You are viewing a single thread.
View all comments
56 points

The real blame lies on the fact that Windows lets hundreds of companies like Crowdstrike ship kernel-level software to millions of computers. The fact that this incident was caused by an accidental bug is hilarious, but we’re lucky that it wasn’t someone pushing malicious software instead.

Windows drivers are a huge liability and I wouldn’t be surprised if the next time is a state actor like Russia pushing kernel-level malware.

permalink
report
reply
43 points

I hate how many video games come with kernel level anti cheat, it’s an attractive target for hacks

permalink
report
parent
reply
16 points

The helldivers community fucking hates me for pointing this out. Don’t buy helldivers, or any other game packaged with such bullshit.

permalink
report
parent
reply
6 points

Is helldivers anticheat kernel level? I play it just fine on Linux.

permalink
report
parent
reply
23 points
*

The real fuck up is that Crowdstrike Falcon can auto update through its own updater, and doesn’t have any kind of control panel for management that could be used for change control. If their customers could have tested this update first, none of this would be happening.

permalink
report
parent
reply
17 points

Or if they were smart enough to do a phased rollout to a small percentage of users before deploying worldwide. That catches most issues quickly.

permalink
report
parent
reply
5 points

Or if Microsoft reviewed drivers before signing them.

permalink
report
parent
reply
4 points

or like, tested the fucking update at all…

permalink
report
parent
reply
4 points

Yep. A lot of customers were running n-1 or even n-2 of their falcon sensor release to mitigate risk. Doesn’t count for shit though if the “deployed content” bypasses all of that.

permalink
report
parent
reply
2 points
*

an antivirus-like software is something you want auto updates for in my opinion

permalink
report
parent
reply
11 points
*

Let’s be real, Microsoft wouldn’t do a hell of a lot better even if they had that stuff locked down. Their fuckups just tend to hit the general public a little more frequently than enterprise customers.

Edit: I wrote this before I learned about yesterday’s Azure outage lol. That definitely adds to my point.

permalink
report
parent
reply
6 points

Yeah this way they can Shaggy their way out of it

permalink
report
parent
reply
2 points

so you’re saying you shouldn’t be able to install any software with drivers? there’s nothing microsoft can do about mass installing a program with elevated privileges, especially if it had actual uses like this

permalink
report
parent
reply
1 point

The average person or IT dept should not have to, no. It is very rare to install third party drivers on MacOS and Linux, and the fact that it’s even needed for an antivirus is insane.

permalink
report
parent
reply

Microblog Memes

!microblogmemes@lemmy.world

Create post

A place to share screenshots of Microblog posts, whether from Mastodon, tumblr, Twitter X, KBin, Threads or elsewhere.

Created as an evolution of White People Twitter and other tweet-capture subreddits.

Rules:

  1. Please put at least one word relevant to the post in the post title.
  2. Be nice.
  3. No advertising, brand promotion or guerilla marketing.
  4. Posters are encouraged to link to the toot or tweet etc in the description of posts.

Related communities:

Community stats

  • 12K

    Monthly active users

  • 1.5K

    Posts

  • 69K

    Comments