Logo

    Right Side Up - July 23rd 2024

    enJuly 24, 2024
    What was the cause of the global IT issue?
    Which operating systems were affected by the issue?
    How long did it take to resolve each machine's issue?
    What security service was involved in the incident?
    Why might corporations consider adopting Linux in the future?

    Podcast Summary

    • IT issues, CrowdStrike definition fileA faulty definition file from CrowdStrike caused widespread system crashes, emphasizing the significance of thorough testing and quality assurance in the tech industry

      Last Friday, a global IT issue affected numerous enterprises, including those in the upper valley of Vermont and New Hampshire. The root cause was a faulty definition file pushed out by CrowdStrike, a widely used security service. This definition file interfered with Windows security patches, causing widespread system crashes. Despite thorough testing by Microsoft, the issue wasn't identified before the definition file was rolled out to the world. JT Dodge, our IT expert and Caledonia County Senate candidate, worked tirelessly to restore systems affected by this incident. While the exact cause remains unclear, it highlights the importance of proper testing and quality assurance in the tech industry.

    • Windows software updatesUnpatched Windows systems can lead to significant damage and lengthy recovery processes, emphasizing the importance of keeping software up-to-date for security reasons

      The recent cyberattack was able to exploit unpatched Windows systems, highlighting the importance of keeping software up-to-date for security reasons. However, even with the best practices in place, there can still be weaknesses. In this case, the attack caused significant damage, requiring physical intervention to recover each affected system due to the use of encryption and unique 48-digit codes stored in Active Directory. This resulted in a lengthy and labor-intensive recovery process, involving thousands of workstations and potentially hundreds of thousands of individual devices across multiple locations. Despite the challenges, it's crucial to maintain security measures and be prepared for potential threats. CrowdStrike, as a cloud-based antivirus security system, can help detect and prevent malware, but it's not a substitute for keeping systems updated and following security policies.

    • IT issue ripple effectLarge-scale IT issues can cause a ripple effect, affecting multiple systems and requiring expert intervention. Contingency plans and trust in IT professionals are crucial.

      A large-scale IT issue, such as the recent CrowdStrike incident, can cause a ripple effect, affecting many systems and requiring expert intervention. The impact on individual home computers is minimal, but work computers connected to a corporate network are more likely to be affected. The recovery process can be lengthy as systems are prioritized and brought back online carefully to avoid overwhelming servers and causing a "ping of death." This process can take days, with essential servers being addressed first. It's important for individuals and businesses to have contingency plans in place for such events and to trust the expertise of IT professionals handling the situation.

    • Windows driver conflictA Windows driver conflict with a security patch caused blue screens of death and required BitLocker recovery keys, affecting Microsoft-based systems and taking about 20 minutes to resolve per machine.

      A software glitch in a specific Windows driver caused a conflict with a security patch, leading to blue screens of death and the need for a BitLocker recovery key. This issue affected Microsoft-based systems, but not Linux or Apple, and required approximately 20 minutes to resolve per machine. The file at the heart of the problem was essentially conflicting computer code. While Linux is a reliable and secure operating system, it can be more challenging for users accustomed to graphical interfaces, as it primarily functions through text-based commands. Despite this, the future may see more corporations adopting Linux due to its security benefits. Cars.com, for instance, runs on Linux and employs a team of Linux engineers. However, finding software compatible with Linux can be a challenge. Ultimately, while Linux may not be the most convenient operating system for everyday use, its security features make it an attractive option for those prioritizing security.

    • Ping of death attackA ping of death attack overwhelms a server with too many ping requests, causing a system crash. Redundancy, having backup systems, is crucial to prevent such incidents.

      The Microsoft-wide computer outage was caused by a type of cyber attack known as a "ping of death." This attack overwhelms a server with too many ping requests, making it unable to respond and causing a system crash. The discussion also touched upon the importance of redundancy in preventing such incidents. Redundancy means having backup systems or power supplies to keep operations running in case of a failure. While some systems, like those used by phone companies, have built-in redundancy, others may not. The lack of redundancy in certain systems was a major point of frustration during the outage. As a reminder, if you're experiencing technical difficulties or want to share your thoughts, you can reach us at rightsideupradio@gmail.com.

    • Redundancy and patchesRedundancy in technology and external services, as well as prompt patch application, are crucial for minimizing downtime and mitigating risks.

      In today's interconnected world, having redundancy in systems is crucial for seamless operation and minimizing downtime. This was discussed in relation to having redundant appliances and power supplies, as well as the reliability of automatic updates for operating systems. However, the importance of redundancy extends beyond just technology, as seen in the debate over whether to trust external services or develop internal solutions. The risks of waiting to apply patches were also highlighted, as hackers can exploit known vulnerabilities. JT Dodge, a candidate for the Caledonia County Senate race, briefly described the district he is running for, which includes the areas of Newbury, Danville, Hardwick, and St. Johnsbury, and has a population of approximately 30,000 people. The importance of redundancy and the potential risks of waiting to apply patches are important considerations for individuals and organizations alike.

    • Dodge's Senate CampaignJT Dodge is running for Vermont State Senate, emphasizing affordability concerns and the importance of deliberation. He encourages learning more about his campaign through Facebook and email.

      JT Dodge, a resident of St. John'sbury, Vermont, is running for the Vermont State Senate seat recently vacated by Senator Kitchell. Dodge has run for political office before as a Republican and a Libertarian. He is motivated to run again due to concerns over affordability and the impact of legislation on Vermonters. He believes that having more Republicans in the Senate would help stop destructive bills and support more sensible ones. Dodge also emphasizes the importance of considering unintended consequences of legislation and the need for deliberation. He encourages people to learn more about his campaign through his Facebook page (JT Dodge for First State Senate) and email (JT Dodge at gmail.com). The conversation also touched on Dodge's concerns about the Global Warming Solutions Act and its potential impact on energy affordability in Vermont.