Microsoft accidentally exposed 250 million customer service records
According to Microsoft, the database was accidentally exposed as part of a misconfiguration in the security rules that happened as a result of a change made on December 5. The databases were then picked up by the BinaryEdge search engine on December 28, and Diachenko discovered them on December 29. Despite happening during the holiday season, Microsoft was quick to fix the issue, with the data being secured by December 31.
The data contained in the records referred to conversations between customers and Microsoft's support teams, and most of the data in the logs was redacted as part of Microsoft's standard procedures. However, some data may have been left in plain text, including information such as e-mail addresses for customers and support agents, IP addresses, locations, case numbers, and confidential internal notes. As noted by the research team that discovered the issue, this information can be used by ill-intentioned actors to impersonate Microsoft support agents to scam customers. However, Microsoft notes that it didn't find any evidence of malicious use of the data.
Microsoft also says it's committed to preventing this sort of situation from happening again, so it's taking a number of steps. These include auditing the network security rules currently in place, adding additional alerts for when misconfigurations are detected, and implementing more automated redaction. The company is also notifying any customers affected by this incident.
Posted:
Related Forum: PC General Forum
Source: https://www.neowin.net/news/microsoft-accidentally-exposed-250-million-customer-service-records-online
Related Articles
Comments
Latest Downloads
- 01. Euro Truck Simulator 2: SaveGame (6.16% Roads, All DLC) [1.51.1.1s](0)
- 02. My Summer Car: SaveGame (Quest: Failed Drift)(0)
- 03. SnowRunner: SaveGame (all trucks are open) [32.1](2)
- 04. [PS4/EU] Hatsune Miku: Project DIVA Future Tone 100% Trophy Save(4)
- 05. Silent Hill 2 Remake: SaveGame (Motel Jacks, NG+)(1)
- 06. Phasmophobia: SaveGame (XX-2000, $594,965,799, 3 apocalypse skulls + bonus)(2)
- 07. Satisfactory: SaveGame (Observation deck)(1)
- 08. [EU] Sniper Elite 5 - Best Of The Best (CUSA16075)(7)
- 09. Voices Of The Void: SaveGame (All improvements for work + 7 days passed) [0.8.0](1)
- 10. Silent Hill 2 Remake: SaveGame (NG+, ending "Maria")(1)
- 11. Five Nights at Freddy's- Security Breach Save(9)
- 12. Commandos 2 - HD Remaster: SaveGame (All missions are open)(0)
- 13. Black Myth: Wukong - SaveGame (100%, NG++)(4)
- 14. Mindjack save xbox(0)
- 15. mindjack ps3 save(0)
Latest Tutorials
- 01. PS3 HEN - Audio via a USB headset.(310)
- 02. Stumble Guys | Social Butterfly Achievement(201)
- 03. Last Days of Lazarus Achievement Walkthrough (Xbox/PS)(1,462)
- 04. EDENGATE: The Edge of Life - 100% Trophy/Achievement Guide(1,824)
- 05. Sherlock Holmes Chapter One | Walkthrough | No Commentary(1,464)
- 06. Morbid: The Seven Acolytes | Full Game Walkthrough(2,442)
- 07. Adam Wolfe | Full Game Walkthrough | No Commentary(1,575)
- 08. ALFRED HITCHCOCK: VERTIGO - 100% Walkthrough(1,898)
- 09. SHERLOCK HOLMES THE AWAKENED | Walkthrough | No Commentary(1,335)
- 10. Space Roguelike Adventure | Guide - Cheat Code!(1,536)
- 11. DETECTIVE Stella Porta Case | Trophy & Achievement Guide(1,195)
- 12. Tunic 100% Platinum Walkthrough | Trophy & Achievement Guide(1,826)
- 13. Outbreak: The Nightmare Chronicles Achievement Walkthrough(1,465)
- 14. Full Void 100% - Trophy & Achievement Guide(1,445)
- 15. Outbreak: Lost Hope #Xbox Achievement Walkthrough(2,287)
"Microsoft accidentally exposed 250 million customer service records" :: Login/Create an Account :: 3 comments