CrowdStrike’s Cyber Outage Will Cost $Billions

The CrowdStrike defective software update that crashed computers, cancelled flights and disrupted hospitals around the world and the outage may have cost Fortune 500 companies as much as $5.4 billion in revenues.

The largest direct financial losses will likely be suffered by Fortune 500 companies in the healthcare and banking sectors.

With litigation and numerous lawsuits waiting in the wings, Crowdstrike is probably looking at billions more in fines, legal fees and lost revenue. 

CrowdStrike will probably be fined by US Government Regulators. Worse, as the CrowdStrike’s outage could have involved breaches and issues related to personal data, it could come under investigationby European regulators, which can impose fines of up to 4% of annual revenues.

In the US, CrowdStrike is also likely to see an avalanche of class action lawsuits. US law firms, including San Francisco-based Lieff Cabraser Heimann & Bernstein, are already reviewing and collecting data from clients related to business losses that “will help us hold Crowdstrike accountable for its disruption of global business and the consequences thereof for all Internet users.”

Further, CrowdStrike could see customers leave for competing firms and the outage has already cost the company and its investors $billions, including the damages to its stock market value, which it will likely not recover from any time soon.  

The primary cause of the failure stemmed from an update that CrowdStrike pushed to its flagship Falcon platform, which functions as a cloud-based service intended to protect businesses from cyber-attacks and disruptions. The update contained a bug which caused 8.5m Windows machines to crash en masse.

CrowdStrike is one of the world’s most important cyber security companies, and was valued at around $83bn before the outage. It services about 538 of the Fortune 1000 companies, according to its website, and operates around the world. 

The incident has taken a significant bite out of CrowdStrike’s stock price and CrowdStrike’s shares fell to $294 per share, and are presently trading at around $264. That’s a decline of more than 20%, and its market capitalisation could fall even further.

The consequences of its botched software update are proving severe, demonstrating just how many companies are reliant on a single supplier for the same services to keep operations running.

CrowdStrike have now said that it has laid out plans to ensure a similar issue can be prevented, including additional validation checks and improved testing by using testing types such as local developer testing and content update and rollback testing.

Fast Company   |     Lieff Cabraser   |   Reddit   |     Guardian   |     CNN   |    Silicon Republic   |   NYPost  

Imge:

You Might Also Read: 

Companies Must Review Their Cloud Strategies:


If you like this website and use the comprehensive 6,500-plus service supplier Directory, you can get unrestricted access, including the exclusive in-depth Directors Report series, by signing up for a Premium Subscription.

  • Individual £5 per month or £50 per year. Sign Up
  • Multi-User, Corporate & Library Accounts Available on Request

 


Cyber Security Intelligence: Captured Organised & Accessible


 

« Wiz Rejects Google's $23b Acquisition Offer
Most Wanted - North Korean Hackers  »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

Clayden Law

Clayden Law

Clayden Law advise global businesses that buy and sell technology products and services. We are experts in information technology, data privacy and cybersecurity law.

LockLizard

LockLizard

Locklizard provides PDF DRM software that protects PDF documents from unauthorized access and misuse. Share and sell documents securely - prevent document leakage, sharing and piracy.

ZenGRC

ZenGRC

ZenGRC - the first, easy-to-use, enterprise-grade information security solution for compliance and risk management - offers businesses efficient control tracking, testing, and enforcement.

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

TrustedIA

TrustedIA

TrustedIA is a cyber and protective security company. Our mission is to help businesses protect themselves from disruptive events that can impact their successful operation.

SANS Institute

SANS Institute

SANS is the most trusted and by far the largest source for information security training and security certification in the world.

European Internet Forum (EIF)

European Internet Forum (EIF)

EIF’s mission is to help provide European political leadership for the political, economic and social challenges of the worldwide digital transformation.

StratoKey

StratoKey

StratoKey is an intelligent Cloud Access Security Broker (CASB) that secures your cloud and SaaS applications against data breaches, so you can do secure and compliant business in the cloud.

Threat Intelligence

Threat Intelligence

Threat Intelligence is a specialist security company providing penetration testing, threat intelligence, incident response and training services.

QA

QA

QA is a leading IT training provider in the UK with over 1,500 courses covering all areas of IT including Cyber Security.

Secura

Secura

The Secura Cyber Security and Intelligence system predicts and prevents security threats by discovering hidden patterns through the meticulous analysis of large amounts of data.

Osirium

Osirium

The Osirium PxM Privileged Access Management platform addresses both security and compliance requirements by defining who gets access to what and when.

Cyber NYC

Cyber NYC

Cyber NYC is a suite of strategic investments to grow New York City’s cybersecurity workforce, help companies drive innovation, and build networks and community spaces.

ISARR

ISARR

The ISARR software platform - your bespoke Risk, Resilience & Security Management solution. Simple, cost effective and adaptable, now and into the future.

Krypsis

Krypsis

Krypsys is an information security company with a focus on helping you defend your information and data against emerging security threats.

YorCyberSec

YorCyberSec

YorCyberSec act as a trusted Cyber and Information Security broker and procurement specialist. We help companies to Reduce Risk, Increase Assurance and Improve Performance.

Cyber Lockout

Cyber Lockout

Comprehensive ransomware insurance and preventative cybersecurity technology solution, working together to help protect businesses 24/7/365.

Winbond Electronics

Winbond Electronics

Winbond is a Specialty memory IC company. Product lines include Code Storage Flash Memory, TrustME® Secure Flash, Specialty DRAM and Mobile DRAM.

FoxTech

FoxTech

FoxTech is an independent, friendly and deeply specialised cyber security company in the UK, with expertise spanning decades of Public Sector and Government services.

AnyTech365

AnyTech365

AnyTech365 is a leading European IT Security and Support company helping end users and small businesses have a worry-free experience with all things tech.