时间:2025-01-18 18:57:26 来源:网络整理编辑:焦點
AI researchers at Microsoft have made a huge mistake.According to a new reportfrom cloud security co
AI researchers at Microsoft have made a huge mistake.
According to a new reportfrom cloud security company Wiz, the Microsoft AI research team accidentally leaked 38TB of the company's private data.
38 terabytes. That's a lotof data.
The exposed data included full backups of two employees' computers. These backups contained sensitive personal data, including passwords to Microsoft services, secret keys, and more than 30,000 internal Microsoft Teams messages from more than 350 Microsoft employees.
Tweet may have been deleted
So, how did this happen? The report explains that Microsoft's AI team uploaded a bucket of training data containing open-source code and AI models for image recognition. Users who came across the Github repository were provided with a link from Azure, Microsoft's cloud storage service, in order to download the models.
One problem: The link that was provided by Microsoft's AI team gave visitors complete access to the entire Azure storage account. And not only could visitors view everything in the account, they could upload, overwrite, or delete files as well.
Wiz says that this occurred as a result of an Azure feature called Shared Access Signature (SAS) tokens, which is "a signed URL that grants access to Azure Storage data." The SAS token could have been set up with limitations to what file or files could be accessed. However, this particular link was configured with full access.
Adding to the potential issues, according to Wiz, is that it appears that this data has been exposed since 2020.
Wiz contacted Microsoft earlier this year, on June 22, to warn them about their discovery. Two days later, Microsoft invalidated the SAS token, closing up the issue. Microsoft carried out and completed an investigation into the potential impacts in August.
Microsoft provided TechCrunch with a statement, claiming “no customer data was exposed, and no other internal services were put at risk because of this issue.”
TopicsCybersecurityMicrosoft
How Hyperloop One went off the rails2025-01-18 18:53
Zendaya and Timothée Chalamet sport matching coveralls for 'Dune: Part Two' promo2025-01-18 18:26
一步之遙 !武漢三鎮衝擊中超最長連勝 隻有衛冕冠軍能阻擋他們?2025-01-18 18:25
2023/3/8 歐冠十六強第二輪拜仁V巴黎 熱刺V米蘭2025-01-18 17:17
Pokémon Go is so big that it has its own VR porn parody now2025-01-18 16:58
梅西還是走吧 !姆巴佩就是不傳球 ,誰注意隊友反應 ,梅西最真實2025-01-18 16:50
C羅轉會主題圖:C羅落水呼救,馬競主帥西蒙尼急忙扔出遊泳圈2025-01-18 16:43
意甲情報:國際米蘭VS克雷莫納,國米進攻受限 ,盧卡庫受傷2025-01-18 16:28
Early Apple2025-01-18 16:27
梅西還是走吧!姆巴佩就是不傳球 ,誰注意隊友反應 ,梅西最真實2025-01-18 16:21
Cat gets stuck in the most awkward position ever2025-01-18 18:51
徐新:希望巴爾加斯盡快融入 海港足協杯目標爭冠2025-01-18 18:47
中超最佳陣容:禦林軍4將入選 山東雷神梅開二度2025-01-18 18:39
Alibaba's AI video generator just dunked on Sora by making the Sora lady sing2025-01-18 18:29
Fiji wins first2025-01-18 18:14
徐新 :希望巴爾加斯盡快融入 海港足協杯目標爭冠2025-01-18 18:06
Will Forte sends love to cast and crew of scrapped 'Coyote vs. Acme'2025-01-18 17:47
NYT's The Mini crossword answers for March 112025-01-18 17:01
Carlos Beltran made a very interesting hair choice2025-01-18 16:50
Shark vacuum deal: Get 40% off Shark vacuums at Amazon2025-01-18 16:32