CrowdStrike and Microsoft: What we know about global IT outage (2024)

CrowdStrike and Microsoft: What we know about global IT outage (1)CrowdStrike and Microsoft: What we know about global IT outage (2)EPA

A massive tech failure has caused travel chaos around the world, with banking and healthcare services also badly hit.

Flights have been grounded because of the IT outage - a flaw which left many computers displaying blue error screens.

There were long queues, delays and flight cancellations at airports around the world, as passengers had to be manually checked in.

Cyber-security firm CrowdStrike has admitted that the problem was caused by an update to its antivirus software, which is designed to protect Microsoft Windows devices from malicious attacks.

Microsoft has said it is taking "mitigation action" to deal with "the lingering impact" of the outage.

Here is a summary of what we know so far.

What caused the outage?

This is still a little unclear.

CrowdStrike is known for producing antivirus software, intended to prevent hackers from causing this very type of disruption.

According to CrowdStrike boss George Kurtz, the issues are only impacting Windows PCs and no other operating systems, and were caused by a defect in a recent update.

"The issue has been identified, isolated and a fix has been deployed," he said.

"This is not a security incident or cyber-attack."

What exactly was wrong with the update is yet to be revealed, but as a potential fix involves deleting a single file, it is possible that just one rogue file could be at the root of all the mayhem.

When will it be fixed?

It could be some time.

CrowdStrike's Mr Kurtz, speaking to NBC News, said it was the firm's "mission" to make sure every one of its customers recovered completely from the outage.

"We're deeply sorry for the impact that we've caused to customers, to travellers, to anyone affected by this, including our companies," he said.

He has since told CNBC that while some systems can be fixed quickly, for others it "could be hours, could be a bit longer".

CrowdStrike has issued its fix. But according to those in the know, it will have to be applied separately to each and every device affected.

Computers will require a manual reboot in safe mode - causing a massive headache for IT departments everywhere.

What's the solution?

Something important to note here, is that personal devices like your home computer or mobile phone are unlikely to have been affected - this outage is impacting businesses.

Microsoft is advising clients to try a classic method to get things working - turning it off and on again - in some cases up to 15 times.

The tech giant said this has worked for some users of virtual machines – computers which are accessed remotely.

“Several reboots (as many as 15 have been reported) may be required, but overall feedback is that reboots are an effective troubleshooting step at this stage," it said.

It is also telling customers with more in-depth computing knowledge that they should delete a certain file - the same solution one CrowdStrike employee has been sharing on social media.

But this fix is intended for experts and IT professionals, not regular users.

Which airports have been affected?

The problems have emerged across the world, but were first noticed in Australia, and possibly felt most severely in the air travel industry, with more than 3,300 flights cancelled globally.

  • UK airports saw delays, with long queues at London's Stansted and Gatwick.
  • Ryanair said it had been "forced to cancel a small number of flights today (19 July)" and advised passengers to log-on to their Ryanair account, once it was back online, to see what their options are.
  • British Airways also cancelled several flights.
  • Several US airlines, notably United, Delta and American Airlines, grounded their flights around the globe for much of Friday. Australian carriers Virgin Australia and Jetstar also had to delay or cancel flights.
  • Airports in Tokyo, Amsterdam and Delhi were also impacted.

Meanwhile, the problems have also hit payment systems, banking and healthcare providers around the world.

Railway companies, including Britain’s biggest which runs Southern, Thameslink, Gatwick Express and Great Northern, warned passengers to expect delays.

In Alaska, the 911 emergency service was affected, while Sky News was off air for several hours on Friday morning, unable to broadcast.

How could it affect me?

The outage might also impact people getting paid on time.

Melanie Pizzey, head of the Global Payroll Association, told PA news agency that she'd been contacted by "numerous clients" who couldn't access their payroll software.

She said the outage could mean firms are unable to process staff payments this week, but there may be a knock-on effect too.

"We could see a backlog with regard to processing payrolls for the coming month end, which may delay employees from receiving their monthly wage," she said.

If you're worried about your own, personal devices, we have some good news.

The software at the centre of this outage is generally used by businesses, which means that most people's personal computers won't be impacted.

That means if you're wondering whether you need to delete a certain file to avoid your computer restarting constantly, the simple answer is no, you don't.

What is CrowdStrike?

It's a reminder of the complexity of our modern digital infrastructure that CrowdStrike, a company that's not exactly a household name, can be at the heart of such worldwide disarray.

The US firm, based in Austin, Texas, is a listed company on the US stock exchange, featuring in both the S&P 500 and the high-tech Nasdaq indexes.

Like a lot of modern technology companies, it hasn't been around that long. It was founded a mere 13 years ago, but has grown to employ nearly 8,500 people.

As a provider of cyber-security services, it tends to get called in to deal with the aftermath of hack attacks.

It has been involved in investigations of several high-profile cyber-attacks, such as when Sony Pictures had its computer system hacked in 2014.

But this time, because of a flawed update to its software, a firm that is normally part of the solution to IT problems has instead caused one.

In its last earnings report, CrowdStrike declared a total of nearly 24,000 customers. That's an indication not just of the size of the issue, but also the difficulties that could be involved in fixing it.

Each of those customers is a huge organisation in itself, so the number of individual computers affected is hard to estimate.

Additional reporting by Imran Rahman-Jones, Liv McMahon and Tiffany Wertheimer.

Cyber-security

CrowdStrike and Microsoft: What we know about global IT outage (2024)

FAQs

CrowdStrike and Microsoft: What we know about global IT outage? ›

What are the reasons for the global IT outage? CrowdStrike had pushed an update on Friday for Microsoft applications and devices but it turned out to be faulty in nature and caused a 'blue screen of death' to appear on user's screens, instead of the Windows OS booting up.

Did CrowdStrike cause Microsoft outage? ›

Was the Microsoft outage caused by CrowdStrike? Yes, the global outage experienced by Microsoft on Thursday was triggered by an issue with CrowdStrike's Falcon Sensor software. This problem led to widespread disruptions and caused the 'Blue Screen of Death' to appear on Windows PCs.

What is the CrowdStrike outage affecting? ›

What has been affected? The outage appeared to affect almost every major business sector in one way or another. Airports and flights across the world were severely delayed or canceled altogether, as the computers on which these services rely were disrupted by the issue.

What was the reason for Microsoft's outage? ›

The historic outage was the result of a faulty update from the cybersecurity company CrowdStrike that affected millions of computers running the Microsoft Windows operating system.

What was the global IT outage? ›

The disruption was caused by a flawed update to a cloud-based security software of CrowdStrike, one of the global top cybersecurity companies. The update to the Falcon software triggered a malfunction that disabled parts of the computer systems and software like Microsoft Windows.

What caused global outage? ›

Last week's global tech outage has been traced back to a bug in U.S. cybersecurity firm CrowdStrike's quality control system. The outage's impacts have been far-reaching, affecting roughly 8.5 million Windows devices and disrupting banks, emergency call centers and airlines.

Why is CrowdStrike falling? ›

Shares of CrowdStrike (CRWD) are still falling after a faulty update caused a global outage on Friday, sending the cybersecurity firm's shares plummeting, but some investors—including Cathie Wood's ARK Invest—are trying to buy the dip.

What is going to happen to CrowdStrike? ›

CrowdStrike will likely survive and move forward, but, reputationally, it can't afford another incident like this, said William MacMillan, a former CISO at the CIA. “The update was supposed to be seamless to users,” said MacMillan, now chief product officer at cybersecurity firm Andesite.

What was the cause of the IT outage? ›

The global outage stems from an update CrowdStrike made to its marquee cybersecurity platform, a cloud-based software product called Falcon.

What is the worldwide IT outage? ›

An estimated 8.5 million Microsoft Windows PCs devices were affected worldwide by the update from cybersecurity firm CrowdStrike, causing delays for airports, broadcasters, hospitals and businesses. Problems came to light quickly after the latest version of CrowdStrikes Falcon sensor software was rolled out on Friday.

How did the CrowdStrike issue happen? ›

CrowdStrike chief executive George Kurtz confirmed the issue was caused by a “defect in a single content update for Windows hosts” – in short, a flaw in a software “sensor configuration” update pushed out to customers.

What problems are Microsoft facing? ›

A significant problem exacerbates this: Microsoft's transparency with the cybersecurity community. The company has faced criticism for not sharing enough detailed information about security flaws, leaving users and researchers guessing about the risks and necessary protections.

What did Microsoft get in trouble for? ›

The U.S. government accused Microsoft of illegally monopolizing the web browser market for Windows, primarily through the legal and technical restrictions it put on the abilities of PC manufacturers (OEMs) and users to uninstall Internet Explorer and use other programs such as Netscape and Java. United States v.

When was the global tech outage? ›

A woman waits for her flight after a global outage at LaGuardia Airport in the Queens borough of New York, on July 19, 2024. Airlines, banks, TV channels and other businesses were disrupted worldwide on Friday following a major computer systems outage linked to an update on an antivirus program.

When was the Cloudstrike outage? ›

The outage occurred July 19, 2024, with millions of Windows systems failing and showing the infamous blue screen of death (BSOD).

What all did CrowdStrike affect? ›

"We currently estimate that CrowdStrike's update affected 8.5 million Windows devices, or less than one percent of all Windows machines," it said in the blog.

Does CrowdStrike disable Windows Defender? ›

Windows Servers

Must manually disable Defender through PowerShell prior to CrowdStrike install. Actual exe easy to deploy. Removing CrowdStrike is difficult. Defender is already included with Windows Server, configuring central reporting is easy.

Does the US government use CrowdStrike? ›

The extent of the impact on federal government operations is still not known. Crowdstrike is in wide use across federal agencies and it is a key vendor on the governmentwide Continuous Diagnostics and Mitigation cybersecurity support services contract.

Does Microsoft own CrowdStrike? ›

People often wonder if CrowdStrike is owned by Microsoft. In reality CrowdStrike is not owned by Microsoft. CrowdStrike and Microsoft are two different entities. Microsoft, a tech giant with a diverse portfolio, including software, hardware, and cloud services, has also made significant strides in cybersecurity.

References

Top Articles
Latest Posts
Article information

Author: Catherine Tremblay

Last Updated:

Views: 6683

Rating: 4.7 / 5 (47 voted)

Reviews: 86% of readers found this page helpful

Author information

Name: Catherine Tremblay

Birthday: 1999-09-23

Address: Suite 461 73643 Sherril Loaf, Dickinsonland, AZ 47941-2379

Phone: +2678139151039

Job: International Administration Supervisor

Hobby: Dowsing, Snowboarding, Rowing, Beekeeping, Calligraphy, Shooting, Air sports

Introduction: My name is Catherine Tremblay, I am a precious, perfect, tasty, enthusiastic, inexpensive, vast, kind person who loves writing and wants to share my knowledge and understanding with you.