All our servers and company laptops went down at pretty much the same time. Laptops have been bootlooping to blue screen of death. It's all very exciting, personally, as someone not responsible for fixing it.

Apparently caused by a bad CrowdStrike update.

Edit: now being told we (who almost all generally work from home) need to come into the office Monday as they can only apply the fix in-person. We'll see if that changes over the weekend...

you are viewing a single comment's thread
view the rest of the comments
[+] -34 points 2 years ago (4 children)

Never update unless something is broken.

  • source
  • parent
  • hideshow 8 child comments
  • [–] 58 points 2 years ago (1 child)

    This is fine as long as you politely ask everyone on the Internet to slow down and stop exploiting new vulnerabilities.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 22 points 2 years ago (1 child)

    I think vulnerabilities found count as "something broken" and chap you replied to simply did not think that far ahead hahah

  • source
  • parent
  • hideshow 2 child comments
  • [–] 14 points 2 years ago (2 children)

    For real - A cyber security company should basically always be pushing out updates.

  • source
  • parent
  • hideshow 4 child comments
  • Exactly. You don't know what the vulnerabilities are, but the vendors pushing out updates typically do. So stay on top of updates to limit the attack surface.

    Major releases can wait, security updates should be pushed as soon as they can be proven to not break prod.

  • source
  • parent
  • [–] 7 points 2 years ago (1 child)
  • [–] 5 points 2 years ago (1 child)

    If it was Arch you'd update once every 15 minutes whether anything's broken or not.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 2 points 2 years ago (2 children)

    I use Tumbleweed, so I only get updates once/day, twice if something explodes. I used to use Arch, so my update cycle has lengthened from 1-2x/day to 1-2x/week, which is so much better.

  • source
  • parent
  • hideshow 4 child comments
  • [–] 2 points 2 years ago (1 child)

    I really like the tumbleweed method, seems like the best compromise between arch and debian style updates.

  • source
  • parent
  • hideshow 2 child comments
  • I think a lot of what (open)SUSE does is pretty solid. For example, microOS is a fantastic compromise between a stable base and a rolling userspace, and I think a lot of people would do well to switch to it from Leap. I currently use Leap for my NAS, but I do plan to switch to microOS.

  • source
  • parent