{"id":105625,"date":"2024-06-18T17:46:52","date_gmt":"2024-06-18T17:46:52","guid":{"rendered":"https:\/\/entertainment.runfyers.com\/index.php\/2024\/06\/18\/security-bug-allows-anyone-to-spoof-microsoft-employee-emails-techcrunch\/"},"modified":"2024-06-18T17:46:52","modified_gmt":"2024-06-18T17:46:52","slug":"security-bug-allows-anyone-to-spoof-microsoft-employee-emails-techcrunch","status":"publish","type":"post","link":"https:\/\/entertainment.runfyers.com\/index.php\/2024\/06\/18\/security-bug-allows-anyone-to-spoof-microsoft-employee-emails-techcrunch\/","title":{"rendered":"Security bug allows anyone to spoof Microsoft employee emails | TechCrunch"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\" class=\"wp-block-paragraph\">A researcher has found a bug that allows anyone to impersonate Microsoft corporate email accounts, making phishing attempts look credible and more likely to trick their targets.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">As of this writing, the bug has not been patched. To demonstrate the bug, the researcher sent an email to TechCrunch that looked like it was sent from Microsoft\u2019s account security team.<\/p>\n<p class=\"wp-block-paragraph\">Last week, Vsevolod Kokorin, also known online as Slonser, wrote on X (formerly Twitter) that he found the email-spoofing bug and reported it to Microsoft, but the company dismissed his report after saying it couldn\u2019t reproduce his findings. This prompted Kokorin to publicize the bug on X, without providing technical details that would help others exploit it.\u00a0<\/p>\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\">\n<div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"twitter-tweet\" data-width=\"500\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">I want to share my recent case:<br \/>&gt; I found a vulnerability that allows sending a message from any user@domain<br \/>&gt; We cannot reproduce it <br \/>&gt; I send a video with the exploitation, a full PoC <br \/>&gt; We cannot reproduce it<br \/>At this point, I decided to stop the communication with Microsoft. <a rel=\"nofollow\" href=\"https:\/\/t.co\/mJDoHTn9Xv\" target=\"_blank\">pic.twitter.com\/mJDoHTn9Xv<\/a><\/p>\n<p>\u2014 slonser (@slonser_) <a rel=\"nofollow noopener\" href=\"https:\/\/twitter.com\/slonser_\/status\/1801521692314927433?ref_src=twsrc%5Etfw\" target=\"_blank\">June 14, 2024<\/a><\/p><\/blockquote>\n<\/div>\n<\/figure>\n<p class=\"wp-block-paragraph\">\u201cMicrosoft just said they couldn\u2019t reproduce it without providing any details,\u201d Koroin told TechCrunch in an online chat. \u201cMicrosoft might have noticed my tweet because a few hours ago they reopen [sic] one of my reports that I had submitted several months ago.\u201d<\/p>\n<p class=\"wp-block-paragraph\">The bug, according to Kokorin, only works when sending the email to Outlook accounts. Still, that is a pool of at least 400 million users all over the world, <a rel=\"nofollow noopener\" href=\"https:\/\/www.microsoft.com\/en-us\/investor\/events\/fy-2024\/earnings-fy-2024-q2.aspx\" target=\"_blank\">according to Microsoft\u2019s latest earnings report<\/a>.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Kokorin said he last followed up with Microsoft on June 15. Microsoft did not respond to TechCrunch\u2019srequest for comment on Tuesday.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">TechCrunch is not divulging technical details of the bug in order to prevent malicious hackers from exploiting it.<\/p>\n<p class=\"wp-block-paragraph\">\u201cI did not expect my post to get such a reaction. Honestly, I just wanted to share my frustration because this situation made me sad,\u201d Kokorin said. \u201cMany people misunderstood me and think that I want money or something like that. In reality, I just want companies not to ignore researchers and to be more friendly when you try to help them.\u201d<\/p>\n<p class=\"wp-block-paragraph\">It\u2019s not known if anyone other than Kokorin found the bug, or if it has been maliciously exploited.<\/p>\n<p class=\"wp-block-paragraph\">While the threat of this bug, at this point, is unknown, Microsoft has experienced several security problems in recent years, <a href=\"https:\/\/techcrunch.com\/2023\/08\/11\/cyber-security-review-board-microsoft-hack-government-emails\/\" target=\"_blank\" rel=\"noopener\">prompting investigations by both federal regulators<\/a> and <a rel=\"nofollow noopener\" href=\"https:\/\/homeland.house.gov\/2024\/06\/17\/icymi-microsoft-president-testifies-on-past-security-failures-accountability-measures-in-wake-of-chinese-hack-of-government-accounts\/\" target=\"_blank\">congressional lawmakers<\/a>.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Last week, Microsoft president Brad Smith <a rel=\"nofollow noopener\" href=\"https:\/\/www.nbcnews.com\/politics\/national-security\/microsoft-vows-fix-security-gaps-china-hackers-government-emails-rcna156995\" target=\"_blank\">testified in a House hearing<\/a> after China <a href=\"https:\/\/techcrunch.com\/2023\/09\/08\/microsoft-hacker-china-government-storm-0558\/\" target=\"_blank\" rel=\"noopener\">stole a tranche of U.S. federal government emails<\/a> from Microsoft\u2019s servers in 2023. In the hearing, Smith pledged a renewed effort to prioritize cybersecurity in the company after a slew of security embarrassments.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Months earlier in January, Microsoft confirmed that a Russian-government linked hacking group <a href=\"https:\/\/techcrunch.com\/2024\/01\/19\/hackers-breached-microsoft-to-find-out-what-microsoft-knows-about-them\/\" target=\"_blank\" rel=\"noopener\">had broken into Microsoft corporate emails accounts<\/a> to steal information about what the company\u2019s top executives knew about the hackers themselves. And last week, <a rel=\"nofollow noopener\" href=\"https:\/\/www.propublica.org\/article\/microsoft-solarwinds-golden-saml-data-breach-russian-hackers\" target=\"_blank\">ProPublica revealed<\/a> that Microsoft had failed to heed warnings about a critical flaw that was later exploited in the Russian-backed cyber espionage campaign that targeted tech company SolarWinds.<\/p>\n<\/div>\n<p><script async src=\"\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><br \/>\n<br \/><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2024\/06\/18\/security-bug-allows-anyone-to-spoof-microsoft-employee-emails\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A researcher has found a bug that allows anyone to impersonate Microsoft corporate email accounts, making phishing attempts look credible and more likely to trick their targets.\u00a0 As of this writing, the bug has not been patched. To demonstrate the bug, the researcher sent an email to TechCrunch that looked like it was sent from [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":105626,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[14],"tags":[],"class_list":{"0":"post-105625","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-tech"},"_links":{"self":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/105625","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/comments?post=105625"}],"version-history":[{"count":0,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/105625\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media\/105626"}],"wp:attachment":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media?parent=105625"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/categories?post=105625"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/tags?post=105625"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}