In Security Warning After CrowdStrike Outage, Indian Govt Issues To-Do List For Affected Microsoft Windows Users
In Security Warning After CrowdStrike Outage, Indian Govt Issues To-Do List For Affected Microsoft Windows Users
Microsoft services and Windows PCs have gone offline because of a third-party outage which has affected millions of users, airlines and more.

The Indian government has acted on the major IT outage that has caused havoc across the globe on Friday. The Indian Computer Emergency Response Team or CERT-In has published an urgent security bulletin sharing the details of the outage that has taken millions of Windows PCs and other Microsoft services offline.

CrowdStrike is the company that operates the security solutions powering Windows systems and Microsoft products. The software updates and patches you get for the Windows PCs are offered by CrowdStrike and the Falcon is a major component that keeps the PCs protected from threats and other bad actors.

The CERT-In warning with a critical rating shares the details of the outage. “It has been reported that Windows hosts related to Crowd strike agent, Falcon Sensor, are facing outages and getting crashed due to a recent update received in the product. The concerned windows hosts are experiencing Blue Screen of Death (BSOD). related to Falcon Sensors.”

The Minister of Electronics And Information Technology, Ashwini Vaishnaw has shared this update on his X profile,

Minister Vaishnaw also assured that the National Informatics Centre (NIC) network was not affected by the CrowdStrike outage.

CERT-In Security Advise For Windows Users Over BSOD

The issues occurred in the latest update of CrowdStrike and the changes have been reverted by the CrowdStrike team. If hosts are still crashing and unable to stay online to receive the Channel File Changes, the following steps can be used as work around for this issue:

– Boot Windows into Safe Mode or the Windows Recovery Environment

– Navigate to the C:\Windows\System32\drivers\CrowdStrike directory

– Locate the file matching “C-00000291*.sys”, and delete it.

– Boot the host normally.

The bulletin also says that users are advised to check the latest updates from CrowdStrike portal.

What's your reaction?

Comments

https://ugara.net/assets/images/user-avatar-s.jpg

0 comment

Write the first comment for this!