We use CrowdStrike and we had to do manual remediation, five of us, for about two weeks.
The issue was that we used Bitlocker to encrypt our hard drives, and we had to touch every one of them, unlocking them with that 48 character key that had to be manually entered in.
It was a Charlie Foxtrot.
CrowdStrike is better than the alternatives, IMO, but that doesn’t mean they should be immune to the damage they caused with carelessness.
The is a startup with a novel data and log protection approach- Walacor.
Everything is encrypted and tamper proof/evident (provable immutability), and backed up.
However, customers who don't read the EULA get what they signed for, which it usually a return of the purchase price and that's all she wrote. If a company wants better license terms they have an opportunity to negotiate terms prior to purchase. Highly restrictive software EULAs have been the default since the late 70's. "Not suitable for any purpose. Not responsible for consequential damages. Remedy is limited to refund of purchase price." All that stuff.
Delta's suit is just for show. Delta's lawyers and management were asleep at the wheel.