iTnews Asia
  • Home
  • News
  • Security

Cyber board says Chinese hack of US officials was 'preventable'

Cyber board says Chinese hack of US officials was 'preventable'

Identifies Microsoft to have decreased enterprise security.

By Staff Writer on Apr 3, 2024 10:32AM

The US Cyber Safety Review Board said on Tuesday a targeted Chinese hack of top government officials' emails last year was "preventable", faulting technology giant Microsoft for its cybersecurity lapses and a deliberate lack of transparency.

The board said in its report that it identified a series of decisions taken by Microsoft that had decreased enterprise security, risk management and trust from the customers to protect their data and operations.

The intrusion, which stemmed from the compromise of a Microsoft engineer's corporate account, was done by Storm-0558, a hacking group affiliated with the People's Republic of China.

"While no organisation is immune to cyberattack from well-resourced adversaries, we have mobilised our engineering teams to identify and mitigate legacy infrastructure, improve processes, and enforce security benchmarks," Microsoft said.

"Our security engineers continue to harden all our systems against attack and implement even more robust sensors and logs to help us detect and repel the cyber-armies of our adversaries. We will also review the final report for additional recommendations."

The board recommended Microsoft to develop and make security-focused reforms across all its products.

Last year, the technology giant said the intrusion of senior officials at the US State and Commerce departments was done by Storm-0558, which is alleged to have stolen hundreds of thousands of emails from top American officials including Commerce Secretary Gina Raimondo, US Ambassador to China Nicholas Burns and Assistant Secretary of State for East Asia Daniel Kritenbrink.

To reach the editorial team on your feedback, story ideas and pitches, contact them here.
Copyright Reuters
© 2019 Thomson Reuters. Click for Restrictions.
Tags:
security us cyber safety review board

Related Articles

  • Your organisation’s physical security can be a gateway for cybercriminals
  • The best way to outsmart your threat actors is to think like one
  • How cybercriminals are exploiting LLMs to harm your business
  • Is identity now the next parameter of cybersecurity breaches?
Share on Twitter Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

The best way to outsmart your threat actors is to think like one

The best way to outsmart your threat actors is to think like one

Your organisation’s physical security can be a gateway for cybercriminals

Your organisation’s physical security can be a gateway for cybercriminals

What are the most pressing cyber security concerns going into 2025?

What are the most pressing cyber security concerns going into 2025?

Malaysia ramps up cyber security defense to stem rising fraud and ransomware attacks

Malaysia ramps up cyber security defense to stem rising fraud and ransomware attacks

All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of Lighthouse Independent Media's Privacy Policy and Terms & Conditions.