logo_lightAlogo_lightlogo_light
  • About
  • Products
  • Pricing
  • Knowledge Base
  • Login
  • Products
  • Solutions
  • Search

Crowdstrike outage: Growing scams amid global outage

[et_pb_section fb_built=”1″ _builder_version=”4.16″ custom_padding=”0px|||||” da_disable_devices=”off|off|off” global_colors_info=”{}” da_is_popup=”off” da_exit_intent=”off” da_has_close=”on” da_alt_close=”off” da_dark_close=”off” da_not_modal=”on” da_is_singular=”off” da_with_loader=”off” da_has_shadow=”on”][et_pb_row _builder_version=”4.16″ custom_padding=”||8px|||” locked=”off” global_colors_info=”{}”][et_pb_column type=”4_4″ _builder_version=”4.16″ global_colors_info=”{}”][et_pb_text _builder_version=”4.27.0″ text_font_size=”20px” text_line_height=”1.8em” link_font=”||||on|||#0C71C3|” link_text_color=”#0C71C3″ link_font_size=”20px” link_line_height=”1.8em” global_colors_info=”{}”]

On July 18th newsrooms were buzzing about the Crowdstrike outage that was wiping out flights, medical procedures, and grocery store systems. Was it caused by a major cyber security breach? How long will the outage last? Media outlets scrambled to find the answers for communities affected by these outages.

[/et_pb_text][/et_pb_column][/et_pb_row][et_pb_row column_structure=”1_2,1_2″ _builder_version=”4.24.0″ min_height=”665px” custom_padding=”5px||8px|||” global_colors_info=”{}”][et_pb_column type=”1_2″ _builder_version=”4.16″ global_colors_info=”{}”][et_pb_text _builder_version=”4.27.0″ text_font_size=”20px” text_line_height=”1.8em” link_font=”||||on|||#0C71C3|” link_text_color=”#0C71C3″ header_2_line_height=”1.8em” min_height=”625px” custom_margin=”||-1px|||” global_colors_info=”{}”]

Meanwhile, even though the outage was apparently caused by an accidental misconfiguration at Crowdstrike, cyber scammers were hard at work within a day, preparing their attacks, while businesses and individuals were at their most vulnerable. In today’s blog, we will review the Crowdstrike outage, what caused it, and the scams that came with the aftermath. Let’s get into it. 

What happened?

Crowdstrike is a major cyber security firm that specializes in a cloud-based security platform. One of their most significant clients is technology giant, Microsoft, which provides software to other large enterprises around the world including travel, medical, and government organizations. 

Trouble began when Crowdstrike released an update to their Falcon sensor, which resulted in a logic error that caused massive disruptions to the Microsoft platform. These issues then trickled down to Microsoft customers including major airlines, Delta, and healthcare giant, Pfizer. 

[/et_pb_text][/et_pb_column][et_pb_column type=”1_2″ _builder_version=”4.16″ global_colors_info=”{}”][et_pb_image src=”https://clickarmor.ca/wp-content/uploads/2024/07/Click-Armor-Blog-Photos-10.png” alt=”Unmotivated employee” title_text=”Click Armor Blog Photos (10)” align=”center” _builder_version=”4.27.0″ _module_preset=”default” module_alignment=”center” global_colors_info=”{}”][/et_pb_image][et_pb_text _builder_version=”4.27.0″ _module_preset=”default” global_colors_info=”{}”]

Photo by Maksym Zakharyak on Unsplash

[/et_pb_text][et_pb_cta title=”%22It’s been a “super-fantastic” experience to see people learning and talking about security threats.%22″ button_url=”https://clickarmor.ca/quick-start-bundle-gamified-security-awareness-training-and-engagement/” button_text=”Start Your 6-Week Quick Start Bundle Now” _builder_version=”4.18.1″ _module_preset=”default” locked=”off” global_colors_info=”{}”]

For just $325 USD, you can run a 6 week, automated program for gamified phishing awareness training and challenges.  (Limited time offer. Normally valued at $999 USD)

Use Promo Code: 6WEEKS

[/et_pb_cta][/et_pb_column][/et_pb_row][et_pb_row _builder_version=”4.24.2″ _module_preset=”default” background_color=”#2868af” width=”79%” min_height=”132.4px” border_radii=”on|31px|31px|31px|31px” box_shadow_style=”preset2″ box_shadow_color=”#7f7f7f” global_colors_info=”{}”][et_pb_column type=”4_4″ _builder_version=”4.24.2″ _module_preset=”default” global_colors_info=”{}”][et_pb_text _builder_version=”4.24.2″ _module_preset=”default” text_text_color=”#FFFFFF” link_text_color=”#0fb7ff” link_font_size=”16px” header_text_color=”#FFFFFF” header_font_size=”29px” custom_margin=”|2px|||false|false” custom_padding=”|25px||25px|false|true” text_text_shadow_style=”preset5″ header_text_shadow_style=”preset5″ global_colors_info=”{}”]

Cybersecurity Awareness Training for ALL

Take proactive steps to invest in your business’s cyber resilience now to protect your organization from costly data breaches and disruptions. Start easily with our Quickstart Training Bundles. To learn more CLICK HERE.

[/et_pb_text][/et_pb_column][/et_pb_row][et_pb_row _builder_version=”4.19.5″ custom_margin=”31px|auto||auto||” custom_padding=”8px|||||” global_colors_info=”{}”][et_pb_column type=”4_4″ _builder_version=”4.16″ global_colors_info=”{}”][et_pb_text ul_item_indent=”34px” ol_item_indent=”35px” _builder_version=”4.27.0″ text_font_size=”20px” text_line_height=”1.8em” link_font=”||||on|||#0C71C3|” link_text_color=”#0C71C3″ link_font_size=”20px” link_line_height=”1.8em” ul_font_size=”20px” ul_line_height=”1.8em” ol_font_size=”20px” ol_line_height=”1.9em” header_2_line_height=”1.8em” header_3_line_height=”1.8em” header_4_line_height=”1.8em” global_colors_info=”{}”]

It is reported that 175 Fortune 500 companies were impacted by this outage, losing $44 million each, on average. However, the impact went beyond these giant companies, as urgent surgeries and about 2,800 flights were cancelled in the US alone, impacting families and businesses. 

Was the Crowdstrike outage caused by a cyber security incident?

Despite the widespread speculation, the CrowdStrike outage was not caused by a cyber attack. It was an internal error due to a faulty update. However, the chaos it caused created an opportunity for cyber criminals to launch their own attacks, leveraging the confusion to trick unsuspecting victims.

Crowdstrike scams

In the aftermath of the outage, cyber criminals pounced on the opportunity to take advantage of customers while they were distraught and customer service abilities were limited. The following scams emerged in the days and weeks after:

  • Phishing Attacks: Cyber criminals sent emails posing as CrowdStrike or other IT support services, offering fixes or updates to individuals and employees impacted by the outages. Cyber criminals would often lure individuals to click on malicious links or open attachments for “help” with the outage, but then steal credentials or deploy malware.
  • Fake Websites: Scammers created cloned websites mimicking Crowdstrike’s official site, offering fraudulent solutions or updates to fix the outage. These sites often collected sensitive information or distributed malware.
  • Social Media Scams: On platforms like Twitter and LinkedIn, fake accounts claiming to be Crowdstrike representatives offered assistance, directing users to malicious sites or requesting personal or financial information from individuals. 

How to stay vigilant 

In light of such incidents, it’s crucial to adopt a vigilant approach and remind your employees to have a vigilant approach to cyber security. Make sure you are taking these precautions during outages or any scenario where tensions are high:

  1. Verify sources of emails, texts and voice calls: Always verify the sender’s email address and website URL before clicking on any links or providing any information. Even texts and voice calls can be faked to create pretexts for scams. Take a look at Crowdstrike’s official website and note down their official domain. Official communications from Crowdstrike or any other company will come from the same domain. 
  2. Be skeptical of unsolicited offers: If you receive unexpected offers of help or solutions, especially those that ask for sensitive information or immediate action, be skeptical and cross-check with official sources.
  3. Be calm: Although situations like these cause panic, try your best to stay calm and not take drastic actions based on emotional responses. Remember to stop and take a breath, act slowly, think twice before taking an action. Reminding your employees to slow down and be vigilant, can also help them stay calm during the chaos and make better security decisions.  
  4. Host an Emergency Meeting: If you are a security manager, consider taking the time to call an emergency meeting if your team is affected by a major outage like this one, or set aside 5 minutes of a meeting already scheduled to address the outage. Remind all employees that their guard needs to be up at all times, as scammers are on the move during these stressful times. Offer your guidance and have open office hours for individuals to come to you for help during this type of crisis. 
  5. Stay Updated: Follow official updates from vendors and trusted cyber security sources to stay informed about the latest developments and recommended actions. Consider sending all updates in your organization’s #security channel or other communication channel to keep all employees informed. 

The CrowdStrike outage of July 2024 highlighted the vulnerabilities that can arise from even well-established cyber security firms. While the outage was not a result of a direct cyber attack, the following scams demonstrated the opportunistic nature of cyber criminals. By staying vigilant, verifying sources, and educating yourself and your employees, you can better protect against such threats in the future. Stay informed and always approach unsolicited communications with caution to safeguard your digital assets.

[/et_pb_text][/et_pb_column][/et_pb_row][et_pb_row _builder_version=”4.16″ global_colors_info=”{}”][et_pb_column type=”4_4″ _builder_version=”4.16″ global_colors_info=”{}”][et_pb_post_nav prev_text=”Previous Post” next_text=”Next Post” _builder_version=”4.16″ title_text_color=”#ffffff” background_color=”rgba(14,79,136,0.68)” custom_padding=”5px|10px|5px|10px|true|true” border_radii=”on|4px|4px|4px|4px” border_width_all=”1px” global_colors_info=”{}”][/et_pb_post_nav][/et_pb_column][/et_pb_row][/et_pb_section]

Share this article

[vc_empty_space height=”10px”]
[elfsight_social_share_buttons id=”1″]

Recent Posts

  • 0
    Role-Based Targeted Threats: The Phishing Problem Traditional Training Can’t Solve
    June 16, 2025
  • 0
    Addressing AI opportunities and risks in your cyber security program
    March 13, 2025
  • 0
    What makes cyber security training boring
    March 3, 2025
  • 0
    A Canadian cybersecurity company’s lessons on training
    February 20, 2025
  • 0
    Cyber security training for executives: Why and how
    February 6, 2025
Share
0
[vc_empty_space height="40px"] [vc_row][vc_column width="1/2"][vc_column_text css=""]

Subscribe to our newsletter

Stay up-to-date with the latest news, promotions, and offers from Click Armor.
Follow us on Linkedin

You can unsubscribe at any time

[/vc_column_text][/vc_column][vc_column width="1/2"][vc_column_text css=""][vc_empty_space height="10px"]Subscribe [/vc_column_text][/vc_column][/vc_row]

Click Armor helps business managers battling cyber and compliance risks by using gamified simulations and challenges to engage end-users to avoid breaches and build a strong security culture.

[vc_empty_space height=”0px”]

[elfsight_social_icons id=”4″]

Recent Articles

  • Role-Based Targeted Threats: The Phishing Problem Traditional Training Can’t Solve June 16, 2025
  • Addressing AI opportunities and risks in your cyber security program March 13, 2025

Resources


[vc_row][vc_column width=”1/2″][vc_column_text css=””]
News & Insights
Partner and MSP Program
Gamified Learning
About Click Armor
Our Team
Careers
Pricing
[/vc_column_text][/vc_column][vc_column width=”1/2″][vc_column_text css=””]

Take Assessment
Can I be phished?
Community Forum
Contact


Student Login

[/vc_column_text][/vc_column][/vc_row]

© Copyright All Rights Reserved • Click Armor Corp. | Privacy policy • Terms of use