Microsoft says Delta, which said it had to manually reset ~40K PC servers because of CrowdStrike, had “not modernized its IT infrastructure” and refused “help”
says airline refused help following CrowdStrike outage, and even ignored an email from Satya Nadella himself Jak Connor / TweakTown : Microsoft responds to Delta's threats over $500 million CrowdStrike outage Associated Press : Microsoft hits back at Delta after the airline said last month's tech outage cost it $500 million Danny D'Cruze / Business Today : CrowdStrike outage: Microsoft blames US airline for prolonged recovery impacting over 6,000 flights David Hollingworth / Cyber Daily : Microsoft joins Delta Air Lines pile on Ananya Gairola / Benzinga : Microsoft Blames Delta's Outdated IT For Delayed Global Cyber Outage Recovery After Airline Decides To Seek Damages Against Software Giant And CrowdStrike Meghna Maharishi / Skift : Microsoft Says Outdated Tech Most Likely Caused Delta's Meltdown NBC News : Microsoft fires back at Delta after massive outage, says airline declined ‘repeated’ offers for help Alex Perry / Mashable : ‘False, misleading and damaging’: Microsoft slams Delta for CrowdStrike outage blame Sam Sabin / Axios : CrowdStrike fights back against Delta Sean Endicott / Windows Central : Microsoft snaps back at Delta, accuses airline CEO of sharing comments that were “incomplete, false, misleading, and damaging to Microsoft and its reputation” John Callaham / Neowin : Now Microsoft says Delta ignored its offers to help the airline with its CrowdStrike issues Reuters : Microsoft blames Delta for its struggle to recover from global cyber outage DatacenterDynamics : Microsoft says Delta declined help for mass outage, calls for info on IBM and AWS cloud usage Mary Schlangenstein / Bloomberg : Microsoft Hits Back at Delta in Clash Over System Breakdown Arden Dier / Newser : CrowdStrike: Amid Outage, Delta Turned Down Our Help Joe Fay / The Stack : Crowdstrike tells Delta threatened lawsuit will expose airline's own tech mis-steps Threads: Brad Sams / @bdsams : I will die of irony if we find out the reason Delta was offline for so long was because of Lotus Notes X: David Slotnick / @david_slotnick : New: Microsoft says Delta declined multiple offers of help during last month's meltdown; accuses Delta of pushing narrative that's “incomplete, false, misleading, and damaging to Microsoft and its reputation.” Letter from Microsoft's attorney: [image] @sysadafterdark : I've had a handful of Microsoft employees contact me regarding issues I've vocalized on here and they've given me beta builds and break/fix help at no cost. The support was stellar, and I'm surprised Delta turned down help only for them to turn around and bite their hand. Andrew McClure / @andrewjmcclure : CrowdStrike fires back at Delta While liability may be capped, not sure blaming your customers is a great long term strategy https://www.wsj.com/... Tom Warren / @tomwarren : Microsoft hits back at Delta, claiming that the airline ignored Satya Nadella's offer of free help for the CrowdStrike outage. Microsoft also suggests that Delta was actually struggling with non-Windows systems instead. Full details below 👇 https://www.theverge.com/... Christina Warren / @film_girl : My parents are fighting. https://www.theverge.com/... [image] Kyle Potter / @kpottermn : Not a good look for Delta. As its meltdown lingered, Microsoft says its CEO reached out directly to Delta CEO Ed Bastian on Wednesday, July 24. No response. By that point, Bastian was in Paris for the Olympics. @paulrobichaux : Now Microsoft is clapping back at @Delta's claims about their sustained outage, including pointing out that MS offered free recovery help *and* that the scheduling system is hosted by IBM and isn't even running on Windows. https://www.theverge.com/... LinkedIn: Patrick Moorhead : As I said, before about the CrowdStrike outages, I believe that with every modern enterprise PC having the capability to manage their fleet … Forums: r/technology : Microsoft says Delta ignored Satya Nadella's offer of CrowdStrike help r/delta : Microsoft says Delta ignored Satya Nadella's offer of CrowdStrike help / Microsoft suggests that Delta Air Lines' issues were related to its old IT infrastructure — not Windows
Context & Ripple Effects
The dispute follows CrowdStrike’s account that a Falcon sensor configuration update caused Windows systems to crash. Recovery was unusually labor-intensive because the reported fix could not be automated at scale, leaving organizations to address affected machines individually.
Delta had already been publicly pressing CrowdStrike over recovery support; CrowdStrike said its CEO’s offer of assistance to Delta went unanswered. Microsoft’s response broadens the dispute from the faulty update itself to Delta’s recovery readiness and the accuracy of its public attribution.
First-order effects
- Microsoft and Delta now have a direct public conflict over responsibility for the prolonged disruption, with Microsoft contesting Delta’s account and saying it declined free recovery help.
- Delta’s claim that roughly 40,000 endpoints required manual resets becomes a focal point in assessing whether the scale and duration of its recovery stemmed solely from the CrowdStrike incident or also from its own IT operations.
Second-order effects
- CrowdStrike gains support for its position that Delta’s recovery decisions and technology practices should be examined alongside the defective update, while Delta faces greater scrutiny of its contingency and endpoint-recovery processes.
- Large enterprises using deeply privileged endpoint-security software are likely to revisit recovery playbooks, especially where remediation depends on manual intervention; the earlier reporting highlighted that the fix could not be automated at scale.
Third-order effects
- The episode reinforces that outage accountability will increasingly extend beyond the vendor whose update failed to the customer’s architecture, operational resilience, and willingness to use offered support.
- If similar disputes persist, endpoint-security vendors and enterprise customers may put more emphasis on explicit recovery obligations and clearer boundaries of responsibility for failures at the OS layer.
The trend: This is one data point in a broader shift toward treating endpoint-security resilience and recoverability as shared operational accountability rather than a vendor-only risk.