TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

CrowdStrike Incident Analysis

19 pointsby daenney10 months ago

2 comments

vr-wannabe10 months ago
Neither Tavis Ormanady&#x27;s, Patrick&#x27;s or the C++ professional&#x27;s posts go into detail of how the bug works in CrowdStrike&#x27;s Falcon sensor. All of it just pointing to a debugger&#x2F;disassembly output and casting some predictions. (for me personally I trust Tavis&#x27; analysis because ... well its his field of specialty over the last decade or so).<p>But still, none of the tweets mentioned come close to even explaining the issue (as in why the .sys channel update file being filled with zeros leading the CS driver to actually crash, the actual bug in the driver and what how it would&#x27;ve functioned normally before the faulty .sys file was pushed).<p>for reference, to see the whole tweet without twitter account:<p><a href="https:&#x2F;&#x2F;twitter-thread.com&#x2F;t&#x2F;1814762302337654829" rel="nofollow">https:&#x2F;&#x2F;twitter-thread.com&#x2F;t&#x2F;1814762302337654829</a>
评论 #41024288 未加载
irundebian10 months ago
I don&#x27;t like his style of communication.