CrowdStrike’s Cyber Outage Will Cost $Billions

The CrowdStrike defective software update that crashed computers, cancelled flights and disrupted hospitals around the world and the outage may have cost Fortune 500 companies as much as $5.4 billion in revenues.

The largest direct financial losses will likely be suffered by Fortune 500 companies in the healthcare and banking sectors.

With litigation and numerous lawsuits waiting in the wings, Crowdstrike is probably looking at billions more in fines, legal fees and lost revenue. 

CrowdStrike will probably be fined by US Government Regulators. Worse, as the CrowdStrike’s outage could have involved breaches and issues related to personal data, it could come under investigationby European regulators, which can impose fines of up to 4% of annual revenues.

In the US, CrowdStrike is also likely to see an avalanche of class action lawsuits. US law firms, including San Francisco-based Lieff Cabraser Heimann & Bernstein, are already reviewing and collecting data from clients related to business losses that “will help us hold Crowdstrike accountable for its disruption of global business and the consequences thereof for all Internet users.”

Further, CrowdStrike could see customers leave for competing firms and the outage has already cost the company and its investors $billions, including the damages to its stock market value, which it will likely not recover from any time soon.  

The primary cause of the failure stemmed from an update that CrowdStrike pushed to its flagship Falcon platform, which functions as a cloud-based service intended to protect businesses from cyber-attacks and disruptions. The update contained a bug which caused 8.5m Windows machines to crash en masse.

CrowdStrike is one of the world’s most important cyber security companies, and was valued at around $83bn before the outage. It services about 538 of the Fortune 1000 companies, according to its website, and operates around the world. 

The incident has taken a significant bite out of CrowdStrike’s stock price and CrowdStrike’s shares fell to $294 per share, and are presently trading at around $264. That’s a decline of more than 20%, and its market capitalisation could fall even further.

The consequences of its botched software update are proving severe, demonstrating just how many companies are reliant on a single supplier for the same services to keep operations running.

CrowdStrike have now said that it has laid out plans to ensure a similar issue can be prevented, including additional validation checks and improved testing by using testing types such as local developer testing and content update and rollback testing.

Fast Company   |     Lieff Cabraser   |   Reddit   |     Guardian   |     CNN   |    Silicon Republic   |   NYPost  

Imge:

You Might Also Read: 

Companies Must Review Their Cloud Strategies:


If you like this website and use the comprehensive 6,500-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

 


Cyber Security Intelligence: Captured Organised & Accessible


 

« Wiz Rejects Google's $23b Acquisition Offer
Most Wanted - North Korean Hackers  »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

LockLizard

LockLizard

Locklizard provides PDF DRM software that protects PDF documents from unauthorized access and misuse. Share and sell documents securely - prevent document leakage, sharing and piracy.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

NordLayer

NordLayer

NordLayer is an adaptive network access security solution for modern businesses — from the world’s most trusted cybersecurity brand, Nord Security. 

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

Grid32

Grid32

Grid32 provides independent computer system and physical security audit services to government and corporate clients of all sizes.

ShmooCon

ShmooCon

ShmooCon is an annual east coast hacker convention offering three days of demonstrations and discussions of critical infosec issues.

Thridwayv

Thridwayv

Thirdwayv helps your enterprise realize the full potential of loT connectivity. All while neutralizing security threats that can run ruin the customer experience - and your reputation.

PurpleSynapz

PurpleSynapz

PurpleSynapz provides hyper-realistic Cyber Security Training with a modern curriculum and Cyber Range.

CyFIR

CyFIR

CyFIR is a network investigation and Incident Response tool for performing live computer investigations across any size enterprise.

MyDocSafe

MyDocSafe

MyDocSafe is an all-in-one document security and e-sign software.

Raonsecure

Raonsecure

Raonsecure is one of Korea’s leading ICT security software companies – providing a variety of PC and mobile security solutions to financial institutions, government, and enterprise.

ditno

ditno

ditno uses machine learning to help you build a fully governed and micro-segmented network. Dramatically mitigate risk and prevent lateral movement across your organisation – all from one centralised

Cyber Griffin

Cyber Griffin

Founded by the City of London Police in 2017, Cyber Griffin is an initiative that supports businesses and individuals in the Square Mile to protect themselves from cyber crime.

Squad

Squad

Squad provides leading expertise to ensure protection against the most complex cyber threats. Combining the best practices of DevOps and Cybersecurity, we are committed to create a secured cyber space

NXTsoft

NXTsoft

NXTsoft’s solutions help businesses secure, connect and optimize their data to maximize revenue opportunities, enhance profitability, and mitigate cybersecurity risk.

ACI Learning

ACI Learning

ACI Learning - Training tomorrow’s industry leaders with formats for all types of learners in Audit, Cybersecurity, and IT.

Aravo Solutions

Aravo Solutions

Your Extended Enterprise is full of hidden risks – Aravo makes them visible, measurable, and manageable.

Abacus Group

Abacus Group

Abacus Group is a global IT services firm for alternative investment firms, providing an enterprise technology platform specifically designed to meet the unique needs of financial services.

Airlock Digital

Airlock Digital

Airlock Digital was created after many years of experience in implementing whitelisting/ allowlisting solutions in Federal Government and various enterprises in Australia.

Virtual IT Group (VITG)

Virtual IT Group (VITG)

VITG is a cyber security-focused Managed Service Provider (MSP).