CSRB says Microsoft security culture ‘inadequate’ after US government systems breached

Cyber Safety Review Board’s scathing report on intrusion of Microsoft systems by threat actor linked with China.

Between May and June 2023 the threat actor was able to compromise the online mailboxes of a number of victims in the US, UK and elsewhere almost certainly for the purposes of espionage. The attack targeted multiple US government agencies, foreign governments, individual senior government officials as well as private

The

Free Trial

Register for free to keep reading.

To continue reading this article and unlock full access to GRIP, register now. You’ll enjoy free access to all content until our subscription service launches in early 2026.

  • Unlimited access to industry insights
  • Stay on top of key rules and regulatory changes with our Rules Navigator
  • Ad-free experience with no distractions
  • Regular podcasts from trusted external experts
  • Fresh compliance and regulatory content every day
Register for free Already a member? Sign in