❓Looking for growth opportunities and a workplace culture that values #innovation❓ 🚀Become a part of our team committed to excellence and making a difference. #ApplyNow: https://lnkd.in/g-vgeEH #Engineering #Cyber #SATCOM #FMS #Software #Safety #PropulsionEngineer #Linux #CostAnalyst #DevSecOps #Data #Radar
PeopleTec, Inc.’s Post
More Relevant Posts
-
This short video will show you how syslog-ng scales to the largest IT environments, ensuring your log infrastructure can reliably and securely collect and manage log data. Have confidence in the data underlying your analytics, forensics, and compliance efforts.#SIEM #LogManagement
To view or add a comment, sign in
-
Transformational Tech Leader | Strategic Advisor | Championing Growth and Innovation | Fostering Career Advancement with Emotional Intelligence | Project/Product Management | Business/System Analysis
If you want a deeper dive into the Crowdstrike issue: https://lnkd.in/etBZUhYy This is what happens if you allow a signed boot start driver to execute unsigned (and poorly tested) code. The fact that this is implemented this way, which may be required or common practice (not sure), opens a potential for other malicious activity - scary attack vector.
CrowdStrike IT Outage Explained by a Windows Developer
https://www.youtube.com/
To view or add a comment, sign in
-
Associate Director @UBS | Driving Java Project Modernization | AWS | Azure | Enabling Scalable and Agile Solutions | Streamlining Legacy Systems for Digital Transformation
As a programmer I am curious to know what exactly happened behind the global outage that has happened recently and so every programmer. *Root Cause Analysis: Programmer Error* After investigating multiple sources, I identified the cause of the issue: - A CrowdStrike developer made a mistake while writing C code. - The error was a missing null check for a pointer. - The code attempted to access information through a null pointer, which points to "nothing" in memory. - This resulted in an invalid memory access attempt (0x9c), triggering a Memory Access Violation. - Windows recognized this as a potential security threat and terminated the program to protect the system, causing a Blue Screen of Death (BSOD) and the subsequent outage. In essence, the code tried to read data from an invalid memory location, prompting a system crash as a safety measure. #CrowdStrike #Microsoft #Outage
To view or add a comment, sign in
-
Chief Technology Officer | Digital Transformation Expert | Driving Innovation in AI, Cloud Architecture, and Cybersecurity | Proven Leader in Global Tech Strategy & Product Development
Global Disruptions Due to #Crowdstrike on #Windows OS 🖥️💥 Saw this post many times so presenting it in a more simpler way. Recently, a kernel driver from Crowdstrike caused widespread disruptions, taking down banking systems, airlines, and more, leading to Blue Screen of Death (BSOD) crashes on Windows systems globally. This incident highlights the critical nature of kernel-level software, which operates at the deepest level of the operating system with full privileges. Understanding the Issue:⚠️ * Deep-Level Error: Kernel drivers run at the core of the operating system, so any error can cause the entire system to crash.❌ * Technical Cause: The crash was due to an uninitialized pointer in the code. Instead of being set to a specific location, the pointer had random data, causing it to access a restricted part of the computer’s memory.🖧 * Programming Oversight: This indicates a programmer forgot to properly initialize a pointer, a crucial step in coding, especially in languages like C or C .💻📝 * Preventative Measures: Simple safeguards, like handling errors gracefully using signal handlers (e.g., signal(SIGSEGV, handler)), could have prevented such a catastrophic failure.🛡️✅ This incident underscores the importance of meticulous coding practices and implementing robust error-handling mechanisms, especially in software that operates at such a critical level. #Cybersecurity #SoftwareDevelopment #CodingPractices #ErrorHandling #TechNews #KernelDriver #BSOD #Technology #Programming #SoftwareEngineering #ITSecurity
To view or add a comment, sign in
-
To those who are affected by the CrowdStrike update: here is a tutorial which might help: https://lnkd.in/e4E43QXE
Crowdstrike Windows Update Causes Major Computer Outages Worldwide
https://www.youtube.com/
To view or add a comment, sign in
-
An avoidable logical error in code and 🛫 Airports operations grounded to a halt ,over 3k flights got cancelled 🏥 Hospitals struggled to treat patients 🍔 Drive-through windows were down 🆘 Emergency services encountered operational issues 💹 Market crash for Crowdstrike 💻 Billions of PCs worldwide experienced BSOD Almost all sectors were affected globally. This marks the importance of a bug free software and rigorous testing. Specially when a software have deep-level access to a computer's OS. Technical details: https://lnkd.in/gUyGa_Av #crowdstrike #global #outrage #microsoft #software #bug #bsod #crash #os
Technical Details: Falcon Update for Windows Hosts | CrowdStrike
crowdstrike.com
To view or add a comment, sign in
-
What happened with the #CrowdStrike outage? A developer at CrowdStrike made a mistake in the code written in C 1. Null Pointer Creation: The code created a pointer (Obj* obj) that should have pointed to some data in memory, but due to the error, the pointer was NULL, meaning it pointed to nothing. 2. Missing Null Check: The code tried to use this null pointer without checking if it was NULL first, which is something programmers should do for safety. 3. Trying to Use "Nothing": Since the pointer was NULL, it pointed to "nothing" in memory. When the code tried to access data from this pointer (like obj->a or obj->b), it was trying to read from an invalid memory address (like 0x0 4). It tried to access 0x9c, which is not valid because the pointer was NULL. 4. Memory Access Violation: Because the program tried to access memory it shouldn't, Windows saw this as a potential threat and crashed the program to protect the system, causing the Blue Screen of Death (#BSOD) and the outage. In short, the code tried to read data from nowhere in memory, causing the system to crash #Credits :Zach Vorhies for Memory Dump
To view or add a comment, sign in
-
Enhance data center #security with #Biometric #technology A 30% rise in breaches this year fuels heavy security investments by businesses to safeguard themselves. #Biometricsecurity, user-friendly and robust traits drive a revolutionary shift in security. Over the past 5 years, biometrics use has surged by 90%, establishing it as the new security standard without a doubt. Reasons to choose the MELO31 fingerprint scanner for your data center: ✔️ Large platen area for high accuracy, ✔️ IP65 rating for durability in harsh environments, ✔️ WHQL certified and compatible with Windows and Linux OS, ✔️ SDK for seamless application integration, ✔️ Liveness and 360-degree rotation for enhanced security. #securitybreach #biometric #fingerprintscanner #mantratec
To view or add a comment, sign in
-
I recently watched an insightful video by Dave Plummer, a retired Microsoft software engineer, analyzing the recent CrowdStrike IT outage. For those interested, here's the link to Dave's explanation: https://lnkd.in/e2nY7VMD Key takeaways from the analysis: 1. CrowdStrike's Falcon sensor operates as a kernel-mode driver, providing enhanced security monitoring capabilities. 2. The incident was triggered by a faulty update, likely containing a corrupted or empty dynamic definition file. 3. The driver, running in kernel mode, failed to properly validate this update, resulting in system crashes (BSODs) during processing. 4. CrowdStrike's driver is designated as a boot driver, which complicated recovery efforts as affected systems couldn't start without it. 5. The solution involves booting into safe mode and removing the problematic update file - a challenging task at scale. This incident highlights several critical aspects of system architecture and security implementation: * The crucial importance of robust error checking and parameter validation in kernel-mode drivers. * The potential risks associated with boot drivers, despite their powerful security features. * The delicate balance between maintaining strong security measures and ensuring system stability. #Cybersecurity #TechDrama #ITNightmares #LessonLearned
CrowdStrike IT Outage Explained by a Windows Developer
https://www.youtube.com/
To view or add a comment, sign in
-
Digital Forensics - C:\Windows\Migwiz 📁 C:\Windows\Migwiz? C:\Windows\Migwiz is a directory within the Windows operating system, housing the "Windows Easy Transfer" tool. This tool facilitates the migration of user accounts, files, and system settings between different computers. While primarily intended for user convenience during system upgrades or migrations, it holds valuable forensic information for investigators. Forensics View: Understanding the C:\Windows\Migwiz folder is essential as it can yield insights into user activities, migration history, and potentially malicious actions. There are some artifacts that can be examined via this folder.: -> User Accounts -> Documents -> Music -> Pictures -> E-mail -> Internet Favorites -> Videos and more.. #digitalforensics #cyberdefense #blueteam
To view or add a comment, sign in
8,809 followers