20 July 2024
a press release
Global IT Outage Latest: More Than 5,000 Flights Cancelled; How Security ‘Arms Race’ Led to Crash Around the World
Quick Summary
A software update has resulted in worldwide IT chaos, causing cancelled flights, healthcare disruption and potential payroll problems around the world.
The firm responsible has apologised, but an industry expert warns it could take weeks to fix “blue screens of death” and endless loops. ‘We’re deeply sorry,’ CrowdStrike CEO says – and it ‘could take some time’ for systems to recover. George Kurtz begins his interview with our partner network NBC with an apology. “We’re deeply sorry,” he says. He says the global issues were caused by a single faulty content update. “That update had a software bug in it and caused an issue with the Microsoft operating system,” he says.
“We identified this very quickly and remediated the issue.” For context, CrowdStrike is a cybersecurity service designed to stop internet breaches or hacks for the world’s biggest companies. Mr Kurtz is next asked how a single update can cause such global chaos. “We have to go back and see what happened here,” he says, adding that “our systems are always looking for the latest attacks from adversaries that that are out there.” Asked if there was any possibility that this could have been a cyber-attack, he says no.
“It wasn’t a cyber-attack. It was related to this, this content update.” He says he and his team have had “a long night”, but that systems had been fixed at their end. As for when we can expect everything to be back up and running as normal, Mr Kurtz says there could be a wait for some users. “So, it could be some time for some systems, it [won’t] just automatically recover. “But it’s our mission… to make sure that every customer is fully recovered.”
CrowdStrike boss warns ‘bad actors’ will try to exploit crash – The CEO of CrowdStrike has warned “adversaries and bad actors” will try to exploit the crash. George Kurtz encouraged “everyone to remain vigilant” and ensure they’re engaging with official CrowdStrike representatives. He promised “full transparency” on how the crash occurred. The company was working on a technical update and root cause analysis that will be shared with everyone.
The outage was caused by a defect found in a Falcon content update for Windows hosts, he said, meaning Mac and Linux hosts were not impacted. “All of CrowdStrike understands the gravity and impact of the situation,” he said. “As we resolve this incident, you have my commitment to provide full transparency on how this occurred and steps we’re taking to prevent anything like this from happening again.” Three minute read: The costly cautionary tale of how CrowdStrike came to dominate, and the perils of complexity.
By Ed Conway, Economics and Data Editor
This wasn’t supposed to happen. We were told that as the internet matured, that this kind of thing – a single error causing a domino effect taking out millions of machines – was supposed to become less and less likely. There would be more and more servers and cables distributed in more and more places, making a single point of failure increasingly unlikely. Instead, what today’s episode – in which an update from a company called CrowdStrike to customers using its services around the world essentially broke the Windows operating system on their computers – has underlined is that often the more complex a system becomes, the more vulnerable it is to collapse.
The great irony, of course, is that CrowdStrike’s raison d’être is to prevent moments like this from happening. The company’s Falcon Sensor is a product used to prevent cyber-attacks – a complex program best thought of as a kind of super anti-virus package, which, in order to do its job, gets privileged access to more parts of your machine than regular software. But it so happens the latest update to Falcon Sensor, uploaded overnight to computers around the world, had a dodgy bit of code in it, which caused Windows machines to crash. Right now, it looks as if the only way it can be resolved is by technicians rebooting each machine and manually deleting a particular file (C-00000291*.sys – since you asked).
In other words, spare a thought for your company’s technicians, because they’re about to have a long weekend. But perhaps the most striking lesson from the episode is a more ancient one, laid out by historian Joseph Tainter in his 1988 book The Collapse Of Complex Societies. The more complex societies and systems become, the more vulnerable they are to collapse. Tainter was referring to examples like the fall of Rome or the collapse of ancient Mesopotamian civilisation, but one could just as easily apply the logic to modern examples.

Lurking beneath Tainter’s thesis was the point that often in a complex society of organisation actors might make decisions which seem sensible but, due to the complexity of the system and their inability to understand it, could actually make it more vulnerable. Consider the subprime crisis which triggered the financial crisis of 2008. Mortgages were packaged and repackaged into assets sold, eventually, to banks – which had little understanding of their actual value and their risks. The more complex the system became, the less able people were to comprehend how exposed they were to a catastrophic failure, and the more vulnerable the entire edifice was to collapse.
How all roads led to CrowdStrike – Now let’s ponder the current IT malaise. Let’s ask ourselves: how did it come to be that so many companies around the world had the very same bit of software installed on their systems, making them vulnerable to the very same lines of duff code? After all, the vast majority of people working at the companies affected will never have heard of CrowdStrike. Like the bankers presiding over the financial crisis, they had no idea of the potential vulnerabilities lying within their systems. But in recent years, as businesses have become more and more concerned about the risk of cyber-attacks, they have begun to implement cyber security checks and regulations.
These often took the form of a checklist some poor operative had to fill out: how many computers have you got? What operating system? Are they all online? What forms of cyber-protection do they have? And so on. Now, this might sound like frustrating red tape to many of you, but the reality is that these days some companies stipulate that anyone doing business with them must have fulfilled all the items on the checklist. So all of a sudden, salespeople trying to do a deal would discover that they couldn’t do it without complying with the checklist. The company’s financial survival depended on being able to tick the boxes!
And invariably one box in those checklists was: do you have an endpoint detection and response (EDR) solution? And if you didn’t have an EDR solution (or, more likely, didn’t know what one was) then invariably you googled EDR and looked for the world’s biggest provider, which just so happened to be… CrowdStrike. Perhaps you spoke to your IT provider and insisted that you needed an EDR. Perhaps they said: “Oh I wouldn’t do that if I were you” – but then… no EDR no sale. This is a stylised example, of course, but you see how this kind of thing can happen.
And hence, gradually and imperceptibly, a large proportion of the world’s companies came – mostly unbeknownst to their leaders – to be running the very same piece of software with direct access to the most privileged parts of their computers. And then all it took was a few lines of code and all of those machines were instantly dead – or rather, they faced the ‘Blue Screen of Death’. A costly cautionary tale – So there’s a reminder here about the risks of complexity. It’s way too early to put a figure on how much disruption this episode has caused and how much economic damage wrought. The short answer is almost certainly: a lot.
Millions of people around the world could not travel, to communicate, to transact. It may well transpire that it has put lives at risk, given it has affected many doctors’ ability to do their job. Perhaps the best thing that can be taken from today’s chaos is that it might just serve as a cautionary tale which could make our computers that bit safer and more stable in the future. It might remind bosses that cyber security decisions are more than box-ticking exercises – and sometimes installing cyber security software can backfire.
It reminds us how dangerous it is if everyone in the world is relying on the same provider. It reminds us about the need for redundancy – to have backup systems. It reminds us of the dangers of complexity. This probably won’t come as much consolation if you’re one of those people whose holiday plans have been disrupted or your business messed around by the IT outage today. But it’s something.
Pharmacies warn disruption likely over weekend – The National Pharmacy Association has warned disruption is likely to continue through the weekend as outlets deal with a backlog of medicine deliveries. Pharmacies reported issues with accessing prescriptions from GP surgeries and said this would affect the delivery of medicines to patients. Patients with “minor ailments” were also being sent to pharmacies from GP surgeries earlier today, according to the Independent Pharmacies Association.

No “serious patient safety issues” have been identified during the outage, Health Secretary Wes Streeting said, urging people to “bear with” GPs after disruption to appointment bookings and other services. The global IT outage has impacted the EMIS Web system, NHS England says, which is understood to be used by about 60% of practices in England. The programme enables GP practices to book appointments, examine records and help with admin. Around 3,700 GP practices may be affected, the Press Association reported.
Professor Kamila Hawthorne, chairwoman of the Royal College of GPs, said: “Our members are telling us that today’s outage is causing considerable disruption to GP practice bookings and IT systems – practices using EMIS IT systems appear to be particularly affected. “Outages like this affect our access to important clinical information about our patients, as well as our ability to book tests, make referrals, and inform the most appropriate treatment plan.” There were issues with administrative systems in some hospitals while some ambulance services reported a surge in demand.
How the IT outage caused chaos around the world – from Brazil to Poland – The disruption caused by the outage has been truly global – here are just a few examples.
Brazil – Bradesco, one of the main banks in Brazil, notified its users via its app that digital services were unstable because of a global cyber outage, but its ATMs were working normally. Azul Airlines, a Brazilian low-cost airline, said its check-in systems were affected, causing occasional flight delays.
Japan – Universal Studios Japan in Osaka, western Japan, said the global system outage will affect ticket sales at the park over the weekend. The park said its ticket booth sales will not be available on Saturday and Sunday.
Canada – The outage grounded some flights, disrupted hospitals and backed up border crossings in Canada. Porter Airlines said it was cancelling its flights for several hours because of the outage. Air Canada, Canada’s largest airline, said there is no major impact to its operations, adding that it’s monitoring the situation closely. University Health Network, one of Canada’s largest hospital networks, said that some of its systems had been impacted by the outage. Windsor Police reported long delays at both the Canada-US border crossings at the Ambassador Bridge and the Detroit-Windsor tunnel.
Sri Lanka – The National Centre for Cyber Security in Sri Lanka says four information technology companies there have been affected.
Switzerland – Landings at Switzerland’s Zurich Airport have returned to normal after being suspended earlier in the day.
Germany – A German regional grocery chain, Tegut, temporarily shut its 340 stores in the country this morning due to the impact on cash register systems. By early afternoon, more than half of the stores were open again.
South Africa – In South Africa, at least two major banks said they experienced service disruptions as customers complained they weren’t able to make payments using their bank cards at grocery stores and gas stations or use ATMs. Both said they were able to restore services hours later.
Poland – Baltic Hub, a major container hub in the Baltic port of Gdansk, Poland, says it’s battling problems resulting from the global system outage. Entry gates are temporarily closed and business has been suspended, the Baltic Hub said in a statement. More than 5,000 flights cancelled worldwide. We have some updated figures now on the number of cancelled flights.
As of 8pm, 167 flights scheduled to depart UK airports have been cancelled, aviation analytics company Cirium said. This equates to 5.4% of scheduled departures, the firm said. Some 171 flights because of land in the UK were cancelled. Globally 5,078 flights, or 4.6% of those scheduled, have been cancelled. Someone approved wrong file – and they’re having an ‘extraordinarily bad day’, says expert. The crash occurred because the wrong file was distributed to computers, says an IT security expert.
Human error will have played a part because the faulty file must have been approved at some stage in the process, says Tim Rawlins, director of the NCC Group, a organisation which secures business data. CrowdStrike will be “tearing their hair out” trying to find the cause of the crash. Only they will know why the wrong file was uploaded, but it will come out. “I imagine somebody there is having an extraordinarily bad day,” he said.
“It is really unfortunate, but imagine you are the person who is responsible for going: ‘Right, here is the file, we have made all the changes, we’ve done all the testing, push it to the machine to do the distribution [and] the distributor has either grabbed the wrong file or the wrong file has been given to it.’” Asked if human error was involved, he said: “It is probably a fully automated system but at some stage there will have been a person in the loop. Somebody would have gone ‘yes I approve this one to go’.
“Who knows where that mistake is. It will come out. I’m sure CrowdStrike will be tearing their hair out trying to find that issue.” How did the mistake happen? Mr Rawlins explained software that protects computer systems from threats, named end point detection and response (a more comprehensive package than simple anti-virus), went awry. Update packages are constantly created and then uploaded and pushed out it out to “endpoints” – the computers – but it appears the distribution system took and pushed out “the wrong file”.
“That’s the file that is full of zeros, as people describe it – there is noting in there for the system to operate,” said Mr Rawlins. “And that has caused the system to glitch, which has led to this blue screen of death that everyone is talking about.” Constant security updates have to be released “because the bad guys and girls are constantly changing their attacks”. One computer will report a dodgy new file to Crowdstrike, which will then need to tell all it’s other computers how to stop it.
“It’s this classic arms race,” said Mr Rawlins. Analysis: IT outage an early wake-up call for PM – The IT crash has been an “early wake-up call” for the prime minister, perhaps damaging his honeymoon period, says chief political correspondent Jon Craig. The outage overshadowed Volodymyr Zelenskyy addressing the cabinet – the first foreign leader to do so in person since Bill Clinton, he says on our special programme, Crash: The Global IT Outage. The government will have to take a “very critical look” at precautions for this type of issue.
Craig adds there is every chance there will be a COBRA meeting with ministers over the weekend. “The prime minister will want to be better prepared for a crisis of this sort or a different sort in the future,” he says. “I’m sure there will be a big inquest after today and the PM will bang a few heads together.” Analysis: This crash will happen again – it’s time to rethink – This will happen again, science and technology editor Tom Clarke says on our special programme, Crash: The Global IT Outage.
Continual updates and fixes are required to keep systems safe from cyber-attacks, he explains. If they are to work, those updates must be pushed out globally and immediately – or else leave networks vulnerable. “Really the answer is: People have to rethink the way they are going to manage when they don’t have access to their IT.” Much of everyday business needs to be connected, and backup systems are a question of cost, says Clarke.
Many shops and restaurants are cashless, but it may be time to think about “how do we revert to some other form of payment if we lose that”. Vulnerability of British companies and economy on show, says expert – The IT outage has demonstrated the vulnerability of large companies – it doesn’t matter that it wasn’t a cyberattack, says the author of an independent review into UK cyber security.
Former MP Stephen McPartland said the UK economy is “very digitised” and while driven by big firms, they depend on thousands of smaller ones. Some 99.9% of all companies in the UK are SMEs (small and medium-sized enterprises), he added. “When you think about how reliant we are on the digital economy, it is odd that we are not more focused on being far more economically resilient,” said Mr McPartland. ”
A huge number of companies have no idea what to do. And they were just hoping someone was going to fix it.” While one company may spend a huge amount on cybersecurity, they are integrated with third-parties in their supply chain that could undermine this, he explained. “I think people get very hung up on labels. It doesn’t really matter whether it’s a software update or if it’s a cyberattack: what matters is it demonstrates the vulnerability that large companies have.”
Courtesy: Sky News
Editorial
19 July 2026
ECOWAS Summit Update: Cocaine Bio is Scared of Handing the ECOWAS Chair to Senegal President Faye; Bio Prefers Anglophone to Francophone Successor!
19 July 2026
Commentary
19 July 2026
EBK’s Fake Freedom Won’t Distract EJ Win; His Arrest for Betraying Democracy Looms; Tinubu Happy to See EBK’s Back; Hope He Returns Sooner to Face Citizens
19 July 2026
Other News

29 August 2026
UN Would Be Making the Greatest Blunder If They Allow the Illegal President Bio, Mob Justice Wife & Girls’ Genital Mutilator Fatima Next Month

29 August 2026
Ugandan Ruler Named World’s Youngest Monarch Died at Age 34; Oyo Nyimba Kabamba Iguru Rukidi IV, King of Tooro, was Crowned at 3 Years Old

28 August 2026
Liberia Indicts Bio’s Son-in-Law Bolle Jos & Accomplice Jewel Appears in Monrovia Court; Bio’s Secret Drug Smuggling Exposed in Overseas Flights

28 August 2026
