Tag Archives: microsoft

Meet the Windows servers that have been fueling massive DDoSes for months

Aurich Lawson / Getty reader comments 52 with 38 posters participating Share this story A small retail business in North Africa, a North American telecommunications provider, and two separate religious organizations: What do they have in common? They’re all running poorly configured Microsoft servers that for months or years have been spraying the Internet with… Read More »

“Too much and too soon”—Steven Sinofsky looks back at Windows 8, 10 years later

Enlarge / A billboard showing Windows 8 in Times Square in New York at the Microsoft Store in October 2012. Personal photo from Steven Sinofsky reader comments 144 with 95 posters participating Share this story On October 26, 2012, Microsoft released Windows 8, a hybrid tablet/desktop operating system that took bold risks but garnered mixed… Read More »

Microsoft leaked 2.4TB of data belonging to sensitive customer. Critics are furious

Getty Images reader comments 50 with 43 posters participating Share this story Microsoft is facing criticism for the way it disclosed a recent security lapse that exposed what a security company said was 2.4 terabytes of data that included signed invoices and contracts, contact information, and emails of 65,000 current or prospective customers spanning five… Read More »

How a Microsoft blunder opened millions of PCs to potent malware attacks

Getty Images reader comments 22 with 19 posters participating, including story author Share this story For almost two years, Microsoft officials botched a key Windows defense, an unexplained lapse that left customers open to a malware infection technique that has been especially effective in recent months. Microsoft officials have steadfastly asserted that Windows Update will… Read More »

Microsoft takes AI image generation mainstream, strolling into ethics minefield

Enlarge / A preview of Microsoft Designer’s AI text-to-image feature, which can generate images from written prompts. reader comments 31 with 23 posters participating, including story author Share this story During a Surface press event today, Microsoft announced integrations of AI-powered image-generation technology into its Bing search engine, Edge browser, and a new Office app… Read More »

High-severity Microsoft Exchange 0-day under attack threatens 220,000 servers

reader comments 26 with 22 posters participating Share this story Microsoft late Thursday confirmed the existence of two critical vulnerabilities in its Exchange application that have already compromised multiple servers and pose a serious risk to an estimated 220,000 more around the world. The currently unpatched security flaws have been under active exploit since early… Read More »

Microsoft Teams stores cleartext auth tokens, won’t be quickly patched

Enlarge / Using Teams in a browser is actually safer than using Microsoft’s desktop apps, which are wrapped around a browser. It’s a lot to work through. reader comments 65 with 41 posters participating Share this story Microsoft’s Teams client stores users’ authentication tokens in an unprotected text format, potentially allowing attackers with local access… Read More »

Microsoft finds TikTok vulnerability that allowed one-click account compromises

Getty Images reader comments 23 with 18 posters participating Share this story Microsoft said on Wednesday that it recently identified a vulnerability in TikTok’s Android app that could allow attackers to hijack accounts when users did nothing more than click on a single errant link. The software maker said it notified TikTok of the vulnerability… Read More »

Microsoft EU cloud revisions just so happen to exclude Google, Amazon

Enlarge / Microsoft says its latest cloud licensing terms are meant to give customers more flexibility and cost control—just not on Amazon, Google, or Alibaba servers. Getty Images reader comments 34 with 28 posters participating Share this story Facing European antitrust scrutiny, Microsoft has made it easier to virtualize its software on non-Microsoft cloud infrastructure—just… Read More »

0-days sold by Austrian firm used to hack Windows users, Microsoft says

Enlarge (credit: Getty Images) Microsoft said on Wednesday that an Austria-based company named DSIRF used multiple Windows and Adobe Reader zero-days to hack organizations located in Europe and Central America. Multiple news outlets have published articles like this one, which cited marketing materials and other evidence linking DSIRF to Subzero, a malicious toolset for “automated… Read More »