Firstpost
  • Home
  • Video Shows
    Vantage Firstpost America Firstpost Africa First Sports
  • World
    US News
  • Explainers
  • News
    India Opinion Cricket Tech Entertainment Sports Health Photostories
  • Asia Cup 2025
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit
Trending:
  • Charlie Kirk shot dead
  • Nepal protests
  • Russia-Poland tension
  • Israeli strikes in Qatar
  • Larry Ellison
  • Apple event
  • Sunjay Kapur inheritance row
fp-logo
Microsoft Office 365, Outlook hit by bug that left 400 million users vulnerable
Whatsapp Facebook Twitter
Whatsapp Facebook Twitter
Apple Incorporated Modi ji Justin Trudeau Trending

Sections

  • Home
  • Live TV
  • Videos
  • Shows
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Health
  • Tech/Auto
  • Entertainment
  • Web Stories
  • Business
  • Impact Shorts

Shows

  • Vantage
  • Firstpost America
  • Firstpost Africa
  • First Sports
  • Fast and Factual
  • Between The Lines
  • Flashback
  • Live TV

Events

  • Raisina Dialogue
  • Independence Day
  • Champions Trophy
  • Delhi Elections 2025
  • Budget 2025
  • US Elections 2024
  • Firstpost Defence Summit

Microsoft Office 365, Outlook hit by bug that left 400 million users vulnerable

Indo Asian News Service • December 12, 2018, 11:32:16 IST
Whatsapp Facebook Twitter

The vulnerabilities were apparently reported to Microsoft in June, which were fixed by November end.

Advertisement
Subscribe Join Us
Choose
Firstpost on Google
Choose
Firstpost on Google
Microsoft Office 365, Outlook hit by bug that left 400 million users vulnerable

A Kerala-based application security engineer has won bug bounty from **Microsoft** for discovering a series of vulnerabilities that left over 400 million Microsoft users’ accounts – from Office 365 to Outlook emails – open to hacking. Sahad NK, who works as a security researcher with cybersecurity portal Safetydetective.com, came across multiple vulnerabilities that, when chained together, allow an attacker to take over any Microsoft Outlook, Microsoft Store, or Microsoft Sway account simply via the victim clicking on a link. “Immediately after finding these vulnerabilities, we contacted Microsoft via their responsible disclosure programme and started working with them,” said Safetydetective on Tuesday. The vulnerabilities were reported to Microsoft in June and fixed by November end. [caption id=“attachment_5715201” align=“alignnone” width=“1024”] ![Microsoft Office.](https://images.firstpost.com/wp-content/uploads/2018/12/microsoft-office-1024.jpg) Microsoft Office.[/caption] “While the vulnerability proof of concept was only made for Microsoft Outlook and Microsoft Sway, we expect it to affect all Microsoft accounts including Microsoft Store,” said Sahad. Sahad discovered that a Microsoft subdomain, “success.office.com”, had not been properly configured. He also found bug in Microsoft Office, Store and Sway products. A string of bugs when chained together created the perfect attack to gain access to someone’s Microsoft account – simply by tricking a user into clicking a link. “Anyone’s Office account, even enterprise and corporate accounts, including their email, documents and other files, could have been easily accessed by a malicious attacker, and it would have been near-impossible to discern from a legitimate user,” said TechCrunch. Sahad, with the help of fellow security researcher Paulos Yibelo, reported the bug to Microsoft, which fixed the vulnerability and gave an unspecified amount as bug bounty to Sahad. Several tech companies offer bug bounty incentives. Sahad also received bug bounty from Facebook last year for discovering a bug in the social networking platform.

Tags
Microsoft Office 365 Microsoft Office 365 Microsoft Outlook Microsoft vulnerability
  • Home
  • Tech
  • News & Analysis
  • Microsoft Office 365, Outlook hit by bug that left 400 million users vulnerable
End of Article
Latest News
Find us on YouTube
Subscribe
  • Home
  • Tech
  • News & Analysis
  • Microsoft Office 365, Outlook hit by bug that left 400 million users vulnerable
End of Article

Top Stories

US ready to ‘impose costs’ on Russia if war in Ukraine drags on, says Hegseth

US ready to ‘impose costs’ on Russia if war in Ukraine drags on, says Hegseth

US tells Hamas to stop violence against Gaza civilians and disarm 'without delay'

US tells Hamas to stop violence against Gaza civilians and disarm 'without delay'

China seizes 60,000 maps mislabelling Taiwan, omitting South China Sea islands

China seizes 60,000 maps mislabelling Taiwan, omitting South China Sea islands

Syria’s Sharaa pledges to honor Russia ties, seeks economic and military support in Kremlin visit

Syria’s Sharaa pledges to honor Russia ties, seeks economic and military support in Kremlin visit

US ready to ‘impose costs’ on Russia if war in Ukraine drags on, says Hegseth

US ready to ‘impose costs’ on Russia if war in Ukraine drags on, says Hegseth

US tells Hamas to stop violence against Gaza civilians and disarm 'without delay'

US tells Hamas to stop violence against Gaza civilians and disarm 'without delay'

China seizes 60,000 maps mislabelling Taiwan, omitting South China Sea islands

China seizes 60,000 maps mislabelling Taiwan, omitting South China Sea islands

Syria’s Sharaa pledges to honor Russia ties, seeks economic and military support in Kremlin visit

Syria’s Sharaa pledges to honor Russia ties, seeks economic and military support in Kremlin visit

Top Shows

Vantage Firstpost America Firstpost Africa First Sports
Enjoying the news?

Get the latest stories delivered straight to your inbox.

Subscribe
Latest News About Firstpost
Most Searched Categories
  • Web Stories
  • World
  • India
  • Explainers
  • Opinion
  • Sports
  • Cricket
  • Tech/Auto
  • Entertainment
  • IPL 2025
NETWORK18 SITES
  • News18
  • Money Control
  • CNBC TV18
  • Forbes India
  • Advertise with us
  • Sitemap
Firstpost Logo

is on YouTube

Subscribe Now

Copyright @ 2024. Firstpost - All Rights Reserved

About Us Contact Us Privacy Policy Cookie Policy Terms Of Use
Home Video Shorts Live TV