Microsoft Says Chinese Hackers Used Flaw in Company’s Code to Steal Emails From US Agencies

Microsoft's blog post did not explain how the hackers got their hands on one of the company's digital keys.

Advertisement
By Reuters | Updated: 17 July 2023 17:49 IST
Highlights
  • Microsoft said Chinese hackers misappropriated one of its digital keys
  • Beijing has denied any involvement in the spying
  • The breach has thrown Microsoft's security practices under scrutiny

The Microsoft hack has rattled both the cybersecurity industry and China-US relations

Photo Credit: Reuters

Microsoft said on Friday that Chinese hackers misappropriated one of its digital keys and used a flaw in the company's code to steal emails from US government agencies and other clients.

The company said in a blog post that the hackers were able to use the key - which they acquired under undisclosed circumstances - and take advantage of "a validation error in Microsoft code" to carry out their cyberespionage campaign.

The blog provided the most fulsome explanation yet for a hack that rattled both the cybersecurity industry and China-US relations. Beijing has denied any involvement in the spying.

Advertisement

Microsoft and US officials said on Wednesday night that Chinese state-linked hackers had been secretly since May accessing email accounts at around 25 organizations. US officials said those included at least two government agencies: the State and Commerce Departments.

Advertisement

Secretary of State Antony Blinken told China's top diplomat, Wang Yi, in a meeting in Jakarta on Thursday that any action that targets the US government, US companies or American citizens "is of deep concern to us, and that we will take appropriate action to hold those responsible accountable," according to a senior State Department official.

Microsoft's blog post did not explain how the hackers got their hands on one of the company's digital keys, leading some experts to speculate that Microsoft itself had been hacked ahead of the thefts.

Advertisement

The company did not immediately respond to questions about the key.

The breach has thrown Microsoft's security practices under scrutiny, with officials and lawmakers calling on the Redmond, Washington-based company to make its top level of digital auditing, also called logging, available to all its customers free of charge.

Advertisement

Microsoft said in a statement late on Thursday that it was taking the criticism on board.

"We are evaluating feedback and are open to other models," the company said, adding that it was "actively engaged" with US officials on the matter.

© Thomson Reuters 2023


Will the Nothing Phone 2 serve as the successor to the Phone 1, or will the two co-exist? We discuss the company's recently launched handset and more on the latest episode of Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

For details of the latest launches and news from Samsung, Xiaomi, Realme, OnePlus, Oppo and other companies at the Mobile World Congress in Barcelona, visit our MWC 2025 hub.

Further reading: Microsoft, China, US, Cybersecurity
Advertisement

Related Stories

Popular Mobile Brands
  1. iPhone 17e vs iPhone 17: Price in India, Features, Specifications Compared
  2. MacBook Neo Launched in India With 13-Inch Display, A18 Pro Chip: See Price
  3. Nothing Phone 4a Pro Teaser Hints at the Presence of This Phone 3 Feature
  4. Vivo X300 FE Launched as Global Version of This Chinese Smartphone
  5. Vivo V70 FE Colour Options, Key Features Revealed Ahead of March 9 Launch
  6. Here's When the Xiaomi 17T Could Make Its Way to India
  7. OnePlus 15T Confirmed to Launch With a Larger Battery, Faster Charging
  8. Tecno Pop X Launched in India With 5,000mAh Battery, IP64 Rating: See Price
  1. OnePlus 15T Teasers Confirm Larger Battery, Faster Charging Speed and Higher IP Rating
  2. Nothing Phone 4a Pro Teaser Suggests Presence of Phone 3's Glyph Matrix Panel
  3. Xiaomi 17T India Launch Timeline Leaked as Firm Gears Up for Xiaomi 17 Ultra's Debut in India
  4. Oppo Find X9 Series to Support Cross-Platform File Sharing With AirDrop via Quick Share
  5. Xiaomi to Reportedly Refresh In-House Smartphone Chips Annually; Eyes Global Expansion of AI Assistant
  6. Hubble Constant Puzzle Deepens as Supernova and CMB Measurements Clash
  7. MacBook Neo Launched in India With 13-Inch Liquid Retina Display, Apple's A18 Pro Chip: Price, Specifications
  8. Samsung Galaxy A37, Galaxy A57 Spotted on Geekbench With Better Results; Price, Design Leaked
  9. Vivo X300 FE Launched With Snapdragon 8 Gen 5, 50-Megapixel Telephoto Camera: Price, Features
  10. Vivo V70 FE Colour Options, Key Specifications Revealed Ahead of March 9 Launch
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.