July 15, 2023, 2:48 p.m. | /u/jpc4stro

cybersecurity www.reddit.com

Microsoft says it still doesn't know how Chinese hackers stole an inactive Microsoft account (MSA) consumer signing key used to breach the Exchange Online and Azure AD accounts of two dozen organizations, including government agencies.

"The method by which the actor acquired the key is a matter of ongoing investigation," Microsoft admitted in a new advisory published today.

The incident was reported by U.S. government officials after the discovery of unauthorized access to several government agencies' Exchange Online email services. …

account accounts actor azure azure ad breach chinese chinese hackers consumer cybersecurity exchange exchange online government hackers investigation key matter microsoft organizations signing the exchange the key

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Lead Technical Product Manager - Threat Protection

@ Mastercard | Remote - United Kingdom

Data Privacy Officer

@ Banco Popular | San Juan, PR

GRC Security Program Manager

@ Meta | Bellevue, WA | Menlo Park, CA | Washington, DC | New York City

Cyber Security Engineer

@ ASSYSTEM | Warrington, United Kingdom

Privacy Engineer, Technical Audit

@ Meta | Menlo Park, CA