Skip to main content
  1. Home
  2. Computing
  3. News

Microsoft data breach exposed sensitive data of 65,000 companies

Microsoft servers have been subject to a breach that might have affected over 65,000 entities across 111 countries, according to the security research firm, SOCRadar.

SOCRadar claims that it shared with Microsoft its findings, which detailed that a misconfigured Azure Blob Storage was compromised and might have exposed approximately 2.4TB of privileged data, including names, phone numbers, email addresses, company names, and attached files containing proprietary company information, such as proof of concept documents, sales data, product orders, among other information.

SOCRadar Cloud Security Module discovered a misconfigured Microsoft Server on September 24, 2022.
Image used with permission by copyright holder

Having been made aware of the breach on September 24, 2022, Microsoft released a statement saying it had secured the comprised endpoint, which is “now only accessible with required authentication,” and that an investigation “found no indication customer accounts or systems were compromised.”

Recommended Videos

The company also stated that it has directed contacted customers that were affected by the breach.

However, SOCRadar also responded by making its BlueBleed search portal available to Microsoft customers who might be concerned they have been affected by the leak. The security firm noted that while Microsoft might have taken swift action on fixing the misconfigured server, its research was able to connect the 65,000 entities uncovered to a file data composed between 2017 and 20222, according to Bleeping Computer.

Microsoft has not been pleased with SOCRadar’s handling of this breach, having stated that encouraging entities to use its search tool “is not in the best interest of ensuring customer privacy or security and potentially exposing them to unnecessary risk.”

The research firm insists that it has not overstepped any privacy protocols in its work and none of the information it uncovered was saved on its end.

“No data was downloaded. Some of the data were crawled by our engine, but as we promised to Microsoft, no data has been shared so far, and all this crawled data was deleted from our systems,” SOCRadar VP of Research and CISO Ensar Şeker told BleepingComputer.

“We redirect all our customers to MSRC (Microsoft 365 Admin Center Alert) if they want to see the original data. Search can be done via metadata (company name, domain name, and email). Due to persistent pressure from Microsoft, we even have to take down our query page today,” he added.

Microsoft itself has not publicly shared any detailed statistics about the data breach.

Fionna Agomuoh
Fionna Agomuoh is a Computing Writer at Digital Trends. She covers a range of topics in the computing space, including…
Your Firefox tabs can soon hold little notes just for you
Firefox adds tab notes so your 47 open tabs can stop judging you
Mozilla Firefox

If you are the type of person who has 50 tabs open and can’t remember why you opened half of them, Firefox might have just solved your problem.

Mozilla is quietly testing a new "Add Note" feature in the latest experimental version of the browser (Firefox Nightly). It’s super simple: you just right-click on any tab, hit "Add Note," and type a quick reminder to yourself. A little notepad icon then sits next to the tab title so you know there’s something there.

Read more
9 unexpected things I was able to do with ChatGPT (and a few you must try)
From interior design advice and , to vitamins insight and gym goals
9 unexpected things I was able to do with ChatGPT

ChatGPT has become a household name for writing emails, essays, and code – but its abilities go far beyond the obvious. 

With the latest updates, ChatGPT can now see images, browse the web, use specialized tools, and even act as an “AI agent” that carries out tasks for you. 

Read more
Drive meaningful ROI risk-free with MailChimp’s 14-day Standard Plan free trial
Transform how you connect with your audience with smart, automated marketing that drives serious results
Man sitting on chair holding a laptop, woman standing next to him

This post is brought to you in paid partnership with Mailchimp

Whether you're a creator, running a small business, or part of team looking to scale email marketing, MailChimp's Standard plan offers a combination of AI tools, automation, insights, and customization to boost growth.

Read more