New Microsoft Recovery Tool for CrowdStrike Issue on Windows Endpoints

Not sure who need this resource, but Microsoft updated its Recovery Tool for the CrowdStrike issue on Windows endpoints:

Here is the link to the Microsoft Tech Community Support Site:

https://techcommunity.microsoft.com/t5/intune-customer-success/new-recovery-tool-to-help-with-crowdstrike-issue-impacting/ba-p/4196959

 

As a former cybersecurity Incident Commander for Intel, here are my additional recommendations:

· Verify the source of every tool or procedure you plan on using!

· For a large organization, have a single accountable tech savvy group create the recovery process and don’t allow other groups to home-brew their own fixes

· Test the fix out on your different builds

· Formalize the step-by-step process for your environment — break down instructions to keep each step simple

· Make sure you have accounted for hard drive encryption hurdles (ex. Bitlocker or other 3rd party vendors), if applicable

· Roll-out the recovery in phases, starting with non-critical systems, just in case there are unforeseen issues and system data loss

· Have a process to record and report which systems have successfully been restored

· If things go sideways, STOP and seek more advanced assistance

 

Happy hunting!

Votes: 0
E-mail me when people leave their comments –

CISO and Cybersecurity Strategist

You need to be a member of CISO Platform to add comments!

Join CISO Platform

Join The Community Discussion

CISO Platform

A global community of 5K+ Senior IT Security executives and 40K+ subscribers with the vision of meaningful collaboration, knowledge, and intelligence sharing to fight the growing cyber security threats.

Join CISO Community Share Your Knowledge (Post A Blog)
 

 

 

Atlanta Chapter Meet: Build the Pen Test Maturity Model (Virtual Session)

  • Description:

    The Atlanta Pen Test Chapter has officially begun and is now actively underway.

    Atlanta CISOs and security teams have kicked off Pen Test Chapter #1 (Virtual), an ongoing working series focused on drafting Pen Test Maturity Model v0.1, designed for an intel-led, exploit-validated, and AI-assisted security reality. The chapter was announced at …

  • Created by: Biswajit Banerjee
  • Tags: ciso, pen testing, red team, security leadership