Summary
CrowdStrike has implemented new phased content update procedures following a catastrophic software update in July 2024 that resulted in a significant global IT outage. The company faced intense scrutiny from Congress and has since committed to improving its update processes to prevent similar incidents in the future.
In July, a faulty configuration update caused widespread disruptions, impacting over 8.5 million Windows devices and affecting critical services such as airlines, hospitals, and emergency response systems. During a congressional hearing, CrowdStrike’s senior vice president, Adam Meyers, expressed regret for the incident and outlined the company’s new approach to content updates. Previously, CrowdStrike released updates simultaneously to all customers, which contributed to the outage. The new phased approach treats content updates like code updates, involving internal testing and optional participation for customers, allowing them to choose when to adopt updates based on their risk tolerance.
New Update Procedures
- Internal Release Process: Updates will undergo a thorough internal review before being distributed.
- Early Adopter Program: Customers can opt to receive updates as soon as they are available, gaining access to the latest threat intelligence.
- General Availability: Updates will be made available to a broader audience after initial testing.
- Customer Choice: Customers now have the option to delay updates, allowing for more control over their systems while acknowledging the potential risks of not having the latest information.
These changes aim to enhance the reliability of CrowdStrike’s services and restore trust among clients and stakeholders. The company is committed to learning from the July incident and ensuring that such a failure does not occur again.
CrowdStrike exec apologizes to Congress, shares updates
Sep. 24 / Techtarget “ A CrowdStrike executive testifying before U.S. representatives on Tuesday issued a formal apology for the global IT outage caused by a faulty update that...
How to watch CrowdStrike face U.S. lawmakers for first time on Tuesday
Sep. 24 / Digitaltrends “ CrowdStrike will return to the spotlight on Tuesday when a senior executive testifies before a U.S. House of Representatives subcommittee regarding the...
Sep. 25 / Benzinga “ On Tuesday, an executive from the cybersecurity firm CrowdStrike Holdings Inc. CRWD faced questioning from House lawmakers regarding a global technology...
Congress grills CrowdStrike about multibillion-dollar July outage
Sep. 24 / The Washington Post “ Members of Congress grilled a senior executive of security company CrowdStrike on Tuesday, demanding to know why it triggered a cascading,...
Congress Slams CrowdStrike (CRWD) for July Failure - Hagens Berman
Sep. 25 / Benzinga “ SAN FRANCISCO, Sept. 25, 2024 (GLOBE NEWSWIRE) -- Cybersecurity firm CrowdStrike faced intense scrutiny on Capitol Hill on September 24 as lawmakers demanded...
