HomeCII/OTMicrosoft Underestimates CrowdStrike Outage Impact

Microsoft Underestimates CrowdStrike Outage Impact

Published on

spot_img

Microsoft has revised its initial estimate of machines affected by the CrowdStrike Falcon outage, stating that the original figure of 8.5 million was too conservative. The tech giant also pledged to address underlying security issues by reducing the reliance on kernel drivers, which played a critical role in the outage.

In a recent blog post, David Weston, Microsoft’s vice president of enterprise and OS security, disclosed that the company gathered data on the impact of the incident by analyzing crash reports voluntarily submitted by customers. While the 8.5 million estimate was based on a subset of reported cases, Weston emphasized that the actual number of affected devices could be significantly higher.

Weston highlighted the importance of kernel drivers, such as those utilized by CrowdStrike, in enhancing system performance and thwarting potential security threats. However, he acknowledged that the use of kernel mode should be carefully weighed against the inherent risks, considering its privileged access to critical system functions.

“Security vendors need to strike a delicate balance between the benefits of kernel-level access, such as improved visibility and tamper resistance, and the security implications of operating within the kernel environment,” Weston stated in his blog post. By finding this equilibrium, organizations can reduce their reliance on kernel drivers while upholding robust security protocols.

The CrowdStrike Falcon outage served as a wake-up call for the cybersecurity industry, prompting companies like Microsoft to reevaluate their security strategies and strengthen their defenses against potential threats. Weston’s remarks underscored the need for a proactive approach to security, emphasizing the importance of mitigating risks associated with kernel-level access.

Moving forward, Microsoft plans to work closely with security vendors to develop alternative solutions that minimize the reliance on kernel drivers without compromising system security. By adopting best practices and implementing effective security measures, organizations can enhance their overall security posture and reduce the likelihood of similar incidents in the future.

The aftermath of the CrowdStrike Falcon outage has reignited discussions surrounding cybersecurity practices and highlighted the critical role of kernel drivers in system security. As companies strive to adapt to evolving cyber threats, collaboration between industry stakeholders and a collective focus on security best practices will be essential in safeguarding digital infrastructures against potential vulnerabilities.

Source link

Latest articles

MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors

 The Iranian threat actor known as MuddyWater has been attributed to a spear-phishing campaign targeting...

Meta denies viral claims about data breach affecting 17.5 million Instagram users, but change your password anyway

 Millions of Instagram users panicked over sudden password reset emails and claims that...

E-commerce platform breach exposes nearly 34 million customers’ data

 South Korea's largest online retailer, Coupang, has apologised for a massive data breach...

Fortinet Warns of Active Exploitation of FortiOS SSL VPN 2FA Bypass Vulnerability

 Fortinet on Wednesday said it observed "recent abuse" of a five-year-old security flaw in FortiOS...

More like this

MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors

 The Iranian threat actor known as MuddyWater has been attributed to a spear-phishing campaign targeting...

Meta denies viral claims about data breach affecting 17.5 million Instagram users, but change your password anyway

 Millions of Instagram users panicked over sudden password reset emails and claims that...

E-commerce platform breach exposes nearly 34 million customers’ data

 South Korea's largest online retailer, Coupang, has apologised for a massive data breach...