Microsoft hid the hacking of data in 2013
Not only is Yahoo the Fortune 500 company hiding the data leak.
Four and a half years ago, Microsoft was in a similar situation when a "very complicated hacker group" had hacked data to track their patches and reported bugs, though it had never been published until today. now on.
This Windows database contains information about critical vulnerabilities that have not been patched on some of the software used by many people, including Microsoft's Windows operating system.
5 former Microsoft employees told Reuters that MIcrosoft had silently handled the case, fixed errors and vulnerabilities in the database that were hacked to prevent hackers from taking advantage.
The person behind the hack
The data hacking was done by a famous hacker group specializing in hacking tech companies in Silicon Valley, having high skills and many names like Morpho, Jripbot, ZeroWing, Sphinx Moth, Butterfly and Wild Neutron. They are also the team that exploited the zero-day JAVA vulnerability to hack Macs that Microsoft employees use.
How to deal with Microsoft
The hack was discovered in February 2013. A few weeks later, Microsoft admitted to leaking data but said the attacker was restricted to network access.
Before the general situation, each company has different ways of handling
'As Facebook and Apple have said, Microsoft confirmed we had a security problem,' Microsoft said in a statement. 'Some computers, including some Macs, are infected with malicious code like some other companies. There is no evidence of customer data being affected and we are still investigating. '
Mozilla has a better way to solve the problem
Microsoft is not the only company leaking information about vulnerabilities and reporting errors. Mozilla also fell into a similar situation in 2015 but they decided to say the whole thing.
Kaspersky also acknowledged being attacked by Duqu 2.0 APT. Bitdefender also suffered data leaks in 2015.
You should read it
- The man lived only by hacking online games for 20 years
- The most mysterious hacks in history
- Microsoft's 6 Biggest Hacks
- The 10 biggest crypto hacks and scams of 2023
- DNS attacks are costing governments worldwide huge amounts
- How iPhone vulnerabilities allow websites to hack iOS devices
- Steps to export Microsoft Access data to Word documents
- Even mobile sensors can become phishing attacks
May be interested
- Sockbot malware was discovered in applications on Google Play Storethis month, symantec discovered a new type of malware on android called sockbot, a legitimate application on google play that allows an attacker to create fake ad traffic.
- Students are expelled for using keyloggers to correct scoresthe university of kansas fired a student by installing keylogger and hacking the school's score system to change its grades.
- The unpatched Microsoft Word DDE vulnerability is exploited in a massive malware attacka new attack method that exploits the microsoft office integration feature has been discovered being used for malware distribution campaigns.
- LokiBot - bank trojan on Android turns into ransomware when you try to delete itsecurity agents have discovered a new bank trojan on android called lokibot that turns into extortion code and locks the phone when the user tries to delete its admin rights.
- Bad Rabbit - Petya's new ransomware spreads throughout Eastern Europea new ransomware called bad rabbit is stirring up many countries in eastern europe, including government and business units. the spread rate is similar to wannacry and notpetya which took place in may and june.
- DUHK attacks allow hackers to obtain encryption keys for VPN and web browsing sessionsduhk - dont use hard-coded keys - is a new dangerous encryption executable vulnerability that allows an attacker to recover the encryption key used to secure vpn connections and web sessions.