BLU Discuss list archive


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Discuss] CrowdStrike



Also CrowdStrike's preliminary post-incident review is out. Bleeping
Computer cites, "Rapid Response Content uses automated testing instead
of being tested locally on internal devices, which would likely have
detected the issue."

In other words, CrowdStrike's testing does *not* include installing on
actual systems.

https://www.bleepingcomputer.com/news/security/crowdstrike-content-validator-bug-let-faulty-update-pass-checks/

CrowdStrike say they will add local device testing to their procedures.

-- 
\m/ (--) \m/