时间:2025-09-19 08:19:10 来源:网络整理编辑:焦點
AI researchers at Microsoft have made a huge mistake.According to a new reportfrom cloud security co
AI researchers at Microsoft have made a huge mistake.
According to a new reportfrom cloud security company Wiz, the Microsoft AI research team accidentally leaked 38TB of the company's private data.
38 terabytes. That's a lotof data.
The exposed data included full backups of two employees' computers. These backups contained sensitive personal data, including passwords to Microsoft services, secret keys, and more than 30,000 internal Microsoft Teams messages from more than 350 Microsoft employees.
Tweet may have been deleted
So, how did this happen? The report explains that Microsoft's AI team uploaded a bucket of training data containing open-source code and AI models for image recognition. Users who came across the Github repository were provided with a link from Azure, Microsoft's cloud storage service, in order to download the models.
One problem: The link that was provided by Microsoft's AI team gave visitors complete access to the entire Azure storage account. And not only could visitors view everything in the account, they could upload, overwrite, or delete files as well.
Wiz says that this occurred as a result of an Azure feature called Shared Access Signature (SAS) tokens, which is "a signed URL that grants access to Azure Storage data." The SAS token could have been set up with limitations to what file or files could be accessed. However, this particular link was configured with full access.
Adding to the potential issues, according to Wiz, is that it appears that this data has been exposed since 2020.
Wiz contacted Microsoft earlier this year, on June 22, to warn them about their discovery. Two days later, Microsoft invalidated the SAS token, closing up the issue. Microsoft carried out and completed an investigation into the potential impacts in August.
Microsoft provided TechCrunch with a statement, claiming “no customer data was exposed, and no other internal services were put at risk because of this issue.”
TopicsCybersecurityMicrosoft
This app is giving streaming TV news a second try2025-09-19 08:00
加斯科因中國踢球經曆 :甲B4場2球 中途“落跑”2025-09-19 07:53
勒夫:比賽結果令人非常失望 球隊隻是太累了2025-09-19 07:49
德國前瞻:後防漸入佳境 日爾曼戰車力爭三連零封2025-09-19 07:49
Chinese gymnastics team horrifies crowd with human jump rope2025-09-19 07:46
滄州雄獅官宣阿不都海米提加盟 助蘇寧首奪中超冠軍2025-09-19 06:59
曝津門虎欠薪總額不到三億 泰達控股將落實解決2025-09-19 06:26
中超不出意外將按既定日程開賽 並非全部場次開門迎客2025-09-19 06:20
Photos show the Blue Cut fire blazing a path of destruction in California2025-09-19 06:04
恥辱!維爾納空門不進 德國吞下20年來世預賽首敗2025-09-19 05:40
Two astronauts just installed a new parking spot on the International Space Station2025-09-19 08:12
曝原江蘇隊球員黃紫昌加盟武漢隊 曾入選各級國家隊2025-09-19 08:07
重慶外援“大摩托”已抵達廣州 烏茲別克中衛加盟在即2025-09-19 07:51
西媒 :巴薩若挖不到哈蘭德 將轉而追求菲利克斯2025-09-19 07:45
There's a big piece of fake chicken stuck to this phone case2025-09-19 07:01
國足周六將與山東泰山踢教學賽 判罰尺度嚴格模擬40強賽2025-09-19 06:59
加斯科因中國踢球經曆:甲B4場2球 中途“落跑”2025-09-19 06:23
曝原江蘇隊球員黃紫昌加盟武漢隊 曾入選各級國家隊2025-09-19 06:08
This 'sh*tpost' bot makes terrible memes so you don't have to2025-09-19 05:43
津媒宣布於根偉任津門虎總經理兼主帥 俱樂部官微未發聲2025-09-19 05:34