CrowdStrike Global Outage (Crowd Struck) - ThreatWire

preview_player
Показать описание
DESCRIPTION BOX

⬇️ OPEN FOR LINKS TO ARTICLES TO LEARN MORE ⬇️

@endingwithali →

0:00 0 - Intro
00:08 1 - Scattered Spider Arrest
00:28 2 - Furry Hacker Are Back
01:21 3 - CVE Of the Week
01:38 4 - CrowdStrike
07:29 - Outro

LINKS
🔗 Story 1: Scattered Spider Arrest
🔗 Story 2: Furry Hacker Are Back
🔗 Story 3: CVE Of the Week
🔗 Story 4: CrowdStrike
The Technicals
The Cybersecurity Fallout
The Social Fallout

Thank you to @ludandschlattsmusicalempor6746 for the music !


-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆-----☆
____________________________________________

Founded in 2005, Hak5's mission is to advance the InfoSec industry. We do this through our award winning educational podcasts, leading pentest gear, and inclusive community – where all hackers belong.
Рекомендации по теме
Комментарии
Автор

I attended Defcon 30 for the first time. One of my best memories wasn't at a talk. I was browsing around the vendor hall and stopped by the Toool table (I think it was Toool) looking at the lock pick sets. I've never done lock picking before. A guy stepped up and was making a purchase of something then he looked at me and said in a stern voice "What Do You Want!" as if he was offended like I was staring at him invading his space. I said sorry, nothing and took one step to the side away from him. After he finished his purchase he handed it to me and said "this is for you!"

I was shocked and speechless. I said "uh, thank you!" and he smiled and walked away. It was a 9 piece pick set. I still have it and try to use it everyday... I still suck at picking but I have a better understanding and it made for an unforgettable memory of Defcon... I hope to go again and pay it forward to someone with a new pick set...

Have fun... dont' get caught...

akmartinez
Автор

Russia was unaffected since sanctions have banned them from using crowdstrike.

username
Автор

Cheers Ali! It appears that CrowdStrike's driver kit which is signed by Windows to access the Kernel apparently had a function that took two params. The first was 0 and the second being 0x9C which likely was meant to be an offset into a struct. In X64 architecture, when the R8 register loaded this value, it found there was not a valid address there and therefore BSOD.

mytechnotalent
Автор

The cto of crowdstrike was also the cto of macafee when that company effd up. So ClownStrike comes to mind.

bertblankenstein
Автор

The meme trying to blame nation states for the "AZURE OUTAGE"(LOL) is probs my fav. yes

ACatttttt
Автор

Thanks for the show Ali, keep it up! :)

jpguitaristcomposer
Автор

Thanks for the input! I had actually packed my schedule with almost non-stop talks for both events. I'll change my approach now and focus more on the in person value adds.

ModeFive
Автор

My early days of becoming an IT specialist, I was thrown into the trenches of multiple states across America. Our proud unit of mixed techs was amazing, the best guy on our crew nicknamed the “*B1-Dinosaur”* his Copper/Microwave helped us hold the line while we remember the trying times of perfecting our main tool a High Quality Dual Density [1.44MB] Floppy Disk, we fought long & hard to protect America during *The Real Y2K Wars*

Aloha_XERO
Автор

I like your teaching, , , I would like to start and become a professional hacker

elishevakipnyole
Автор

his dimples on his face drive me crazy

Proxyone
Автор

Dave Plummer has a couple videos diving deeper into the CrowdStrike matter.

JayKeyPu
Автор

YAY! I managed to post before the creepers! Good video, thanks for the content.

flc
Автор

Crowdstrike needs to buy everyone who works desktop support lunch…

Couchintheclouds
Автор

Thank you for showing us your beautiful mind. It it’s extremely attractive to listen to it work. Keep up the great content. Even for us very old black hats.

michaelcain
Автор

I am so excited that VetCon is going to have our own village this year and still get our party.

Whitecrabb
Автор

7:08 a reboot is required. How about 15 consecutive reboots being part of this solution ? Heard that too didn't y'all?

Vamanos
Автор

Shannon? Have you done semething with your hair? 😂

MrMcMoments
Автор

It's no secret that there is alot of computer viruses out there, even those affecting motherboards that critically impact our lives to use our computers. Sometimes it can be chain attacks that uses exploits to get into systems and cause damage or steal data from people or even big companies or the government itself. So it's important to note that CrowdStrike was not a big deal in comparison to other more serious threats out there, although CrowdStrike was a faulty patch update for a IT security solution, that impacted alot of systems... there's far worse things out there that can hit your computers harder and even delete data of the systems, so I'd say, CrowdStrike was like a mild one at best. A patch update can easily fix this problem, unlike with more serious viruses, trojans and rootkits and firmware exploits of motherboards and routers especially. But that's just my two cents, lol.

cougar-town
Автор

"Tebibyte"... Huh... Well god damn... The more you know!

Question for Ali: What programming books changed the way you look at coding? If ya got time. If not, I understand.

meh.
Автор

FWIW: I'm pretty sure the Azure outage was completely separate from Crowdstrike. It started and I think was completely fixed before blue-screens started popping up everywhere. The meme is still funny, but I mention it in the spirit of "it is our responsibility to provide accurate info to people who are not computer-savvy".

garanceadrosehn