Microsoft says Chinese hackers used code flaw to steal emails from government agencies

Microsoft says that hackers used a flaw in its code to steal emails from government agencies and other clients.

In a blog post published on Friday, the company said that Chinese hackers were able to take advantage of “a validation error in Microsoft code” to carry out their cyberespionage campaign.

The blog provided the most fulsome explanation yet for a hack that rattled both the cybersecurity industry and China-U.S. relations. Beijing has denied any involvement in the spying.

Microsoft and U.S. officials said on Wednesday night that Chinese state-linked hackers had been secretly since May accessing email accounts at around 25 organizations. U.S. officials said those included at least two U.S. government agencies.

Microsoft has not identified any of the hack’s targets but several victims have acknowledged they were affected, including personnel at the State Department, the Commerce Department, and the U.S. House of Representatives.

Secretary of State Antony Blinken told China’s top diplomat, Wang Yi, in a meeting in Jakarta on Thursday that any action that targets the U.S. government, U.S. companies or American citizens “is of deep concern to us, and that we will take appropriate action to hold those responsible accountable,” according to a senior State Department official.

Discover the stories of your interest


Microsoft’s own security practices have come under scrutiny, with officials and lawmakers calling on the Redmond, Washington-based company to make its top level of digital auditing, also called logging, available to all its customers free of charge.

Stay on top of technology and startup news that matters. Subscribe to our daily newsletter for the latest and must-read tech news, delivered straight to your inbox.

For all the latest Technology News Click Here 

Read original article here

Denial of responsibility! TechAI is an automatic aggregator around the global media. All the content are available free on Internet. We have just arranged it in one platform for educational purpose only. In each content, the hyperlink to the primary source is specified. All trademarks belong to their rightful owners, all materials to their authors. If you are the owner of the content and do not want us to publish your materials on our website, please contact us by email – [email protected]. The content will be deleted within 24 hours.