Select your language

How does the CrowdStrike failure affect the security of organizations and individuals?

¿Cómo incide el fallo de CrowdStrike en la seguridad de organizaciones y personas?

International. After what has been described by some experts as "the largest computer blackout in history", we analyse the possible security incidents that could arise from the failure of the CrowdStrike platform and the fall of Microsoft.

Although the full extent of the worldwide disruptions has yet to be determined, it is already expected that the global failure of Microsoft's services will involve significant risks in areas such as cybersecurity, physical security and video surveillance, among others.

In fact, the United States Department of Homeland Security has already reported that threat actors were taking advantage of this incident to conduct phishing and other malicious activities, such as launching fake websites to capture data: "Remain vigilant and only follow instructions from legitimate sources," reads a bulletin issued by the Cybersecurity and Infrastructure Security Agency (CISA). of the Department.

According to Víctor Ruiz, founder of the company SILIKN, certified cybersecurity instructor (CSCT) and leader of the Querétaro Chapter of the OWASP Foundation, "cybercriminals have moved quickly to establish phishing campaigns and launch social engineering attacks, impersonating CrowdStrike. They inform companies that they can download an update or security patch that actually contains malware."

- Publicidad -

The expert said that the appearance of malicious domains designed to take advantage of the recent interruption for scam purposes has also been reported, among which the following have been identified:

  • crowdstrike-bsod[.] COM
  • crowdstrike-helpdesk[.] COM
  • crowdstrike0day[.] COM
  • crowdstrike[.] Fail
  • crowdstrikebluescreen[.] COM
  • crowdstrikebsod[.] COM
  • crowdstrikebug[.] COM
  • crowdstrikeclaim[.] COM
  • crowdstrikedoomsday[.] COM
  • crowdstrikedown[.] Site
  • crowdstrikefail[.] COM
  • crowdstrikefix[.] COM
  • crowdstrikefix[.] zip
  • crowdstrikehealthcare[.] COM
  • crowdstrikeoopsie[.] COM
  • crowdstrikeoutage[.] info
  • crowdstrikereport[.] COM
  • crowdstriketoken[.] COM
  • crowdstrikeupdate[.] COM
  • crowdstrikeupdate[.] COM
  • fix-crowdstrike-apocalypse[.] COM
  • fix-crowdstrike-bsod[.] COM
  • iscrowdstrikedown[.] COM
  • iscrowdstrikedown[.] COM
  • isitcrowdstrike[.] COM
  • MicrosoftCrowdStrike[.] COM
  • whatiscrowdstrike[.] COM

Below are some of the other possible consequences of the ruling.

Cybersecurity
Services such as Microsoft 365, Azure AD, and others can be affected, preventing access to critical resources. The inability to access authentication services such as Azure AD can leave users unable to authenticate to dependent systems and applications.

Risk of attacks
Attackers can take advantage of confusion and the need for technical support to launch phishing attacks and distribute malware. In addition, instability in services can be seen as an opportunity to attempt brute force attacks and other intrusion methods.

Data exposure
Service interruption can lead to the loss of data not properly backed up and unauthorized access due to temporary vulnerabilities or backdoors can be exploited during periods of outage.

System Integration
Access control systems that rely on cloud authentication services can fail, preventing authorized access to facilities. The connectivity of IoT devices and alarm systems integrated with Microsoft platforms can also be compromised.

Monitoring and Response
In Security Operations Centers (SOCs), cloud-based tools and dashboards can be inaccessible, making it difficult to monitor and respond to incidents. Similarly, notification systems that rely on cloud services may not work, delaying incident response.

- Publicidad -

CCTV (Closed Circuit Television)
The inability to access cloud services may prevent real-time viewing of security cameras and recordings stored in the cloud may not be accessible, complicating the review of critical events.

Remote Surveillance
Remote surveillance services that rely on Microsoft Azure may go down, affecting the ability to monitor and protect facilities. On the other hand, an interruption in video recording and storage can leave areas unattended, increasing the risk of physical security incidents.

CrowdStrike speaks out
The cybersecurity company has confirmed the outage by specifying that:

  • It affects Windows 10 and later systems.
  • It does not affect Mac and Linux hosts.
  • It is due to the CrowdStrike Falcon content update and not malicious cyber activity.

In addition, CrowdStrike has indicated that the issue has been identified, isolated, and a fix has been implemented. Organizations that are CrowdStrike customers should refer to the CrowdStrike guide and their customer portal to resolve the issue.

Mitigation measures

  • Contingency and recovery: Develop contingency plans that include specific procedures for cloud service failures.
  • Data backup: Maintain local and redundant backups of critical data and CCTV recordings.
  • Backup systems: Implement backup systems for authentication and monitoring that do not rely exclusively on cloud services.
  • Physical security: Use additional physical security solutions, such as security guards, during periods of disruption.
  • Autonomous tools: use monitoring and alerting tools that work independently of cloud services.

Additionally, CISA recommends organizations that remind their employees to avoid clicking on phishing emails or suspicious links.


No comments

• If you're already registered, please log in first. Your email will not be published.

Leave your comment

In reply to Some User
Security becomes a technological platform

Security becomes a technological platform

Mexico. Security is moving from a set of standalone systems to an integrated technology platform that combines artificial intelligence, video analytics, sensors, access control, and data platforms....

Security industry in Mexico and Latin America continues its expansion and professionalization

Security industry in Mexico and Latin America continues its expansion and professionalization

International. The security industry in Mexico and Latin America maintains a growth trend driven by digital transformation, the increase in physical and cyber risks, as well as the need to protect...

Veeam Introduces Agent Commander to Address AI Agent Risks in Enterprise Environments

Veeam Introduces Agent Commander to Address AI Agent Risks in Enterprise Environments

United States. Veeam Software today announced the launch of Agent Commander, a solution aimed at helping organizations detect risks associated with artificial intelligence, protect AI-based systems...

Key and asset management, the key to optimizing operations in logistics, distribution and construction companies

Key and asset management, the key to optimizing operations in logistics, distribution and construction companies

In industries where every minute counts, efficient asset and resource management has become a strategic factor to ensure operational continuity, safety, and productivity. By: Héctor Meléndez,...

Genesis Security Reduces False Alarms by 62% Through Milestone Integration and Actuate AI Analytics

Genesis Security Reduces False Alarms by 62% Through Milestone Integration and Actuate AI Analytics

Puerto Rico. A centralized monitoring operation developed by Genesis Security was able to significantly reduce the volume of false alarms in its security systems, thanks to the integration of...

Case study: Solar cameras and thermal intelligence optimize the safety of aquaculture farms

Case study: Solar cameras and thermal intelligence optimize the safety of aquaculture farms

Türkiye. An open-ocean fish farming farm in Turkey implemented a smart surveillance system based on Dahua solar cameras, thermal monitoring, and wireless data transmission to improve safety and...

 The Hidden Security Gap in Data Centers

The Hidden Security Gap in Data Centers

Imagine the journey of an authorized technician inside a data center. When he arrives, he presents his credential and enters the premises, and before entering the server corridor he needs a key to...

Digital fraud increased at Christmas

Digital fraud increased at Christmas

Colombia. During the holiday season, as e-commerce and digital transactions intensified, online fraud attempts also increased. Fake promotions, impersonation of businesses and messages that...

Milestone XPerience Days arrived in Mexico City with innovations in intelligent video management

Milestone XPerience Days arrived in Mexico City with innovations in intelligent video management

Mexico. Milestone Systems, a leading provider of open platform video management software (VMS), hosted the Milestone XPerience Days Mexico 2025 event, a gathering that brought together industry...

Hikvision Mexico launches the third edition of

Hikvision Mexico launches the third edition of "Hikvision Women"

Mexico. Hikvision Mexico announced the launch of the third edition of its "Hikvision Women" program, an initiative aimed at strengthening the participation and professional development of women in...

Suscribase Gratis
Remember Me
SUBSCRIBE TO OUR ENGLISH NEWSLETTER
DO YOU NEED A SERVICE OR PRODUCT QUOTE?
LATEST INTERVIEWS
SITE SPONSORS










LATEST NEWSLETTER
Latest Newsletter