pwshub.com

CrowdStrike update blunder may cost world billions

The cost of CrowdStrike's apocalyptic Falcon update that brought down millions of Windows computers last week may be in the billions of dollars, and insurance isn't covering most of that.

That's according to cloud monitoring and insurance biz Parametrix, which this week claimed that US Fortune 500 companies – of which around a fourth were impacted – took a $5.4 billion hit from CrowdStrike's broken channel file. This doesn't include losses for Microsoft; Redmond was excluded from the calculations because "they were a key player in the event."

(With a total $18 trillion annual revenue, the Fortune 500 can probably afford it.)

Parametrix says insurance might only pay out about $540 million to $1.1 billion of that hit for the Fortune 500, or between 10 and 20 percent. That's apparently "due to many companies' large risk retentions, and to low policy limits relative to the potential outage loss," according to the report.

Some industries in the Fortune 500 escaped mostly unscathed. Manufacturing, transportation (excluding airlines), and finance only experienced some tens of millions in losses total each, it's estimated, which is bad but not nearly as bad as other sectors. Retail and IT ate half a billion each total, airlines lost $860 million, and an estimated over three billion dollars was destroyed between the banking and healthcare sectors.

On a per-company basis, however, Y2K24 was by far the most expensive for airlines, which on average each lost $143 million, followed by the tech industry at $113 million each on average. According to Parametrix. Pinch of salt?

  • How did a CrowdStrike file crash millions of Windows computers? We take a closer look at the code
  • The months and days before and after CrowdStrike's fatal Friday
  • How a cheap barcode scanner helped fix CrowdStrike'd Windows PCs in a flash
  • Firms skip security reviews of major app updates about half the time

Outside the Fortune 500, cyber-analysis firm CyberCube reckoned the outage resulted in $15 billion worth of losses globally. Not bad for a single update.

The figures from CyberCube are even more dismal, saying insurance will only cover about three to ten percent of losses given the smaller companies involved.

Thankfully, CrowdStrike is working hard to make it up to its teammates and partners that sell the software and provide support for it to customers. These folks were generously offered $10 gift codes for Uber Eats, which should help pay for maybe half of someone's lunch, some of which were promptly denied due to Uber suspecting the high rate of redemption was an indication of fraud.

When asked about these Uber Eats gift cards, CrowdStrike told The Register they were for "teammates and partners" only, and not for customers.

Finally, the CEO of CrowdStrike George Kurtz claimed today 97 percent of Windows systems that crashed last week from the bad update are now back online. ®

Source: theregister.com

Related stories
1 month ago - SatNad himself offered CrowdStrike recovery help, Redmond says, before suggesting airline's IT is in a mess Microsoft has labelled Delta Air Lines' accusations it's partly to blame for the outages caused by CrowdStrike’s buggy software...
1 week ago - VP Adam Meyers to testify about that faulty software update which ruined July and some of August Crowdstrike is to be hauled before the US House Homeland Security Committee this month to explain why its faulty software update - the one...
1 month ago - That horse has not just bolted, it's trampled all over kernel space CrowdStrike, after suggesting canary testing as a way to ensure it avoids future blunders leading to global computer outages, has been sued in federal court by investors...
1 month ago - Now there's an idea – parsing config data in user mode Updated  Microsoft has vowed to reduce cybersecurity vendors' reliance on kernel-mode code, which was at the heart of the CrowdStrike super-snafu this month.…
1 month ago - Promises to discourage use of kernel drivers – so they don't crash the world again Microsoft has admitted that its estimate of 8.5 million machines crashed by CrowdStrike's faulty software update was almost certainly too low, and vowed to...
Other stories
10 minutes ago - We tested multiple types of adjustable dumbbells, and these are the ones that made the cut.
11 minutes ago - More states are offering the ability to change your Medigap coverage to purchase a cheaper plan without a physical exam.
11 minutes ago - Why You Can Trust CNET Our expert, award-winning staff selects the products we cover and rigorously researches and tests our top picks. If you buy...
11 minutes ago - Revised App Review Guidelines are now being applied to iPadOS 18, the latest version of its iPad-exclusive operating system. The OS will give European users the ability to access apps from third-party sources beyond the traditional App...
11 minutes ago - Doom's Henchmen face off against Allies of the Avengers in the new game mode that'll arrive in Fortnite on Sept. 17.