« Reply #3 on: July 11, 2024, 02:13:00 pm »
Nor did the board probe SolarWinds for its second report.
For its third, the board investigated a separate 2023 attack, in which Chinese state hackers exploited an array of Microsoft security shortcomings to access the email inboxes of top federal officials.
A full, public accounting of what happened in the Solar Winds case would have been devastating to Microsoft. ProPublica recently revealed that Microsoft had long known about — but refused to address — a flaw used in the hack. The tech company’s failure to act reflected a corporate culture that prioritized profit over security and left the U.S. government vulnerable, a whistleblower said.
Microsoft Chose Profit Over Security and Left U.S. Government Vulnerable to Russian Hack, Whistleblower Sayshttps://www.propublica.org/article/microsoft-solarwinds-golden-saml-data-breach-russian-hackersThe product, which was used by millions of people to log on to their work computers, contained a flaw that could allow attackers to masquerade as legitimate employees and rummage through victims’ “crown jewels” — national security secrets, corporate intellectual property, embarrassing personal emails — all without tripping alarms.
To Harris, who had previously spent nearly seven years working for the Defense Department, it was a security nightmare. Anyone using the software was exposed, regardless of whether they used Microsoft or another cloud provider such as Amazon. But Harris was most concerned about the federal government and the implications of his discovery for national security. He flagged the issue to his colleagues.
They saw it differently, Harris said. The federal government was preparing to make a massive investment in cloud computing, and Microsoft wanted the business. Acknowledging this security flaw could jeopardize the company’s chances, Harris recalled one product leader telling him. The financial consequences were enormous. Not only could Microsoft lose a multibillion-dollar deal, but it could also lose the race to dominate the market for cloud computing.
« Last Edit: July 11, 2024, 02:14:47 pm by Timber Rattler »

Logged
aka "nasty degenerate SOB," "worst of the worst at Free Republic," "Garbage Troll," "Neocon Warmonger," "Filthy Piece of Trash," "damn $#%$#@!," "Silly f'er," "POS," "war pig," "neocon scumbag," "insignificant little ankle nipper," "@ss-clown," "neocuck," "termite," "Uniparty Deep stater," "Never Trump sack of dog feces," "avid Bidenista," "filthy Ukrainian," "war whore," "fricking chump," "psychopathic POS," "depraved SOB," "Never Trump Moron," "Lazarus," "sock puppet," and "Timber Bunny."
"In a time of universal deceit - telling the truth is a revolutionary act." ---George Orwell