CrowdStrike Kills the Internet
In this video, Jay and Joao have a live discussion regarding the recent events surrounding CrowdStrike, a company that’s effectively broken computers and servers world-wide, leaving them in an unusable state.
*📰 Related Articles*
• CrowdStrike update crashes Windows systems, causes outages worldwide ➜ https://learnlinux.link/crowdstrike-1
• CrowdStrike and Microsoft: all the latest news on the global IT outage ➜ https://learnlinux.link/crowdstrike-2
*🎓 BRAND NEW UDEMY COURSES AVAILABLE!*
Check out my new courses on Udemy and take your learning even further!
• Ansible Course ➜ https://learnlinux.link/ansible
• Linux Essentials Course ➜ https://learnlinux.link/linux-essentials
*Relevant Links*
• Report Surfaces Thousands of Potential Vulnerabilities in GitHub Workflows ➜
https://learnlinux.link/els96-1
•Survey Finds Confidence in Data Security Despite Ransomware Scourge ➜ https://learnlinux.link/els96-2
• AT&T says criminals stole phone records of ‘nearly all’ customers in new data breach ➜ https://learnlinux.link/els96-3
• AT&T Says 110M Customers’ Data Leaked — Yep, it’s Snowflake Again ➜ https://learnlinux.link/els96-4
*Check out the LLTV Shop!*
Shirts, bags, cups and much more! ➜ https://merch.learnlinux.tv
*Support the Channel*
Show your support for Learn Linux TV and get access to exclusive perks!
• Become a Channel Member ➜ https://learnlinux.link/member
• Become a Patron ➜ https://learnlinux.link/patron
*Official Stores and Merchandise*
• Linux Merch ➜ https://merch.learnlinux.tv
• Latest book: Mastering Ubuntu Server ➜ https://ubuntuserverbook.com
• Linux stuff from Amazon ➜ https://learnlinux.link/amazon
• Awesome Pi-powered KVM ➜ https://learnlinux.link/tinypilot
• 5% discount on LPI exam vouchers ➜ https://learnlinux.link/lpi-voucher
_Note: Royalties and/or commission is earned from some of the above links_
*Full Courses from Learn Linux TV*
• Linux Essentials Certification Workshop ➜ https://learnlinux.link/lpi-course
• Linux Crash Course series ➜ https://linux.video/cc
• Learn how to use tmux ➜ https://linux.video/tmux
• Learn how to use vim ➜ https://linux.video/vim
• Bash Scripting Series ➜ https://linux.video/bash
• Proxmox VE Cluster Full Course ➜ https://linux.video/pve
• Learn Ansible ➜ https://linux.video/ansible
*🌐 LEARN LINUX TV ON THE WEB*
• Main site ➜ https://www.learnlinux.tv
• Community ➜ https://community.learnlinux.tv
�� Enterprise Linux Security Podcast ➜ https://enterpriselinuxsecurity.show
• The Homelab Show Podcast ➜ https://thehomelab.show
• Content Ethics ➜ https://www.learnlinux.tv/content-ethics
• Request Assistance ➜ https://www.learnlinux.tv/request-assistance
*Note*
This episode was originally recorded live, but re-uploaded in order to fix an audio issue that made it hard to hear Jay.
*⚠️ DISCLAIMER*
Learn Linux TV provides technical content that will hopefully be helpful to you and teach you something new. However, this content is provided without any warranty (expressed or implied). Learn Linux TV is not responsible for any damages that may arise from any use of this content. The person viewing Learn Linux TV’s content is expected to follow their best judgement and to make their best decisions while working with any related technology. Always make sure you have written permission before working with any infrastructure. Also, be sure that you’re compliant with all company rules, change control procedures, and local laws.
#CrowdStrike #datacenter #cybersecurity
by Learn Linux TV
linux web server
In which way is Linux better than Windows?
Does Linux offer Rollback-mechanisms, or bootable Disk-snapshots, to avoid such Update failures?
Have you tried to turn if off then on again?
Will crowdstrike change their name now?
People around the world just realized that this could be weaponized by the US government. The US will gradually lose its dominance in computer software.
No need for hackers anymore since we have Crowdstrike 😂😂😂
Why would any admin allow for auto updates on their mission critical prod servers and let their prod system be the first to check the new software just rolled out. Just wait a few days and apply it if no one else are having a problem with it. This can happen anytime again. There will always be faults with any operating system or software updates. The updates may work perfectly on whole earth but break your uique system. Take precautions. Take snapshots. Update incrementally, update your servers one at a time.. Write procedures for updates and follow them. Trust no one&no company to modify your server, and without letting you know when.
It's absurd to me that the update was changing a driver on the prod server while sysadmins are sleeping.
On prod servers I disable any auto updates on the software configuration and block the internet access.
The updates are applied only when I want.
I hope Crowdstrike had liability for downtime and any business repercussions… #2 to bankrupt overnight
As usual, the solution to the Microsoft Windows problem is… Linux
What if this had affected DNS?
After all, there were two failures at once. one is the Azure update, which caused all their services to crash – Windows update Microsoft 365 and Azure is the second one, the Crowdstrike Falcon update
44:04 But Jay, it is a Windoze problem. Why do people using Windoze need Crowdstrike in the first place? lol
This only shows that someone can pull a jiatan situation and no one would even know what happened (or if it happened, if its not already happening).
You can just enter a company, start pushing code and backdoors that will someday or time be opened.
Linux users might be feeling smug but I would like to know how vulnerable linux is to a rogue update.
"Crowdstrike" = 1331 (Latin) = 11x11x11.
11 letters.
In the Bible the number 11 stands for Antichrist.
Sounds like microsoft is to cheap to use in house security, so 3rd party muck ups like this are gonna happen…….thank god for linux – and its free!
Crowdstrike Falcon blocked Vivaldi browser on my laptop thinking it is malware.
I thought hey were saying cloudstrike!
It is bad enough for microsoft to put a bad update that takes out your laptop but this is very serious when it affects hospitals doctors banks shops phones there is to much reliance on online services i hope people relise this and start using real banks shops and money also because everone as downsized there it staff it is harder to fix this could finish microsoft
Windows ptoo
Kaiser Permanente was hit.
How can such major companies release software in production without even testing it???
BTW, I use Arch…
“Kills the internet”? No. Clickbait. The internet mainly runs on Linux. Only Windblow$ computers were affected…
As an IT support analyst at a big company, I had to cope with this sh*t all day long, and most of the time on remote machines…
When will companies stop working with Windoze and such???
Like there was no free and open-source alternatives offering way more reliability…
They spend millions on garbage software, this is unbelievable.
There were multiple points of failure, which you certainly did acknowledge here, but on a more technical level this was caused by a null pointer dereference. This only strengthens the case for memory-safe languages like Rust, which has been a major focus of the cybersecurity industry lately. Please consider covering this topic in a future episode. Thanks, Jay and Joao!
Loading 3rd party software that have the same privilege that the kernel doesn't sounds like a great idea. Why are we relying on this nowadays? The kernel should be untouchable. That was the idea when protected mode was developed, right?
Systems Admin appreciation day for me = = = I Get to keep my job ! LOL
Lucky me here in BC, Western Canada I haven't noticed anything except for the news stories.
My speculations on "black magic" or why 15 reboots are helping. In 20 years in IT I have multiple times encountered when process crashes and you restart it, it starts from place where it left, not the whole beginning (depends on what this process does and how software is created). So I assume that CrowdStrike software was running some process what crashed whole system (presumably this process took too large payload), and after system reboot this process restarts from where it left. This way 15 system reboots is enough for faulty process to finish its work on payload, and system can operate normally. But as I mentioned those are my assumptions.
Gross negligence might be at play here – possibly negating a "way out" in their contracts.
CrowdStrike Kills the Internet???? CrowdStrike Kills windows
Didn't notice anything, but then I'm using Linux.
25 years ago I was working on real time embedded software for the GSM base station controllers. We had a clever boot algorithm that, upon detecting that a new software upgrade was not starting, the system would automatically fall back to the previous software version, without human intervention. This kind of ideas has not yet reached the brains of the Microsoft engineers it seems…
Hurry! Red Hat is waiting for you!
Gnome by default now…