• ganymede@lemmy.ml
      link
      fedilink
      English
      arrow-up
      63
      ·
      2 months ago

      not sure if you’re being sarcastic, but if anything this news paints linux deployment in an even better light.

      • Nah, but there were some Linux evangelists claiming this couldn’t possibly happen to Linux and it only happened to Windows because Windows is bad. And it was your own fault for getting this BSOD if you’re still running Windows.

        And sure, Windows bad and all, but this one wasn’t really Microsofts fault.

        • rottingleaf@lemmy.world
          link
          fedilink
          English
          arrow-up
          16
          ·
          edit-2
          2 months ago

          The sane ones of us know well that a faulty driver is a faulty driver, but! Linux culture is different. Which is why this happened so spectacularly with Windows. EDIT: and not with Linux

          • dan@upvote.au
            link
            fedilink
            English
            arrow-up
            1
            ·
            2 months ago

            I’ve had the proprietary Nvidia driver crash my whole system a few times. Hoping their new open-source driver (not nouveau, I mean the new out-of-tree open-source one) is better.

            • rottingleaf@lemmy.world
              link
              fedilink
              English
              arrow-up
              1
              ·
              2 months ago

              I had X crash due to Nvidia under FreeBSD a few times, and fewer kernel panics due to it. Never used Linux with Nvidia though.

        • Ferris@infosec.pub
          link
          fedilink
          English
          arrow-up
          2
          ·
          2 months ago

          if they dont know the boot sequence is a thing maybe their opinion on this doesnt really matter 🤷🏼

      • DasAlbatross@lemmy.world
        link
        fedilink
        English
        arrow-up
        9
        ·
        2 months ago

        I’m not shocked at all, but there seems to be a very sizable number of people on Lemmy who think if people just used Linux there’d never be another problem or exploit again, which is ridiculous. Mac users used to feel the same way until the market share started to grow and all of the sudden you’re seeing news of serious exploits.

    • Alborlin@lemmy.world
      link
      fedilink
      English
      arrow-up
      6
      ·
      2 months ago

      Haven’t you heard 4% market is captured by Linux , it’s the ONLY saviour os out there , windows users and macos users are idiots and all Lemmy Linux dudebros grandpa’s are using Linux without single problem. Despite the fact that each Linux had it’s own shell and there is no escape from terminal ( in 2024) if you even as try to use something more complicated. ;)

        • Alborlin@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          2 months ago

          Tell me where to find executables for programs installed without using Terminal , a very very clickable task in windows

          • Realitaetsverlust@lemmy.zip
            link
            fedilink
            English
            arrow-up
            1
            ·
            2 months ago

            Huh? if you install anything via a software manager which is included with most user-friendly distros like Ubuntu, popos, mint or zorin, it comes with a .desktop file which makes it discoverable by using the means of the desktop environment - usually something like the start menu. And that’s not something new. That has been the case for years now.

  • quinkin@lemmy.world
    link
    fedilink
    English
    arrow-up
    74
    ·
    2 months ago

    Additionally, organizations should approach CrowdStrike updates with caution

    We would if we were able to control their “deployable content”.

    • ISOmorph@feddit.org
      link
      fedilink
      English
      arrow-up
      46
      ·
      edit-2
      2 months ago

      I read on another thread that an admin was emulating a testing environment by blocking CrowdStrike IPs on their firewall for the whole network before each update, with the exception of a couple machines. It’s stupid that he has to do this but hey, his network was unaffected

  • BurnSquirrel@lemmy.world
    link
    fedilink
    English
    arrow-up
    53
    ·
    2 months ago

    Companies don’t really use Debian or Rocky in widescale production because they have no support.

    Now red hat or ubuntu is a different matter.

    Honestly though this does point out that this is a pattern of behavior on crowdstrikes part. This should have been the canary in the coalmine.

    • lud@lemm.ee
      link
      fedilink
      English
      arrow-up
      25
      ·
      2 months ago

      We actually use rocky and I think Debian at work for servers. We are currently migrating away from EOL centos .

    • TrumpetX@programming.dev
      link
      fedilink
      English
      arrow-up
      8
      ·
      2 months ago

      We use Alma, which is basically Rocky. Before that, CentOS. Lots of people don’t need or want the expensive support contracts.

      OSS support though donations and commits is the way to go unless you get value out of those contracts (we would not).

    • Nine@lemmy.world
      link
      fedilink
      English
      arrow-up
      6
      ·
      edit-2
      2 months ago

      I don’t know about that. In the HPC space we use a lot of EL distros. Mainly Centos & now Rocky. Most of the nodes run the os in ram too. Though almost all those kind of systems have no internet connection and don’t use things like crowdstrike. I’ve worked for a few places where the only part of the company that used windows was the office staff eg accounting, hr, etc. everything else is/was using an EL distro or upstream of one eg Fedora. Those type of places usually don’t mess things like crowdstrike for a lot of different reasons eg the kind of data they’re processing and security requirements on that data.

  • NutWrench@lemmy.world
    link
    fedilink
    English
    arrow-up
    20
    ·
    2 months ago

    In April, a CrowdStrike update caused all Debian Linux servers in a civic tech lab to crash simultaneously and refuse to boot.

    And then, you boot their servers from a Linux Live USB, run TimeShift to restore the last system snapshot, refuse the latest patch from Cloudstrike and they all lived happily ever after.

      • friend_of_satan@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 months ago

        Anybody who doesn’t already have ipmi serial console access set up needs to put that on their list of acceptance criteria for remediation of this incident.

    • kurap1ka@lemmy.world
      link
      fedilink
      English
      arrow-up
      4
      ·
      2 months ago

      And on Windows you booted in safe mode and removed one file. What’s the point of your post?

    • friend_of_satan@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      2 months ago

      boot their servers from a Linux live usb

      If I ran a computer lab that wasn’t already net booted, I’d use this as the motivating factor to put that in place. Net booting to a repair image, or just reinstalling the whole OS either from scratch or a known good disk image, is where anybody who manages a fleet of computers should be.

      There was a point in time where I had a pxe boot server vm set up on my laptop that I used to reload servers in our little row of racks at 365 main, because it let me quickly swap out the boot iso, and was faster than usb sticks were at the time.

  • Vilian@lemmy.ca
    link
    fedilink
    English
    arrow-up
    11
    ·
    2 months ago

    Because Linux sysadmins know to test a fucking update before applying to the whole company

    • Suzune@ani.social
      link
      fedilink
      English
      arrow-up
      1
      ·
      2 months ago

      Linux admins know that you’re worsening security when installing 3rd party stuff into kernel, so most of them tend to avoid it. And that’s why no one noticed that Crowdstrike problem.

  • menas@lemmy.wtf
    link
    fedilink
    English
    arrow-up
    8
    ·
    2 months ago

    So in the end, they is an internal contradiction in capitalism. It just append to be collapse due to lack of ressources and dumb management

    • rottingleaf@lemmy.world
      link
      fedilink
      English
      arrow-up
      5
      ·
      2 months ago

      It just append to be collapse due to lack of ressources and dumb management

      TIL reverting the direction of Siberian rivers and turning Kazakh steppe into agricultural land were capitalist projects.

      This one is a contradiction of highly hierarchical and degenerate systems.

      With capitalism the contradiction is old and well known - power bends rules. Bent rules cause degeneracy. Degeneracy causes degradation and collapse.

      • JoeBigelow@lemmy.ca
        link
        fedilink
        English
        arrow-up
        2
        ·
        2 months ago

        Got me interested enough to Google, maybe you should too

        Research and planning work on the project started in the 1930s and was carried out on a large scale in the 1960s through the early 1980s. The controversial project was abandoned in 1986, primarily for environmental reasons, without much actual construction work ever done.

        • rottingleaf@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          2 months ago

          If you mean the rivers part, then yes.

          If you mean the steppe part, then no, they’ve caused a few ecological catastrophes first before stopping.

      • menas@lemmy.wtf
        link
        fedilink
        English
        arrow-up
        3
        ·
        2 months ago
        • Short term interest: Yearly benefits make the corporation value. Work to enhance stability, such as investment in other open source project, documentation, formation, or code quality enhancement are less likely to qet time
        • Commercial focus: In a capitalist economy, we don’t have pure and perfect knowledge of product. Even if it’s supposed to work like this, commercials and adds are way more effective to sell products, than a top notch product
        • Antagonist interests: even if workers tend to like making good stuff, they’d rather eat and get housed. Sending a warning because the products are bad or dangerous can threat someone that made a bad decision, which is likely to be someone in charge. Keeping a low profile is (unfortunately) a reasonable behavior

        I think that an economy lead by financial interest, open market, and a hierarchy in the production is a good definition of capitalism.

        And yes, definitely the way that people get food, housing, and not being exclude will define a lot of thing in society.

        • the_toast_is_gone@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          2 months ago
          • Short term interest: this is just human nature. All economic models work around human nature and desires. People desire short-term gains in pretty much any endeavor. If this was a communist society, they’d still rush to get this thing out as fast as possible so they could meet state quotas/meet whatever other incentive is being offered to finish the job. The problem comes not from the motivations, but how they respond to it. Rushing deadlines and ignoring the need for testing and quality code is a universal human constant.
          • Commercial focus: we have a much better idea of how much an endeavor, product, service, etc. will cost under capitalism because we have a decentralized and automatic way to calculate its value in the form of prices. Miscalculations - or simple human errors, like pushing bad code by accident - happen though, and hopefully this company has learned that prioritizing pushing something out can risk losing them money vs. testing it and coming out with a quality product.
          • Antagonist interests: this is another question of short-term vs. long-term interests. Say you have a factory. If you crank up the machines to double speed, you’re potentially doubling your production, right? It isn’t that simple, actually. You can end up with a lot more workplace accidents that way, which will destroy your productivity extremely quickly. Same deal here. This will, hopefully, be a lesson learned by the industry in not pushing garbage code. M$ can’t serve ads to people who can’t boot their PCs, and will instead lose boatloads of money suddenly having to fulfill tech support contracts because of their screw-up, for example. Crowdstrike is going to have its competitors look a lot more appealing from here on out because they’ve been exposed as fools. (If they have no competitors - IT people, this is your sign!) Mistakes will happen until the end of time, of course, but that doesn’t mean fat-fingering the keyboard is a fault of the Western economic system.

          Capitalism is, in essence, the ability for people to exchange their goods freely. It isn’t dependent on corporations or some weird hierarchy of managers and workers. Those are facts of living in this system, but it isn’t a direct consequence of “capitalism.” If everyone worked only for themselves and produced something to bring to the exchange, that would still be capitalism.

  • ZILtoid1991@lemmy.world
    link
    fedilink
    English
    arrow-up
    6
    ·
    2 months ago

    Microsoft already has a very bad reputation, so they will be blamed for every issue on their OS.

    Vista suffered from bad 3rd party drivers, then people proceeded to just dunk on M$ due to their already bad name. Despite Edge is nowadays just a different flavor of Chromium, people are still making “haha IE slow” memes, even those that still claim Google being the “savior of the internet”.