Skip to main content
  1. Home
  2. Computing
  3. News

Microsoft data breach exposed sensitive data of 65,000 companies

Add as a preferred source on Google

Microsoft servers have been subject to a breach that might have affected over 65,000 entities across 111 countries, according to the security research firm, SOCRadar.

SOCRadar claims that it shared with Microsoft its findings, which detailed that a misconfigured Azure Blob Storage was compromised and might have exposed approximately 2.4TB of privileged data, including names, phone numbers, email addresses, company names, and attached files containing proprietary company information, such as proof of concept documents, sales data, product orders, among other information.

SOCRadar Cloud Security Module discovered a misconfigured Microsoft Server on September 24, 2022.
Image used with permission by copyright holder

Having been made aware of the breach on September 24, 2022, Microsoft released a statement saying it had secured the comprised endpoint, which is “now only accessible with required authentication,” and that an investigation “found no indication customer accounts or systems were compromised.”

Recommended Videos

The company also stated that it has directed contacted customers that were affected by the breach.

However, SOCRadar also responded by making its BlueBleed search portal available to Microsoft customers who might be concerned they have been affected by the leak. The security firm noted that while Microsoft might have taken swift action on fixing the misconfigured server, its research was able to connect the 65,000 entities uncovered to a file data composed between 2017 and 20222, according to Bleeping Computer.

Microsoft has not been pleased with SOCRadar’s handling of this breach, having stated that encouraging entities to use its search tool “is not in the best interest of ensuring customer privacy or security and potentially exposing them to unnecessary risk.”

The research firm insists that it has not overstepped any privacy protocols in its work and none of the information it uncovered was saved on its end.

“No data was downloaded. Some of the data were crawled by our engine, but as we promised to Microsoft, no data has been shared so far, and all this crawled data was deleted from our systems,” SOCRadar VP of Research and CISO Ensar Şeker told BleepingComputer.

“We redirect all our customers to MSRC (Microsoft 365 Admin Center Alert) if they want to see the original data. Search can be done via metadata (company name, domain name, and email). Due to persistent pressure from Microsoft, we even have to take down our query page today,” he added.

Microsoft itself has not publicly shared any detailed statistics about the data breach.

Fionna Agomuoh
Fionna Agomuoh is a Computing Writer at Digital Trends. She covers a range of topics in the computing space, including…
AI tools that help students cheat are multiplying, and the detectors can’t keep up
A New York Times report has found that cheating tools are evolving faster than the software meant to catch AI writing.
GPTZero website on a laptop

A wave of new apps marketed on TikTok and YouTube is making it nearly impossible for teachers to tell whether students are actually writing their own homework or offloading it to AI. The New York Times reports that tools known as humanizers and autotypers have closed the gap that used to give AI-written homework away, and that the same companies selling detection software are sometimes the ones helping students get around it.

The tools work around the checks teachers rely on

Read more
This monstrous ASUS gaming laptop costs as much as three new MacBook Pros
Asus’ flagship gaming laptop is back, bigger, brighter, and wildly expensive.
ASUS ROG Strix Scar 18 Computex 2026

Following up on the ROG Strix Scar 18 (2025)'s impressive act, ASUS has built a successor that looks even more ridiculous if you glance at the spec sheet. The ROG Strix Scar 18 (2026) is not a cute little café laptop. The flagship gaming machine is built around a large 18-inch 4K miniLED display and hardware that embarrasses most desktop PCs.

But all of this comes at a cost, and you might want to sit down for this one.

Read more
ASUS fanboys can now spend $16,578 on its 20th anniversary gaming gear
ASUS ROG Family Bucket Collector’s Edition Featured

ASUS’ Republic of Gamers brand is celebrating its 20th anniversary by bringing a five-figure collection of its coolest gaming hardware. The company just revealed pricing for its ROG 20th Anniversary Family Bucket Collector’s Edition, a monster bundle that costs 112,026 yuan, or roughly $16,578. The collection is apparently selling through an offline flash sale in Shanghai from June 20 to July 19, with buyers being selected through a lottery system.

This is more than your typical PC upgrade. ASUS is selling you the whole ROG lifestyle starter pack, which will attract collectors after their next limited edition bundle.

Read more