3 ms·
That's all fine, until one day Crowdstrike is the threat.
by lambdaone 2y ago
That's all fine, until one day Crowdstrike is the threat.
- AnimalMuppet 2y agoRight. So the model is broken. You cannot both respond to threats in a timely manner and have Microsoft certify that the update is safe. That leaves you either not responding quickly or responding with uncertified updates. In the past, we have examples of not responding quickly that took down large chunks of the internet (I don't remember the examples, but they were quite famous at the time). Now we have an example of a fast, uncertified update taking down a large chunk of the internet. So, given that it can take down much of the internet no matter which we choose, now what do we do?
- breadwinner 2y agoCrowdstrike didn't have the right processes in place. What can we do? Require them to have documented processes, and require periodic (like every 6 months) third-party auditing that they have the right processes, and they are complying with their own processes. More info: https://en.wikipedia.org/wiki/System_and_Organization_Controls https://en.wikipedia.org/wiki/System_and_Organization_Contro...