<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CrowdStrike &#8211; The Redmond Cloud</title>
	<atom:link href="https://www.theredmondcloud.com/tag/crowdstrike/feed" rel="self" type="application/rss+xml" />
	<link>https://www.theredmondcloud.com</link>
	<description>Windows News and Tech Updates</description>
	<lastBuildDate>Wed, 24 Jul 2024 17:15:29 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.1</generator>

<image>
	<url>https://www.theredmondcloud.com/wp-content/uploads/2019/12/cropped-TheRedmondCloudLogo-AMP-Logo-32x32.png</url>
	<title>CrowdStrike &#8211; The Redmond Cloud</title>
	<link>https://www.theredmondcloud.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Crowdstrike Outage: Unveiling the Lessons for Microsoft</title>
		<link>https://www.theredmondcloud.com/crowdstrike-outage-unveiling-the-lessons-for-microsoft</link>
					<comments>https://www.theredmondcloud.com/crowdstrike-outage-unveiling-the-lessons-for-microsoft#disqus_thread</comments>
		
		<dc:creator><![CDATA[Mike Johnson]]></dc:creator>
		<pubDate>Tue, 23 Jul 2024 17:31:15 +0000</pubDate>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[CrowdStrike]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[Digital Transformation]]></category>
		<category><![CDATA[IT infrastructure]]></category>
		<category><![CDATA[network security]]></category>
		<category><![CDATA[resilience]]></category>
		<category><![CDATA[TECHNOLOGY]]></category>
		<guid isPermaLink="false">https://www.theredmondcloud.com/?p=200971</guid>

					<description><![CDATA[The Crowdstrike outage exposes critical vulnerabilities and challenges, offering Microsoft valuable insights into cybersecurity resilience and strategic imperatives.]]></description>
										<content:encoded><![CDATA[<h2>Crowdstrike Outage: Unveiling the Lessons for Microsoft</h2>
<p>The recent <a href="https://www.theredmondcloud.com/global-bsod-crisis-crowdstrike-update-knocks-out-windows-systems-across-industries/" target="_blank" rel="noopener">Crowdstrike outage</a> sent ripples through the cybersecurity community, highlighting the fragility of even the most robust systems.</p>
<p>As a major player in the cybersecurity industry, Crowdstrike&#8217;s disruption was more than just a hiccup; it was a stark reminder of the vulnerabilities inherent in our interconnected digital ecosystem.</p>
<p>But beyond the immediate chaos and the scramble to restore services, this incident offers profound lessons for Microsoft and other tech giants striving to fortify their defenses against an ever-evolving threat landscape.</p>
<h3>The Immediate Impact</h3>
<p>The Crowdstrike outage disrupted services for countless organizations relying on its advanced threat intelligence and endpoint protection solutions. Businesses found themselves vulnerable, scrambling to implement contingency plans and mitigate risks.</p>
<p>The immediate impact was significant, but the ripple effects extended beyond the initial downtime.</p>
<p>The incident was a wake-up call for Microsoft, a company deeply embedded in the fabric of global IT infrastructure. Despite its extensive resources and advanced security measures, no system is impervious to failure. The Crowdstrike outage underscored the importance of resilience and adaptability in facing unforeseen challenges.</p>
<h3>The Role of Redundancy</h3>
<p>One of the primary takeaways from the Crowdstrike outage is the critical role of redundancy in cybersecurity infrastructure. With its vast array of cloud services and enterprise solutions, Microsoft must prioritize building and maintaining redundant systems to ensure continuity of service. This includes:</p>
<ul>
<li><strong>Data Replication</strong>: Ensuring data is replicated across multiple, geographically dispersed locations to prevent loss during an outage.</li>
<li><strong>Failover Mechanisms</strong>: Implementing automatic failover mechanisms that seamlessly switch operations to backup systems in case of primary system failure.</li>
<li><strong>Diverse Network Paths</strong>: Creating diverse network paths to prevent a single point of failure from disrupting service.</li>
</ul>
<h3>Enhancing Incident Response</h3>
<p>The speed and effectiveness of an organization&#8217;s incident response can significantly mitigate the impact of a cybersecurity event. For Microsoft, this means:</p>
<ul>
<li><strong>Comprehensive Training</strong>: Regularly training staff on the latest incident response protocols and best practices.</li>
<li><strong>Simulated Drills</strong>: Conducting simulated cybersecurity drills to test and refine response strategies.</li>
<li><strong>Collaboration with Experts</strong>: Collaborating with cybersecurity experts and partners to stay ahead of emerging threats and response techniques.</li>
</ul>
<h3>The Importance of Transparency</h3>
<p>During the Crowdstrike outage, the company&#8217;s commitment to transparency was crucial in managing customer expectations and maintaining trust. Microsoft can learn from this approach by:</p>
<ul>
<li><strong>Clear Communication</strong>: Ensuring clear and timely communication with customers during incidents, providing regular updates on the status and resolution efforts.</li>
<li><strong>Detailed Post-Mortems</strong>: Conduct detailed post-mortem analyses of incidents and share findings with customers to demonstrate accountability and continuous improvement.</li>
<li><strong>Customer Support</strong>: Offering robust customer support to address concerns and provide assistance during and after incidents.</li>
</ul>
<h3>Leveraging AI and Machine Learning</h3>
<p>Crowdstrike&#8217;s reliance on advanced threat intelligence highlights the growing importance of AI and machine learning in cybersecurity. Microsoft, already a leader in AI innovation, can further enhance its cybersecurity efforts by:</p>
<ul>
<li><strong>Predictive Analytics</strong>: Utilizing AI to predict and identify potential threats before they manifest.</li>
<li><strong>Automated Response</strong>: Implementing AI-driven automated response systems that can quickly neutralize threats without human intervention.</li>
<li><strong>Continuous Learning</strong>: Ensuring that AI systems continuously learn and adapt to new threat vectors and attack patterns.</li>
</ul>
<h3>Strategic Partnerships</h3>
<p>The interconnected nature of the digital ecosystem means that no company can operate in isolation. Strategic partnerships are essential for enhancing cybersecurity resilience. Microsoft should:</p>
<ul>
<li><strong>Collaborate with Industry Peers</strong>: Work collaboratively with other tech giants and cybersecurity firms to share intelligence and develop unified defense strategies.</li>
<li><strong>Public-Private Partnerships</strong>: Work closely with government agencies and public sector organizations to bolster national and global cybersecurity efforts.</li>
<li><strong>Open Source Initiatives</strong>: Support and contribute to open source cybersecurity initiatives that promote innovation and collective defense.</li>
</ul>
<h3>The Human Element</h3>
<p>While technology plays a pivotal role in cybersecurity, the human element remains crucial. Microsoft must focus on:</p>
<ul>
<li><strong>Employee Awareness</strong>: Enhancing employee awareness and training to recognize and respond to cybersecurity threats.</li>
<li><strong>Expert Recruitment</strong>: Recruiting top cybersecurity talent to lead and innovate within the organization.</li>
<li><strong>Cultural Shift</strong>: Fostering a culture of cybersecurity awareness and vigilance across all levels of the organization.</li>
</ul>
<h3>Future-Proofing Security</h3>
<p>The Crowdstrike outage is a stark reminder that cybersecurity is a constantly evolving field. Microsoft must remain proactive in future-proofing its security measures by:</p>
<ul>
<li><strong>Regular Audits</strong>: Conducting regular security audits to identify and address vulnerabilities.</li>
<li><strong>Adopting New Technologies</strong>: Staying at the forefront of technological advancements in cybersecurity.</li>
<li><strong>Long-Term Planning</strong>: Developing long-term security strategies that anticipate and mitigate future threats.</li>
</ul>
<h3>Conclusion</h3>
<p>The Crowdstrike outage was more than a temporary disruption; it was a critical learning opportunity for the entire tech industry, particularly for giants like Microsoft. Microsoft can strengthen its cybersecurity posture and ensure greater resilience in future challenges by focusing on redundancy, enhancing incident response, leveraging AI, fostering strategic partnerships, and emphasizing the human element.</p>
<p>Ultimately, the lessons learned from Crowdstrike&#8217;s experience underscore the importance of continuous improvement and adaptation in cybersecurity. As threats evolve, so must our defenses, driven by innovation, collaboration, and an unwavering commitment to protecting the digital world.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://www.theredmondcloud.com/crowdstrike-outage-unveiling-the-lessons-for-microsoft/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Microsoft&#8217;s Response to CrowdStrike Bug &#8211; Recovery Guide</title>
		<link>https://www.theredmondcloud.com/microsofts-response-to-crowdstrike-bug-a-comprehensive-recovery-guide</link>
					<comments>https://www.theredmondcloud.com/microsofts-response-to-crowdstrike-bug-a-comprehensive-recovery-guide#disqus_thread</comments>
		
		<dc:creator><![CDATA[Mike Johnson]]></dc:creator>
		<pubDate>Mon, 22 Jul 2024 13:59:25 +0000</pubDate>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Problems]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Bitlocker]]></category>
		<category><![CDATA[BSOD]]></category>
		<category><![CDATA[CrowdStrike]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[Falcon Sensor]]></category>
		<category><![CDATA[IT recovery]]></category>
		<category><![CDATA[network outage]]></category>
		<category><![CDATA[Safe Mode]]></category>
		<category><![CDATA[WinPE]]></category>
		<guid isPermaLink="false">https://www.theredmondcloud.com/?p=200924</guid>

					<description><![CDATA[Explore Microsoft's recovery tools tackling the global CrowdStrike bug crisis affecting millions of PCs across various industries.]]></description>
										<content:encoded><![CDATA[<p>IT admins and PC users are still reeling from one of the biggest network outages in history.</p>
<p>Dubbed the &#8220;digital pandemic&#8221; by some, a CrowdStrike bug triggered the infamous Blue Screen of Death (BSoD) on millions of systems worldwide. The impact was widespread, hitting airlines, banks, emergency services, and TV stations.</p>
<p>Despite the situation, it&#8217;s important to clarify that Microsoft is not to blame. The culprit here is a faulty driver update pushed out by cybersecurity company CrowdStrike, which caused PCs everywhere to crash. While CrowdStrike is at fault, Microsoft has been proactive, rolling out tools to help fix the affected systems.</p>
<p>Last week, Microsoft <a href="https://support.microsoft.com/en-us/topic/kb5042421-crowdstrike-issue-impacting-windows-endpoints-causing-an-0x50-or-0x7e-error-message-on-a-blue-screen-b1c700e0-7317-4e95-aeee-5d67dd35b92f" target="_blank" rel="noopener">released a USB Recovery Tool</a> to tackle the CrowdStrike bug.</p>
<p>This tool aims to speed up the repair process, allowing IT admins to restore PCs to a pre-bug state. It offers two recovery options: WinPE and safe mode. Microsoft recommends using WinPE, though there are scenarios where the safe mode option is more appropriate, particularly if BitLocker is enabled.</p>
<p>The recovery key isn&#8217;t available (admin rights are needed).</p>
<p>A new Tech Community post from Microsoft details these options and their respective pros and cons:</p>
<h2>Recover from WinPE (Recommended)</h2>
<ul>
<li>Quickly and directly recovers systems.</li>
<li>Does not require local admin privileges.</li>
<li>Manually entering the BitLocker recovery key may be required if BitLocker is enabled.</li>
<li>For third-party disk encryption, refer to vendor guidelines for recovering the drive so that the remediation script can run from WinPE.</li>
</ul>
<h2>Recover from Safe Mode</h2>
<ul>
<li>It may allow recovery on BitLocker-enabled devices without entering recovery keys.</li>
<li>Requires access to an account with local administrator rights.</li>
<li>Suitable for devices using TPM-only protectors, unencrypted devices, or where the BitLocker recovery key is unknown.</li>
<li>If using TPM+PIN BitLocker protectors, the user must enter the PIN or use the recovery key.</li>
<li>If BitLocker is not enabled, just sign in with an admin account.</li>
<li>For third-party disk encryption, consult vendors to recover the drive for the remediation script to run.</li>
</ul>
<p>Microsoft also notes that while the USB tool is preferred, some devices can&#8217;t use USB connections. In such cases, a Preboot Execution Environment (PXE) option or reimaging the device might be necessary.</p>
<p>We’ll update our guide on fixing the CrowdStrike Blue Screen error on Windows 11 soon, incorporating these new methods. You can also check out Microsoft&#8217;s detailed breakdown of the process.</p>
<h3>What is the CrowdStrike Outage?</h3>
<p>Chances are, you’ve been impacted by the CrowdStrike outage somehow.</p>
<p>A vast number of companies and organizations have experienced PC crashes, and repairs are still ongoing. Even if you weren’t directly affected, the incident has been a hot topic outside tech circles.</p>
<p>Over the weekend, I overheard people at American football practices discussing the &#8220;Microsoft outage.&#8221; Friends and colleagues have reported similar conversations in hospitals, restaurants, and casual settings.</p>
<p>CrowdStrike is a cybersecurity company specializing in Internet security. Their Falcon platform provides real-time attack indicators and helps security experts protect systems. Unfortunately, a buggy update to the Falcon Sensor app wreaked havoc, affecting many organizations.</p>
<p>The fallout grounded planes, forcing some airports to issue handwritten boarding passes. Banks, emergency services, and millions of PCs were hit hard.</p>
<p>While some viewed the downtime as a welcome break, the CrowdStrike outage caused significant disruption across multiple industries. Ironically, CrowdStrike&#8217;s stock plummeted, but many could not capitalize on the dip due to the bug affecting trading services.</p>
<p>Although a fix is now available, the repercussions of the CrowdStrike outage will be felt for a while as IT admins work tirelessly to recover and repair affected systems.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://www.theredmondcloud.com/microsofts-response-to-crowdstrike-bug-a-comprehensive-recovery-guide/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Global BSOD Crisis: CrowdStrike Update Knocks Out Windows Systems Across Industries</title>
		<link>https://www.theredmondcloud.com/global-bsod-crisis-crowdstrike-update-knocks-out-windows-systems-across-industries</link>
					<comments>https://www.theredmondcloud.com/global-bsod-crisis-crowdstrike-update-knocks-out-windows-systems-across-industries#disqus_thread</comments>
		
		<dc:creator><![CDATA[Mike Johnson]]></dc:creator>
		<pubDate>Fri, 19 Jul 2024 12:18:17 +0000</pubDate>
				<category><![CDATA[Featured]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[airlines]]></category>
		<category><![CDATA[Azure backend]]></category>
		<category><![CDATA[Banks]]></category>
		<category><![CDATA[Berlin airport]]></category>
		<category><![CDATA[Blue Screen Of Death]]></category>
		<category><![CDATA[BSOD]]></category>
		<category><![CDATA[CrowdStrike]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[emergency services]]></category>
		<category><![CDATA[FAA]]></category>
		<category><![CDATA[global outage]]></category>
		<category><![CDATA[IT Admins]]></category>
		<category><![CDATA[IT issues]]></category>
		<category><![CDATA[Microsoft 365]]></category>
		<category><![CDATA[Outages]]></category>
		<category><![CDATA[recovery boot loop]]></category>
		<category><![CDATA[Ryanair]]></category>
		<category><![CDATA[Sky News]]></category>
		<category><![CDATA[system crash]]></category>
		<category><![CDATA[technical issues]]></category>
		<category><![CDATA[TV broadcasters]]></category>
		<category><![CDATA[update failure]]></category>
		<category><![CDATA[Windows]]></category>
		<guid isPermaLink="false">https://www.theredmondcloud.com/?p=200802</guid>

					<description><![CDATA[Thousands of Windows machines worldwide are crashing due to a faulty CrowdStrike update, causing disruptions in banks, airlines, TV broadcasters, and more. The Blue Screen of Death issue has forced critical systems offline, impacting global businesses and services.]]></description>
										<content:encoded><![CDATA[<p>Thousands of Windows machines are experiencing a Blue Screen of Death (BSOD) issue at boot today, impacting banks, airlines, TV broadcasters, supermarkets, and many more businesses worldwide.</p>
<p>A faulty update from cybersecurity provider CrowdStrike is knocking affected PCs and servers offline, forcing them into a recovery boot loop so machines can’t start properly. CrowdStrike is widely used by many businesses worldwide to manage the security of Windows PCs and servers.</p>
<p>Australian banks, airlines, and TV broadcasters first raised the alarm as thousands of machines started to go offline. The issues spread fast as businesses based in Europe started their work day.</p>
<p>UK broadcaster Sky News could not broadcast its morning news bulletins for hours this morning and showed a message apologizing for “the interruption to this broadcast.” Ryanair, one of the biggest airlines in Europe, also says it’s experiencing a “third-party” IT issue, impacting flight departures.</p>
<p>The Federal Aviation Administration (FAA) says it’s assisting airlines like Delta, United, and American Airlines due to communications issues. “The FAA is closely monitoring a technical issue impacting IT systems at US airlines,” says FAA spokesperson Jeannie Shiffer in <a href="https://www.theverge.com/2024/7/19/24201717/windows-bsod-crowdstrike-outage-issue" target="_blank" rel="noopener">a statement to The Verge</a>. “Several airlines have requested FAA assistance with ground stops for their fleets until the issue is resolved.”</p>
<p>Berlin airport also warns of travel delays due to “technical issues.” The issues have also impacted many 911 emergency call centers in Alaska. One airline in India has even turned to handwritten boarding passes due to the outages.</p>
<p>“CrowdStrike is actively working with customers impacted by a defect found in a single content update for Windows hosts,” says CrowdStrike CEO George Kurtz in a post on X. “Mac and Linux hosts are not impacted. This is not a security incident or cyberattack.”</p>
<p>CrowdStrike says the issue has been identified, and a fix has been deployed, but fixing these machines won’t be simple for IT admins. The root cause appears to be an update to the kernel-level driver that CrowdStrike uses to secure Windows machines.</p>
<p>While CrowdStrike identified the issue and reverted the faulty update after “widespread reports of BSODs on Windows hosts,” it doesn’t appear to help machines that have already been impacted.</p>
<p>In a Reddit thread, hundreds of IT admins are reporting widespread issues. The workaround involves booting affected Windows machines into safe mode, navigating to the CrowdStrike directory, and deleting a system file. That will be troublesome on some cloud-based servers or even for Windows laptops deployed and used remotely.</p>
<p>“Our entire company is offline,” says one Reddit poster, while another says 70 percent of their laptops are down and stuck in a boot loop. “Happy Friday,” says one Reddit poster. It looks like IT admins worldwide will have a long day.</p>
<p>In what appears to be a separate outage, Microsoft is also recovering from several issues with its Microsoft 365 apps and services. The root cause of those issues was “a configuration change in a portion of our Azure backend workloads.”</p>
<p>&nbsp;</p>
]]></content:encoded>
					
					<wfw:commentRss>https://www.theredmondcloud.com/global-bsod-crisis-crowdstrike-update-knocks-out-windows-systems-across-industries/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
