Security Conversations cover image

Security Conversations

Ep6: After CrowdStrike chaos, should Microsoft kick EDR agents out of Windows kernel?

Jul 26, 2024
The podcast dives into the chaos caused by a CrowdStrike update that blue-screened millions of Windows systems, spotlighting the urgent need for better testing. It questions Microsoft's handling of EDR agents and the responsibilities tied to kernel access. A discussion on Mandiant's report reveals insights into North Korean cyber threat tactics. The hosts critique cybersecurity reporting and explore the implications of the NSO Group lawsuits on tech giants. Overall, it's a gripping look at the intersection of cybersecurity failures and corporate accountability.
01:16:37

Podcast summary created with Snipd AI

Quick takeaways

  • The CrowdStrike incident underscored the dire consequences of updates lacking proper testing and validation, causing widespread system failures across millions of computers.
  • The podcast highlighted the critical balance between security measures and system stability, suggesting that effective detection must not compromise operational uptime.

Deep dives

CrowdStrike Incident Overview

A significant cybersecurity incident involving CrowdStrike affected approximately 8.5 million Windows computers globally, resulting in widespread system failures. This incident stemmed from a problematic update that passed validation checks, despite causing severe blue screen errors on systems that installed it. The failure led to critical infrastructure, airlines, and large corporations facing disruptions for a short window of time, demonstrating how a single erroneous update can have extensive repercussions. This situation highlights the need for more robust testing and validation processes before deploying critical updates to such a vast customer base.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode