Live data from Hacker News

“Worst cloud vulnerability you can imagine” discovered in Microsoft Azure

arstechnica.com

91–92 of 92 posts

Re: “Worst cloud vulnerability you can imagine” discovered in Microsoft Azure

#91
post #90

Earlier quoted context omitted.

1. Work at Microsoft. Make a bug. 2. Tell your "security researcher" buddy. 3. Split $10m in zcash.

Since you are already being a criminal, you could go all the way and sell it to a security agency, Zerodium or another criminal. The company you work for, once they track the code back to you, will investigate you to make sure you did not make profit on it.

Thats why many doing that kind of stuff probably use a third party that keep money for a definite amount of time.

Re: “Worst cloud vulnerability you can imagine” discovered in Microsoft Azure

#92

I'm curious if Microsoft is suffering from a massive loss of generational expertise. At least right after XP we had to go through a security standdown where all code was reviewed and audited throughout the company. Subsequent features and services had to go through a pretty thorough security review at design time as well. Over the past few years the number of security fiascos has been increasing. Is the internal Secu…

"The 8 most important execs who left Microsoft in 2021, and 3 new power players who joined"

https://www.flexi-news.com/the-8-most-important-execs-who-le...

Post reply on HN