• Home 1
  • Privacy Policy
LSD News
  • Home
  • Business
  • Crypto News
  • Finance
  • Health
  • Politics
  • Sports
  • Stock
  • Tech
  • Travel
No Result
View All Result
  • Home
  • Business
  • Crypto News
  • Finance
  • Health
  • Politics
  • Sports
  • Stock
  • Tech
  • Travel
No Result
View All Result
LSD News
No Result
View All Result
Home Tech

Microsoft responsible for China’s U.S. government email hack, Senator Wyden says

by
July 28, 2023
in Tech
0
Microsoft responsible for China’s U.S. government email hack, Senator Wyden says
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter


Sen. Ron Wyden (D-OR) speaks during a news conference after the first Democratic luncheon meeting since COVID-19 restrictions went into effect on Capitol Hill in Washington, April 13, 2021.

Erin Scott | Reuters

Sen. Ron Wyden, D-Oregon, the chair of the powerful Senate Finance Committee, demanded on Thursday that the Justice Department and two civil regulators open separate probes into Microsoft’s “negligent cybersecurity practices” that led to a high-level, targeted hack targeting the highest echelons of President Joe Biden’s cabinet.

Chinese hackers accessed the Microsoft-powered email accounts of top China envoys, Commerce Secretary Gina Raimondo, and Secretary of State Antony Blinken. The intrusion, from May to June, occurred just ahead of a critical Sino-U.S. meeting.

Wyden sent the letter to Attorney General Merrick Garland, Federal Trade Commission chair Lina Khan, and Cybersecurity and Infrastructure Security Agency director Jen Easterly on Thursday.

Microsoft shares fell about 1% in Thursday morning trading.

“Government emails were stolen because Microsoft committed another error. Although the
stolen encryption key was for consumer accounts, ‘a validation error in Microsoft code’ allowed the hackers to also create fake tokens for Microsoft-hosted accounts for government agencies and other organizations, and thereby access those accounts,” Wyden wrote.

Wyden asked that the Justice Department examine whether Microsoft had violated federal law through its negligence; that CISA examine whether Microsoft violated best practices for securing the highly sensitive “skeleton key;” and that the Federal Trade Commission examine whether Microsoft violated federal privacy statutes.

Wyden’s directive to the FTC focused on privacy concerns, but the agency could also examine whether Microsoft’s dominance in the cloud computing market led to heightened risk through anti-competitive behavior. That allegation has been raised by rivals and cybersecurity operators, including Google.

“While Microsoft’s engineers should never have deployed systems that violated such basic cybersecurity principles, these obvious flaws should have been caught by Microsoft’s internal and external security audits,” Wyden said.

“This incident demonstrates the evolving challenges of cybersecurity in the face of sophisticated attacks. We continue to work directly with government agencies on this issue, and maintain our commitment to continue sharing information at Microsoft Threat Intelligence blog,” a Microsoft spokesperson said.

A spokesperson for the FTC confirmed the agency had received the letter but declined to comment further. CISA did not immediately respond to a request for comment.

Cybersecurity experts have expressed mounting concern over the intrusion, which impacted at least a dozen government organizations worldwide. Both the State Department and the Commerce Department were targeted by Chinese hackers.

The State Department’s cyber team informed Microsoft of the attack, and was only able to do so because it had engineered more granular reporting and logging. After the hack, Microsoft said it would stop charging for the sophisticated logging and offer it for free.

Wyden noted it wasn’t the first time that a foreign government had hacked government agencies by exploiting Microsoft vulnerabilities.

“The Russian hackers behind the 2020 SolarWinds hacking campaign used a similar technique,” Wyden noted. “Moreover, while Microsoft had known since 2017 that such keys could be quietly exfiltrated from customer servers running its software, it failed to warn its customers, including government agencies, about this risk.”

Both Microsoft and federal officials have disclosed relatively little about the hack, though Microsoft has disseminated additional information and made concessions to customers to mitigate the impact of the exploitation.

Read the letter below.

Tags: Alphabet IncBreaking newsBreaking News: PoliticsBreaking News: Technologybusiness newsChinasCybersecurityEmailEnterpriseGovernmentGovernment and politicsHackhackingInternetJoe BidenMerrick GarlandMicrosoftMicrosoft CorpPoliticsProducts and ServicesresponsiblesenatorTechnologyUnited StatesWyden
Previous Post

Bitcoin Bulls Should Switch to Call Options, Crypto Services Provider Matrixport Says

Next Post

Govt allows firms to list on GIFT IFSC to attract foreign flows

Next Post
Govt allows firms to list on GIFT IFSC to attract foreign flows

Govt allows firms to list on GIFT IFSC to attract foreign flows

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected test

  • 139 Followers
  • 23.9k Followers
  • 99 Subscribers
ADVERTISEMENT
  • Trending
  • Comments
  • Latest
Hawaii officials work to address mental health challenges facing wildfire survivors

Hawaii officials work to address mental health challenges facing wildfire survivors

August 17, 2023
Wegovy heart health data is promising — but insurers face long road, high cost to cover obesity drugs

Wegovy heart health data is promising — but insurers face long road, high cost to cover obesity drugs

August 10, 2023
Contact lens maker faces lawsuit after woman said the product resulted in her losing an eye

Contact lens maker faces lawsuit after woman said the product resulted in her losing an eye

July 16, 2023
Working-age Americans are struggling to pay for health care, even those with insurance, report finds

Working-age Americans are struggling to pay for health care, even those with insurance, report finds

October 28, 2023
Tech layoffs in Southeast Asia mount as unprofitable startups seek to extend their runways

Tech layoffs in Southeast Asia mount as unprofitable startups seek to extend their runways

5
Contact lens maker faces lawsuit after woman said the product resulted in her losing an eye

Contact lens maker faces lawsuit after woman said the product resulted in her losing an eye

5
Why Cristiano Ronaldo’s move to Saudi Arabia means so much for the Gulf monarchy’s sporting ambitions | CNN

Why Cristiano Ronaldo’s move to Saudi Arabia means so much for the Gulf monarchy’s sporting ambitions | CNN

3
Georgia realtor receives invitation to play the Masters by mistake | CNN

Georgia realtor receives invitation to play the Masters by mistake | CNN

1
Google would need to shift up to 2,000 employees for antitrust remedies, search head says

Google would need to shift up to 2,000 employees for antitrust remedies, search head says

May 11, 2025
Bitcoin Open Interest Lags Despite Price Action Above 0,000 — Analytics Firm Suggests Caution | Bitcoinist.com

Bitcoin Open Interest Lags Despite Price Action Above $100,000 — Analytics Firm Suggests Caution | Bitcoinist.com

May 11, 2025
Symbolism of Operation Sindoor – Lessons in strategy for corporates

Symbolism of Operation Sindoor – Lessons in strategy for corporates

May 11, 2025
Powell may have a hard time avoiding Trump’s ‘Too Late’ label even as Fed chief does the right thing

Powell may have a hard time avoiding Trump’s ‘Too Late’ label even as Fed chief does the right thing

May 11, 2025

Recent News

Google would need to shift up to 2,000 employees for antitrust remedies, search head says

Google would need to shift up to 2,000 employees for antitrust remedies, search head says

May 11, 2025
Bitcoin Open Interest Lags Despite Price Action Above 0,000 — Analytics Firm Suggests Caution | Bitcoinist.com

Bitcoin Open Interest Lags Despite Price Action Above $100,000 — Analytics Firm Suggests Caution | Bitcoinist.com

May 11, 2025
Symbolism of Operation Sindoor – Lessons in strategy for corporates

Symbolism of Operation Sindoor – Lessons in strategy for corporates

May 11, 2025
Powell may have a hard time avoiding Trump’s ‘Too Late’ label even as Fed chief does the right thing

Powell may have a hard time avoiding Trump’s ‘Too Late’ label even as Fed chief does the right thing

May 11, 2025

We bring the latest news from all over the world and get all time updated you

Follow Us

Browse by Category

  • Business
  • Crypto News
  • Finance
  • Health
  • Politics
  • Sports
  • Stock
  • Tech
  • Travel
  • Uncategorized

Recent News

Google would need to shift up to 2,000 employees for antitrust remedies, search head says

Google would need to shift up to 2,000 employees for antitrust remedies, search head says

May 11, 2025
Bitcoin Open Interest Lags Despite Price Action Above 0,000 — Analytics Firm Suggests Caution | Bitcoinist.com

Bitcoin Open Interest Lags Despite Price Action Above $100,000 — Analytics Firm Suggests Caution | Bitcoinist.com

May 11, 2025
No Result
View All Result
  • Home 1
  • Privacy Policy

© 2024 LSD News title="Jegtheme">Jegtheme.