ninthEAST’s Post

ninthEAST reposted this

View organization page for The Cyber Security Hub™, graphic

1,850,697 followers

CrowdStrike: Automated Recovery from Blue Screen on Windows Instances in GCP

Ken Stephens

Chief Security Officer / Chief Information Security Officer / Chief Privacy Officer

2mo

Crowdstrike must be kidding. This does nothing to protect against a future failure on their part. They have pushed the recovery only responsibility to the Businesses who use their Cloud. Their system and Microsoft's systems must be re-engineered to allow the end customer to test their updates BEFORE applying CrowdStrike changes. This is a completely unacceptable failure of the Cloud SHARED RESPONSIBILITY model.

Alex Fiteni

Maker, Innovator, Author, Lecturer, Management Consultant, Oracle EBS & Fusion Cloud, Taxologist, Artist

1mo

CrowdStrike Dear CEO, YOUR FIRED! Any company that greedily absorbs more than 80% of any market has an obligation to ensure their software has high quality, redundancy, and is not, nor ever should be the #SPF single point of failure in any system. I for one will not trust any software updates from Microsoft now. Automated overnight software updates are now the default, a service on which the entire computing world depends for just in time fixes, repairing security holes, getting new features for free, etc. Well, we see what free got us, we see what one failure in communication, training, process step missed, of inattention to software quality has gotten us. The dirty little secret in software is that less than 1% of the software is actually tested under real time circumstances. Most perform the perfunctory ‘happy path’ testing and call it a day. Quality control is sacrificed for new features, barely tested. As an application gets larger the proportionate testing demands becomes exponentially larger, but the budgets of most quality control departments are woefully inadequate. Manically adding an AI bot to perform the testing when all the use cases remain a mystery does not solve the problem. #SPF = #SinglePointofFailure

Like
Reply
Kinsha Abid

Solution Achitect / Principle software engineer

1mo

I didn’t understand all the steps but does this means cloud instance don’t have recovery mode to delete the crowdstike sys file and reboot instance ?

Alexander Lázaro Gómez Valdivia

Sr. Site Reliability Engineering | Devops | Cloud Engineer | Rundeck Implementer | An Rust learner

1mo

I think this is helpful, a similar approach can be implemented for Azure and AWS instances running CrowdStrike by doing detach/remove/attach steps programmatically, it's not easy but can be done.

Like
Reply
🇺🇦 Oleksiy Akimov

Is your cloud bill too high? Wanna know why?

1mo

Step 1: restore backup

Michael J Blenkinsop

Webmaster | Penetration Tester | AI Website Developer | Digital Forensics | Multi language Programmer.

2mo
Like
Reply
ramis chen

Technical Advisor at TAMI

2mo

I'll keep this in mind

Fahad Abdul Samad

Senior Devops Engineer | 4X Google Cloud Pro | 2x MS Azure Architect | 2X Alibaba Cloud | Certified Kubernetes Administrator/Security Specialist | MCT | AWS SAA | VCP7 | HCL Terraform Certified

1mo

Very informative

Pho (Philipo) Tran

Software Engineering & IT Services

1mo

Was it reviewed& approved? QC Passed?

Like
Reply
See more comments

To view or add a comment, sign in

Explore topics