George Kurtz | |
---|---|
Born | New Jersey, U.S. [1] | October 14, 1970
Alma mater | Seton Hall University (BS) |
Occupation(s) | President and CEO of CrowdStrike |
Spouse | Anna Kurtz |
Children | 2 |
George Kurtz (born October 14, 1970) is an American businessman. He is the CEO and founder of the cybersecurity technology company CrowdStrike, and the founder and former CEO of Foundstone, a worldwide security products and anti-virus software company. [2] He is also the author of the best-selling book of all time on cybersecurity, Hacking Exposed: Network Security Secrets & Solutions. [3]
Kurtz served as Executive Vice President and chief technology officer of McAfee when that company released a patch that crashed many of its client's computers. [4] [5]
In 2024, his company CrowdStrike crashed millions of Windows computers around the world, causing billions of dollars in economic losses in what has been called the largest outage in the history of information technology. [6]
In 2024, Fortune Magazine named Kurtz as the 76th most powerful person in business. [7]
Kurtz is a FIA Bronze rated race car driver who has won the Pro-Am class in the 24 Hours of Le Mans and the 24 Hours of Spa. [8] [9]
Kurtz grew up in Parsippany–Troy Hills, New Jersey, and attended Parsippany High School. [10] [1] He claims that he started programming video games on his Commodore when he was in fourth grade. He went on to build bulletin board systems in high school. [11]
Kurtz received a Bachelor of Science with a major in accounting from the private Seton Hall University in South Orange, New Jersey. [12]
After college, Kurtz began his career at Price Waterhouse as a CPA. [13] In 1993, the company made Kurtz one of its first employees in its new security group. Kurtz and his team were hired by corporations to do pen-testing and locate network risk. [14] Kurtz’ talent at this new concept - penetration testing - led to Price Waterhouse making him a founding employee in the new domain of cybersecurity. [15]
In 1999, he co-wrote Hacking Exposed, a book about cybersecurity for network administrators, with Stuart McClure and Joel Scambray. The book sold more than 600,000 copies and was translated into more than 30 languages. [1] [16] Later that year he started a cybersecurity company, Foundstone, one of the first dedicated security consulting companies. Foundstone focused on vulnerability management software and services and developed a well-recognized incident response practice, with much of the Fortune 100 among its customers. [17] [18]
In August 2004, Foundstone was acquired for $86 million by McAfee, which appointed Kurtz to be senior vice president and general manager of risk management. [17] [19]
In October 2009, McAfee promoted him to chief technology officer and executive vice president. [20] Six months later, McAfee accidentally disrupted its customers' operations around the world when it pushed out a software update that deleted critical Windows XP system files and caused affected systems to bluescreen and enter a boot loop. "I'm not sure any virus writer has ever developed a piece of malware that shut down as many machines as quickly as McAfee did today," Ed Bott wrote at ZDNet. [5]
In 2010, Kurtz participated in Operation Aurora, the investigation of a series of cyber attacks against Google and several other companies. [21]
In 2011, he led McAfee's research around the emerging Night Dragon and Shady RAT threats, alongside Dmitri Alperovitch, who was then McAfee's vice president of threat research. [22] [23]
Over time, Kurtz became frustrated that existing security technology functioned slowly and was not, as he perceived it, evolving at the pace of new threats. [24] On a flight, he watched the passenger seated next to him wait 15 minutes for McAfee software to load on his laptop, an incident he later cited as part of his inspiration for founding CrowdStrike. [25] [1] He resigned from McAfee in October 2011. [23]
In November 2011, Kurtz joined private equity firm Warburg Pincus as an "entrepreneur-in-residence" [26] [27] and began working on his next project, CrowdStrike. He, Gregg Marston (former chief financial officer at Foundstone), and Dmitri Alperovitch co-founded CrowdStrike in Irvine, California, formally announcing the company's launch in February 2012. [28] [29] Kurtz pitched the idea for the company to Warburg Pincus and secured $25 million in funding. [11] [30]
CrowdStrike shifted the focus from anti-malware and antivirus products (McAfee's approach to cybersecurity) to identifying the techniques used by hackers in order to spot threats. [31] [32] The company also developed a "cloud-first" model in order to reduce the software load on customers' computers. [31] CrowdStrike, now headquartered in Sunnyvale, California, attracted public interest in June 2016 for its role in investigating the Democratic National Committee cyber attacks, [25] and in May 2017, the company exceeded a valuation of $1 billion. [33] In 2019, CrowdStrike's $612 million initial public offering on the Nasdaq brought the company to a $6.6 billion valuation under Kurtz's leadership. [34] [35] In March 2020, when discussing company strategy at CrowdStrike, he said that "not one time have I regretted firing someone too fast." [36] In July 2020, an IDC report named CrowdStrike as the fastest-growing endpoint security software vendor. [37] He ranked on CRN's 2021 Top 100 Executives list. [38]
In 2023, Kurtz warned of cyber threats from China and criticized Microsoft’s response after Chinese hackers exploited a flaw in Microsoft's cloud email service to gain access to the email accounts of U.S. government employees. [39]
In 2024, CrowdStrike was added to the S&P 500. At just five years after going public, this was the fastest a cybersecurity company had ever been listed on the index. [14]
On July 19, 2024, CrowdStrike caused one of the largest information technology outages in history when it pushed out a software update that caused an estimated 8.5 million computers running Microsoft Windows to crash and left them unable to properly restart. [40] This disrupted industries and governmental operations around the world, causing economic losses estimated in the billions of dollars in what has been called the largest IT outage in history [41] and "historic in scale". [42] In a live interview on NBC's Today, CEO Kurtz apologized to the public. He said company leaders were "deeply sorry for the impact that we've caused to customers, to travelers, to anyone affected by this, including our companies". [43]
Forbes estimated his net worth to be $2.3 billion as of July 30, 2024. [44]
In 2016, Kurtz made his racing debut in the Pirelli World Challenge, driving an Aston Martin Vantage GT4 for TRG-AMR. He remained in the series for the following two years, winning the GTS Am class in 2017 at the wheel of a McLaren 570S GT4. [45] [46] In 2019, the championship was renamed the GT World Challenge America, which Kurtz contested with pro driver Colin Braun in the GT3 category. [47] The duo finished fifth in the Pro-Am standings. The duo reunited in 2020, [48] [49] when Kurtz made eight podiums, including his first overall win in GT3 machinery at Virginia International Raceway and another victory, to finish as the runner-up of Pro-Am. [50] [51]
In 2021, Kurtz again raced in the GTWC America series but also in prototype cars, competing in a Ligier JS P320 in the IMSA SportsCar Championship's LMP3 category. [52] [53] In that series, he competed solely in the endurance events, winning at Sebring and scoring a class podium at Watkins Glen. [54] Three missed weekends in the former series dropped Kurtz and Braun to sixth in the drivers' standings, with two class wins.
In 2022, Kurtz remained in both championships, scoring two podiums in IMSA, including third place in class at the 24 Hours of Daytona. In GTWC America, he won ten of 16 races, earning the title in the SRO3 class. [55] [56]
In 2023, Kurtz stepped up to the LMP2 category to compete full-time in the IMSA SCC, driving for his own Crowdstrike team supported by Algarve Pro Racing alongside Ben Hanley, with silver-ranked Nolan Siegel supporting the pair at the endurance rounds. [57] Kurtz and Hanley won at the season-ending Petit Le Mans and another race, but finished second in the standings, edged out by Paul-Loup Chatin and Ben Keating. [58] In the Michelin Endurance Trophy, which took into account placings solely within the four endurance races, the Kurtz-Hanley combo came out on top. [59] Kurtz also made his debut at the 24 Hours of Le Mans, where he, Colin Braun, and James Allen won in the LMP2 Pro-Am subclass. [60] [61] Finally, he returned to the GTWC America to defend his title, and although Kurtz only finished third in the SRO3 category he claimed Pro-Am honours, having partnered with Braun throughout the year. [62] During the 2023–24 winter, Kurtz and Braun raced in the Asian Le Mans Series, where they and young pro Malthe Jakobsen won two races on their way to the championship. [63]
Following the 2024 CrowdStrike incident, Kurtz indefinitely withdrew from racing. [64] [65]
(key) (Races in bold indicate pole position; results in italics indicate fastest lap)
Year | Team | Class | Make | Engine | 1 | 2 | 3 | 4 | 5 | 6 | 7 | Pos. | Points |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
2021 | CORE Autosport | LMP3 | Ligier JS P320 | Nissan VK56DE 5.6L V8 | DAY 5† | SEB 1 | MDO | WGL 2 | WGL | ELK | PET 7 | 11th | 968 |
2022 | CORE Autosport | LMP3 | Ligier JS P320 | Nissan VK56DE 5.6 L V8 | DAY 3† | SEB 5 | MDO | WGL 2 | MOS | ELK | PET 5 | 17th | 921 |
2023 | CrowdStrike Racing by APR | LMP2 | Oreca 07 | Gibson GK428 V8 | DAY 2† | SEB 5 | MON 3 | WGL 1 | ELK 7 | IMS 3 | PET 1 | 2nd | 1958 |
2024 | CrowdStrike Racing by APR | LMP2 | Oreca 07 | Gibson GK428 V8 | DAY 2 | SEB 9 | WGL 13 | MOS 7 | ELK | IMS | ATL | ||
Source: [66] |
† Points only counted towards the Michelin Endurance Cup, and not the overall LMP2 Championship. † Points only counted towards the Michelin Endurance Cup, and not the overall LMP3 Championship.
Year | Team | Co-Drivers | Car | Class | Laps | Pos. | Class Pos. |
---|---|---|---|---|---|---|---|
2021 | CORE Autosport | Jon Bennett Colin Braun Matt McMurry | Ligier JS P320 | LMP3 | 737 | 31st | 5th |
2022 | CORE Autosport | Jon Bennett Colin Braun Niclas Jönsson | Ligier JS P320 | LMP3 | 721 | 16th | 3rd |
2023 | CrowdStrike Racing by APR | Esteban Gutiérrez Ben Hanley Matt McMurry | Oreca 07 | LMP2 | 761 | 8th | 2nd |
2024 | CrowdStrike Racing by APR | Colin Braun Malthe Jakobsen Toby Sowery | Oreca 07 | LMP2 | 767 | 10th | 2nd |
Source: [66] |
Year | Team | Co-Drivers | Car | Class | Laps | Pos. | Class Pos. |
---|---|---|---|---|---|---|---|
2023 | Algarve Pro Racing | James Allen Colin Braun | Oreca 07 | LMP2 | 322 | 20th | 10th |
LMP2 Pro-Am | 1st | ||||||
2024 | CrowdStrike Racing by APR | Colin Braun Nicky Catsburg | Oreca 07 | LMP2 | 149 | DNF | DNF |
LMP2 Pro-Am | |||||||
Source: [66] |
McAfee Corp., formerly known as McAfee Associates, Inc. from 1987 to 1997 and 2004 to 2014, Network Associates Inc. from 1997 to 2004, and Intel Security Group from 2014 to 2017, is an American global computer security software company headquartered in San Jose, California.
John David McAfee was a British and American computer programmer, businessman, and two-time presidential candidate who unsuccessfully sought the Libertarian Party nomination for president of the United States in 2016 and in 2020. In 1987, he wrote the first commercial anti-virus software, founding McAfee Associates to sell his creation. He resigned in 1994 and sold his remaining stake in the company. McAfee became the company's most vocal critic in later years, urging consumers to uninstall the company's anti-virus software, which he characterized as bloatware. He disavowed the company's continued use of his name in branding, a practice that has persisted in spite of a short-lived corporate rebrand attempt under Intel ownership.
Fortinet, Inc. is a cybersecurity company with headquarters in Sunnyvale, California. The company develops and sells security solutions like firewalls, endpoint security and intrusion detection systems. Fortinet has offices located all over the world.
Brian Krebs is an American journalist and investigative reporter. He is best known for his coverage of profit-seeking cybercriminals. Krebs is the author of a daily blog, KrebsOnSecurity.com, covering computer security and cybercrime. From 1995 to 2009, Krebs was a reporter for The Washington Post and covered tech policy, privacy and computer security as well as authoring the Security Fix blog.
Parsippany High School is a four-year comprehensive public high school, one of two high schools in Parsippany-Troy Hills, in Morris County, in the U.S. state of New Jersey, operating as part of the Parsippany-Troy Hills School District. The school serves students in ninth through twelfth grades who live in the eastern half of Parsippany-Troy Hills. Its companion school in the district is Parsippany Hills High School.
Colin James Braun is an American racing driver. He is the 2014 and 2015 WeatherTech SportsCar Championship Prototype Challenge Champion and currently drives the No. 60 Meyer Shank Racing Acura ARX-06 for Meyer Shank Racing in the IMSA WeatherTech SportsCar Championship. Driving the ARX-06, he was part of the winning team of the 2023 24 Hours of Daytona. He formerly competed in the NASCAR Camping World Truck Series and the Xfinity Series. He lives in Charlotte, North Carolina.
Bitdefender is a multinational cybersecurity technology company dual-headquartered in Bucharest, Romania and Santa Clara, California, with offices in the United States, Europe, Australia and the Middle East.
Trellix is a privately held cybersecurity company that was founded in 2022. It has been involved in the detection and prevention of major cybersecurity attacks. It provides hardware, software, and services to investigate cybersecurity attacks, protect against malicious software, and analyze IT security risks.
Mimecast Limited is an American–British, Jersey-domiciled company specializing in cloud-based email management for Google Workspace, Microsoft Exchange and Microsoft Office 365, including security, archiving, and continuity services to protect business mail.
Operation Aurora was a series of cyber attacks performed by advanced persistent threats such as the Elderwood Group based in Beijing, China, with associations with the People's Liberation Army. First disclosed publicly by Google on January 12, 2010, by a weblog post, the attacks began in mid-2009 and continued through December 2009.
Palo Alto Networks, Inc. is an American multinational cybersecurity company with headquarters in Santa Clara, California. The core product is a platform that includes advanced firewalls and cloud-based offerings that extend those firewalls to cover other aspects of security. The company serves over 70,000 organizations in over 150 countries, including 85 of the Fortune 100. It is home to the Unit 42 threat research team and hosts the Ignite cybersecurity conference. It is a partner organization of the World Economic Forum.
Dmitri Alperovitch is an American think-tank founder, author, philanthropist, podcast host and former computer security industry executive. He is the chairman of Silverado Policy Accelerator, a geopolitics think-tank in Washington, D.C., and a co-founder and former chief technology officer of CrowdStrike. Alperovitch is a naturalized U.S. citizen born in Russia who came to the United States in 1994 with his family.
The Indian Computer Emergency Response Team is an office within the Ministry of Electronics and Information Technology of the Government of India. It is the nodal agency to deal with cyber security incidents. It strengthens security-related defence of the Indian Internet domain.
Cozy Bear is a Russian advanced persistent threat hacker group believed to be associated with Russian foreign intelligence by United States intelligence agencies and those of allied countries. Dutch signals intelligence (AIVD) and American intelligence had been monitoring the group since 2014 and was able to link the hacker group to the Russian foreign intelligence agency (SVR) after compromising security cameras in their office. CrowdStrike and Estonian intelligence reported a tentative link to the Russian domestic/foreign intelligence agency (FSB). Various groups designate it CozyCar, CozyDuke, Dark Halo, The Dukes, Midnight Blizzard, NOBELIUM, Office Monkeys, StellarParticle, UNC2452 with a tentative connection to Russian hacker group YTTRIUM. Symantec reported that Cozy Bear had been compromising diplomatic organizations and national governments since at least 2010. Der Spiegel published documents in 2023 purporting to link Russian IT firm NTC Vulkan to Cozy Bear operations.
CrowdStrike Holdings, Inc. is an American cybersecurity technology company based in Austin, Texas. It provides endpoint security, threat intelligence, and cyberattack response services.
A threat actor, bad actor or malicious actor is either a person or a group of people that take part in an action that is intended to cause harm to the cyber realm including: computers, devices, systems, or networks. The term is typically used to describe individuals or groups that perform malicious acts against a person or an organization of any type or size. Threat actors engage in cyber related offenses to exploit open vulnerabilities and disrupt operations. Threat actors have different educational backgrounds, skills, and resources. The frequency and classification of cyber attacks changes rapidly. The background of threat actors helps dictate who they target, how they attack, and what information they seek. There are a number of threat actors including: cyber criminals, nation-state actors, ideologues, thrill seekers/trolls, insiders, and competitors. These threat actors all have distinct motivations, techniques, targets, and uses of stolen data. See Advanced persistent threats for a list of identified threat actors.
Jacob H. Braun is an American politician, cyber and national security expert. He was appointed by President Joseph Biden as the U.S. Department of Homeland Security (DHS) Secretary's Senior Advisor to the Management Directorate. Braun is also a lecturer at the University of Chicago’s Harris School of Public Policy Studies where he teaches courses on cyber policy and election security. He previously served as the Executive Director for the University of Chicago Harris Cyber Policy Initiative (CPI).
The Cyber Safety Review Board was established by United States Secretary of Homeland Security Alejandro Mayorkas on February 3, 2022. Modeled after the National Transportation Safety Board, the Board reviews significant cybersecurity incidents and issues reports. President Joe Biden directed the Board's creation through Section 5 of Executive Order 14028, issued on May 12, 2021.
DXDT Racing is a professional sports car team based in Statesville, North Carolina, founded by competitive off-shore sailor and businessman David Askew in 2014. With an early history in IMSA's Continental Tire SportsCar Challenge and Lamborghini Super Trofeo North America, the team now primarily races in SRO America's GT World Challenge America, continuing a long term run as a Mercedes AMG Customer Racing team.
On 19 July 2024, American cybersecurity company CrowdStrike distributed a faulty update to its Falcon Sensor security software that caused widespread problems with Microsoft Windows computers running the software. As a result, roughly 8.5 million systems crashed and were unable to properly restart in what has been called the largest outage in the history of information technology and "historic in scale".