Comment by Izikiel43

9 days ago

> This verified that kernel drivers couldn't crash the rest of the kernel.

How did crowdstrike end up crashing windows though?

> Static Driver Verifier

Well, the Crowdstrike driver isn't (wasn't?) static. It loaded a file that Crowdstrike changed with an update.

Most drivers pass through rigorous verification on every change. But Crowdstrike is (was?) allowed to change their driver whenever they want by designing it to load a file.

  • The EU forced MS to allow stuff like CrowdStrike as part of an anti-trust settlement.

    MS tried to use the incident to get the regulators to waive the requirement.

    • I'm all for anti-trust and anti-monopoly but christ alive an operating system vendor gatekeeping their kernel is literally the whole point of being an operating system vendor. Braindead regulation.

      6 replies →