주메뉴바로가기본문바로가기
비즈한국 비즈한국

The Average Investor
'CrowdStrike' paralyzes the world—a silver lining for the security industry?

This article was automatically translated by AI. There may be errors compared to the original Korean article.  Read original in Korean →

[비즈한국] On the 19th, a global IT crisis caused widespread chaos. An unprecedented shutdown occurred across all sectors, including flight delays and the suspension of banking, broadcasting, and transportation systems.

The root of the problem was a security program distributed by cybersecurity firm CrowdStrike that conflicted with Microsoft Windows. This resulted in the "Blue Screen of Death" (a phenomenon where computer screens suddenly turn blue). One foreign broadcaster even resorted to using a hand-drawn map for its weather forecast, highlighting a situation that was far from laughable.

Despite negative perceptions of cloud-based security solutions and concerns over potential hacking attempts following the global IT outage on the 19th that paralyzed aviation, banking, and broadcasting systems, the importance of cybersecurity has been further highlighted, leading to a rally in security stocks. Photo=CrowdStrike website
Despite negative perceptions of cloud-based security solutions and concerns over potential hacking attempts following the global IT outage on the 19th that paralyzed aviation, banking, and broadcasting systems, the importance of cybersecurity has been further highlighted, leading to a rally in security stocks. Photo=CrowdStrike website

Initial breaking news pointed to "Microsoft," leading some to suspect a Microsoft issue. In reality, however, the culprit was an update to "Falcon," a cloud-based security program distributed by CrowdStrike. On the 20th (local time), Microsoft stated on its website, "We estimate that 8.5 million Windows devices were affected by this CrowdStrike update conflict," adding, "While this represents less than 1% of all Windows devices, the significant economic and social impact reflects the fact that many organizations running critical services have adopted CrowdStrike."

CrowdStrike has often been cited as a top pick or a beneficiary of the cybersecurity boom. As a company providing security services primarily to B2B clients, it is not widely known to those outside the security industry. However, it has held the number one spot in global endpoint (IT devices ultimately connected to a network) security market share for three consecutive years, according to IDC, an IT market analysis and consulting firm. As the AI boom pushed cybersecurity services to the forefront to counter cyber threats, CrowdStrike's stock had been trending upward this year, but it plummeted 11% in a single day on the 19th due to this incident.

However, this situation is not expected to significantly affect CrowdStrike's fundamentals. Kim Jae-im, a researcher at Hana Securities, stated, "This IT crisis will not derail the general trend of the cybersecurity market or CrowdStrike." Kim explained, "While the company will face criticism for the update error caused by insufficient testing, there is no change to the strong competitiveness of CrowdStrike's security platform and service portfolio."

She also predicted, "There will be no impact on the high preference clients have for CrowdStrike's strengths, particularly its ability to provide integrated services across multiple key areas—such as endpoint security, cloud security, and identity security—through a single platform." The fact that past large-scale outages caused by simple processing errors at major IT companies remained short-term issues also supports this view. On the 22nd, security stocks showed strength in the domestic stock market, with Monitorapp434480, SGA Solutions184230, and RaonSecure042510 rising by more than 20%.

Experts are concerned about potential hacking attempts capitalizing on this situation and the emergence of negative perceptions regarding cloud-based security solutions. Traditional network security frameworks centered on corporate data centers as the hub for network access and control. However, as companies shifted IT resources to cloud services and adopted hybrid work systems due to the expansion of remote work, the number of users, devices, and data accessing systems from outside the network surged, making cloud-based solutions the industry standard.

The problem is that relying on a single company for IT services carries the risk that, as seen in this incident, a single company's failure can escalate into a total system collapse. In South Korea, the damage was relatively limited because the financial sector uses its own servers due to network separation regulations, and the public sector uses domestic cloud services like NHN181710 or KT030200. Consequently, there is growing advice that multi-cloud strategies should be adopted to diversify risk. In any case, as AI technology evolves, cybersecurity is a field where spending will inevitably remain a top priority. As demand for next-generation security technology and services grows, the value of these companies will inevitably increase as well.

This article was automatically translated by AI. There may be errors compared to the original Korean article.
김세아 금융 칼럼니스트
writer@bizhankook.com
저작권자 ⓒ 비즈한국 무단전재 및 재배포 금지