Comment on CrowdStrike Isn't the Real Problem
FaceDeer@fedia.io 3 months ago
particularly for companies entrusted with vast amounts of sensitive personal information.
I nodded along to most of your comment but this cast a discordant and jarring tone over it. Why particularly those companies? The CrowdStrike failure didn't actually result in sensitive information being deleted or revealed, it just caused computers to shut down entirely. Throwing that in there as an area of particular concern seems clickbaity.
timewarp@lemmy.world 3 months ago
It was to elaborate that there is a bigger issue here with corporate IT culture that is broken. The CrowdStrike incident merely exposes it, but CrowdStrike isn’t the real problem. Remediation for an event like this, especially once the fix is known, should be 30 minutes… not weeks or months.
RaoulDook@lemmy.world 3 months ago
The OS should be mature enough by now that it could automatically recover from crashing on the load of a bad 3rd party driver. But it was not, wtf.
timewarp@lemmy.world 3 months ago
Microsoft has been too busy building a new Outlook PWA with ads in your email, and AI laptops that capture screenshots of your desktop in unencrypted folders.
catloaf@lemm.ee 3 months ago
It can, sort of. Safe mode will still boot just fine. But then what should it do? Just blacklist the driver and reboot? That’s not going to work too well if it’s the storage driver.
RaoulDook@lemmy.world 3 months ago
Well they could still just blacklist all 3rd party drivers except storage drivers. Many categories of 3rd party drivers could be excluded fully during a selective recovery boot process.