CALL 5549869
Security

CrowdStrike update causes global outage

On July 19, 2024, a widespread outage caused by a faulty software update from CrowdStrike severely impacted millions of devices globally. The issue originated from an error in the Falcon Sensor software, which resulted in Windows-based systems crashing across various sectors such as airports, hospitals, government offices, and retail outlets.

The root cause of the outage was a misconfiguration in a kernel-level update, which caused Windows computers to display the Blue Screen of Death (BSOD) upon rebooting. CrowdStrike’s Falcon Sensor, designed to provide endpoint protection, inadvertently destabilised these systems. Organisations relying on this software faced severe disruptions, particularly in Australia, where airports and other critical infrastructure were affected. The Federal Aviation Administration in the U.S. even grounded flights for a period due to the cascading impact of the outage.

Affected systems needed manual intervention to restore normal functionality, including rebooting devices to download a fixed update or entering Safe Mode to delete the defective file manually. This posed significant challenges, especially for large organisations managing multiple systems or remote servers. Moreover, businesses using BitLocker encryption faced additional complications as recovery keys had to be entered manually for each device.

The fallout from the incident led to financial losses, with estimates suggesting up to $5.4 billion in damages for top U.S. companies. The event underscored the fragility of critical IT infrastructure dependent on cloud services and cybersecurity solutions like CrowdStrike. The company quickly issued a patch to resolve the issue and collaborated with U.S. government agencies such as CISA to address the situation and mitigate further risks. While there was no evidence of a cyberattack, the outage served as a reminder of how critical vulnerabilities in software can lead to global disruptions.

If your organisation has been affected by the outage, take a look at the following support pages:

  • CrowdStrike — Falcon content update remediation and guidance hub — Link
  • CrowdStrike Blog — Technical Details: Falcon Content Update for Windows Hosts — Link
  • Microsoft Support — KB5042421: CrowdStrike issue impacting Windows endpoints causing an 0x50 or 0x7E error message on a blue screen — Link

CALL 5549869