Microsoft left internal passwords exposed in latest security blunder

Microsoft reportedly locked down a server last month that exposed passwords, keys, and credentials of Microsoft employees to the open internet, as the company faces mounting pressure to bolster its software security. 

According to Techcrunch, three security researchers at SOCRadar — a company specializing in detecting corporate cybersecurity weaknesses  — discovered that an Azure-hosted server storing sensitive data linked to Microsoft’s Bing search engine was left open with no password protection, meaning it could be accessed by anyone online. The server contained a variety of security credentials used by Microsoft employees to access internal systems, housed within various scripts, code, and configuration files.

The exposed credentials “could result in more significant data leaks and possibly compromise the services in use.”

One of the researchers, Can Yoleri, told Techcrunch that hackers could potentially use this exposed data to find and access other areas where Microsoft stores internal data, which “could result in more significant data leaks and possibly compromise the services in use.”

Microsoft was notified about the vulnerability on February 6th, and locked it down by March 5th. It’s unclear if anyone else accessed the exposed server during this time. We have reached out to Microsoft for comment and will update this story if we hear back.

Read the full article Here

13 thoughts on “Microsoft left internal passwords exposed in latest security blunder

  1. Hello, i redad you blog from time to time and i own a similar onne and i was jusst curoous iff you gget a lot oof spam comments?
    If sso how do you stop it, any plugin or anything you ccan recommend?

    I get so mich latelly it’s driving me insane so anyy suppot
    iss very muchh appreciated.

  2. Goood post. I learn somethiong totally new annd challenging oon websites
    I stumbleupon every day. It’s always excitting tto read
    thhrough artkcles from other authors andd
    use a little sometthing from their wweb sites.

  3. Thank you, I’ve recently been searching for information about this topic for a long time and yours is the greatest I’ve came upon till now. However, what concerning the bottom line? Are you sure about the source?

  4. Superb blog! Do yyou havfe anny recommmendations ffor aspiring writers?
    I’m hopingg to start myy own website soion buut I’m a little lot oon everything.
    Would youu propose startin with a free platform like
    Wordpess or ggo for a paid option? There aare
    so many options out there that I’m totally confuse .. Anny recommendations?

    Appreciate it!

  5. Pleease let me know if you’re looking for a article aujthor forr your blog.
    You have some really good posts and I feel I would bee a god
    asset. If yyou eer want to take some oof thhe lozd off, I’dreally liike tto write
    soke articles for your blog iin exchhange forr a link back to
    mine. Please bblast me aan e-mail iif interested.
    Maany thanks!

  6. certainly like your web-site however you need to test the spelling on quite a few of your posts. A number of them are rife with spelling problems and I in finding it very bothersome to tell the reality on the other hand I¦ll certainly come back again.

Leave a Reply

Your email address will not be published. Required fields are marked *

DON’T MISS OUT!
Subscribe To Newsletter
Be the first to get latest updates and exclusive content straight to your email inbox.
Stay Updated
Give it a try, you can unsubscribe anytime.
close-link