What can be learned from Austin-based CrowdStrike's outage? Photo via Getty Images

Airlines, banks, hospitals and other risk-averse organizations around the world chose cybersecurity company CrowdStrike to protect their computer systems from hackers and data breaches.

But all it took was one faulty CrowdStrike software update to cause global disruptions Friday that grounded flights, knocked banks and media outlets offline, and disrupted hospitals, retailers and other services.

“This is a function of the very homogenous technology that goes into the backbone of all of our IT infrastructure,” said Gregory Falco, an assistant professor of engineering at Cornell University. “What really causes this mess is that we rely on very few companies, and everybody uses the same folks, so everyone goes down at the same time.”

The trouble with the update issued by CrowdStrike and affecting computers running Microsoft's Windows operating system was not a hacking incident or cyberattack, according to CrowdStrike, which apologized and said a fix was on the way.

But it wasn't an easy fix. It required “boots on the ground” to remediate, said Gartner analyst Eric Grenier.

“The fix is working, it’s just a very manual process and there’s no magic key to unlock it,” Grenier said. “I think that is probably what companies are struggling with the most here.”

While not everyone is a client of CrowdStrike and its platform known as Falcon, it is one of the leading cybersecurity providers, particularly in transportation, healthcare, banking and other sectors that have a lot at stake in keeping their computer systems working.

“They’re usually risk-averse organizations that don’t want something that’s crazy innovative, but that can work and also cover their butts when something goes wrong. That’s what CrowdStrike is,” Falco said. “And they’re looking around at their colleagues in other sectors and saying, ‘Oh, you know, this company also uses that, so I’m gonna need them, too.’”

Worrying about the fragility of a globally connected technology ecosystem is nothing new. It's what drove fears in the 1990s of a technical glitch that could cause chaos at the turn of the millennium.

“This is basically what we were all worried about with Y2K, except it’s actually happened this time,” wrote Australian cybersecurity consultant Troy Hunt on the social platform X.

Across the world Friday, affected computers were showing the “blue screen of death” — a sign that something went wrong with Microsoft's Windows operating system.

But what's different now is “that these companies are even more entrenched,” Falco said. "We like to think that we have a lot of players available. But at the end of the day, the biggest companies use all the same stuff.”

Founded in 2011 and publicly traded since 2019, CrowdStrike describes itself in its annual report to financial regulators as having “reinvented cybersecurity for the cloud era and transformed the way cybersecurity is delivered and experienced by customers.” It emphasizes its use of artificial intelligence in helping to keep pace with adversaries. It reported having 29,000 subscribing customers at the start of the year.

The Austin, Texas-based firm is one of the more visible cybersecurity companies in the world and spends heavily on marketing, including Super Bowl ads. At cybersecurity conferences, it's known for large booths displaying massive action-figure statues representing different state-sponsored hacking groups that CrowdStrike technology promises to defend against.

CrowdStrike CEO George Kurtz is among the most highly compensated in the world, recording more than $230 million in total compensation in the last three years. Kurtz is also a driver for a CrowdStrike-sponsored car racing team.

After his initial statement about the problem was criticized for lack of contrition, Kurtz apologized in a later social media post Friday and on NBC's “Today Show.”

“We understand the gravity of the situation and are deeply sorry for the inconvenience and disruption,” he said on X.

Richard Stiennon, a cybersecurity industry analyst, said this was a historic mistake by CrowdStrike.

“This is easily the worst faux pas, technical faux pas or glitch of any security software provider ever,” said Stiennon, who has tracked the cybersecurity industry for 24 years.

While the problem is an easy technical fix, he said, it’s impact could be long-lasting for some organizations because of the hands-on work needed to fix each affected computer. “It’s really, really difficult to touch millions of machines. And people are on vacation right now, so, you know, the CEO will be coming back from his trip to the Bahamas in a couple of weeks and he won’t be able to use his computers.”

Stiennon said he did not think the outage revealed a bigger problem with the cybersecurity industry or CrowdStrike as a company.

“The markets are going to forgive them, the customers are going to forgive them, and this will blow over,” he said.

Forrester analyst Allie Mellen credited CrowdStrike for clearly telling customers what they need to do to fix the problem. But to restore trust, she said there will need to be a deeper look at what occurred and what changes can be made to prevent it from happening again.

“A lot of this is likely to come down to the testing and software development process and the work that they’ve put into testing these kinds of updates before deployment,” Mellen said. “But until we see the complete retrospective, we won’t know for sure what the failure was.”

Ad Placement 300x100
Ad Placement 300x600

CultureMap Emails are Awesome

Houston institutions launch Project Metis to position region as global leader in brain health

brain trust

Leaders in Houston's health care and innovation sectors have joined the Center for Houston’s Future to launch an initiative that aims to make the Greater Houston Area "the global leader of brain health."

The multi-year Project Metis, named after the Greek goddess of wisdom and deep thought, will be led by the newly formed Rice Brain Institute, The University of Texas Medical Branch's Moody Brain Health Institute and Memorial Hermann’s comprehensive neurology care department. The initiative comes on the heels of Texas voters overwhelmingly approving a ballot measure to launch the $3 billion, state-funded Dementia Prevention and Research Institute of Texas (DPRIT).

According to organizers, initial plans for Project Metis include:

  • Creating working teams focused on brain health across all life stages, science and medical advances, and innovation and commercialization
  • Developing a regional Brain Health Index to track progress and equity
  • Implanting pilot projects in areas such as clinical care, education and workplace wellness
  • Sharing Houston’s progress and learnings at major international forums, including Davos and the UN General Assembly

The initiative will be chaired by:

  • Founding Chair: Dr. Jochen Reiser, President of UTMB and CEO of the UTMB Health System
  • Project Chair: Amy Dittmar, Howard R. Hughes Provost and Executive Vice President of Rice University
  • Project Chair: Dr. David L. Callender, President and CEO of Memorial Hermann Health System

The leaders will work with David Gow, Center for Houston’s Future president and CEO. Gow is the founder and chairman of Gow Media, InnovationMap's parent company.

“Now is exactly the right time for Project Metis and the Houston-Galveston Region is exactly the right place,” Gow said in a news release. “Texas voters, by approving the state-funded Dementia Prevention Institute, have shown a strong commitment to brain health, as scientific advances continue daily. The initiative aims to harness the Houston’s regions unique strengths: its concentration of leading medical and academic institutions, a vibrant innovation ecosystem, and a history of entrepreneurial leadership in health and life sciences.”

Lime Rock Resources, BP and The University of Texas MD Anderson Cancer Center served as early steering members for Project Metis. HKS, Houston Methodist and the American Psychiatric Association Foundation have also supported the project.

An estimated 460,000 Texans are living with dementia, according to the Alzheimer’s Association, and more than one million caregivers support them.

“Through our work, we see both the immense human toll of brain-related illness and the tremendous potential of early intervention, coordinated care and long-term prevention," Callender added in the release. "That’s why this bold new initiative matters so much."

Texas launches cryptocurrency reserve with $5 million Bitcoin purchase

Money Talks

Texas has launched its new cryptocurrency reserve with a $5 million purchase of Bitcoin as the state continues to embrace the volatile and controversial digital currency.

The Texas Comptroller’s Office confirmed the purchase was made last month as a “placeholder investment” while the office works to contract with a cryptocurrency bank to manage its portfolio.

The purchase is one of the first of its kind by a state government, made during a year where the price of Bitcoin has exploded amid the embrace of the digital currency by President Donald Trump’s administration and the rapid expansion of crypto mines in Texas.

“The Texas Legislature passed a bold mandate to create the nation’s first Strategic Bitcoin Reserve,” acting Comptroller Kelly Hancock wrote in a statement. “Our goal for implementation is simple: build a secure reserve that strengthens the state’s balance sheet. Texas is leading the way once again, and we’re proud to do it.”

The purchase represents half of the $10 million the Legislature appropriated for the strategic reserve during this year’s legislative session, but just a sliver of the state’s $338 billion budget.

However, the purchase is still significant, making Texas the first state to fund a strategic cryptocurrency reserve. Arizona and New Hampshire have also passed laws to create similar strategic funds but have not yet purchased cryptocurrency.

Wisconsin and Michigan made pension fund investments in cryptocurrency last year.

The Comptroller’s office purchased the Bitcoin the morning of Nov. 20 when the price of a single bitcoin was $91,336, according to the Comptroller’s office. As of Friday afternoon, Bitcoin was worth slightly less than the price Texas paid, trading for $89,406.

University of Houston energy economist Ed Hirs questioned the state’s investment, pointing to Bitcoin’s volatility. That makes it a bad investment of taxpayer dollars when compared to more common investments in the stock and bond markets, he said.

“The ordinary mix [in investing] is one that goes away from volatility,” Hirs said. “The goal is to not lose to the market. Once the public decides this really has no intrinsic value, then it will be over, and taxpayers will be left holding the bag.”

The price of Bitcoin is down significantly from an all-time high of $126,080 in early October.

Lee Bratcher, president of the Texas Blockchain Council, argued the state is making a good investment because the price of Bitcoin has trended upward ever since it first launched in early 2009.

“It’s only a 16-year-old asset, so the volatility, both in the up and down direction, will smooth out over time,” Bratcher said. “We still want it to retain some of those volatility characteristics because that’s how we could see those upward moves that will benefit the state’s finances in the future.”

Bratcher said the timing of the state’s investment was shrewd because he believes it is unlikely to be valued this low again.

The investment comes at a time that the crypto industry has found a home in Texas.

Rural counties have become magnets for crypto mines ever since China banned crypto mining in 2021 and Gov. Greg Abbott declared “Texas is open for crypto business” in a post on social media.

The state is home to at least 27 Bitcoin facilities, according to the Texas Blockchain Council, making it the world’s top crypto mining spot. The two largest crypto mining facilities in the world call Texas home.

The industry has also come under criticism as it expands.

Critics point to the industry’s significant energy usage, with crypto mines in the state consuming 2,717 megawatts of power in 2023, according to the comptroller’s office. That is enough electricity to power roughly 680,000 homes.

Crypto mines use large amounts of electricity to run computers that run constantly to produce cryptocurrencies, which are decentralized digital currencies used as alternatives to government-backed traditional currencies.

A 2023 study by energy research and consulting firm Wood Mackenzie commissioned by The New York Times found that Texans’ electric bills had risen nearly 5%, or $1.8 billion per year, due to the increase in demand on the state power grid created by crypto mines.

Residents living near crypto mines have also complained that the amount of job creation promised by the facilities has not materialized and the noise of their operation is a nuisance.

“Texas should be reinvesting Texan’s tax money in things that truly bolster the economy long term, living wage, access to quality healthcare, world class public schools,” said state Sen. Molly Cook, D-Houston, who voted against the creation of the strategic fund. “Instead it feels like they’re almost gambling our money on something that is known to be really volatile and has not shown to be a tide that raises all boats.”

State Sen. Charles Schwertner, R-Georgetown, who authored the bill that created the fund, said at the time it passed that it will allow Texas to “lead and compete in the digital economy.”

___

This story was originally published by The Texas Tribune and distributed through a partnership with The Associated Press.

Houston-based HPE wins $931M contract to upgrade military data centers

defense data centers

Hewlett Packard Enterprise (HPE), based in Spring, Texas, which provides AI, cloud, and networking products and services, has received a $931 million contract to modernize data centers run by the federal Defense Information Systems Agency.

HPE says it will supply distributed hybrid multicloud technology to the federal agency, which provides combat support for U.S. troops. The project will feature HPE’s Private Cloud Enterprise and GreenLake offerings. It will allow DISA to scale and accelerate communications, improve AI and data analytics, boost IT efficiencies, reduce costs and more, according to a news release from HPE.

The contract comes after the completion of HPE’s test of distributed hybrid multicloud technology at Defense Information Systems Agency (DISA) data centers in Mechanicsburg, Pennsylvania, and Ogden, Utah. This technology is aimed at managing DISA’s IT infrastructure and resources across public and private clouds through one hybrid multicloud platform, according to Data Center Dynamics.

Fidelma Russo, executive vice president and general manager of hybrid cloud at HPE, said in a news release that the project will enable DISA to “deliver innovative, future-ready managed services to the agencies it supports that are operating across the globe.”

The platform being developed for DISA “is designed to mirror the look and feel of a public cloud, replicating many of the key features” offered by cloud computing businesses such as Amazon Web Services (AWS), Microsoft Azure and Google Cloud Platform, according to The Register.

In the 1990s, DISA consolidated 194 data centers into 16. According to The Register, these are the U.S. military’s most sensitive data centers.

More recently, in 2024, the Fort Meade, Maryland-based agency laid out a five-year strategy to “simplify the network globally with large-scale adoption of command IT environments,” according to Data Center Dynamics.