New Delhi, July 20 (IANS) As millions of Windows computers were left crippled for hours, disrupting the services of airlines, banks, hospitals and stock exchanges worldwide, cyber-security platform CrowdStrike on Saturday tried to explain what actually went wrong at their end.
According to the company which provides third-party security updates to the Satya Nadella-run tech giant, on July 19, at 9.30 a.m. (India time), it released a sensor configuration update to Windows systems.
Sensor configuration updates are an ongoing part of the protection mechanisms of the Falcon platform.
“This configuration update triggered a logic error resulting in a system crash and blue screen (BSOD) on impacted systems,” said CrowdStrike.
In a technical blog, the company said the sensor configuration update that caused the system crash was remediated at around 10.57 a.m.
“This issue is not the result of or related to a cyberattack,” it said.
Millions of customers running Falcon sensor for Windows version 7.11 and above that were online were impacted.
“Systems running Falcon sensor for Windows 7.11 and above that downloaded the updated configuration from 9.30 a.m. to 10.57 a.m. — were susceptible to a system crash,” the company said.
According to it, this is not a new process and the architecture has been in place since Falcon’s inception.
The update that occurred at 9.30 a.m. was designed to target newly observed, malicious named pipes being used by common C2 frameworks in cyberattacks.
The configuration update triggered a logic error that resulted in an operating system crash.
“CrowdStrike has corrected the logic error by updating the content in Channel File 291. No additional changes to Channel File 291 beyond the updated logic will be deployed. Falcon is still evaluating and protecting against the abuse of named pipes,” the company explained.
Systems that are not currently impacted will continue to operate as expected, continue to provide protection, and have no risk of experiencing this event in the future.
“We understand how this issue occurred and we are doing a thorough root cause analysis to determine how this logic flaw occurred. This effort will be ongoing,” said CrowdStrike.
–IANS
na/uk
Disclaimer
The information contained in this website is for general information purposes only. The information is provided by TodayIndia.news and while we endeavour to keep the information up to date and correct, we make no representations or warranties of any kind, express or implied, about the completeness, accuracy, reliability, suitability or availability with respect to the website or the information, products, services, or related graphics contained on the website for any purpose. Any reliance you place on such information is therefore strictly at your own risk.
In no event will we be liable for any loss or damage including without limitation, indirect or consequential loss or damage, or any loss or damage whatsoever arising from loss of data or profits arising out of, or in connection with, the use of this website.
Through this website you are able to link to other websites which are not under the control of TodayIndia.news We have no control over the nature, content and availability of those sites. The inclusion of any links does not necessarily imply a recommendation or endorse the views expressed within them.
Every effort is made to keep the website up and running smoothly. However, TodayIndia.news takes no responsibility for, and will not be liable for, the website being temporarily unavailable due to technical issues beyond our control.
For any legal details or query please visit original source link given with news or click on Go to Source.
Our translation service aims to offer the most accurate translation possible and we rarely experience any issues with news post. However, as the translation is carried out by third part tool there is a possibility for error to cause the occasional inaccuracy. We therefore require you to accept this disclaimer before confirming any translation news with us.
If you are not willing to accept this disclaimer then we recommend reading news post in its original language.