Three key unanswered questions about the Chinese breach of Microsoft cloud services

Repeated breaches of cloud computing services makes understanding a recent incident affecting Microsoft essential.

The post Three key unanswered questions about the Chinese breach of Microsoft cloud services appeared first on CyberScoop.

Continue reading Three key unanswered questions about the Chinese breach of Microsoft cloud services

Three key unanswered questions about the Chinese breach of Microsoft cloud services

Repeated breaches of cloud computing services makes understanding a recent incident affecting Microsoft essential.

The post Three key unanswered questions about the Chinese breach of Microsoft cloud services appeared first on CyberScoop.

Continue reading Three key unanswered questions about the Chinese breach of Microsoft cloud services

Three key unanswered questions about the Chinese breach of Microsoft cloud services

Repeated breaches of cloud computing services makes understanding a recent incident affecting Microsoft essential.

The post Three key unanswered questions about the Chinese breach of Microsoft cloud services appeared first on CyberScoop.

Continue reading Three key unanswered questions about the Chinese breach of Microsoft cloud services

Ukraine conflict spurs questions of how to define cyberwar

Legal scholars and cybersecurity experts are closely watching events in Ukraine with an eye on how the Russian invasion may redefine the laws of war for the cyber era. Many agree that Ukraine’s conflict with Russia — an established cyber superpower that isn’t hesitant about flexing its muscle aggressively — could test the rules of war in new and unexpected ways. Some say it already has. Exactly how these rules might be redefined is the subject of significant debate. In recent days, authorities as disparate as the president of Microsoft and the chairman of the Senate Intelligence Committee have weighed in on how NATO’s Article 5 provision for “collective defense,” the Geneva Convention’s protections for civilian targets and other legal frameworks for armed conflict may be challenged in the coming weeks. On Monday, Sen. Mark Warner, D-Va. and the chairman of the Select Committee on Intelligence, said at a Washington […]

The post Ukraine conflict spurs questions of how to define cyberwar appeared first on CyberScoop.

Continue reading Ukraine conflict spurs questions of how to define cyberwar

Microsoft’s Legal Head: U.S. must Stop Secret Gag Orders

Microsoft president and CLO Brad Smith says secretly subpoenaing data from cloud providers—blocking them from telling customers—must stop.
The post Microsoft’s Legal Head: U.S. must Stop Secret Gag Orders appeared first on Security Boulevard.
Continue reading Microsoft’s Legal Head: U.S. must Stop Secret Gag Orders

For Microsoft, cybersecurity has become bigger than business

Since the cybersecurity firm FireEye hired Microsoft to help investigate a hack at the federal contractor SolarWinds, Microsoft has helped clean up the mess, alerted victims and distributed other details meant to fend off alleged Russian spies. Microsoft did all of that as it wrestled with its own probe of how hackers infiltrated its systems. Yet the company’s role in the SolarWinds investigation, while significant, represents a fraction of the cybersecurity-focused work Microsoft has done in recent years, including some behind the scenes and some in globe-spanning public relations campaigns. Once viewed as a traditional tech behemoth, Microsoft has evolved into a firm that fights cybersecurity battles in court, in election administration, in the international sphere, in the marketplace and elsewhere. The entirety of that perspective gives Microsoft a unique — if imperfect — place in the cybersecurity universe. The size of the company, and its level of visibility into […]

The post For Microsoft, cybersecurity has become bigger than business appeared first on CyberScoop.

Continue reading For Microsoft, cybersecurity has become bigger than business

Microsoft Caught Up in SolarWinds Spy Effort, Joining Federal Agencies

The ongoing, growing campaign is “effectively an attack on the United States and its government and other critical institutions,” Microsoft warned. Continue reading Microsoft Caught Up in SolarWinds Spy Effort, Joining Federal Agencies

SolarWinds attack is not ‘espionage as usual,’ Microsoft president says

The breach of SolarWinds software that allowed widespread espionage on U.S. government agencies and other organizations worldwide is more than just a shocking use of digital spycraft, Microsoft’s top executive said Thursday. The incident “represents an act of recklessness that created a serious technological vulnerability for the United States and the world,” writes the company’s president, Brad Smith, in a blog post. “In effect, this is not just an attack on specific targets, but on the trust and reliability of the world’s critical infrastructure in order to advance one nation’s intelligence agency.” The breach, which multiple U.S. sources have pinned on Russian intelligence, “is not ‘espionage as usual,’ even in the digital age,” Smith writes. In an addendum to the blog post, Microsoft said that it found no indications that its own software systems were used to attack others, but it did find “malicious SolarWinds binaries in our environment, which […]

The post SolarWinds attack is not ‘espionage as usual,’ Microsoft president says appeared first on CyberScoop.

Continue reading SolarWinds attack is not ‘espionage as usual,’ Microsoft president says

Microsoft, Hewlett Foundation preparing to launch nonprofit that calls out cyberattacks

Microsoft and the Hewlett Foundation are preparing to launch a nonprofit organization dedicated to exposing the details of harmful cyberattacks and providing assistance to victims in an effort to highlight their costs, CyberScoop has learned. Known to its organizers as the “Cyber Peace Institute,” the nonprofit is expected to debut in the coming weeks, according to multiple sources who have discussed it with the organizers. The institute aims to investigate and provide analytical information on large-scale attacks against civilian targets, assess the costs of these attacks and give security tools to both individuals and organizations that will help them become more resilient, according to a description of the nonprofit provided during a session at the 2019 B-Sides Las Vegas cybersecurity conference. “We have a shared global responsibility to prevent the Internet from becoming ‘weaponized’ by increasing attacks by criminal groups and state actors alike,” the description reads. “We already have global organizations to tackle […]

The post Microsoft, Hewlett Foundation preparing to launch nonprofit that calls out cyberattacks appeared first on CyberScoop.

Continue reading Microsoft, Hewlett Foundation preparing to launch nonprofit that calls out cyberattacks

Microsoft has no problem taking the $10B JEDI cloud contract if it wins

The Pentagon’s $10 billion JEDI cloud contract bidding process has drawn a lot of attention. Earlier this month, Google withdrew, claiming ethical considerations. Amazon’s Jeff Bezos responded in an interview at Wired25 that he thinks that it’s a mistake for big tech companies to turn their back on the US military. Microsoft president Brad Smith agrees. […] Continue reading Microsoft has no problem taking the $10B JEDI cloud contract if it wins