Last updated on September 20th, 2024 at 11:24 pm
Referred to as one of the biggest IT outages in history, a major global computer outage has occurred due to a faulty update from CrowdStrike. Billions of computers around the world suffered from the CrowdStrike blue screen of death because of this. The CrowdStrike outage impacted crucial industries such as hospitals, airports, and banks. Read this tutorial to find out how to fix the CrowdStrike outage on Windows 10/11.
What Is CrowdStrike?
CrowdStrike is one of the leading cybersecurity firms in the world, with over 500 clients that include Google, Amazon, and Intel. Founded in 2011, CrowdStrike offers cloud-based security solutions to businesses all over the globe. Its tool, named Falcon, provides endpoint detection using artificial intelligence to prevent Windows computers from getting malware. It’s also the reason many industries around the world suffered a major IT outage.
How Does CrowdStrike’s Falcon Work?
Falcon is third-party software that works by integrating with Windows at a low level. It often uses kernel mode drivers to detect suspicious behavior inside your computer. It also collects telemetry data and produces reports, as well as other features that can help protect PCs from cyber-attacks. Because it sits in a critical path of the computer, if it fails, the entire computer fails as well.
Was The CrowdStrike Outage Caused By A Cyber-Attack?
No, it wasn’t. According to CrowdStrike, the blue screen of death was caused by a faulty update that was dispatched on July 19, 2024. Billions of computers were affected by this update, and it led to many major airline disruptions, as well as banks, hospitals, and even TV broadcasting stations being impacted by this defected update.
How To Fix CrowdStrike Outage On Windows 10/11
To fix CrowdStrike blue screen of death on your Windows PC, follow these steps:
- First, go to the Start Menu, select Power, then hold the Shift key while clicking Restart.
- You will now enter advanced boot options. Under Choose an option, click Troubleshoot.
- Under Troubleshoot, select Advanced options.
- Under Advanced options, choose Command Prompt.
- The command prompt will now open. Type in the following command, then press Enter:
del C:\Windows\System32\drivers\CrowdStrike\C-00000291.sys |
The faulty driver that caused the CrowdStrike blue screen of death will now be removed.
How To Fix CrowdStrike Outage Using Microsoft Recovery Tool
Microsoft released a recovery tool that you can use to fix the CrowdStrike outage. For this method, you will need a flash drive with at least 1GB of free space, Administrative privileges to use the tool, and BitLocker recovery keys if necessary.
How To Set Up Microsoft Recovery Tool
Follow these steps to set up the Microsoft Recovery Tool on a separate machine:
- First, download the Microsoft Recovery Tool, then extract it using WinZip.
- Run MsftRecoveryToolForCS.ps1, then wait for the ADK download to finish.
- Once it is installed, you will be prompted to optionally choose a driver directory for image import. Select N to skip this step.
- When prompted, insert a flash drive and provide the drive letter.
- Once the USB creation finishes, remove the flash drive from the PC.
How To Fix The CrowdStrike Outage On Affected PC
You can now repair the CrowdStrike blue screen of death using the flash drive you just created. Let’s get started:
- Insert the flash drive into the impacted computer, then reboot it.
- During restart, press F12 (or follow the manufacturer’s instructions for booting into the PC’s BIOS settings)
- When you enter the BIOS boot menu, choose Boot from USB.
- If Bitlocker was enabled on the PC, enter the recovery key to continue.
- The recovery tool will now run a script that will repair the CrowdStrike blue screen of death.
- Once finished, remove the flash drive and reboot the PC.