Security News > 2024 > April > US Cyber Safety Review Board on the 2023 Microsoft Exchange Hack
US Cyber Safety Review Board released a report on the summer 2023 hack of Microsoft Exchange by China.
The Board finds that this intrusion was preventable and should never have occurred.
The Board also concludes that Microsoft's security culture was inadequate and requires an overhaul, particularly in light of the company's centrality in the technology ecosystem and the level of trust customers place in the company to protect their data and operations.
How Microsoft's ubiquitous and critical products, which underpin essential services that support national security, the foundations of our economy, and public health and safety, require the company to demonstrate the highest standards of security, accountability, and transparency.
The board was established in early 2022, modeled in spirit after the National Transportation Safety Board.
News URL
Related news
- US sanctions crypto exchanges used by Russian ransomware gangs (source)
- US Government, Microsoft Aim to Disrupt Russian threat actor ‘Star Blizzard’ (source)
- Microsoft Exchange adds warning to emails abusing spoofing flaw (source)
- US govt officials’ communications compromised in recent telecom hack (source)
- Microsoft pulls Exchange security updates over mail delivery issues (source)