Microsoft Blames European Commission for Major Worldwide Outage

Last Friday, a major CrowdStrike outage impacted PCs running Microsoft Windows, causing worldwide issues affecting airlines, retailers, banks, hospitals, rail networks, and more. Computers were stuck in continuous recovery loops, rendering them unusable.

bsod
The failure was caused by an update to the CrowdStrike Falcon antivirus software that auto-installed on Windows 10 PCs, but Mac and Linux machines were not affected even though they received the same software. A report from The Wall Street Journal delves into what happened and includes some critical information from Microsoft on why Macs did not get taken out by the update.

On Windows machines, CrowdStrike's Falcon security software is a kernel module, which gives the software full access to a PC. The kernel manages memory, processes, files, and devices, and it's basically the heart of the operating system. Much of the software on a PC is typically limited to user mode, where bad code can't cause harm, but software with kernel mode access can cause catastrophic total machine failures, like what was encountered last week.

The Falcon software was not able to wreak similar havoc on Macs because Apple does not give software makers kernel access. In macOS Catalina, which came out in 2019, Apple deprecated kernel extensions and transitioned to system extensions that run in a user space instead of at a kernel level. The change made Macs more stable and more secure, adding protection against unstable software updates like the one CrowdStrike pushed out. It is not possible for Macs to have a similar failure because of the change that Apple made.

In a statement to The Wall Street Journal, Microsoft blamed the European Commission for an inability to offer the same protections that Macs have. Microsoft said that it is unable to wall off its operating system because of an "understanding" with the European Commission. Back in 2009, Microsoft agreed to interoperability rules that provide third-party security apps with the same level of access to Windows that Microsoft gets. Microsoft agreed to provide kernel access in order to resolve multiple longstanding competition law issues in Europe.

Apple has not been forced to make changes to how Macs work, but the European Commission has been targeting the closed nature of iOS, and Apple has warned that the updates that have already been implemented could lead to security risks in the future. The European Union's Digital Markets Act has pushed Apple to allow developers to offer apps through third-party marketplaces and websites. Apple says explicitly that the DMA compromises its ability to "detect, prevent, and take action against malicious apps."

The major CrowdStrike failure that affected Windows PCs highlights some of the unintended consequences and the tradeoffs inherent in legislation that weakens security in the name of open access. CrowdStrike's simple software update impacted global infrastructure, bringing travel, commerce, and healthcare to a standstill.

Microsoft does not seem to have a way to stop a recurrence because it can't cut off kernel access. The company says that significant incidents "are infrequent" and that less than one percent of all Windows machines were impacted. CrowdStrike says that it is "deeply sorry for the inconvenience and disruption," and that in the future, it will share the steps that it is taking to prevent a similar situation.

Popular Stories

maxresdefault

No iOS 19: Apple Going Straight to iOS 26

Wednesday May 28, 2025 11:56 am PDT by
With the design overhaul that's coming this year, Apple plans to rename all of its operating systems, reports Bloomberg. Going forward, iOS, iPadOS, macOS, tvOS, watchOS, and visionOS will be identified by year, rather than by version number. We're not going to be getting iOS 19, we're getting iOS 26. Subscribe to the MacRumors YouTube channel for more videos. iOS 26 will be accompanied by...
iPhone 17 Pro Blue Feature Tighter Crop

iPhone 17 Pro Launching Later This Year With These 12 New Features

Tuesday May 27, 2025 9:10 am PDT by
While the iPhone 17 Pro and iPhone 17 Pro Max are not expected to launch until September, there are already plenty of rumors about the devices. Below, we recap key changes rumored for the iPhone 17 Pro models as of May 2025: Aluminum frame: iPhone 17 Pro models are rumored to have an aluminum frame, whereas the iPhone 15 Pro and iPhone 16 Pro models have a titanium frame, and the iPhone X ...
28 years later iphone 1

Filmmakers Used 20 iPhones at Once to Shoot '28 Years Later'

Friday May 30, 2025 7:27 am PDT by
Sony today provided a closer look at the iPhone rigs used to shoot the upcoming post-apocalyptic British horror movie "28 Years Later" (via IGN). With a budget of $75 million, Danny Boyle's 28 Years Later will become the first major blockbuster movie to be shot on iPhone. 28 Years Later is the sequel to "28 Days Later" (2002) and "28 Weeks Later" (2007), which depict the aftermath of a...
Generic iPhone 17 Feature With Full Width Dynamic Island

iPhone 17 Display Sizes: What to Expect

Thursday May 29, 2025 11:38 am PDT by
Apple's iPhone 17 lineup will include four iPhones, and two of those are going to get all-new display sizes. There's the iPhone 17 Air, which we've heard about several times, but the standard iPhone 17 is also going to have a different display size. We've heard a bit about the updated size before, but with most rumors focusing on the iPhone 17 Air, it's easy to forget. Display analyst Ross...
macOS 26 visionOS Inspired Feature

macOS 26 Rumored to Drop Support for These Five Macs

Thursday May 29, 2025 5:31 am PDT by
The next major version of macOS, now dubbed "macOS 26," is rumored to drop support for several older Intel-based Mac models currently compatible with macOS Sequoia. According to individuals familiar with the matter cited by AppleInsider, the following Macs will not be supported by the next version of macOS: MacBook Pro (2018) iMac (2019) iMac Pro (2017) Mac mini (2018) MacB...
iOS 26 Mock Rainbow Feature

With iOS 18 Jumping to iOS 26, Will Apple Renumber iPhones Too?

Thursday May 29, 2025 1:59 pm PDT by
With the next-generation version of iOS and other 2025 software updates, Apple is planning to change its numbering scheme. Rather than iOS 19, which would logically follow iOS 18, Apple is instead going to call the update iOS 26. Apple plans to use 26 across all of its platforms (the number representing the upcoming year), which will presumably be less confusing than having iOS 19, macOS 16,...
iOS 19 visionOS UI Elements

6 visionOS-Inspired Design Elements Coming to iOS 26

Friday May 30, 2025 3:26 pm PDT by
With iOS 26, macOS 26, tvOS 26, and watchOS 26, Apple is planning to debut a new design that's been described as taking inspiration from visionOS, the newest operating system. With WWDC coming up soon, we thought we'd take a closer look at visionOS and some of the design details that Apple might adopt based on current rumors and leaked information. 1. Translucency Inside Apple, the iOS 26...
iphone 16 teal

iPhone 17 Base Model Now Said to Feature A18 Chip and 8GB of RAM

Friday May 30, 2025 11:07 am PDT by
The latest rumored specs for the iPhone 17 base model are underwhelming. In a research note with equity research firm GF Securities this month, Apple analyst Jeff Pu said that the lowest-end iPhone 17 model will be equipped with the same A18 chip that is used in the iPhone 16 base model. The chip will continue to be manufactured with TSMC's second-generation 3nm process, known as N3E, he...

Top Rated Comments

MallardDuck Avatar
11 months ago
Apple doesn't allow it's own security software to run in Ring 0. Microsoft could easily move theirs outside the kernel, so that it competed on an even basis. And to be clear: this could have easily happened with a Defender update from a technical standpoint.
Score: 82 Votes (Like | Disagree)
breenmask Avatar
11 months ago
now imagine CrowdStrike on iOS via side loading thanks to EU.

what a cluster*** the EU is
Score: 80 Votes (Like | Disagree)
rafark Avatar
11 months ago
This thread is going to be good

Score: 77 Votes (Like | Disagree)
roar08 Avatar
11 months ago
The real issue here is lack of testing by CrowdStrike, whose CEO was the CTO of McAfee the last time a similar thing happened:

https://www.businessinsider.com/crowdstrike-ceo-george-kurtz-tech-outage-microsoft-mcafee-2024-7
Score: 63 Votes (Like | Disagree)
Lyrics23 Avatar
11 months ago
That’s a reach, Microsoft. The EU has no problem with security, just anti-competitive behaviour. The two are not equivalent.
Score: 61 Votes (Like | Disagree)
grantishere Avatar
11 months ago
Good. EU needs to be held responsible for the hostility towards tech companies.
Score: 54 Votes (Like | Disagree)