97% of CrowdStrike systems are back online; Microsoft suggests Windows changes
Briefly

CrowdStrike CEO stated 97% of Windows systems with Falcon sensor software are restored post-update outage that affected 8.5 million systems, leaving 250,000 still offline.
Microsoft VP discussed over 5,000 engineers working on the fallout, emphasized the need for Windows resilience improvements, hinted at potential changes in line with security enhancements.
Microsoft looked to VBS enclaves and Azure Attestation for more secure options than current kernel-level access for Windows security solutions, aiming for system resilience and ongoing collaboration with partners.
Running security software in kernel mode grants vast system control but poses greater risk for catastrophic failures, as seen in the aftermath of CrowdStrike's faulty update.
Read at Ars Technica
[
]
[
|
]