DevOps Sauna from Eficode

The great CrowdStrike incident: Lessons in kernel security


Listen Later

Send us a Text Message.

In this episode of DevOps Sauna Season 4, the hosts dive into the recent CrowdStrike incident, which caused widespread bluescreen errors and significant disruptions globally. They explore why a seemingly routine update was deployed simultaneously to all CrowdStrike users, resulting in massive system crashes.

Joined by security expert and previous host Andy Allred, the discussion covers the role of CrowdStrike as an endpoint detection and response (EDR) system, its necessity for running with high privileges in kernel space, and the challenges of maintaining such critical security software.

The conversation highlights the need for rigorous testing, canary releases, and robust observability to prevent similar incidents. The hosts also discuss the implications of regulatory requirements, the importance of continuous delivery models in DevOps, and the lessons learned from the CrowdStrike mishap.

Despite the complexity and scale of the recovery process, the consensus is clear: Continuous improvement in testing and deployment practices is crucial for the stability and security of modern IT environments.

Create value in every commit with continuous delivery: https://www.eficode.com/services/continuous-delivery

Learn how to secure your DevOps practices, how to meet the needs of different stakeholders, and about combining Agility, structure, and high security in software development: https://www.eficode.com/blog/events/devsecops-webinar-secure-continuous-development-in-it-environments

...more
View all episodesView all episodes
Download on the App Store

DevOps Sauna from EficodeBy Eficode

  • 5
  • 5
  • 5
  • 5
  • 5

5

2 ratings


More shows like DevOps Sauna from Eficode

View all
The Changelog: Software Development, Open Source by Changelog Media

The Changelog: Software Development, Open Source

284 Listeners

Thoughtworks Technology Podcast by Thoughtworks

Thoughtworks Technology Podcast

40 Listeners

Soft Skills Engineering by Jamison Dance and Dave Smith

Soft Skills Engineering

269 Listeners

The Diary Of A CEO with Steven Bartlett by DOAC

The Diary Of A CEO with Steven Bartlett

7,001 Listeners

DevOps and Docker Talk: Cloud Native Interviews and Tooling by Bret Fisher

DevOps and Docker Talk: Cloud Native Interviews and Tooling

55 Listeners

Day Two DevOps by Packet Pushers

Day Two DevOps

15 Listeners

DevOps Paradox by Darin Pope & Viktor Farcic

DevOps Paradox

24 Listeners

Google SRE Prodcast by Salim Virji

Google SRE Prodcast

17 Listeners

Amerikkapodi by Helsingin Sanomat

Amerikkapodi

5 Listeners