Microsoft tells yet more customers their emails have been stolen

microsoft, microsoft tells yet more customers their emails have been stolen

Microsoft tells yet more customers their emails have been stolen

Plus: US auto dealers still offline; Conti coders sanction; Rabbit R1 hardcoded API keys; and more

security in brief  It took a while, but Microsoft has told customers that the Russian criminals who compromised its systems earlier this year made off with even more emails than it first admitted. …

We've been aware for some time that the digital Russian break-in at the Windows maker saw Kremlin spies make off with source code, executive emails, and sensitive US government data. Reports last week revealed that the issue was even larger than initially believed and additional customers' data has been stolen.

"We are continuing notifications to customers who corresponded with Microsoft corporate email accounts that were exfiltrated by the Midnight Blizzard threat actor, and we are providing the customers the email correspondence that was accessed by this actor," a Microsoft spokesperson told Bloomberg. "This is increased detail for customers who have already been notified and also includes new notifications."

Along with Russia, Microsoft was also compromised by state actors from China not long ago, and that issue similarly led to the theft of emails and other data belonging to senior US government officials.

Both incidents have led experts to call Microsoft a threat to US national security, and president Brad Smith to issue a less-than-reassuring mea culpa to Congress. All the while, the US government has actually invested more in its Microsoft kit.

Bloomberg reported that emails being sent to affected Microsoft customers include a link to a secure environment where customers can visit a site to review messages Microsoft identified as having been compromised. But even that might not have been the most security-conscious way to notify folks: Several thought they were being phished.

A "cyber incident" last week at CDK, which makes dealer management software used at approximately 15,000 auto retailers in the US, hasn't eased up, leaving thousands unable to sell cars.

CDK updated dealerships this week with an email indicating it wasn't sure it would be able to get all dealers back online by the end of June, and advised them to make alternative plans for closing out monthly sales. Car dealerships around the US are expected to report losses this month due to the outage, and some dealerships are worried it could take years to fully recover.

And would you believe it? Blame for this might actually be placeable at the feet of the US Supreme Court messing with anti-monopoly laws that allowed CDK to gain so much market share.

An analysis of four years of spam collected by Mailsuite suggests it's Facebook users that are the most likely to be targeted for a phishing scam.

Phishing messages targeting Facebook/Meta customers accounted for around four percent of brand-impersonating spam Mailsuite collected, and while that's not a large percentage of the whole it's still seven percent higher than the next most popular impersonation target: the IRS.

More broadly, IT and technology firms are the most impersonated, accounting for around 20 percent of total brand impersonation spam, followed by banking and financial services.

Please read your emails more carefully – if not for your boss, then for us?

A group of researchers have presented an exploit they call SnailLoad, which they believe is present in every single internet connection in the world and which can let an attacker infer internet activity based on the time it takes for TCP ACK requests to make a round trip.

While it's unlikely SnailLoad has been exploited in the wild, the researchers said it'll be a hard issue to mitigate, and any download of a file or website component can be modified to transmit the attack.

"The root cause of SnailLoad are bandwidth differences between backbone and end-user connections," the team noted. "Hence, the root cause cannot be eliminated and further research is necessary to find satisfying solutions."

The Council of the EU last week approved sanctions on six Russians involved in cyber attacks against EU states and Ukraine, and the list includes some heavy hitters.

Among the sanctioned individuals are two alleged members of the Callisto Group, Ruslan Peretyatko and Andreay Korinets; suspected Armageddon members Oleksandr Sklianko and Mykola Chernykh; and two individuals, Mikhail Tsarev and Maksim Galochkin, believed to have been involved in the production of Conti.

All individuals are now under an asset freeze and travel ban in Europe, and are barred from receiving funds from EU citizens and entities.

The Rabbit R1, an AI-powered … thing … that was widely panned on release, isn't just not very useful – it's also riddled with security holes. Like a whole bunch of hard-coded API keys, say a team of jailbreakers.

The team said it made Rabbit aware of several exposed API keys which it fixed, but the company missed one for Twilio's SendGrid that was still exposed after the fix. The Jailbreak crew was able to view a complete history of emails sent from the r1.rabbit.tech domain, and even allowed them to send emails as a domain administrator – which is how they allegedly made reporters aware of the matter.

If you have a Rabbit R1 – why? – it'd be a good idea to shut it off until this gets resolved. ®

OTHER NEWS

17 minutes ago

Alvarez, Otamendi named in Argentina squad for Olympics

17 minutes ago

Wallaby Nawaqanitawase, Toole in Australia squad for Paris Sevens

21 minutes ago

Triple lock amendment to be published by September at latest – Martin

21 minutes ago

Christian Pulisic reveals why referee snubbed handshake after disastrous USA Copa America exit

22 minutes ago

Report: Clippers Didn’t Think Paul George Would Leave Since His Parents Could Attend Home Games

22 minutes ago

Panthers to sign defenseman Nate Schmidt following Winnipeg buyout

22 minutes ago

Firms pushed to cheat to win work as budgets blow out

22 minutes ago

$50m deal to save cash given OK

22 minutes ago

HPD: Homicide investigation underway after man in his 70s found dead inside Montrose apartment

22 minutes ago

Ex-astronaut who died in Washington plane crash was doing a flyby near a friend's home, NTSB says

22 minutes ago

Usher and Janet Jackson headline 30th Essence Festival of Culture

22 minutes ago

Leaders of Russia and China to meet in Central Asian summit in a show of deepening cooperation

22 minutes ago

Sizzling sidewalks, unshaded playgrounds pose risk for surface burns over searing Southwest summer

22 minutes ago

Pro-choice advocates set to turn in around 800,000 signatures for Arizona abortion ballot measure

22 minutes ago

Newborn white rhino Silverio takes his first giant steps in a Chilean zoo in a boost to his species

22 minutes ago

Scientists pinpoint strategies to stop cats from scratching your furniture

24 minutes ago

Katherine Heigl Clears Up Rumor She Turned Down ‘Grey’s Anatomy’ Emmy Nomination: “I Wasn’t Trying To Be A Dick”

27 minutes ago

China's BYD is set to take Tesla's crown as the world's No. 1 producer of battery electric vehicles

28 minutes ago

Orbán touts Russia-Kyiv ceasefire during talks with Zelensky; India’s Modi to visit Moscow

28 minutes ago

Boris Johnson returns to the trail as General Election campaigns come to an end

28 minutes ago

Zoo in Chile presents 12-day-old baby rhino to the public

28 minutes ago

Tesla stock on the rise as Q2 deliveries beat expectations

28 minutes ago

Pacers sign former Warriors top pick James Wiseman to two-year contract

29 minutes ago

Asian stocks gain, yen stays near 38-year lows

29 minutes ago

Video: KeKe Jabbar dead at 42: Love & Marriage: Huntsville star passed 'peacefully at home surrounded in love'

29 minutes ago

Sacked pregnant accounts manager wins compensation

29 minutes ago

Raiders O-line ranks among top 20 according to PFF

29 minutes ago

'I'm a chronic overpacker and tried the 'Tardis-like' bag that avoids luggage fines'

29 minutes ago

Standard Bank Achieves Over R670 Million In Savings For Clients Using Saswitch ATM Network

29 minutes ago

Conor McGregor issues Cristiano Ronaldo message after tearful Portugal star's Euro 2024 victory

29 minutes ago

China's BYD is set to take Tesla's crown as the world's No. 1 producer of battery electric vehicles

29 minutes ago

Brokers says these ASX 300 dividend shares are top buys

29 minutes ago

Australia's Lee siblings hope to team up at Olympics, eventually

32 minutes ago

Guess which ASX All Ords stock just received another $18 million investment from Rio Tinto

35 minutes ago

AI models may be using “demographic shortcuts” when making medical diagnostic evaluations

35 minutes ago

Tesla stock shows a curious pattern before and after earnings that you can trade

35 minutes ago

Rivian’s stock rallies after EV deliveries beat by wide margin

35 minutes ago

Chicago Sky Make Big Angel Reese Announcement During Atlanta Dream Game

35 minutes ago

Caitlin Clark, Angel Reese headline WNBA All-Star team that will face US Olympic squad

36 minutes ago

How Julia Roberts Ignited Taylor Swift Fan Fury With Travis Kelce Encounter