Forum Discussion
Saomrui
Jul 21, 2025Iron Contributor
CSAgent BSoD global outage marks 1 year
It's been a year since CrowdStrike pushed a broken update to one of its drivers within its flagship Falcon EDR, rendering millions of Windows machines around the world unbootable. As became known lat...
Coconutkin
Jul 21, 2025Iron Contributor
The update contained a driver, CSAgent.sys, which included a virtual machine component that accepted bytecode instructions from the user-mode service to execute in kernel mode.