100 days after CrowdStrike’s nightmare scenario, things are back to normal

On July 18, we experienced one of the biggest screw-ups in the history of the digital era. Millions of computers worldwide running the Windows operating system didn’t turn on. The culprit: a configuration issue with the Falcon Sensor tool developed by cybersecurity provider CrowdStrike. In simplest terms, an incorrect update was automatically pushed out to users that contained a fatal fault, sending computers falling like dominos as the world woke up.

Companies in the Fortune 500 lost an estimated $5.4 billion because of the outage. CrowdStrike’s share price tanked, and some suggested the company might never recover from the reputational damage.

But 100 days on, those doom-laden predictions have not come to pass.

“Our work found little to no evidence of customers shifting away from CrowdStrike,” write Andrew DeGasperi and Ari Friedman, at the financial services firm BNP Paribas, in a recent paper. The BNP Paribas researchers suspect that the speed at which CrowdStrike will close new deals and renew existing ones will take a minor hit, as current or would-be clients more carefully scrutinize what had previously been a sure bet, but they believe people will still ultimately ink deals with CrowdStrike.

DeGasperi and Friedman’s confidence is owed in part to the fact that CrowdStrike is still the dominant player in the end point detection and response (EDR) sector, with an estimated 18% market share, according to research firm IDC. That puts its share of the sector two percentage points higher than the next-biggest competitor, Microsoft.

One of the reasons people chose CrowdStrike was its reliability and speed of response to incidents. At a congressional subcommittee hearing in late September, CrowdStrike’s senior vice president of counter adversary operations said that, prior to the Falcon incident, the firm was pushing out 10 to 12 updates to its systems every day. That’s now changed in light of July’s outage, with customers now able to opt in to whether they want the updates across the board.

The company’s appearance on the subcommittee helped stanch some of the potential losses, says Brian Essex at JP Morgan. “The testimony reflected positively on CrowdStrike considering the nature of events that led to the outage, the company’s response, and CrowdStrike’s ongoing efforts to improve the resiliency of its platform and the systems it protects,” Essex wrote in a note following the hearing.

Essex believes that the company’s overall response to the incident has been a “masterclass in incident response.”

Not everyone is quite as rosy about CrowdStrike’s future, however. In a survey of cybersecurity service resellers conducted by investment bank Jefferies, 25% of respondents believed the ramifications of the Falcon outage would impact new business for CrowdStrike, while 63% said it will have an impact on existing customers renewing their contracts with the company.

More significantly, CrowdStrike’s share price is now trading at around $300 a share, compared to highs of nearly $390 a share prior to the incident—although it has regained significant value from its nadir of around $220 a share immediately after the Falcon outage. (CrowdStrike declined Fast Company’s request for comment.)

That quick turnaround is a reflection of CrowdStrike’s dominance within its sector, and a recognition within the industry that similar issues could befall anyone. 

Equity researchers at Scotiabank recently quizzed a chief information security officer (CISO) at a company with $10 billion in revenue that has been a CrowdStrike customer since 2016. The Falcon outage affected around 10% of the company’s computers, but it was able to return to normal operations within a week thanks to CrowdStrike’s help.

It was the firm’s first major issue with CrowdStrike, Scotiabank reported, and the financial impact was negligible compared to the cost savings CrowdStrike had given them previously. The CISO said that having its security part-provided by CrowdStrike since 2016 had helped lower the company’s overall spending on insurance by 10-15%, which was why they’d be sticking with CrowdStrike in the years to come. In fact, they’d agreed to spend around 10% more with CrowdStrike next year compared to this year.

They’re likely not alone, which is good news for the company as it tries to regain its standing with the general public. At the end of the day, CrowdStrike’s standing among those who bankroll its business doesn’t seem to have taken too big a hit.

https://www.fastcompany.com/91216849/100-days-after-crowdstrikes-nightmare-scenario-things-are-back-to-normal?partner=rss&utm_source=rss&utm_medium=feed&utm_campaign=rss+fastcompany&utm_content=rss

Creato 6mo | 28 ott 2024, 05:50:03


Accedi per aggiungere un commento

Altri post in questo gruppo

AI coding tools could bring us the ‘one-employee unicorn’

Welcome to AI DecodedFast Company’s weekly newsletter that breaks down the most important news in the world of AI. You can sign up to receive this newsletter every week 

24 apr 2025, 18:40:03 | Fast company - tech
Bot farms invade social media to hijack popular sentiment

Welcome to the world of social media mind control. By amplifying free speech with fake speech, you can numb the brain into believing just about anything. Surrender your blissful ignorance and swall

24 apr 2025, 13:50:11 | Fast company - tech
The economic case for saving human jobs

Few periods in modern history have been as unsettled and uncertain as the one that we are living through now. The established geopolitical order is facing its greatest challenges in dec

24 apr 2025, 13:50:11 | Fast company - tech
Patreon’s rivalry with Substack is growing. Who will win over creators?

Substack and Patreon are vying to become creators’ primary revenue stream.

For most influencers, payouts from platforms like Meta or Google aren’t enough to build a sustainable career. R

24 apr 2025, 11:40:04 | Fast company - tech
TikTok’s ‘SkinnyTok’ trend is under fire from EU regulators

The European Commission is coming for “SkinnyTok.”

EU regulators are investigating a recent wave of social media videos that promote extreme thinness and “tough-love” weight loss advice,

24 apr 2025, 00:10:04 | Fast company - tech
The subreddit r/AITA is headed for the small screen

The infamous “Am I The A**hole?” subreddit is making its way to the small screen.

Hosted by Jimmy Carr, the new game show for Comedy Central U.K. will feature members of the public appea

23 apr 2025, 19:30:03 | Fast company - tech
Ex-OpenAI workers ask state AGs to block for-profit conversion

Former employees of OpenAI are asking the top law enforcement officers in California and Delaware to s

23 apr 2025, 17:10:06 | Fast company - tech