Search
Close this search box.

Gridware CEO Speaks to Al Jazeera as CrowdStrike Issues Root Cause of Major IT Outage

Share:

In an exclusive interview with Al Jazeera, Gridware CEO Ahmed Khanji addressed the recent major IT outage that struck Australia, impacting banks, media, and telecommunications sectors. The outage, which occurred on July 19, 2024, led to widespread disruptions, causing significant inconvenience and financial losses across the nation.

Khanji emphasized the critical role of cybersecurity in maintaining the integrity and continuity of essential services. He highlighted that the outage serves as a stark reminder of the vulnerabilities present in our digital infrastructure and the need for robust security measures.

“The recent IT outage in Australia underscores the importance of a proactive approach to cybersecurity,” said Khanji. “Organizations must invest in comprehensive security frameworks to protect against sophisticated cyber threats that can disrupt services and compromise sensitive information.”

Recently, CrowdStrike released a root cause analysis that showed the outage was due to a combination of issues related to the deployment of a new Template Type in their Falcon sensor. The report identified several key factors:

  1. Mismatch in Input Parameters: The new IPC Template Type, introduced with sensor version 7.11, expected 21 input fields. However, the integration code supplied only 20 input values. This discrepancy evaded detection during various stages of testing and initial deployments.
  2. Deployment of New Template Instances: On July 19, 2024, new IPC Template Instances were deployed, with one introducing a non-wildcard matching criterion for the 21st input parameter. This resulted in a new version of Channel File 291 that required the sensor to inspect the 21st input parameter, causing an out-of-bounds memory read and subsequent system crashes.
  3. Lack of Specific Tests: The issue was not caught during development due to the absence of specific tests for non-wildcard matching criteria in the 21st field.

Khanji noted that such incidents highlight the importance of continuous monitoring and threat intelligence. “Staying ahead of threat actors requires constant vigilance and the ability to adapt to evolving tactics,” he said. “Organizations must prioritize threat detection and response capabilities to mitigate the impact of cyber attacks.”

The incident has prompted a renewed focus on cybersecurity resilience in Australia, with many organizations reassessing their security strategies and implementing additional safeguards. Khanji encouraged businesses to collaborate with cybersecurity experts to strengthen their defenses and ensure they are prepared to respond effectively to future threats.

At Gridware, we are committed to helping organizations navigate the complex landscape of cybersecurity. Our team of experts provides tailored solutions to safeguard against advanced threats and ensure the resilience of critical infrastructure.

For more insights and updates on cybersecurity, visit our website and stay informed about the latest developments in the field.

Author picture

Gridware is one of the leading cybersecurity providers in Australia, delivering world-class outcomes for our clients. We are uniquely positioned as an independent advisor, giving clients the confidence that they have mitigated their cybersecurity risks to best-in-class standards. If your organisation requires an approach to cybersecurity that is robust and reflects best-standard approaches to the latest threats, get in touch with us today for a discussion.

Contact

Sydney Offices
Level 12, Suite 6
189 Kent Street
Sydney NSW 2000
1300 211 235

Melbourne Offices
Level 13, 114 William Street
Melbourne, VIC 3000
1300 211 235

Perth Offices
Level 32, 152 St Georges Terrace
Perth WA 6000
1300 211 235

Company

Learn more about the team at the forefront of the Australian Cyber Security scene.

About Us →

Meet the Team →

Partnerships →

Learn more about the team at the forefront of the Australian Cyber Security scene.

Career Opportunities →

Internships →

Media appearances and contributions by Gridware and our staff.

See More →

Services

Services

Whether you need us to take care of security for you, respond to incidents, or provide consulting advice, we help you stay protected.

View all services →

Web App Pen. Test Calculator →

Network Pen. Test Calculator →

Governance & Audit

Legal and regulatory protection

Penetration Testing

Uncover system vulnerabilities

Remote Working & Phishing

Fortify your defenses

Cyber Security Strategy

Adaptation to evolving threats

Cloud & Infrastructure

Secure cloud computing solutions

Gridware 360

End-to-end security suite

Gridware Managed Services

Comprehensive & proactive security

Gridware CloudControl
360

Harness the benefits of cloud technology

Gridware Incident Response 24/7

Swift, expert-led incident resolution

Resources

Resources

A collection of our published insights, whitepapers, customer success stories and more.

Customer success stories from real Gridware customers. Find out how we have helped others stay on top of their Cyber Security.

Read More →