¿Por qué se han caído los servicios de medio mundo tras un fallo de Crowdstrike?

Why have half the world's services fallen after a Crowdstrike failure?

Juan Antonio Calles

Today, July 19, 2024, many companies globally have encountered the well-known "Blue Screen of Death" (BSOD) in their systems. This failure has forced many companies to interrupt their services due to the inoperability of numerous equipment (both workstations and servers), including, for example, organizations such as Aena or Vocento. The issue has been attributed to a service issue with the popular cybersecurity software, CrowdStrike.

As confirmed by CrowdStrike, the massive BSOD on Windows is due to an update to the Falcon sensor, specifically the one used to load the csagent.sys agent. Numerous Blue Screen of Death (BSOD) errors have been reported on Windows hosts on X, which appear to be associated with various versions of CrowdStrike sensors. It seems that there are several workarounds to solve the problem, although Crowdstrike itself has had to backtrack with this update.

https://x.com/troyhunt/status/1814174010202345761

https://x.com/troyhunt/status/1814174010202345761

CrowdStrike's Falcon sensor is an advanced cybersecurity solution that protects systems from threats and attacks. It uses artificial intelligence and cloud analytics to detect and prevent malware, ransomware, and other malicious activity in real time. 

Some of the solutions or workarounds that have been offered are based directly on entering the host in safe mode and eliminating the agent itself manually. Although we will really have to wait for Crowdstrike to provide a definitive solution to the problem for it to be definitively solved.

https://x.com/mike_d_ok/status/1814187157562810388


Author: Alberto Espada, cybersecurity analyst at Zerolynx .
return to blog

Leave a comment

Please note that comments must be approved before they are published.