Live data from Hacker News

CrowdStrike Update: Windows Bluescreen and Boot Loops

old.reddit.com

771–780 of 1001 posts

Re: CrowdStrike Update: Windows Bluescreen and Boot Loops

#771

This might be a good time for folks to go back and watch the first episode of James Burke's Connections: The Trigger Effect https://www.youtube.com/watch?v=NcOb3Dilzjc Interconnected systems can fail spectacularly in unforeseen ways. Strange that something so obvious is so often dismissed or overlooked.

Crowdstrike though is not part of a system of engineered design.

It’s a half-baked rootkit sold as a figleaf for incompetent it managers so they can implement ”best practices” in their companys PC:s.

The people purchasing it don’t actually know what it does, they just know it’s something they can invest their cybersecurity budget into and have an easy way to fullfill their ”implement cybersecurity” kpi:s without needing to do anything themselves.

Re: CrowdStrike Update: Windows Bluescreen and Boot Loops

#772

what many people of not taking is that why we are here: one simple reason: all eggs in one Microsoft PC basket why in one Microsoft PC basket? - most corporate desktop apps are developed for Windows ONLY Why most corporate desktop apps are developed for Windows ONLY? - it is cheaper to develop and distribute since, 90% of corporations use Windows PCs ( Chicken and Egg problem) - alternate Mac Laptops are 3x more expe…

Lenovo and Dell have some laptops with Linux, and they are very good ones.

(not sure if you meant rugged ones, that may not be the case, but I guess this is a tiny percentage of the market)

Re: CrowdStrike Update: Windows Bluescreen and Boot Loops

#774

what many people of not taking is that why we are here: one simple reason: all eggs in one Microsoft PC basket why in one Microsoft PC basket? - most corporate desktop apps are developed for Windows ONLY Why most corporate desktop apps are developed for Windows ONLY? - it is cheaper to develop and distribute since, 90% of corporations use Windows PCs ( Chicken and Egg problem) - alternate Mac Laptops are 3x more expe…

SolarWinds story was quickly forgotten, and this one will be too, and we'll continue to build such special single points of global catastrophic failure into our craftly architected decentralized highly robust horizontally scaled multi-datacenter-region systems

Re: CrowdStrike Update: Windows Bluescreen and Boot Loops

#775
post #638

Isn't Crowdstrike the same company the heavily lobbied to get make all their features a requirement for government computers? https://www.opensecrets.org/federal-lobbying/clients/summary... They have plenty of money for congress, but it seem little for any kind of reasonable software development practices. This isn't the first time crowdstrike has pushed system breaking changes.

> Isn't Crowdstrike the same company the heavily lobbied to get make all their features a requirement for government computers?

Do you have any more sources on this specifically? The link you gave doesn't seem to reference anything specific.

Re: CrowdStrike Update: Windows Bluescreen and Boot Loops

#776

The thing that amazes me is how they've rolled out such a buggy change at such a scale. I would assume that for such critical systems, there would be a gradual rollout policy, so that not everything goes down at once.

I also blame the customers here to be completely honest.

The fact the software does not allow for progressive rollout of a version in your own fleet should be an instantaneous "pass". It's unacceptable for a vendor to decide when updates are applied to my systems.

Re: CrowdStrike Update: Windows Bluescreen and Boot Loops

#777

Wow, this hits close to home. Doing a page fault where you can't in the kernel is exactly what I did with my very first patch I submitted after I joined the Microsoft BitLocker team in 2009. I added a check on the driver initialization path and didn't annotate the code as non-paged because frankly I didn't know at the time that the Windows kernel was paged. All my kernel development experience up to that point was wi…

"It blows my mind that a kernel driver with the level of proliferation in industry could make it out the door apparently without even the most basic level of qualification."

It was my understanding that MS now sign 3rd party kernel mode code, with quality requirements. In which case why did they fail to prevent this?

Re: CrowdStrike Update: Windows Bluescreen and Boot Loops

#780
Edit; it appears my comment has been moved to a top level comment, i.e. peer with the parent without any way of telling what happened - so now there is the whole other pointless branch polluting the relevance of the tree.

Previously;

It appears that someone was able to take my previous comment in this thread completely off hacker news, it's not even listed as flagged. It was at 40pts before disappearing, perhaps there is some reputation management going on here. If it was against the site rules it would be helpful to know which ones.

Edit; the link is https://news.ycombinator.com/item?id=41007985 it was a high up comment that no longer appears even though flagged comments do appear. I checked if it has been moved but the parent comment is still the same. This feels like hellbanned in that there isn't an easy way for me to see if I've been shadowbanned. But I really don't know. I was commenting in good faith.

Post reply on HN