This is a cache of https://slashdot.org/story/25/03/05/1743246/microsoft-warns-of-chinese-hackers-spying-on-cloud-technology. It is a snapshot of the page at 2025-03-06T01:12:58.659+0000.
Microsoft Warns of Chinese Hackers Spying on Cloud Technology - Slashdot

Please create an account to participate in the Slashdot moderation system

 



Forgot your password?
typodupeerror
×
Microsoft China

Microsoft Warns of Chinese Hackers Spying on Cloud Technology (msn.com) 22

Microsoft warned that an advanced Chinese hacking group is waging a campaign of supply-chain attacks. From a report: The company's threat intelligence division said in a blog post Wednesday that the group, known as Silk Typhoon, was targeting remote management tools and cloud applications in order to spy on a range of companies and organizations in the US and abroad.

Microsoft said it observed in late 2024 that hackers were targeting cloud storage services, from which they would steal keys that could be used to access customer data. The group breached state and local government organizations and companies in the technology sector, seeking information on US government policy and documents related to law enforcement investigations. Silk Typhoon was behind a December hack that targeted the US Treasury Department, compromising more than 400 computers, Bloomberg News previously reported.

Microsoft Warns of Chinese Hackers Spying on Cloud Technology

Comments Filter:
  • Using could base services increases your attack surface greatly. The cloud represents a massive increase in risk for the average over local back-ups and client-side software.
    • by znrt ( 2424692 )

      you indeed got to wonder why the us, a superpower with the largest defense budget in the world by far, four times that of its next competitor, routinely making enemies all over the planet and paranoid about cybersecurity to the extent of banning phones and video sharing apps still gets critical infrastructure pwned on ... microsoft cloud. you couldn't make this up.

      • TikTok was banned because they couldn't censor it. Once the Bin Laden letter caught wind it had to go.

    • by DarkOx ( 621550 )

      for a lot business this is a massive advantage and it might even justify the massive risk.

      However this is another case when the industry basically invented a security model to justify what they already wanted to do and were already building. Then they propagandized relentlessly until anyone who dared criticize it was dismissed as not understanding or recalcitrant.

      I speak of "Zero Trust" which is full of good ideas and good security practices like continuous validation, and unified identity management etc.

    • by gweihir ( 88907 )

      That depends. But with Microsoft you are lost: https://www.cisa.gov/sites/def... [cisa.gov]

  • You are being attacked!

    You'll need Logging Plan Level 2 to see the logs, reach out to Sales for a quote.

    If you want to do something about the attacks then you need to upgrade to E5 and buy Defender for Cloud (Supreme Leader version), Sales can help!

  • these 'non-news' propaganda nonsense items shouldn't even be making slashdot.

    any IT admin knows that EVERYONE is trying to gain unauthorised access to our data, including our own government agencies.

    slashdot has become very much like facebook and other social media - peddling nonsense to create a narrative only the most idiotic fall for. it's ridiculous.

  • Walking in on the MS cloud is easy. The only hard part is not getting discovered after a few years.

    Getting discovered by careful MS customers that is, MS does not even notice and when they are told, they cannot analyze because they do not keep logs for a reasonable time:
    https://www.cisa.gov/sites/def... [cisa.gov]

Today is the first day of the rest of your lossage.

Working...