Hacker News new | ask | show | jobs
by Woodi 694 days ago
Exactly !

Question is: why half+ of Fortune 500 companies allowed Crowdstrike - Windows hackers - access and total control of their not-a-ms-windows business ? Obviously Crowdstrike do not do medicine or lifting cranes differentiation. "In the middle of the surgery" is not in their use case docs!

There was somewhere Mercedes pitstop image with wall of BSoD monitors :) But that is not Crowdstrike business either...

And all that via public internet and misc clouds. Banks have their own fibre lines, why hospitals can't?

Airports should disconnect from Internet too, selling tickets can be separate infra, synchronization between POSes and checkout don't need to be in real time.

There is only one sane way to prevent such events: EOD controlled by organization and this is sharply incompatible with 3rd party on-line EOD providers. But they can sell it in a box and do real time support when called.