{"id":6855,"date":"2024-08-26T11:47:46","date_gmt":"2024-08-26T11:47:46","guid":{"rendered":"https:\/\/digitaltradecenter.com\/index.php\/2024\/08\/26\/microsoft-plans-september-cybersecurity-event-to-discuss-changes-after-crowdstrike-outage\/"},"modified":"2024-08-26T11:47:46","modified_gmt":"2024-08-26T11:47:46","slug":"microsoft-plans-september-cybersecurity-event-to-discuss-changes-after-crowdstrike-outage","status":"publish","type":"post","link":"https:\/\/digitaltradecenter.com\/index.php\/2024\/08\/26\/microsoft-plans-september-cybersecurity-event-to-discuss-changes-after-crowdstrike-outage\/","title":{"rendered":"Microsoft plans September cybersecurity event to discuss changes after CrowdStrike outage"},"content":{"rendered":"<p class=''>Microsoft&nbsp;said Friday it will hold a conference in September for cybersecurity firms to discuss ways the industry can evolve following a faulty&nbsp;CrowdStrike&nbsp;software update that caused millions of Windows computers to crash in July.<\/p>\n<p class=''>The incident sent internet-connected systems&nbsp;into disarray. Airlines canceled thousands of flights, logistics companies reported package delivery delays and hospitals delayed medical appointments.&nbsp;Delta Air Lines, which said fallout from the outage cost the company&nbsp;$550 million, is seeking damages from CrowdStrike and Microsoft.<\/p>\n<div id='taboolaReadMoreBelow'><\/div>\n<p class=''>Microsoft will meet with CrowdStrike and other security companies at its campus in Redmond, Washington, on Sept. 10 to discuss how to prevent similar issues in the future, a Microsoft executive told CNBC in an interview. The person requested anonymity because they didn\u2019t have approval to discuss internal matters publicly.<\/p>\n<p class=''>The executive said participants at the Windows Endpoint Security Ecosystem Summit will explore the possibility of having applications rely more on a part of Windows called user mode instead of the more privileged kernel mode.<\/p>\n<p class=''>Software from CrowdStrike&nbsp;Check Point,&nbsp;SentinelOne&nbsp;and others in the endpoint-protection market currently depend on kernel mode. Such access helps SentinelOne \u201cmonitor and stop bad behavior and prevent malware from turning off security software,\u201d a spokesperson said.<\/p>\n<p class=''>Applications in user mode are isolated, meaning that if one crashes, it won\u2019t bring down others. But an application in kernel mode that fails can cause all of Windows to crash. On July 19, CrowdStrike released a buggy content configuration update for its Falcon sensor for Windows computers, with the intent to gather data on new attacks, prompting crashes at the operating system level. IT administrators rebooted PCs that received the update displaying a \u201cblue screen of death\u201d screen, one by one.<\/p>\n<p class=''>The Microsoft executive said removing kernel access in Windows would only solve a small percentage of potential problems.<\/p>\n<p class=''>Apple&nbsp;in recent years has&nbsp;limited&nbsp;kernel access in macOS and the company&nbsp;discourages&nbsp;developers from using kernel extensions.<\/p>\n<p class=''>Attendees at Microsoft\u2019s Sept. 10 event will also discuss the adoption of eBPF technology, which checks if programs will run without triggering system crashes, and memory-safe programming languages such as Rust, the executive said.<\/p>\n<p class=''>Last year Microsoft&nbsp;donated&nbsp;$1 million to the nonprofit Rust Foundation, which pays stipends to people working on the language.<\/p>\n<p class=''>Microsoft competes with CrowdStrike with its Defender for Endpoint product. That team will attend like any other cybersecurity company and won\u2019t receive preferential treatment, the executive said.<\/p>\n<p class=''>\u201cWe will share further updates on these conversations following the event,\u201d Microsoft Corporate Vice President Aidan Marcuss wrote in a&nbsp;blog post.<\/p>\n<\/p>\n<div>This post appeared first on NBC NEWS<\/div>\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Microsoft&nbsp;said Friday it will hold a conference in September for cybersecurity firms to discuss ways the industry can evolve following a faulty&nbsp;CrowdStrike&nbsp;software update that caused millions of Windows computers to crash in July. The incident sent internet-connected systems&nbsp;into disarray. Airlines canceled thousands of flights, logistics companies reported package delivery delays and hospitals delayed medical appointments.&nbsp;Delta <\/p>\n","protected":false},"author":1,"featured_media":6856,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[22],"tags":[],"class_list":{"0":"post-6855","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-business"},"_links":{"self":[{"href":"https:\/\/digitaltradecenter.com\/index.php\/wp-json\/wp\/v2\/posts\/6855","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/digitaltradecenter.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/digitaltradecenter.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/digitaltradecenter.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/digitaltradecenter.com\/index.php\/wp-json\/wp\/v2\/comments?post=6855"}],"version-history":[{"count":0,"href":"https:\/\/digitaltradecenter.com\/index.php\/wp-json\/wp\/v2\/posts\/6855\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/digitaltradecenter.com\/index.php\/wp-json\/wp\/v2\/media\/6856"}],"wp:attachment":[{"href":"https:\/\/digitaltradecenter.com\/index.php\/wp-json\/wp\/v2\/media?parent=6855"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/digitaltradecenter.com\/index.php\/wp-json\/wp\/v2\/categories?post=6855"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/digitaltradecenter.com\/index.php\/wp-json\/wp\/v2\/tags?post=6855"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}