Hackers saw Microsoft source code

Hackers saw Microsoft source code

Microsoft has admitted that programming code for some of its products under development was seen by hackers who gained access to its corporate network.

The FBI last week began an investigation into the computer break-in at the software company, which Microsoft said gave intruders access to its corporate network for 12 days. However, it said it was aware of the incident for much of this time.

Microsoft initially said ‘the integrity of our source code remains intact,’ but late on Friday admitted that the hacker ‘was able to view some source code under development.’ However, Microsoft said source code for its existing Windows and Office software was not seen.

The break-in, as well as damaging Microsoft’s reputation, raised fears that the hacker could have modified products, making them damaging to end users. Microsoft claims ‘no modifications or corruptions’ were made and ‘no source code was downloaded.’

Speaking to the Associated Press newswire on Sunday, Microsoft spokesman Rick Miller said: ‘We start[ed] seeing these new accounts being created, but that could be an anomaly of the system. After a day or two, we realized it was someone hacking into the system.’

According to the Wall Street Journal, the break-in was discovered on Wednesday after Microsoft security staff detected passwords being remotely sent to an email account in St Petersburg, Russia.

A Microsoft spokeswoman said of the hackers, who could have had undetected access since July: ‘This has been a deplorable act of industrial espionage and we are working with law enforcement agencies to protect our intellectual properties.’

Access to the network was gained by emailing a program, called the QAZ Trojan, into Microsoft’s network that created a ‘back door’ for the intruders, according to the paper’s sources.

These internal passwords may have been used to transfer source code outside of the Microsoft campus. By yesterday, the software giant had begun to check every file on the compromised areas of its network that had been modified for any reason in the past three months.

Microsoft said: ‘We are implementing an aggressive plan to protect our corporate network from unauthorised attempts to gain access, and are working on both immediate and long-term solutions.’

This article first appeared on vnunet.com

Share

Subscribe to get your daily business insights

Resources & Whitepapers

The importance of UX in accounts payable: Often overlooked, always essential
AP

The importance of UX in accounts payable: Often overlooked, always essentia...

1m Kloo

The importance of UX in accounts payable: Often ov...

Embracing user-friendly AP systems can turn the tide, streamlining workflows, enhancing compliance, and opening doors to early payment discounts. Read...

View article
The power of customisation in accounting systems
Accounting Software

The power of customisation in accounting systems

2m Kloo

The power of customisation in accounting systems

Organisations can enhance their financial operations' efficiency, accuracy, and responsiveness by adopting platforms that offer them self-service cust...

View article
Turn Accounts Payable into a value-engine
Accounting Firms

Turn Accounts Payable into a value-engine

3y

Turn Accounts Payable into a value-engine

In a world of instant results and automated workloads, the potential for AP to drive insights and transform results is enormous. But, if you’re still ...

View resource
8 Key metrics to measure to optimise accounts payable efficiency
AP

8 Key metrics to measure to optimise accounts payable efficiency

2m Kloo

8 Key metrics to measure to optimise accounts paya...

Discover how AP dashboards can transform your business by enhancing efficiency and accuracy in tracking key metrics, as revealed by the latest insight...

View article