech.

Josephine Ballon and Anna-Lena von Hodenberg, leaders of HateAid, were sanctioned for their ostensible work combating so-called online hate and disinformation, with the group calling the U.S. actions an “authoritarian attack on free speech.”

The State Department cited these individuals as part of a “global censorship-industrial complex” that advances foreign government censorship campaigns targeting American speakers and companies.

The sanctions are based on a visa policy announced in May 2025 that restricts entry for foreigners deemed responsible for censorship of protected speech in the U.S. The Department of Homeland Security may initiate removal proceedings against those already in the country.

The move follows a broader trend of U.S. officials, including Vice President JD Vance, criticizing European nations for censorship, particularly over content related to the Covid-19 lab leak theory and other political topics.

The EU has not yet responded publicly to the sanctions, but European officials have expressed concern over the U.S. actions undermining European sovereignty.

The U.S. has also previously targeted visitors from certain African and Middle Eastern countries and the Palestinian Authority with similar visa restrictions.

Read full Article
December 23, 2025
post photo preview
Spotify Music Library Scraped, Released Online By Activist Pirate Group: 86M Files

A pirate activist group known as Anna’s Archive has claimed to have scraped and begun releasing a massive archive of Spotify’s music catalog, asserting it has backed up nearly all of the platform’s most popular tracks. As of Tuesday. Spotify has confirmed the breach.

Anna’s Archive claims to have scraped 86 million audio files from Spotify, representing approximately 99.6% of total listens on the platform, with the entire archive totaling around 300 terabytes in size.

The archive includes metadata for 256 million tracks—covering an estimated 99.9% of Spotify’s catalog—already released via torrent, with the actual music files planned for future release in order of popularity. The group has also indicated that individual file downloads may be added if there is sufficient demand.

The group states this constitutes the “world’s first preservation archive” for music, prioritizing tracks by popularity and aiming to protect humanity’s musical heritage from potential loss due to disasters or corporate decisions.

The full release of the music torrents are expected to in the coming days, organized by popularity and quality—160 kbit/s for popular tracks and 75 kbit/s for less popular ones to conserve space.

Spotify has confirmed the incident and stated that it has identified and disabled the user accounts involved in the unlawful scraping. The company emphasized its ongoing commitment to protecting artists and rights holders, noting it has implemented new safeguards against such anti-copyright attacks, and is actively monitoring for suspicious behavior.

Anna’s Archive, known for its shadow library of books and academic papers, frames the action as a preservation effort rather than pure piracy, arguing that existing digital archives are overly focused on popular content and high-quality files. The group acknowledges that Spotify does not contain all music ever produced but considers it a strong starting point.

AAzXCkfWc740EhWPlYCMNUZkGJP8PAD5DrEtONI1CfVGSXmgrEn2PR7fWdNTJrth7VKqH4i-ejSTRQ0FJERrH45Gwm2TR75ygt8uakl5zWQIq8dqCWZI2KuIpqaHuA8_i1oCdS8bsYVdOQWBABQirIwGO8-WG5h3k8apU2AAj63qqbgnXOZzUlTfBnf4D-WUvP3wNk-BlA410fjnn4f0gG8l4FGCPq5uu-E5eKNV=w1280
AAzXCkdoVIcnt0jcwVHxWv3dw8Sp_fn6sfxMtHBfOEaEK8KzaxMVRK6mhEyWdj1ghDiUU502g4Dhl2DNxwUa9h4Pbfm7_xaFOWF8xNaS-RWumg4pTBKZ0KpotNVNeLlqgnE9fzO5dts3_VKjpFr8SiIcArtGQVpM8eLCiNCx5EKTH3Mk0_kiC6v1D44tn1aBRscN4IarcFPVMxwdm7Z3OEX8V7Oztl6TFivNS-fKn68=w1280

The breach raises concerns about the potential use of the 300TB dataset to train AI models without consent, a growing ethical and legal issue in the tech industry. The group’s actions also highlight vulnerabilities in how public metadata and DRM can be exploited to access copyrighted content at scale.

Read full Article
December 23, 2025
post photo preview
China Builds EUV Prototype Machine To Challenge Western Advanced Chipmaking Dominance

China has completed a prototype extreme ultraviolet (EUV) lithography machine in a high-security Shenzhen laboratory, marking a major milestone in its drive for semiconductor independence through a state-led 'Manhattan Project-style' initiative.

The machine, operational since early 2025 and now undergoing testing, was built by a team of former ASML(Advanced Semiconductor Materials Lithography) Holding engineers like Lin Nan, who filed key patents. They reverse-engineered the Dutch company’s technology, using parts from older ASML systems and secondary markets to circumvent Western export controls.

While the prototype successfully generates EUV light, it has not yet produced functional chips, with analysts estimating a realistic timeline for working chip production between 2030 and 2035, despite an official government target of 2028.

The project, launched as a six-year national effort under President Xi Jinping’s strategic priorities, is coordinated by Huawei and overseen by Ding Xuexiang, a close confidant of Xi and head of the Central Science and Technology Commission.

Former ASML engineers were recruited with substantial incentives, including signing bonuses of up to $700,000, and worked under aliases with false identification cards to maintain secrecy.

The prototype occupies nearly an entire factory floor and is operated within a highly isolated, secure compound where staff often sleep on-site, with strict communication restrictions and surveillance.

Despite ASML CEO Christophe Fouquet’s public statements in 2024 and 2025 that China would need "many, many years" to develop EUV capability, the existence of the prototype suggests Beijing’s timeline may be accelerating significantly.

While the Chinese machine’s light generation is confirmed, major technical hurdles remain, particularly in replicating the precision optical systems—such as specialized mirrors from Germany’s Zeiss—that are critical for high-volume, reliable chip manufacturing.

The breakthrough challenges long-standing U.S.-led export controls that have barred China from acquiring advanced EUV systems since 2018, with the Biden administration expanding restrictions in 2022.

The ultimate goal, as stated by sources, is to produce advanced chips on entirely China-made machines and to fully remove U.S. influence from its semiconductor supply chains.

Advanced chip manufacturing machine generates extreme ultraviolet light to etch tiny circuits for AI, smartphones, and military systems—tech once monopolized by ASML

Read full Article
See More
Available on mobile and TV devices
google store google store app store app store
google store google store app tv store app tv store amazon store amazon store roku store roku store
Powered by Locals