{"id":31503,"date":"2023-08-11T16:10:15","date_gmt":"2023-08-11T16:10:15","guid":{"rendered":"https:\/\/entertainment.runfyers.com\/index.php\/2023\/08\/11\/us-cyber-board-to-investigate-microsoft-hack-of-government-emails-techcrunch\/"},"modified":"2023-08-11T16:10:15","modified_gmt":"2023-08-11T16:10:15","slug":"us-cyber-board-to-investigate-microsoft-hack-of-government-emails-techcrunch","status":"publish","type":"post","link":"https:\/\/entertainment.runfyers.com\/index.php\/2023\/08\/11\/us-cyber-board-to-investigate-microsoft-hack-of-government-emails-techcrunch\/","title":{"rendered":"US cyber board to investigate Microsoft hack of government emails | TechCrunch"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\">A U.S. review board tasked with investigating major cybersecurity incidents said it will begin looking at <a href=\"https:\/\/techcrunch.com\/2023\/07\/17\/microsoft-lost-keys-government-hacked\/\" target=\"_blank\" rel=\"noopener\">the recent intrusion of U.S. government email systems<\/a> provided by Microsoft, whose handling of the incident drew ire and scrutiny from federal lawmakers and the wider security community.<\/p>\n<p>The <a href=\"https:\/\/www.cisa.gov\/resources-tools\/groups\/cyber-safety-review-board-csrb\" target=\"_blank\" rel=\"noopener\">Cyber Security Review Board<\/a>, or CSRB, <a href=\"https:\/\/www.dhs.gov\/news\/2023\/08\/11\/department-homeland-securitys-cyber-safety-review-board-conduct-review-cloud\" target=\"_blank\" rel=\"noopener\">said Friday<\/a> that its latest investigation will include a \u201cbroader review of issues relating to cloud-based identity and authentication infrastructure.\u201d<\/p>\n<p>The board said it began considering an investigation after learning of <a href=\"https:\/\/techcrunch.com\/2023\/07\/12\/chinese-hackers-us-government-microsoft-email\/\" target=\"_blank\" rel=\"noopener\">the Microsoft cloud breach<\/a>, which saw China state-backed hackers break into government email accounts, including the inbox of U.S. Commerce Secretary Gina Raimondo, several officials at the U.S. State Department, and other organizations not yet publicly named.<\/p>\n<p>According to the slow-drip of information about the incident, Microsoft said China-backed hackers <a href=\"https:\/\/techcrunch.com\/2023\/07\/17\/microsoft-lost-keys-government-hacked\/\" target=\"_blank\" rel=\"noopener\">stole a sensitive signing key<\/a> that allowed unauthorized access to enterprise and government email inboxes hosted by the technology giant. That stolen key, coupled with a flaw that Microsoft has since patched, allowed the forging of authentication tokens that the hackers used to access the target\u2019s email accounts as if they were the rightful owners.<\/p>\n<p>The intrusions began in mid-May but were not detected until a month later, when State Department officials detected the breach and notified Microsoft. It was only because the State Department used a higher-paid tier account that <a href=\"https:\/\/www.wsj.com\/articles\/china-hacking-was-undetectable-for-some-who-had-less-expensive-microsoft-services-58730629\" target=\"_blank\" rel=\"noopener\">allowed access to logs<\/a> that Microsoft keeps, which first revealed the hacks. Other departments with a lower paid tier were not given access to logs that may have spotted the intrusions sooner.<\/p>\n<p>Following criticism, Microsoft capitulated soon after, saying it would make <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2023\/07\/19\/expanding-cloud-logging-to-give-customers-deeper-security-visibility\/\" target=\"_blank\" rel=\"noopener\">logs available<\/a> for customers at no additional cost from September.<\/p>\n<p>Ron Wyden, a Democratic lawmaker on the Senate Intelligence Committee, blasted Microsoft <a href=\"https:\/\/www.wyden.senate.gov\/news\/press-releases\/wyden-requests-federal-agencies-investigate-lax-cybersecurity-practices-by-microsoft-that-reportedly-enabled-chinese-espionage\" target=\"_blank\" rel=\"noopener\">in a scathing letter<\/a> to government agencies requesting an investigation into whether \u201clax cybersecurity practices\u201d enabled Chinese hackers to spy on high-ranking federal government officials.<\/p>\n<p>Wyden also called on the CSRB to investigate the incident.<\/p>\n<p>In carrying out a post-mortem of the hack, Homeland Security secretary Alejandro Mayorkas said in remarks it was \u201cimperative\u201d to understand the vulnerabilities in cloud technologies that are relied on by U.S. organizations.<\/p>\n<p>\u201cActionable recommendations from the CSRB will help all organizations better secure their data and further cyber resilience,\u201d said Mayorkas.<\/p>\n<p>This is the CSRB\u2019s third investigation since it was founded by executive order in 2021 by President Biden. The board, which includes representatives from government and cybersecurity experts in the private sector, serves to review major cybersecurity events and identify recommendations to prevent future incidents.<\/p>\n<p>The CSRB\u2019s first investigation looked at the fallout from <a href=\"https:\/\/techcrunch.com\/2021\/12\/13\/the-race-is-on-to-patch-log4shell-as-attacks-begin-to-rise\/\" target=\"_blank\" rel=\"noopener\">the Log4j vulnerability<\/a> in 2020, and its second \u2014 published this week \u2014 examined recent attacks by <a href=\"https:\/\/techcrunch.com\/2022\/09\/19\/how-to-fix-another-uber-breach\/\" target=\"_blank\" rel=\"noopener\">the Lapsus$ hacking group<\/a>,<\/p>\n<\/p><\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2023\/08\/11\/cyber-security-review-board-microsoft-hack-government-emails\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A U.S. review board tasked with investigating major cybersecurity incidents said it will begin looking at the recent intrusion of U.S. government email systems provided by Microsoft, whose handling of the incident drew ire and scrutiny from federal lawmakers and the wider security community. The Cyber Security Review Board, or CSRB, said Friday that its [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":31504,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[14],"tags":[],"class_list":{"0":"post-31503","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-tech"},"_links":{"self":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/31503","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/comments?post=31503"}],"version-history":[{"count":0,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/31503\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media\/31504"}],"wp:attachment":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media?parent=31503"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/categories?post=31503"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/tags?post=31503"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}