Skip to main content

Top Microsoft lawyer slams government for ‘stockpiling’ vulnerabilities

Microsoft
Image used with permission by copyright holder
As IT departments around the world are still reeling from the weekend’s spate of ransomware attacks, Microsoft’s head legal counsel has slammed the United States government for “stockpiling” vulnerabilities.

In a blog post, Microsoft president and chief legal officer Brad Smith criticized the NSA for collecting and storing zero-days that it could lose control of. That appears to be exactly what happened this past weekend when the WannaCry ransomware was unleashed on companies like FedEx, NHS hospitals in the United Kingdom, car manufacturers, and telcos. The malware is believed to have been stolen by a mysterious hacker group called the Shadow Brokers and leaked online.

Smith said this case and the recent case around WikiLeaks publishing details of hacking tools and vulnerabilities used by the CIA are causing “widespread damage”.

“An equivalent scenario with conventional weapons would be the U.S. military having some of its Tomahawk missiles stolen,” he said. “And this most recent attack represents a completely unintended but disconcerting link between the two most serious forms of cybersecurity threats in the world today — nation-state action and organized criminal action.”

The culprits behind the attacks remain unknown. On Monday morning, businesses returned to work with apprehension as their IT departments were still assessing the damage. Staff in NHS hospitals in the U.K. were advised to not log in to their computers this morning as it was still awaiting a new antivirus installation.

The global incident should be a “wake-up call” to governments, Smith said in the blog post, which pulled no punches. Smith suggested that governments need to treat malware with the same rules as physical weapons and the effect they can have on ordinary people. In the case of hospitals attacked by WannaCry, there were reports of some important patients’ procedures being postponed.

Smith went on to reiterate Microsoft’s call for a “Digital Geneva Convention” to regulate how governments handle zero-days, requiring them to disclose these vulnerabilities to vendors so they can be patched promptly.

“We should take from this recent attack a renewed determination for more urgent collective action. We need the tech sector, customers, and governments to work together to protect against cybersecurity attacks.”

Editors' Recommendations

Jonathan Keane
Former Digital Trends Contributor
Jonathan is a freelance technology journalist living in Dublin, Ireland. He's previously written for publications and sites…
Scores of people are downgrading back to Windows 10
The screen of the Galaxy Book4 Ultra.

Microsoft continues to struggle with the adoption of Windows 11 among its users. Recent data from Statcounter reveals a notable decline in the operating system’s market share, specifically compared with Windows 10.

After reaching an all-time high of 28.16% in February 2024, Windows 11 has experienced a drop, falling below the 26% mark.

Read more
The ASUS ROG Ally handheld gaming PC has a nice discount today
Starfield running on the Asus ROG Ally.

If you love the power of gaming PCs and the portability of the Nintendo Switch, you should think about getting a handheld gaming PC like the Asus ROG Ally. If you're interested, it's currently on sale from Walmart with an $87 discount that pulls its price down to $400 from $487. It's a pretty popular device so we expect this offer to attract a lot of attention, which means it's probably not going to last long. If you want to get this handheld gaming PC for this cheap, you should proceed with the transaction immediately.

Why you should buy the Asus ROG Ally handheld gaming PC
It's the version of the Asus ROG Ally with the AMD Ryzen Z1 Extreme that's listed in our roundup of the best handheld gaming PCs, but the Asus ROG Ally Z1 is still a worthwhile purchase because it gives you a gaming PC that you can bring with you wherever you go. Unlike a gaming laptop that's still pretty bulky with its large screen and keyboard, the Asus ROG Ally takes on the form of a portable gaming console like the Nintendo Switch, but with Windows 11 pre-installed as a familiar operating system to navigate and launch the best PC games.

Read more
The HP Victus gaming PC with RTX 3060 has a $550 discount
The HP Victus 15L gaming PC in white.

Gamers don't need to spend more than $1,000 if they want to buy a new gaming PC because there are affordable options like the HP Victus 15L gaming desktop. From its original price of $1,400, you can get it for just $850 as HP has applied a $550 discount on this machine. However, you shouldn't delay your purchase because there's no assurance that the gaming PC will still be 39% off tomorrow. If you want to make sure that you get it for less than $1,000, you're going to have to complete the transaction for it within the day.

Why you should buy the HP Victus 15L gaming desktop
You shouldn't expect the HP Victus 15L gaming desktop to match the performance of the top-of-the-line models of the best gaming PCs, but it's surprisingly powerful for its cost. Inside it are the 13th-generation Intel Core i7 processor and the Nvidia GeForce RTX 3060 graphics card, with 16GB of RAM that our guide on how much RAM do you need says is the best place to start for gaming. It's enough to play today's best PC games without any issues, and it may even be capable of running the upcoming PC games of the next few years if you're willing to dial down the settings for the more demanding titles.

Read more