• Home 1
  • Privacy Policy
LSD News
  • Home
  • Business
  • Crypto News
  • Finance
  • Health
  • Politics
  • Sports
  • Stock
  • Tech
  • Travel
No Result
View All Result
  • Home
  • Business
  • Crypto News
  • Finance
  • Health
  • Politics
  • Sports
  • Stock
  • Tech
  • Travel
No Result
View All Result
LSD News
No Result
View All Result
Home Tech

Microsoft responsible for China’s U.S. government email hack, Senator Wyden says

by
July 28, 2023
in Tech
0
Microsoft responsible for China’s U.S. government email hack, Senator Wyden says
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter


Sen. Ron Wyden (D-OR) speaks during a news conference after the first Democratic luncheon meeting since COVID-19 restrictions went into effect on Capitol Hill in Washington, April 13, 2021.

Erin Scott | Reuters

Sen. Ron Wyden, D-Oregon, the chair of the powerful Senate Finance Committee, demanded on Thursday that the Justice Department and two civil regulators open separate probes into Microsoft’s “negligent cybersecurity practices” that led to a high-level, targeted hack targeting the highest echelons of President Joe Biden’s cabinet.

Chinese hackers accessed the Microsoft-powered email accounts of top China envoys, Commerce Secretary Gina Raimondo, and Secretary of State Antony Blinken. The intrusion, from May to June, occurred just ahead of a critical Sino-U.S. meeting.

Wyden sent the letter to Attorney General Merrick Garland, Federal Trade Commission chair Lina Khan, and Cybersecurity and Infrastructure Security Agency director Jen Easterly on Thursday.

Microsoft shares fell about 1% in Thursday morning trading.

“Government emails were stolen because Microsoft committed another error. Although the
stolen encryption key was for consumer accounts, ‘a validation error in Microsoft code’ allowed the hackers to also create fake tokens for Microsoft-hosted accounts for government agencies and other organizations, and thereby access those accounts,” Wyden wrote.

Wyden asked that the Justice Department examine whether Microsoft had violated federal law through its negligence; that CISA examine whether Microsoft violated best practices for securing the highly sensitive “skeleton key;” and that the Federal Trade Commission examine whether Microsoft violated federal privacy statutes.

Wyden’s directive to the FTC focused on privacy concerns, but the agency could also examine whether Microsoft’s dominance in the cloud computing market led to heightened risk through anti-competitive behavior. That allegation has been raised by rivals and cybersecurity operators, including Google.

“While Microsoft’s engineers should never have deployed systems that violated such basic cybersecurity principles, these obvious flaws should have been caught by Microsoft’s internal and external security audits,” Wyden said.

“This incident demonstrates the evolving challenges of cybersecurity in the face of sophisticated attacks. We continue to work directly with government agencies on this issue, and maintain our commitment to continue sharing information at Microsoft Threat Intelligence blog,” a Microsoft spokesperson said.

A spokesperson for the FTC confirmed the agency had received the letter but declined to comment further. CISA did not immediately respond to a request for comment.

Cybersecurity experts have expressed mounting concern over the intrusion, which impacted at least a dozen government organizations worldwide. Both the State Department and the Commerce Department were targeted by Chinese hackers.

The State Department’s cyber team informed Microsoft of the attack, and was only able to do so because it had engineered more granular reporting and logging. After the hack, Microsoft said it would stop charging for the sophisticated logging and offer it for free.

Wyden noted it wasn’t the first time that a foreign government had hacked government agencies by exploiting Microsoft vulnerabilities.

“The Russian hackers behind the 2020 SolarWinds hacking campaign used a similar technique,” Wyden noted. “Moreover, while Microsoft had known since 2017 that such keys could be quietly exfiltrated from customer servers running its software, it failed to warn its customers, including government agencies, about this risk.”

Both Microsoft and federal officials have disclosed relatively little about the hack, though Microsoft has disseminated additional information and made concessions to customers to mitigate the impact of the exploitation.

Read the letter below.

Tags: Alphabet IncBreaking newsBreaking News: PoliticsBreaking News: Technologybusiness newsChinasCybersecurityEmailEnterpriseGovernmentGovernment and politicsHackhackingInternetJoe BidenMerrick GarlandMicrosoftMicrosoft CorpPoliticsProducts and ServicesresponsiblesenatorTechnologyUnited StatesWyden
Previous Post

Bitcoin Bulls Should Switch to Call Options, Crypto Services Provider Matrixport Says

Next Post

Govt allows firms to list on GIFT IFSC to attract foreign flows

Next Post
Govt allows firms to list on GIFT IFSC to attract foreign flows

Govt allows firms to list on GIFT IFSC to attract foreign flows

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected test

  • 139 Followers
  • 205k Subscribers
  • 23.9k Followers
  • 99 Subscribers
ADVERTISEMENT
  • Trending
  • Comments
  • Latest
Hawaii officials work to address mental health challenges facing wildfire survivors

Hawaii officials work to address mental health challenges facing wildfire survivors

August 17, 2023
Wegovy heart health data is promising — but insurers face long road, high cost to cover obesity drugs

Wegovy heart health data is promising — but insurers face long road, high cost to cover obesity drugs

August 10, 2023
Contact lens maker faces lawsuit after woman said the product resulted in her losing an eye

Contact lens maker faces lawsuit after woman said the product resulted in her losing an eye

July 16, 2023
Working-age Americans are struggling to pay for health care, even those with insurance, report finds

Working-age Americans are struggling to pay for health care, even those with insurance, report finds

October 28, 2023
Tech layoffs in Southeast Asia mount as unprofitable startups seek to extend their runways

Tech layoffs in Southeast Asia mount as unprofitable startups seek to extend their runways

5
Contact lens maker faces lawsuit after woman said the product resulted in her losing an eye

Contact lens maker faces lawsuit after woman said the product resulted in her losing an eye

5
Why Cristiano Ronaldo’s move to Saudi Arabia means so much for the Gulf monarchy’s sporting ambitions | CNN

Why Cristiano Ronaldo’s move to Saudi Arabia means so much for the Gulf monarchy’s sporting ambitions | CNN

3
Georgia realtor receives invitation to play the Masters by mistake | CNN

Georgia realtor receives invitation to play the Masters by mistake | CNN

1
GoTo readies itself for an Indonesia-focused Fintech future

GoTo readies itself for an Indonesia-focused Fintech future

June 16, 2025
Infosys, Wipro ADRs surge up to 3% as Wall Street major indices discount Israel-Iran tensions

Infosys, Wipro ADRs surge up to 3% as Wall Street major indices discount Israel-Iran tensions

June 16, 2025
Amazon Kuiper second satellite launch postponed by ULA due to rocket booster issue

Amazon Kuiper second satellite launch postponed by ULA due to rocket booster issue

June 16, 2025
Key Fractal From 2023 Says Bitcoin Price Is Still Bullish, But A Crash To ,000 Could Be Coming

Key Fractal From 2023 Says Bitcoin Price Is Still Bullish, But A Crash To $90,000 Could Be Coming

June 16, 2025

Recent News

GoTo readies itself for an Indonesia-focused Fintech future

GoTo readies itself for an Indonesia-focused Fintech future

June 16, 2025
Infosys, Wipro ADRs surge up to 3% as Wall Street major indices discount Israel-Iran tensions

Infosys, Wipro ADRs surge up to 3% as Wall Street major indices discount Israel-Iran tensions

June 16, 2025
Amazon Kuiper second satellite launch postponed by ULA due to rocket booster issue

Amazon Kuiper second satellite launch postponed by ULA due to rocket booster issue

June 16, 2025
Key Fractal From 2023 Says Bitcoin Price Is Still Bullish, But A Crash To ,000 Could Be Coming

Key Fractal From 2023 Says Bitcoin Price Is Still Bullish, But A Crash To $90,000 Could Be Coming

June 16, 2025

We bring the latest news from all over the world and get all time updated you

Follow Us

Browse by Category

  • Business
  • Crypto News
  • Finance
  • Health
  • Politics
  • Sports
  • Stock
  • Tech
  • Travel
  • Uncategorized

Recent News

GoTo readies itself for an Indonesia-focused Fintech future

GoTo readies itself for an Indonesia-focused Fintech future

June 16, 2025
Infosys, Wipro ADRs surge up to 3% as Wall Street major indices discount Israel-Iran tensions

Infosys, Wipro ADRs surge up to 3% as Wall Street major indices discount Israel-Iran tensions

June 16, 2025
No Result
View All Result
  • Home 1
  • Privacy Policy

© 2024 LSD News title="Jegtheme">Jegtheme.