Global Outage - Threat Actor Activity and Risk Mitigation Strategies

July 22, 2024, 4:43 p.m.

Description

On July 19th, 2024, a faulty update from CrowdStrike caused kernel instability and Blue Screen of Death (BSOD) loops on millions of Windows devices worldwide, leading to major disruptions across industries. While affected parties work on remediation, threat actors are exploiting the situation through phishing, malicious domains, and fake 'hotfixes'. SentinelOne's Live Security Updates operate in isolated user-mode space, avoiding kernel impacts, and undergo rigorous testing before release, mitigating such risks.

Date

Published Created Modified
July 22, 2024, 4:37 p.m. July 22, 2024, 4:37 p.m. July 22, 2024, 4:43 p.m.

Indicators

cloudstrike.website

c44506fe6e1ede5a104008755abf5b6ace51f1a84ad656a2dccc7f2c39c0eca2

Attack Patterns

T1487

T1609

T1588

T1189

T1598

T1036

T1566

T1190