Uhm ? Lol, this was massive news. Congress had a hearing about
this where they blamed Microsoft for having really bad security and
them being hacked was a threat to national security.

https://www.cisa.gov/resources-tools/resources/cyber-safety-review-board-releases-report-microsoft-online-exchange-incident-summer-2023
[1]

Mind you, this was the first incident, which was the worst. Chinese
hackers got their hands on a master key from a memory dump which could
access all accounts.

Second incident happened earlier this year when hackers "just"
accessed MS execs e-mail accounts...

https://www.cisa.gov/news-events/directives/ed-24-02-mitigating-significant-risk-nation-state-compromise-microsoft-corporate-email-system

https://www.reuters.com/technology/microsoft-president-testify-before-house-panel-over-security-lapses-2024-06-13/
https://www.reuters.com/technology/cybersecurity/microsoft-tells-clients-russian-hackers-viewed-emails-bloomberg-news-reports-2024-06-27/

Before these incidents customers couldn't even view access logs unless
they had E5 subscription so they didn't even know they were being
accessed by third parties. Now they finally made that access part of
the basic plan.

https://www.directionsonmicrosoft.com/blog/microsoft-to-broaden-access-to-cloud-security-logs-following-china-e-mail-hack/

Should I go on ?

Scott



On Tuesday, 16/07/2024 at 16:31 Graeme Fowler via mailop wrote:





On 16 July 2024 16:29:39 "Scott Q. via mailop"  wrote:




 You are a few years too late. China already completely hacked MS and
had access to ALL accounts for up to 2 years.




Joking aside: [citation needed] 


If you're going to make massive claims of that nature, please provide
links to factual articles about it. 


Not hearsay, not rumours, but substantiated evidence. 


And remember that Microsoft, for their many faults, do not simply run
one infrastructure. The consumer and business environments are largely
separated, for one. 


I'm no apologist for them but one thing I can't take, as a list member
or admin, is unsubstantiated posts. 


Ta


Graeme

 



Links:
------
[1]
https://blogs.microsoft.com/on-the-issues/2023/07/11/mitigation-china-based-threat-actor/
_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop

Reply via email to