* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Sunday, May 31, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    Fire Erupts at Boardman Business, Sending Thick Smoke Billowing

    This Hidden Entertainment Stock Is Set to Skyrocket to Record Highs

    Caesars Entertainment, Sonoma County casino builder and Las Vegas Strip icon, is selling for nearly $6 billion – The Press Democrat

    Discover the Latest Exciting Events and Updates at Waunakee Public Library!

    How the Caesars Entertainment Acquisition Could Revolutionize Las Vegas: Expert Insights

    What’s Driving Caesars Entertainment Stock to New Heights Today?

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    I Tried to Sell My House With a Chatbot – The New York Times

    Anthropic’s Partnership with the Pope on AI Harms: Genuine Collaboration or Just ‘Vatican-Washing’?

    Have Your Say: Share Your Thoughts on Technology in North Dakota Schools!

    Cutting-Edge Anti-Jamming Technologies Revolutionizing Modern Drone Operations

    Thea Energy Raises $100 Million to Transform Fusion Power Plant Technology

    Kalispell City Council Approves License Plate Reader Technology and Fee Hikes to Boost On-Street Parking Availability

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    Fire Erupts at Boardman Business, Sending Thick Smoke Billowing

    This Hidden Entertainment Stock Is Set to Skyrocket to Record Highs

    Caesars Entertainment, Sonoma County casino builder and Las Vegas Strip icon, is selling for nearly $6 billion – The Press Democrat

    Discover the Latest Exciting Events and Updates at Waunakee Public Library!

    How the Caesars Entertainment Acquisition Could Revolutionize Las Vegas: Expert Insights

    What’s Driving Caesars Entertainment Stock to New Heights Today?

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    I Tried to Sell My House With a Chatbot – The New York Times

    Anthropic’s Partnership with the Pope on AI Harms: Genuine Collaboration or Just ‘Vatican-Washing’?

    Have Your Say: Share Your Thoughts on Technology in North Dakota Schools!

    Cutting-Edge Anti-Jamming Technologies Revolutionizing Modern Drone Operations

    Thea Energy Raises $100 Million to Transform Fusion Power Plant Technology

    Kalispell City Council Approves License Plate Reader Technology and Fee Hikes to Boost On-Street Parking Availability

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Why did CrowdStrike cause the Windows Blue Screen?

July 23, 2024
in Technology
Why did CrowdStrike cause the Windows Blue Screen?
Share on FacebookShare on Twitter

Flavijus Piliponis â stock.ado

The ‘blue screen pf death’ signals a catastrophic Windows failure, which is exactly what many people faced on 19 July 2024 – but why did it happen?


Cliff Saran

By

Cliff Saran,
Managing Editor

Published: 23 Jul 2024 14:43

David William Plummer, a former Microsoft software engineer who developed Windows Task Manager, has posted a video describing how the CrowdStrike update could have caused Windows to halt. 

He described CrowdStrike Falcon as anti-malware for Windows servers, which “proactively detects new attacks” and analyses application behaviour. To do this, CrowdStrike needs to run as a kernel device driver.

Kernel device drivers usually provide a way to abstract hardware, such as graphics cards, from applications. When they run, they generally have full access to the computer and operating system and, in operating system terminology, they are said to run at “Ring Zero”. This is different to application code, which users run in the operating system’s user space known as “Ring One”.

The difference, as Plummer notes, is that when a user application crashes, nothing else on the computer should be affected. However, a fault in code running at Ring Zero is considered so serious that the operating system immediately halts, which, in Windows results in the so-called Blue Screen of Death.

“Even though there’s no hardware device that it’s really talking to, by writing the code as a device driver, CrowdStrike lives down in the kernel Ring Zero and has complete and unfettered access to the system data structures and the services that CrowdStrike believes it needs to do its job,” said Plummer.

Certified device drivers

Plummer noted that Microsoft, and likely also CrowdStrike, are aware of the stakes when software is running code in kernel mode, adding: “That’s why Microsoft offers the WHQL [Windows Hardware Quality Labs] certification.”

According to Plummer, the certification involves device driver software providers to test their code on various platforms and system configurations. The code is then signed digitally by Microsoft, which certifies that it is compatible with the Windows operating system. Plummer said the certifications process means that Windows users can be reasonably confident that the driver software is robust and trustworthy.

Certification is too slow to ensure anti-malware protection such as CrowdStrike is released as software updates every time there is a new threat. Plummer believes it is more likely that  CrowdStrike will often release a definition file that is processed by its Windows kernel driver. This gets around the WHQL device driver certification process and means users have access to the latest protection. 

“You can already perhaps see the problem,” he added. “Let’s speculate for a moment that the CrowdStrike dynamic definition file is not merely a malware definition but a complete program written in pseudocode that the driver can then execute.”

He said this would allow the device driver from CrowdStrike to execute the definition file as code running within the Windows kernel at Ring Zero even though the update itself has never been signed. “Executive p-code [pseudocode] in the kernel is risky at best and, at worst, is asking for trouble,” said Plummer.

By looking at crash dumps posted on X (formerly Twitter), Plummer said that a “null pointer reference” caused an empty file containing zeros to be uploaded by the CrowdStrike device driver, rather than the actual pseudocode.

“We don’t know how or why this happened, but what we know is that the CrowdStrike driver that handles and processes these updates is not very resilient and appears to have inadequate error-checking and parameter validation,” he added.

These are needed to ensure that data values required by the software are valid and good. If they are not, the error should not cause the entire system to crash, Plummer said. 

While it is often possible to restart Windows from the last known “good state”, which can remove rogue kernel drivers that prevent the operating system from booting up, Plummer said the situation was made worse by the fact that CrowdStrike is marked as a boot-start driver, which means it is needed for Windows to start up correctly.

While it is too early to understand how to ensure this never happens again, it is clear that there are serious limitations in Microsoft’s WHQL certification that allowed CrowdStrike to install an anti-malware update that had such a devastating impact across the Windows community.

Read more on Microsoft Windows software


Crowdstrike outage explained: What caused it and what’s next

SeanKerner

By: Sean Kerner


Defective CrowdStrike update triggers mass IT outage

RobWright

By: Rob Wright


CrowdStrike update chaos explained: What you need to know

AlexScroxton

By: Alex Scroxton


Okta: 4 customers compromised in social engineering attacks

ArielleWaldman

By: Arielle Waldman

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : Computer Weekly – https://www.computerweekly.com/news/366596573/Why-did-CrowdStrike-cause-the-Windows-Blue-Screen

Tags: CrowdStriketechnologyWindows
Previous Post

By embracing liquid cooling, AI powerhouse Supermicro enables 30% more computing power — with the same power budget

Next Post

Hybrid multicloud storage: Pros, cons and key workloads

Fire Erupts at Boardman Business, Sending Thick Smoke Billowing

May 31, 2026

Pete Buttigieg Rises as a Major Force in Democratic Endorsements, Signaling Big Moves Ahead

May 31, 2026

I Tried to Sell My House With a Chatbot – The New York Times

May 31, 2026

HS Sports Scoreboard – Saturday May 30th – JTV Jackson

May 31, 2026

Ecology Action Center recommends opting out of electricity aggregation this year – WGLT

May 31, 2026

South Korea Expands Top-Tier Visa to Science, Tech Academics – 조선일보

May 31, 2026

Internships That Empower Students to Drive Mission-Driven Science and Technology

May 31, 2026

Must-Know Tips for Starting Your Backyard Chicken Flock Successfully

May 31, 2026

Heartbreaking Loss: Canada Falls to Finland in Men’s Hockey World Championship Semifinals

May 31, 2026

Top Moments from Economy Class and Beyond: Week Ending May 30th

May 31, 2026

Categories

Archives

May 2026
M T W T F S S
 123
45678910
11121314151617
18192021222324
25262728293031
« Apr    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,241)
  • Economy (1,264)
  • Entertainment (22,141)
  • General (21,822)
  • Health (10,297)
  • Lifestyle (1,274)
  • News (22,149)
  • People (1,265)
  • Politics (1,284)
  • Science (16,477)
  • Sports (21,761)
  • Technology (16,249)
  • World (1,254)

Recent News

Fire Erupts at Boardman Business, Sending Thick Smoke Billowing

May 31, 2026

Pete Buttigieg Rises as a Major Force in Democratic Endorsements, Signaling Big Moves Ahead

May 31, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version