Understanding the Global IT Outage: CrowdStrike's Software Update Impact
Oct 17, 2024
We delve into the largest IT outage in history caused by a faulty CrowdStrike software update. Join us as we explore the ramifications for critical sectors and security lessons learned for a stronger cyber defense. #CrowdStrike #GlobalOutage #Cybersecurity #ITDisruption #TechFailures #MaliciousActors #PhishingThreats #CyberDefense #SoftwareUpdates #InfrastructureImpact
View Video Transcript
0:01
committee on Homeland Security
0:02
subcommittee on cyber security
0:04
infrastructure protection will come to
0:06
order purpose of this hearing is to
0:08
examine the global it outage that
0:10
occurred on July 19th as a result of a
0:12
faulty software update released by
0:14
crowdstrike members will seek to gain
0:16
detailed insights into how the faulty
0:18
software update was developed deployed
0:20
and what errors led to the widespread
0:22
Global disruption we will discuss the
0:24
extent of this outage and how it
0:25
impacted many key sectors of the economy
0:28
we will also examine how malicious cyber
0:30
actors have leveraged the global it
0:32
outage to conduct malicious activity
0:33
including fishing attempts and now
0:35
recognize myself for an opening
0:39
statement just over two months ago many
0:41
essential functions came to a grinding
0:43
halt hospitals sold disruptions in their
0:45
medical systems thousands of flights
0:47
were grounded or canceled worldwide
0:49
Banks experienced downtime and
0:50
transaction processing and the US
0:52
federal government agencies were
0:53
temporarily unable to access certain
0:55
data shortly after detection we learned
0:58
that this Global it outage regarded as
1:00
the largest in history was not due to a
1:03
malicious Cyber attack but instead a
1:04
faulty software update pushed out by
1:06
crowd
1:07
strike according to a company statement
1:09
a sensor configuration update triggered
1:11
a logic error leading to system crashes
1:15
and ab an inability to properly reboot
1:17
and ultimately the blue screen of death
1:19
appearing on impacted systems
1:21
worldwide crowd strike software updates
1:23
are essential for addressing
1:24
vulnerabilities enhancing threat
1:26
detection and ensuring that cyber
1:27
security infrastructure of its customers
1:29
remains robust as a cyber threat
1:31
landscape rapidly evolves most
1:34
importantly given crowdstrike's value as
1:36
a resource across the greater cyber
1:37
ecosystem these updates are meant to
1:39
build customer confidence and Trust we
1:42
are here today to get answers for our
1:44
constituents what went wrong what was
1:47
required in response and what we have
1:49
learned for the future of our nation's
1:51
cyber security posture the sheer scale
1:53
of this error was
1:54
alarming a routine update could cause
1:57
this level of disruption just imagine
1:58
what a skill determined nation state
2:00
actor could do we cannot lose sight of
2:02
how this incident factors into the
2:03
broader threat environment without
2:05
question our adversaries have assessed
2:08
our response recovery and true level of
2:11
resilience however our enemies are not
2:13
just nation states with Advanced cyber
2:14
capabilities they include a range of
2:16
malicious cyber actors who often thrive
2:18
in the uncertainty and confusion that
2:20
arise during large-scale it adages for
2:23
example cisa issued a public statement
2:25
noting that had observed threat actors
2:27
taking advantage of this incident for
2:29
fishing and other malicious activity so
2:31
it is clear that this outage created an
2:33
advant advantageous environment ripe for
2:35
exploitation by malicious cyber actors
2:38
we are joined today by Mr Adam Myers who
2:40
serves as the senior vice president for
2:42
counter adversary operations at crowd
2:43
strike Mr Myers I look forward to
2:45
hearing from you from your testimony
2:47
about how a faulty soft software update
2:49
was pushed out globally what crowd
2:51
strike has learned from this event to
2:53
prevent fut strates and how crowd strike
2:55
is working to rebuild trust I would also
2:58
like to discuss the impact This Global
2:59
add has had on our nation's various
3:01
critical infrastructure sectors what
3:03
crowd strike what support crowd strike
3:05
has provided to those who were disrupted
3:07
and how the company has addressed
3:08
certain malicious cyber actors who've
3:10
attempted to take advantage of the
3:11
global outage Mr Myers thank you for
3:14
being here with us today I look forward
3:15
to productive discussion
#Computer Security
#Computers & Electronics
#Technology News