How to Fix the Crowdstrike Thing
twitter.com
twitter.com
Their test setup was fine for the update data itself, it's just that they didn't catch it before it was sent out to production because they were testing the wrong thing. Oops.
HN comments from a green username citing a friend who knows someone aren't the greatest source, but this sounds so believeable
> Update as of 10:30 UTC on 19 July 2024: We have received reports of successful recovery from some customers attempting multiple Virtual Machine restart operations on affected Virtual Machines.
> We've received feedback from customers that several reboots (as many as 15 have been reported) may be required, but overall feedback is that reboots are an effective troubleshooting step at this stage.
Related picture - not long ago such a message would've been completely unacceptable, yet here we are.
With the utility of in a shared computer environment (say school library) you can get the administrative password with enough time.
vx-underground
@vxunderground
How to fix the Crowdstrike thing:
1. Boot Windows into safe mode
2. Go to C:\Windows\System32\drivers\CrowdStrike
3. Delete C-00000291*.sys
4. Repeat for every host in your enterprise network including remote workers
5. If you're using BitLocker jump off a bridge