

Ep6: After CrowdStrike chaos, should Microsoft kick EDR agents out of Windows kernel?
5 snips Jul 26, 2024
The podcast dives into the chaos caused by a CrowdStrike update that blue-screened millions of Windows systems, spotlighting the urgent need for better testing. It questions Microsoft's handling of EDR agents and the responsibilities tied to kernel access. A discussion on Mandiant's report reveals insights into North Korean cyber threat tactics. The hosts critique cybersecurity reporting and explore the implications of the NSO Group lawsuits on tech giants. Overall, it's a gripping look at the intersection of cybersecurity failures and corporate accountability.
Chapters
Transcript
Episode notes
1 2 3 4 5 6 7
Intro
00:00 • 5min
Investigating the CrowdStrike-Microsoft Incident
05:19 • 26min
Navigating EDR Challenges in Windows Security
31:06 • 20min
Understanding APT45: Cyber Threat Attribution and Implications
51:24 • 5min
Assessing the Relevance of Military Designations in Cybersecurity Defense
56:10 • 2min
Questioning Cybersecurity Reporting
58:05 • 7min
Tech Giants Unite: Legal Battles and Spyware Accountability
01:05:24 • 11min