Microsoft Says Chinese Hackers Used Flaw in Company’s Code to Steal Emails From US Agencies

Microsoft's blog post did not explain how the hackers got their hands on one of the company's digital keys.

Advertisement
By Reuters | Updated: 17 July 2023 17:49 IST
Highlights
  • Microsoft said Chinese hackers misappropriated one of its digital keys
  • Beijing has denied any involvement in the spying
  • The breach has thrown Microsoft's security practices under scrutiny

The Microsoft hack has rattled both the cybersecurity industry and China-US relations

Photo Credit: Reuters

Microsoft said on Friday that Chinese hackers misappropriated one of its digital keys and used a flaw in the company's code to steal emails from US government agencies and other clients.

The company said in a blog post that the hackers were able to use the key - which they acquired under undisclosed circumstances - and take advantage of "a validation error in Microsoft code" to carry out their cyberespionage campaign.

The blog provided the most fulsome explanation yet for a hack that rattled both the cybersecurity industry and China-US relations. Beijing has denied any involvement in the spying.

Advertisement

Microsoft and US officials said on Wednesday night that Chinese state-linked hackers had been secretly since May accessing email accounts at around 25 organizations. US officials said those included at least two government agencies: the State and Commerce Departments.

Advertisement

Secretary of State Antony Blinken told China's top diplomat, Wang Yi, in a meeting in Jakarta on Thursday that any action that targets the US government, US companies or American citizens "is of deep concern to us, and that we will take appropriate action to hold those responsible accountable," according to a senior State Department official.

Microsoft's blog post did not explain how the hackers got their hands on one of the company's digital keys, leading some experts to speculate that Microsoft itself had been hacked ahead of the thefts.

Advertisement

The company did not immediately respond to questions about the key.

The breach has thrown Microsoft's security practices under scrutiny, with officials and lawmakers calling on the Redmond, Washington-based company to make its top level of digital auditing, also called logging, available to all its customers free of charge.

Advertisement

Microsoft said in a statement late on Thursday that it was taking the criticism on board.

"We are evaluating feedback and are open to other models," the company said, adding that it was "actively engaged" with US officials on the matter.

© Thomson Reuters 2023


Will the Nothing Phone 2 serve as the successor to the Phone 1, or will the two co-exist? We discuss the company's recently launched handset and more on the latest episode of Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: Microsoft, China, US, Cybersecurity
Advertisement

Related Stories

Popular Mobile Brands
  1. Xiaomi 17 Pro Series to Feature Rear Display, Snapdragon 8 Elite Gen 5 SoC
  2. iOS 26 Update Brings These New Features to AirPods Pro 3, Pro 2, AirPods 4
  3. Samsung Galaxy S26 Ultra, Galaxy S26 Pro Charging Speed Leaked
  4. Amazon Sale 2025: Early Deals on Smartphones
  5. Google: India Leads Nano Banana Trend; Shares Tip to Start Next One
  6. Xiaomi 17 Pro Render Gives Us a Good Look at Its Rear Display, Cameras
  1. France Could Block Crypto Firms With MiCA Licenses Due to Enforcement Gap Concerns
  2. Oppo Find X9 Pro With Dimensity 9500 SoC Scores 4 Million Points on AnTuTu; Spotted on Geekbench
  3. Xiaomi 17 Pro Design Render Gives Us a Good Look at Its Leica-Branded Rear Cameras, Secondary Display
  4. Clair Obscur: Expedition 33 Has Sold 4.4 Million Copies in Less Than Six Months of Launch
  5. Materialists Now Streaming on Netflix: What You Need to Know About Dakota Johnson’s Starrer Movie
  6. The Trial Season 2 OTT Release Date: When and Where to Watch Kajol’s Legal Drama Series Online
  7. Ghaati OTT Release Reportedly Revealed Online: When and Where to Watch Anushka Shetty-Starrer Movie Online?
  8. American Express Launches NFT Passport Stamps to Commemorate Travel Memories
  9. Huawei Watch GT 6, GT 6 Pro Price, Specifications Leak Ahead of September 19 Launch: Report
  10. iPhone 17 Pro Max in Cosmic Orange Colourway Reportedly Out of Stock in the US, India
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.