Sponsored

Crowdstrike has a caused a mess

R1TCntrlMaIzzy

Well-Known Member
Joined
May 10, 2023
Threads
50
Messages
556
Reaction score
628
Location
Massachusetts
Vehicles
R1T
Occupation
Computer Sci Stuff
Clubs
 
Last edited:

COdogman

Well-Known Member
First Name
Brian
Joined
Jan 21, 2022
Threads
33
Messages
11,641
Reaction score
34,494
Location
CO
Vehicles
2023 R1T
Occupation
Cyber defender
Clubs
 
It’s like Y2K except no one had a chance to panic for years in advance!
 

Zoidz

Well-Known Member
First Name
Gil
Joined
Feb 28, 2021
Threads
226
Messages
5,201
Reaction score
11,704
Location
PA
Vehicles
23 R1S Adv, Avalanche, BMWs-X3,330cic,K1200RS bike
Occupation
Engineer
The scary part is this was an honest mistake. There are other risks out there that are potentially even more devastating on a wide spread scale. The "polyfill.io Supply Chain" vulnerability was caught before it could be used for wide spread damage. In a nutshell, a widely used javascript library that downloads automatic updates changed ownership from the long time legit developer and was bought by a Chinese company. That company then intentionally embedded stealth malware in the library. 100k web sites at risk of being a host vector for malware, thereby potentially affecting millions of end users.

It's not IF something like this will happen again, it just a matter of when....
 

Sponsored

Zoidz

Well-Known Member
First Name
Gil
Joined
Feb 28, 2021
Threads
226
Messages
5,201
Reaction score
11,704
Location
PA
Vehicles
23 R1S Adv, Avalanche, BMWs-X3,330cic,K1200RS bike
Occupation
Engineer
Various unverified reports online are saying it was a null pointer exception that caused the crash. Doh!
Rivian R1T R1S Crowdstrike has a caused a mess 1721488249277-u
 
OP
OP
R1TCntrlMaIzzy

R1TCntrlMaIzzy

Well-Known Member
Joined
May 10, 2023
Threads
50
Messages
556
Reaction score
628
Location
Massachusetts
Vehicles
R1T
Occupation
Computer Sci Stuff
Clubs
 
That's all it takes, an extra space, wrong character to break, what should be a fix. The other issue is, as much testing, checks are done, some regressions are not apparent until public.

And, yes, most are honest mistakes and sadly a matter of when it is a deliberate attack. Like you noted. Luckily that has not occurred, yet.

I have always said, the important aspect of a breach, hack is not when. It's how fast and securely can you recover from it.

I feel sorry for those that were stuck at airports, a hospital or clinic, maybe trying to buy meds, a meal and so many others. I can't even guess the total economic impact this will have.
 

SANZC02

Well-Known Member
First Name
Bob
Joined
Feb 11, 2021
Threads
50
Messages
7,439
Reaction score
12,737
Location
California
Vehicles
Tesla Model S, LE - R1S
Occupation
Retired
This outage is a reminder to companies not to become complacent in patch deployments. We always had a subset of systems covering each configuration that we applied patches to a week before we deployed to the entire infrastructure. This outage certainly was a major issue for Crowdstrike but each company has a certain amount of culpability as well based on their patching processes.

This is the reason why Rivian slow roles the OTAs in the beginning to minimize negative impact should an error slip through.
 

iansriv

Well-Known Member
Joined
Feb 12, 2022
Threads
20
Messages
2,797
Reaction score
3,811
Location
US
Vehicles
R1S
Looks like the stock took a hit of almost $70 since Monday. Wonder how they will fair going forward?
Sponsored

 
 








Top