CrowdStrike's Falcon Sensor also linked to Linux kernel panics and crashes
ID: a5a5b0a6-c753-5a40-bc84-7c5a12304767
STIX ID: report--a5a5b0a6-c753-5a40-bc84-7c5a12304767
Feed Name: The Register (Security)
A report describes how CrowdStrike’s Falcon Sensor triggered massive Windows outages and Linux kernel panics (notably on Red Hat Enterprise Linux 9.4 with kernel 5.14.0-427.13.1), leading Red Hat to advise disabling the agent while vendors prepared recovery tools; Microsoft estimated about 8.5 million Windows machines were affected, and significant real-world disruptions followed (e.g., flight cancellations, healthcare delays). An update clarifies Linux crashes were due to a kernel BPF bug impacting user-level Falcon code (not the kernel module), requiring distro patches for resolution.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
