Microsoft Points to EU Rules for CrowdStrike IT Outage
Microsoft has attributed the recent global IT outage, caused by a faulty CrowdStrike software update, to long-standing EU regulations. The outage, which brought down millions of Windows PCs and caused billions in damages across industries like airline transport, retail, and banking, did not affect Mac devices. This is because Apple's macOS does not grant third-party apps the same kernel-level access as Windows does, preventing such catastrophic errors.
A Microsoft spokesperson told the Wall Street Journal that the company cannot legally restrict third-party security app access to its operating system due to a 2009 agreement with the European Commission. This agreement followed a complaint and required Microsoft to provide third-party developers the same level of access to Windows as Microsoft itself has. In contrast, Apple revoked kernel access for third-party developers in 2019 with the launch of macOS Catalina.
The faulty update led to widespread system crashes and a condition known as a "reboot loop," where systems would crash immediately upon reboot. CrowdStrike CEO George Kurtz assured customers and partners that steps are being taken to prevent similar incidents in the future. However, the broader question remains: what measures should Microsoft implement to prevent third-party software updates from causing such extensive damage to global IT infrastructure?
Microsoft has been asked for further comment on this issue, and updates will be provided as more information becomes available.