Crowdstrike Falcon Update Took Down Windows Computers in Enterprise and Cloud Offline
Quick Report
Crowdstrike Falcon's software update took down millions of computers and cloud services using windows offline and in unbootable state due to faulty driver. This affected business organizations, airlines, banks, shops, and many more disrupting their business. The affected machines or azure clients greeted the users with Blue Screen of Death (BSOD) or Windows did not load correctly.
Crowdstrike has issued a workaround to fix the issue.
- Boot Windows into Safe Mode
- Navigate to the %WINDIR%\System32\drivers\CrowdStrike
- Locate the file matching “C-00000291*.sys”, and delete it
- Boot the host normally
Source(s)
- Majorgeeks Article
- TPU article