Malicious Actors Trying to Exploit Global Tech Outage for Their Own Gain (2024)

Malicious Actors Trying to Exploit Global Tech Outage for Their Own Gain (1)

(Shutterstock)

As the world continues to recover from massive business and travel disruptions caused by a faulty software update from cybersecurity firm CrowdStrike, malicious actors are trying to exploit the situation for their own gain.

Government cybersecurity agencies across the globe and CrowdStrike CEO George Kurtz are warning businesses and individuals about new phishing schemes that involve malicious actors posing as CrowdStrike employees or other tech specialists offering to assist those recovering from the outage.

“We know that adversaries and bad actors will try to exploit events like this,” Kurtz said in astatement. “I encourage everyone to remain vigilant and ensure that you’re engaging with official CrowdStrike representatives.”

The UK Cyber Security Center said they have noticed an increase in phishing attempts around this event.

Microsoft said 8.5 million devices running its Windows operating system were affected by the faulty cybersecurity update Friday that led to worldwide disruptions. That’s less than 1% of all Windows-based machines, Microsoft cybersecurity executive David Weston said in a blog post on Saturday.

He also said such a significant disturbance is rare but “demonstrates theinterconnected nature of our broad ecosystem.”

What’s happening with air travel?

With their tightly timed, interwoven schedules and complex technology systems, many big airlines struggle to stay on time when everything goes well. It perhaps was not surprising that the industry was among the hardest hit by the outage, with crews and planes caught out of position.

By mid-afternoon Saturday on the U.S. East Coast, airlines around the world had canceled more than 2,000 flights, according to tracking service FlightAware. That was down from 5,100-plus cancellations on Friday.

About 1,600 of Saturday’s canceled flights occurred in the United States, where carriers scrambled to get planes and crews back into position after massive disruptions the day before. According to travel data provider Cirium, U.S. carriers canceled about 3.5% of their scheduled flights for Saturday. Only Australia was hit harder.

Canceled flights were running at about 1% in the United Kingdom, France and Brazil and about 2% in Canada, Italy and India among major air-travel markets.

Robert Mann, a former airline executive and now a consultant in the New York area, said it was unclear exactly why U.S. airlines were suffering disproportionate cancellations, but possible causes include a greater degree of outsourcing of technology and more exposure to Microsoft operating systems that received the faulty upgrade from CrowdStrike.

Which airlines are getting hit the hardest?

Delta Air Lines canceled more than 800 flights, or one-fourth of its schedule for Saturday, and that number did not include Delta Connection regional flights. It was followed by United Airlines, which dropped nearly 400 flights.

The worst airport to be, for a second straight day, was Hartsfield–Jackson Atlanta International Airport, where Delta is the dominant carrier. The Atlanta Journal-Constitution reported that thousands of people spent the night at the airport, many sleeping on the floors.

European airlines and airports appeared to be recovering slowly, although Lufthansa and its affiliates canceled dozens of flights. Its Eurowings budget subsidiary said check-in, boarding, booking and rebooking flights were all available again, although “isolated disruptions” were possible.

London’s Heathrow Airport said it was busy but operating normally on Saturday and that “all systems are back up and running.” Flights at Berlin’s main airport were departing on or close to schedule, German Press Agency dpa reported, citing an airport spokesman.

How are health care systems holding up?

Health care systems affected by the outage faced clinic closures, canceled surgeries and appointments and restricted access to patient records.

Cedars-Sinai Medical Center in Los Angeles, Calif., said “steady progress has been made” to bring its servers back online and thanked its patients for being flexible during the crisis.

“Our teams will be working actively through the weekend as we continue to resolve remaining issues in preparation for the start of the work week,” the hospital wrote in astatement.

In Austria, a leading organization of doctors said the outage exposed the vulnerability of relying on digital systems. Harald Mayer, vice president of the Austrian Chamber of Doctors, said the outage showed that hospitals need analog backups to protect patient care.

The organization also called on governments to impose high standards in patient data protection and security, and on health providers to train staff and put systems in place to manage crises.

“Happily, where there were problems, these were kept small and short-lived and many areas of care were unaffected” in Austria, Mayer said.

The Schleswig-Holstein University Hospital in northern Germany, which canceled all elective procedures Friday, said Saturday that systems were gradually being restored and that elective surgery could resume by Monday.

Will the tech industry face a reckoning?

“I wasn’t that surprised that an accident caused severe global digital disruption. I was a little surprised that the cause of it was a software update from a very well-respected cybersecurity company,” said Oxford University management professor Ciaran Martin, a former chief executive of the U.K.’s National Cyber Security Center.

“There are some very hard questions for CrowdStrike. How on earth did this update get through quality control?” he said. “Clearly the testing regime, whatever it is, failed.”

Martin said governments in the U.K. and the European Union will be powerless to take steps to prevent such breakdowns “because we have become dependent on a very American version of technology, and the power to do anything about that doesn’t rest in this continent.”

Other analysts doubted that the outage would lead Washington or any other government to propose new mandates on tech companies.

“I don’t know what the mandate would be. Do better QA?” said Gartner analyst Eric Grenier, using an acronym for quality assurance.

What did scam artists learn from the outage?

Grenier expects that a majority of affected machines will be fixed in about a week, with more time needed to reach laptops used by far-flung workers because the work can’t be done remotely – it’s a hands-on operation.

In the meantime, there will be scammers trying to take advantage of businesses that have indicated they were affected by the outage.

“The threat is very real,” Grenier said. “Bad actors have the information to send targeted phishing emails and calls. They know what endpoint-protection tools you use. They know you use CrowdStrike.”

Grenier said affected businesses need to make sure they use a fix supplied by CrowdStrike. “Don’t accept the help of somebody coming out of the blue and saying, ‘I’ll fix that for you,’” he said.

___

All contents © copyright 2024 Associated Press. All rights reserved.

Malicious Actors Trying to Exploit Global Tech Outage for Their Own Gain (2024)

References

Top Articles
cherry cobbler recipe
Best Homemade Cherry Pie Filling - A Spicy Perspective
Obituary for Mark E. Rimer at Hudson-Rimer Funeral Chapel
Family Day returns to Dobbins bigger than before
Google Jobs Denver
19 Awesome Things to Do in Redmond, Oregon
Jay Cutler of NFL Biography, Wife, Career Stats, Net Worth & Salary
Bookmark Cshive
Ups Store Near Publix
La Qua Brothers Funeral Home
Paulette Goddard | American Actress, Modern Times, Charlie Chaplin
Smith And Wesson Nra Instructor Discount
Nextdoor Myvidster
Wausau Pilot Obituaries
Machiavelli ‑ The Prince, Quotes & The Art of War
Estrella Satánica Emoji
EventTarget: addEventListener() method - Web APIs | MDN
Cato's Dozen Crossword
Craigslist Chester Sc
Hood County Buy Sell And Trade
A Man Called Otto Showtimes Near Palm Desert
Zipformsonline Plus Login
Wsbtv Traffic Map
Slmd Skincare Appointment
Conference Usa Message Boards
Wolf Of Wall Street Tamil Dubbed Full Movie
Fort Worth Craiglist
Funny Marco Birth Chart
Sterling Primary Care Franklin
Lox Club Gift Code
Palmer Santin Funeral Home Fullerton Nebraska Obituaries
Myrtle Beach, South Carolina: Abwechslungsreicher Freizeitspaß unter der Südstaaten-Sonne
Papamurphys Near Me
Our Favorite Paper Towel Holders for Everyday Tasks
Buzzn Dispensary
Lesley Ann Downey Transcript
Oprichter Haagse rapgroep SFB doodgeschoten, wie was hij?
Ben Rickert Net Worth
Dimmitt Range Rover
Sdn Ohio State 2023
5417873087
Kytty_Keeet
Barbarian Frenzy Build with the Horde of the Ninety Savages set (Patch 2.7.7 / Season 32)
Mathews Vertix Mod Chart
Mybrownhanky Com
Epiq Document Delivery
Mexican cartel leader 'El Mayo' Zambada pleads not guilty to US charges
Unintelligible Message On A Warning Sign Crossword
ᐅ Autoverhuur Rotterdam | Topaanbiedingen
Voertuigen Geluiden - Pretlettertjes
2006 Ford E350 Startrans RV Conversion for sale by owner - Medford, OR - craigslist
Craigslist Pgh Furniture
Latest Posts
Article information

Author: Kieth Sipes

Last Updated:

Views: 5359

Rating: 4.7 / 5 (67 voted)

Reviews: 82% of readers found this page helpful

Author information

Name: Kieth Sipes

Birthday: 2001-04-14

Address: Suite 492 62479 Champlin Loop, South Catrice, MS 57271

Phone: +9663362133320

Job: District Sales Analyst

Hobby: Digital arts, Dance, Ghost hunting, Worldbuilding, Kayaking, Table tennis, 3D printing

Introduction: My name is Kieth Sipes, I am a zany, rich, courageous, powerful, faithful, jolly, excited person who loves writing and wants to share my knowledge and understanding with you.