Microsoft wants to force developers to limit the rights of antivirus software after the CrowdStrike incident

Microsoft continues to help CrowdStrike recover from a massive outage a week ago, when an error in a security software update disrupted the functionality of 8.5 million computers worldwide. At the same time, the software giant is calling for changes and hinting that Windows stability is a priority and developers should limit the rights of their cybersecurity solutions to avoid similar incidents in the future.

Image source: Microsoft

CrowdStrike blames a bug in testing software that was used to test updates before mass distribution. However, the company’s Falcon security software operates at the Windows kernel level, the core part of the operating system that has unrestricted access to system memory and hardware. Because of this, software failures can cause Windows to malfunction and cause Blue Screens of Death (BSODs).

The Falcon application uses a special driver that allows it to work at the Windows kernel level and detect threats in the system. Microsoft tried to restrict third-party apps’ access to the Windows kernel in 2006, but faced opposition from cybersecurity vendors and European Union regulators. At the same time, Apple was able to close access to the macOS core to third-party developers in 2020.

It seems that the recent incident has prompted Microsoft to renew the dialogue regarding the possible removal of access to the Windows kernel. “This incident clearly demonstrates that Windows must prioritize change and innovation in the area of ​​sustainability,” a Microsoft spokesperson said in a statement. He also noted that Microsoft is encouraging partners to work more closely to improve security and make Windows more stable.

Although Microsoft did not specify what improvements will be made to Windows after the CrowdStrike incident, it is likely that we are talking about limiting access to the operating system kernel for third-party developers, including cybersecurity solution providers. The company can’t just shut down access due to regulatory authorities, but it’s possible that Microsoft plans to do so eventually.

admin

Share
Published by
admin

Recent Posts

Alibaba Cloud Reduces Data Center Assembly Time by 50% Using Modular Architecture

Alibaba Cloud presented at its annual Apsara conference a modular data center architecture called “CUBE…

11 mins ago

The release has crept up unnoticed: the classic version of Resident Evil 3 will appear on GOG very soon

The original Resident Evil 3: Nemesis turned 25 years old yesterday, and the digital distribution…

41 mins ago

Biden and Modi agreed to build a chip factory in India

The United States and India have reached an agreement under which a new semiconductor manufacturing…

1 hour ago

An insider has revealed the main source of inspiration for the multiplayer Assassin’s Creed Invictus – Fall Guys

Image Source: Mediatonic Among the available formats are team deathmatch, every man for himself, and…

3 hours ago

Seasonic has released a PRIME PX-2200 power supply with a power of 2200 W for $500

Seasonic has released the PRIME PX-2200 2200 W power supply. The new product was first…

3 hours ago