• frog_brawler@lemmy.world
    link
    fedilink
    arrow-up
    42
    arrow-down
    1
    ·
    4 months ago

    I’m sure CrowdStrike is absolutely prepared to admit they fucked up. What’s the point of this?

    Will we be bringing in every CTO/CIO that decided to implement CrowdStrike for a congressional hearing as well?

    How about every CEO or board member that voted to hire the CTO that decided to implement CrowdStrike…?

    • Flying Squid@lemmy.world
      link
      fedilink
      arrow-up
      23
      ·
      4 months ago

      There is no point. They drag the social media CEOs in front of congress regularly, give them a stern talking-to, and then it’s back to business as usual.

    • fartsparkles@sh.itjust.works
      link
      fedilink
      arrow-up
      12
      ·
      4 months ago

      Two things come to mind:

      1. Do we need compliance regulations on minimum testing infrastructure etc for kernel-level development so that dangerous bugs can’t be mistakenly released?

      2. Kurtz has a history of this calibre of issue under their leadership (both at CrowdStrike and at McAfee); why does this keep happening under their leadership and what can we learn to instruct other orgs not to make the same mistakes (e.g. via CISA directives)?