Digital Security
The widespread IT outages triggered by a faulty CrowdStrike update have put software updates in the spotlight. Here’s why you shouldn’t dread them.
19 Jul 2024
•
,
3 min. read
In the realm of computing, few things are as unsettling as encountering a blue screen of death (BSOD) on your Windows system. The ominous screen with its cryptic error messages evokes a mix of alarm and frustration even among many seasoned technology users.
The stakes are even higher when a BSOD happens on a mass scale; that is, if it’s part of a wider incident that ‘bricks’ countless devices around the world and even disrupts some of the most critical services we rely on every day. This is now playing out with widespread outages blamed on a faulty CrowdStrike update for Windows devices.
Understanding BSODs
First things first, what is a BSOD? It is a fatal system error that forces Windows to shut down in order to prevent further damage. It can be caused by anything from faulty hardware components to outdated drivers that cause conflicts within the operating system, serious errors within the system or critical applications (or, indeed, their updates), and malware.
When such errors are detected, Windows halts operations, displays the BSOD with a stop code and possibly a QR code, and restarts to prevent damage to your system. While a BSOD is a sign that something has gone critically wrong with your machine, you may want to avoid panicking and instead refer to this Microsoft guidance. More often than not, the issue is fixable, and you can take steps to help avoid it in the future.
Additionally, a BSOD can also be thought of a reminder of the importance of keeping your software and devices up-to-date. Indeed, understanding the importance of software updates and acting accordingly is crucial for your defenses against ever-evolving threats.
The role of software updates
Every application needs updating, as does the underlying operating system and firmware (a special type of software that hooks into device hardware). While these updates are a potential productivity headache or at least a bit of a nuisance for many of us, they are essential for multiple reasons.
Crucially, they help keep you (and your organization) more secure. No software is perfect, and it is often found to contain errors, including software vulnerabilities that could be exploited by hackers. It is also well established that unpatched vulnerabilities are the source of a large proportion of data breaches.
This is why patches, shipped by software manufacturers either at regular intervals or as needed, are so important. Last year, more than 29,000 vulnerabilities were reported, up from around 25,000 reported the year prior.
Besides helping keep you safe from threats that prey on your personal and financial data, software updates play a critical role in maintaining the overall health of your device. They extend beyond security fixes and also address a range of issues, bugs and glitches, add new features and functionalities, improve your device’s battery life and enhance system performance.
The risks of software updates
Most importantly, the benefits outweigh any potential risks – by a long shot. Still, software updates may introduce new issues. For example, they might occasionally cause conflicts or unexpected interactions with existing applications or system software or they may not always work well with older hardware components. They may also affect system stability, possibly resulting in errors and ultimately even prompting rollbacks that provide a safety net if a recent update has caused problems.
Somewhat ironically, updates themselves may introduce new security vulnerabilities that could be exploited by attackers before they are patched in subsequent updates. Also, and as ESET research has shown repeatedly (here is just one recent example), sophisticated attackers may subvert the update mechanism itself to distribute bogus updates.
Parting thoughts
Software runs the world these days, and keeping your software stack up-to-date is one of the most effective strategies for protecting your digital life. When doing so, remember to download updates from official sources, not by clicking on email links or ads. And next time you’re tempted to ignore or hold off on installing software updates, remember why they are so essential in the first place.
Source link