Security News > 2023 > August > US government to investigate China's Microsoft email breach

Infosec in brief The July breach of Microsoft Exchange Online by suspected Chinese hackers is the next topic up for review by the Department of Homeland Security's Cyber Safety Review Board.
The decision to investigate the July Outlook intrusion, and cloud security more broadly, was welcomed by senator Ron Wyden, who last week blamed Microsoft for its failure to protect cloud accounts belonging to US government officials and called for the CSRB to investigate the incident.
"I applaud president Biden and CISA director Easterly for acting on my request for the board to review this recent espionage campaign, including cyber security negligence by Microsoft that enabled it," Wyden said.
"The government will only be able to protect federal systems against cyber attacks by getting to the bottom of what went wrong. Ignoring problems is both a waste of taxpayer dollars and a massive gift to America's adversaries."
CISA director Jen Easterly said the CSRB's findings would help advance cyber security across the cloud - both government and enterprise.
The Government Accountability Office said that it has made more than 4,000 recommendations to federal agencies to address cyber security issues, and as of December 2022 more than 880 had yet to be fully implemented.
News URL
Related news
- Microsoft: Hackers steal emails in device code phishing attacks (source)
- US minerals company says crooks broke into email and helped themselves to $500K (source)
- US drug testing firm says data breach impacted 3.3 million people (source)
- US drug testing firm DISA says data breach impacts 3.3 million people (source)
- Xi know what you did last summer: China was all up in Republicans' email, says book (source)
- Microsoft unveils finalized EU Data Boundary as European doubt over US grows (source)
- China's Silk Typhoon, tied to US Treasury break-in, now hammers IT and govt targets (source)
- Feds name and charge alleged Silk Typhoon spies behind years of China-on-US attacks (source)
- Microsoft Warns of ClickFix Phishing Campaign Targeting Hospitality Sector via Fake Booking[.]com Emails (source)
- Microsoft: Exchange Online bug mistakenly quarantines user emails (source)