• Blackmist@feddit.uk
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    Maybe you shouldn’t have taken down half the world’s airlines.

    People do tend to notice shit like that.

  • peregrinete@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    Making millions, failing, causing global damage, then crying when people comment is quite nice and not at all hypocritical.

    • psivchaz@reddthat.com
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      Nah, this one has a margin of error. It’s just that “take down a large percentage of all computers in the world simultaneously” is quite a bit outside of that margin for a security software.

  • Passerby6497@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    I appreciated the RiskyBiz episode with the Sentinel one guys where they go over all the ways this could have been prevented if they did real testing

    Crowdstrike absolutely deserves the shit they’re getting.

    • ozymandias117@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      Oh god. Sentinel one is horrible. If they’re taking issue with your testing, you’ve really screwed the pooch

        • ozymandias117@lemmy.world
          link
          fedilink
          English
          arrow-up
          0
          ·
          edit-2
          10 months ago

          Their ftrace hooks caused all disk usage to be serialized, making your multi-core processor single-core when doing anything I/O bound

          We saw between 500% - 800% increases in build times with their software installed

            • ozymandias117@lemmy.world
              link
              fedilink
              English
              arrow-up
              0
              ·
              10 months ago

              We’re still using them on machines where performance doesn’t matter

              On build machines, they’re on a special VLAN and don’t have endpoint protection, but they only download from a protected mirror

  • LiveLM@lemmy.zip
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    They lambasted Microsoft in their marketing materials but when others do it to them it’s no fair? lol

    Compare the live page with the archive. Looks like they softened their language after the disaster

    • micl@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      Looks like the difference between the two is that they removed the section calling Microsoft’s security culture inadequate.

      I wonder what motivated the change.

  • portuga@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    I just wish they made it a feature, or something, cause I really dislike working and stuff

  • reginald_crunklebottom_III@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    Crowdstrike didn’t just fuck up, they killed people. I personally had to postpone a blood test, but mine wasn’t critical and I’m alive to complain. Not everyone is.

  • hark@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    Nothing shady about that commentary after seeing how they screwed up. I couldn’t believe how amateur hour the cause of the crash was (the program not validating definition file contents, which spectacularly failed when fed a file consisting only of zeroes). They should rename themselves to ClownTrike.

    • db2@lemmy.world
      link
      fedilink
      English
      arrow-up
      0
      ·
      10 months ago

      That wasn’t what was in the file, it was actual stuff. I saved a copy of it.

      What happened was the file directed their craptastic snake oil software, which did absolutely no sanity checking first, to access memory it wasn’t actually given which predictably resulted in it crashing, and since its dick was way up the kernels butt at the time they both went down together.

      I’ve been calling them ClownStrike because they’re clowns and their incompetence struck everyone else hard.

      • aodhsishaj@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        Yup a null pointer reference for a boot time driver. Which Microsoft never should’ve signed and should revoke. But ya know… Money

      • hark@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        ·
        10 months ago

        Ah, thanks for the clarification on the details. Either way it boggles my mind that they didn’t have checks in place.

  • JigglySackles@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    10 months ago

    “Our industry is built on trust,” Sentonas said

    And instead of following that statement with an apology to all the companies and people they royally fucked in the ass with their shitty business practices, they instead whined about other people pointing out what a massive, colossal, and completely preventable fuckup this was.

    Good going sealing my resolve to never use crowdstrike.