* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Tuesday, December 2, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    The Steamy, Sexy, NSFW Show That I’m Seeing Everywhere on Social Media – PureWow

    The Steamy, Sexy, NSFW Show That’s Taking Social Media by Storm

    7 Christmas Gems On Netflix To Get You In The Holiday Spirit – Refinery29

    7 Must-Watch Christmas Gems on Netflix to Ignite Your Holiday Spirit

    Christmas bazaar and cafe in Seaside Dec. 6 – Discover Our Coast

    Celebrate the Season: Festive Christmas Bazaar and Cozy Café Arrive in Seaside on December 6!

    NBC’s Macy’s Thanksgiving Day Parade Coverage Draws Biggest Audience Ever – Yahoo

    Macy’s Thanksgiving Day Parade Draws Unprecedented Record-Breaking Audience

    Miller Sports + Entertainment Black Friday Bundle – Real Salt Lake

    Score Big This Black Friday with the Ultimate Real Salt Lake Sports Bundle!

    ‘Avatar’ and more: The 17 must-see films you and your family will be talking about this holiday season – Houston Chronicle

    ‘Avatar’ and more: The 17 must-see films you and your family will be talking about this holiday season – Houston Chronicle

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    CliniComp Named a Top 50 Healthcare Technology Company by The Healthcare Technology Report for Second Consecutive Year – PR Newswire

    CliniComp Named a Top 50 Healthcare Technology Company by The Healthcare Technology Report for Second Consecutive Year – PR Newswire

    Five Veterinary Platforms Transforming Europe’s Clinics with AI and Cloud Technology – gritdaily.com

    Five Veterinary Platforms Transforming Europe’s Clinics with AI and Cloud Innovation

    Sodastream ensō®: Japanese design, Israeli technology – The Jerusalem Post

    Sodastream ensō®: The Perfect Fusion of Sleek Japanese Design and Innovative Israeli Technology

    The Smartest Technology ETF to Buy With $100 Right Now – Yahoo Finance

    Invest $100 Today in the Smartest Technology ETF for Maximum Growth

    The Importance of Technology: #5 is a Must-Know! – Simplilearn.com

    The Importance of Technology: #5 is a Must-Know! – Simplilearn.com

    Assessing NICE Stock After a 45% Drop and New Technology Partnerships in 2025 – Yahoo Finance

    Assessing NICE Stock After a 45% Drop and New Technology Partnerships in 2025 – Yahoo Finance

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    The Steamy, Sexy, NSFW Show That I’m Seeing Everywhere on Social Media – PureWow

    The Steamy, Sexy, NSFW Show That’s Taking Social Media by Storm

    7 Christmas Gems On Netflix To Get You In The Holiday Spirit – Refinery29

    7 Must-Watch Christmas Gems on Netflix to Ignite Your Holiday Spirit

    Christmas bazaar and cafe in Seaside Dec. 6 – Discover Our Coast

    Celebrate the Season: Festive Christmas Bazaar and Cozy Café Arrive in Seaside on December 6!

    NBC’s Macy’s Thanksgiving Day Parade Coverage Draws Biggest Audience Ever – Yahoo

    Macy’s Thanksgiving Day Parade Draws Unprecedented Record-Breaking Audience

    Miller Sports + Entertainment Black Friday Bundle – Real Salt Lake

    Score Big This Black Friday with the Ultimate Real Salt Lake Sports Bundle!

    ‘Avatar’ and more: The 17 must-see films you and your family will be talking about this holiday season – Houston Chronicle

    ‘Avatar’ and more: The 17 must-see films you and your family will be talking about this holiday season – Houston Chronicle

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    CliniComp Named a Top 50 Healthcare Technology Company by The Healthcare Technology Report for Second Consecutive Year – PR Newswire

    CliniComp Named a Top 50 Healthcare Technology Company by The Healthcare Technology Report for Second Consecutive Year – PR Newswire

    Five Veterinary Platforms Transforming Europe’s Clinics with AI and Cloud Technology – gritdaily.com

    Five Veterinary Platforms Transforming Europe’s Clinics with AI and Cloud Innovation

    Sodastream ensō®: Japanese design, Israeli technology – The Jerusalem Post

    Sodastream ensō®: The Perfect Fusion of Sleek Japanese Design and Innovative Israeli Technology

    The Smartest Technology ETF to Buy With $100 Right Now – Yahoo Finance

    Invest $100 Today in the Smartest Technology ETF for Maximum Growth

    The Importance of Technology: #5 is a Must-Know! – Simplilearn.com

    The Importance of Technology: #5 is a Must-Know! – Simplilearn.com

    Assessing NICE Stock After a 45% Drop and New Technology Partnerships in 2025 – Yahoo Finance

    Assessing NICE Stock After a 45% Drop and New Technology Partnerships in 2025 – Yahoo Finance

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Business

Microsoft expands access to cloud logs after hacker forged tokens to get Exchange Online email

July 21, 2023
in Business
Microsoft expands access to cloud logs after hacker forged tokens to get Exchange Online email
Share on FacebookShare on Twitter

Many Microsoft customers will soon have access to expanded cloud logging capabilities at no additional charge, the company said Wednesday, after cybersecurity experts called on it to offer free logging data to organizations using any of its cloud services.

This comes after Microsoft admitted last week that a likely China-based threat actor recently forged authentication tokens to access user email of approximately 25 organizations.

“After working collaboratively over the past year, I am extremely pleased with Microsoft’s decision to make necessary log types available to the broader cybersecurity community at no additional cost,” said Jen Easterly, director of the U.S. Cybersecurity and Infrastructure Security Agency (CISA). “While we recognize this will take time to implement, this is truly a step in the right direction toward the adoption of Secure by Design principles by more companies. We will continue to work with all technology manufacturers, including Microsoft, to identify ways to further enhance visibility into their products for all customers.”

“Today’s announcement comes as a result of our close partnership with CISA, who have called for the industry to take action in order to better protect itself from potential cyber-attacks,” said Vasu Jakkal, Microsoft’s corporate vice-president for security, compliance, identity, and management. “It also reflects our commitment to engaging with customers, partners, and regulators to address the evolving security needs of the modern world.”

Over the coming months Microsoft will include access to a wider variety of cloud security logs for customers at no additional cost, the company said in a blog. IT managers will use Microsoft Purview Audit to see more types of cloud log data generated across their enterprise.

Purview Audit (Standard) customers will receive deeper visibility into security data, including detailed logs of email access and more than 30 other types of log data previously only available to those with Purview Audit (Premium) subscriptions with E5/G5 licences. In addition to new logging events becoming available, Microsoft is also increasing the default retention period for Audit Standard customers from 90 days to 180 days.

Although the CISA and Microsoft have been working for a year on expanding logging data to cloud users, the announcement also comes after experts called for action following last week’s announcement of the email hack aided by forged authentication keys.

“Log information should not be tiered,” Johannes Ulrich, dean of research at the SANS Institute wrote this week in the organization’s weekly news summaries. “It should be available at all license levels, ideally with options to send it straight to your SIEM/SOAR  [security information and event management/security orchestration automation and response] platform.”

Even if they don’t store any logs or make you pay for extra storage, the logs should be available and exportable to everyone, added Lee Neely, a SANS Instructor. “This level of goodwill will go a long way.”

Security Magazine said the agencies targeted by the attackers reportedly include the U.S. State and Commerce Departments. Among the email accounts accessed was one belonging to Secretary of Commerce Gina Raimondo.

The visibility problem was highlighted by Steven Adair, president of Volexity, who said on Twitter, that despite a notification from Microsoft to one of his firm’s clients regarding unauthorized access, “we could not find any corroborating evidence … The incident was invisible to us with the data at our disposal and this was due to the customer’s M365 license level: E3,” he said.

Microsoft first issued an alert on the attack early last week. On Friday it followed up with a more detailed analysis.  Beginning May 15, a group it calls Storm-0558 used forged authentication tokens to access user email from approximately 25 organizations, including government agencies and related consumer accounts in Microsoft’s public cloud. It says “with moderate confidence” that Storm-0558 is a China-based threat actor.

What happened, Microsoft says, was Storm-0558 “acquired an inactive MSA [Microsoft  account] consumer signing key and used it to forge authentication tokens for Azure AD enterprise and MSA consumer to access OWA and Outlook.com.”

“The method by which the actor acquired the key is a matter of ongoing investigation. Though the key was intended only for MSA accounts, a validation issue allowed this key to be trusted for signing Azure AD tokens, Microsoft said.

Forging Azure AD tokens using an acquired consumer signing key and then using it to access Azure AD enterprise and Outlook.com “was made possible by a validation error in Microsoft code,” the company admitted.

Once authenticated through a legitimate client flow leveraging the forged token, Microsoft said, the threat actor accessed the OWA [Outlook Web Access] API to retrieve a token for Exchange Online from the GetAccessTokenForResource API used by OWA. The actor was able to obtain new access tokens by presenting one previously issued from this API due to the design flaw. The actor used these tokens to retrieve mail messages from the OWA API.

This flaw has since been fixed to only accept tokens issued from Azure AD or MSA respectively, Microsoft said. Azure AD keys were not impacted.

This threat actor has displayed an interest in OAuth applications, token theft, and token replay against Microsoft accounts since at least August 2021, the report adds.

The issue of visibility comes out in the Microsoft report, which says the use of an incorrect key to sign access requests allowed its investigation teams to see all of this actor’s access requests, which followed this pattern across both Microsoft’s enterprise and consumer systems.

Authentication tokens are used to validate the identity of entities requesting access to resources such as email, Microsoft says. These tokens are issued to the requesting entity (such as a user’s browser) by identity providers like Azure AD. To prove authenticity, the identity provider signs the token using a private signing key. The relying party validates the token presented by the requesting entity by using a public validation key. Any request whose signature is correctly validated by the published public validation key will be trusted by the relying party. An actor that can acquire a private signing key can then create falsified tokens with valid signatures that will be accepted by relying parties.

It’s not only Microsoft that should provide access logs to its cloud customers, the SANS commentators point out, but all cloud providers. in a press call, SANS said an official of the U.S. Cybersecurity and Infrastructure Security Agency (CISA) said that “Every organization using a technology service like Microsoft 365 should have access to logging and other security data out of the box.”

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : ITBusiness.ca – https://www.itbusiness.ca/news/microsoft-expands-access-to-cloud-logs-after-hacker-forged-tokens-to-get-exchange-online-email/125609

Tags: businessexpandsMicrosoft
Previous Post

Mutually Assured Re-Nomination 

Next Post

Microsoft goes all-in with AI at partner conference

The biodiversity, genomics, ecology and evolution of mushroom-forming fungi – Nature

Discover the Hidden World of Mushroom-Forming Fungi: Exploring Biodiversity, Genomics, Ecology, and Evolution

December 2, 2025
30 Under 30 Science 2026: New Discoveries From The Cosmos To The Nanoscale – Forbes

30 Under 30 Science 2026: Breakthrough Discoveries From the Cosmos to the Nanoscale Rewritten title: “30 Visionary Young Scientists Shaping Breakthrough Discoveries from the Cosmos to the Nanoscale

December 2, 2025
NSTA and the Children’s Book Council Announce 2026 List of Top Science Trade Books for K-12 Students – Business Wire

Explore the 2026 Top Science Trade Books That Will Inspire K-12 Students

December 2, 2025
Healthy lifestyle support for three areas of West Midlands – BBC

Healthy lifestyle support for three areas of West Midlands – BBC

December 2, 2025
CliniComp Named a Top 50 Healthcare Technology Company by The Healthcare Technology Report for Second Consecutive Year – PR Newswire

CliniComp Named a Top 50 Healthcare Technology Company by The Healthcare Technology Report for Second Consecutive Year – PR Newswire

December 2, 2025
Sports Editors’ Athletes of the Year – Daily Tar Heel

Sports Editors’ Athletes of the Year – Daily Tar Heel

December 2, 2025
Children Tell About the First Christmas in 2025 Light the World Video – newsroom.churchofjesuschrist.org

Children Tell About the First Christmas in 2025 Light the World Video – newsroom.churchofjesuschrist.org

December 2, 2025
Deere Outlook Suggests No Farm Economy 2026 Uptick – American Ag Network

Deere Predicts a Stagnant Farm Economy in 2026

December 2, 2025
The Steamy, Sexy, NSFW Show That I’m Seeing Everywhere on Social Media – PureWow

The Steamy, Sexy, NSFW Show That’s Taking Social Media by Storm

December 2, 2025
Fighting for their patients, Sharp health care workers go on three-day strike – afscme

Sharp Health Care Workers Launch Powerful Three-Day Strike to Advocate for Their Patients

December 2, 2025

Categories

Archives

December 2025
M T W T F S S
1234567
891011121314
15161718192021
22232425262728
293031  
« Nov    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (949)
  • Economy (968)
  • Entertainment (21,843)
  • General (18,515)
  • Health (10,008)
  • Lifestyle (979)
  • News (22,149)
  • People (973)
  • Politics (980)
  • Science (16,182)
  • Sports (21,469)
  • Technology (15,949)
  • World (955)

Recent News

The biodiversity, genomics, ecology and evolution of mushroom-forming fungi – Nature

Discover the Hidden World of Mushroom-Forming Fungi: Exploring Biodiversity, Genomics, Ecology, and Evolution

December 2, 2025
30 Under 30 Science 2026: New Discoveries From The Cosmos To The Nanoscale – Forbes

30 Under 30 Science 2026: Breakthrough Discoveries From the Cosmos to the Nanoscale Rewritten title: “30 Visionary Young Scientists Shaping Breakthrough Discoveries from the Cosmos to the Nanoscale

December 2, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version