Microsoft Blames European Commission for Major Worldwide Outage

Last Friday, a major CrowdStrike outage impacted PCs running Microsoft Windows, causing worldwide issues affecting airlines, retailers, banks, hospitals, rail networks, and more. Computers were stuck in continuous recovery loops, rendering them unusable.

bsod
The failure was caused by an update to the CrowdStrike Falcon antivirus software that auto-installed on Windows 10 PCs, but Mac and Linux machines were not affected even though they received the same software. A report from The Wall Street Journal delves into what happened and includes some critical information from Microsoft on why Macs did not get taken out by the update.

On Windows machines, CrowdStrike's Falcon security software is a kernel module, which gives the software full access to a PC. The kernel manages memory, processes, files, and devices, and it's basically the heart of the operating system. Much of the software on a PC is typically limited to user mode, where bad code can't cause harm, but software with kernel mode access can cause catastrophic total machine failures, like what was encountered last week.

The Falcon software was not able to wreak similar havoc on Macs because Apple does not give software makers kernel access. In macOS Catalina, which came out in 2019, Apple deprecated kernel extensions and transitioned to system extensions that run in a user space instead of at a kernel level. The change made Macs more stable and more secure, adding protection against unstable software updates like the one CrowdStrike pushed out. It is not possible for Macs to have a similar failure because of the change that Apple made.

In a statement to The Wall Street Journal, Microsoft blamed the European Commission for an inability to offer the same protections that Macs have. Microsoft said that it is unable to wall off its operating system because of an "understanding" with the European Commission. Back in 2009, Microsoft agreed to interoperability rules that provide third-party security apps with the same level of access to Windows that Microsoft gets. Microsoft agreed to provide kernel access in order to resolve multiple longstanding competition law issues in Europe.

Apple has not been forced to make changes to how Macs work, but the European Commission has been targeting the closed nature of iOS, and Apple has warned that the updates that have already been implemented could lead to security risks in the future. The European Union's Digital Markets Act has pushed Apple to allow developers to offer apps through third-party marketplaces and websites. Apple says explicitly that the DMA compromises its ability to "detect, prevent, and take action against malicious apps."

The major CrowdStrike failure that affected Windows PCs highlights some of the unintended consequences and the tradeoffs inherent in legislation that weakens security in the name of open access. CrowdStrike's simple software update impacted global infrastructure, bringing travel, commerce, and healthcare to a standstill.

Microsoft does not seem to have a way to stop a recurrence because it can't cut off kernel access. The company says that significant incidents "are infrequent" and that less than one percent of all Windows machines were impacted. CrowdStrike says that it is "deeply sorry for the inconvenience and disruption," and that in the future, it will share the steps that it is taking to prevent a similar situation.

Popular Stories

Generic iOS 18 Feature Real Mock

iOS 18 Coming Later This Month With These 8 New Features

Tuesday September 3, 2024 12:07 pm PDT by
iOS 18 has been in beta testing for nearly three months, and the software update will finally be released for all compatible iPhones soon. Apple should reveal iOS 18's exact release date during its September 9 event, with the most likely possibility being Monday, September 16. Below, we have highlighted eight key new features included in iOS 18. Note that Apple Intelligence is not coming...
iPhone 16 Pro Mock Article

iPhone 16 Launch Month Is Here: Everything We Know

Sunday September 1, 2024 4:30 am PDT by
Apple has announced that on Monday, September 9 it will hold its annual fall event, which means we are just days away from the launch of the iPhone 16. Like the iPhone 15 series, this year's lineup is expected to stick with four models – iPhone 16, iPhone 16 Plus, iPhone 16 Pro, and iPhone 16 Pro Max – although there are plenty of design differences and new features to take into account. ...
iPhone 16 Side New Action Button Emphasis Bump

iPhone 16 Apple Silicone Cases Have No Cutout for New Capture Button

Wednesday September 4, 2024 3:19 am PDT by
Apple is introducing a new camera-based "Capture" button on at least some iPhone 16 models this year, and a new rumor claims that Apple's own silicone cases will have a design that is specially made so as not to impede the use of the capacitive button's multiple functions. Several rumors have suggested that the iPhone 16 models are going to have an all-new button that's designed to make it...
iOS 18 CarPlay Feature

iOS 18 Adds These 6 New Features to CarPlay

Tuesday September 3, 2024 12:59 pm PDT by
Apple did not mention CarPlay when it unveiled iOS 18 in June, but the update includes a handful of new features for the in-car iPhone system. iOS 18 includes some changes to the Messages app, Settings app, and Siri on CarPlay. The update should be widely released later in September. Below, we recap CarPlay's key new features on iOS 18. 1. Contact Photos in Messages App iOS 18 adds...
sonny iphone 16 pro colors

New iPhone 16 and iPhone 16 Pro Colors Revealed Ahead of Apple Event

Friday September 6, 2024 5:01 am PDT by
Apple is "shaking up its color palette" for its iPhone 16 lineup this year, according to well-connected Bloomberg reporter Mark Gurman. Early iPhone 16 Pro dummy models via Sonny Dickson According to Gurman, the iPhone 16 Pro models will come in a Gold Titanium to replace Blue Titanium, while the Black, White, and Natural Titanium options that debuted with the iPhone 15 Pro will remain...
iPhone SE 4 Thumb 1

iPhone SE 4 to Complete Apple's Switch to OLED Across iPhone Lineup

Tuesday September 3, 2024 3:31 am PDT by
Apple is expected to launch a fourth-generation iPhone SE early next year with an OLED display for the first time, marking the completion of Apple's adoption of OLED technology across all iPhone models. According to Nikkei Asia, the move away from LCD displays will exclude two longstanding Japanese panel makers, Japan Display (JDI) and Sharp, from Apple's iPhone supply chain. In 2017,...
Apple Logo Spotlight

Apple Likely to Launch M4 Macs in November

Sunday September 1, 2024 1:43 am PDT by
Apple will likely announce new Mac models with M4-series chips in November, confidential information obtained by MacRumors claims. According to a reliable source familiar with the matter, Apple will release new Mac models in November 2024. While new Macs are usually released toward the end of the year, this is the first time a launch month has been singled out for the upcoming M4 Macs....

Top Rated Comments

MallardDuck Avatar
7 weeks ago
Apple doesn't allow it's own security software to run in Ring 0. Microsoft could easily move theirs outside the kernel, so that it competed on an even basis. And to be clear: this could have easily happened with a Defender update from a technical standpoint.
Score: 82 Votes (Like | Disagree)
breenmask Avatar
7 weeks ago
now imagine CrowdStrike on iOS via side loading thanks to EU.

what a cluster*** the EU is
Score: 80 Votes (Like | Disagree)
rafark Avatar
7 weeks ago
This thread is going to be good

Score: 77 Votes (Like | Disagree)
roar08 Avatar
7 weeks ago
The real issue here is lack of testing by CrowdStrike, whose CEO was the CTO of McAfee the last time a similar thing happened:

https://www.businessinsider.com/crowdstrike-ceo-george-kurtz-tech-outage-microsoft-mcafee-2024-7
Score: 63 Votes (Like | Disagree)
Lyrics23 Avatar
7 weeks ago
That’s a reach, Microsoft. The EU has no problem with security, just anti-competitive behaviour. The two are not equivalent.
Score: 61 Votes (Like | Disagree)
grantishere Avatar
7 weeks ago
Good. EU needs to be held responsible for the hostility towards tech companies.
Score: 54 Votes (Like | Disagree)