https://news.ycombinator.com/item?id=36690598 https://news.ycombinator.com/item?id=36692494 https://news.ycombinator.com/item?id=36693121 https://news.ycombinator.com/item?id=36693469 https://news.ycombinator.com/item?id=36694188 https://news.ycombinator.com/item?id=36696413 https://news.ycombinator.com/item?id=36696852 https://news.ycombinator.com/item?id=36697272 https://news.ycombinator.com/item?id=36699844 https:…
Microsoft lost its keys, and the government got hacked
21–30 of 151 posts
Re: Microsoft lost its keys, and the government got hacked
#22Not that they are bad products per se, but as many organizations use Microsoft products they are prime targets for too many hackers and it’s hard going to bed thinking that your identity info might be hacked someday and/or not knowing if it will be.
The surface area that Azure/Microsoft have is just too large for it to assume to be protected by one company whose security as not been the most stellar. So we are actively moving to GCP as well.
Re: Microsoft lost its keys, and the government got hacked
#23One of the reasons why we moved away from using Microsoft products for our identity management to Okta. Not that they are bad products per se, but as many organizations use Microsoft products they are prime targets for too many hackers and it’s hard going to bed thinking that your identity info might be hacked someday and/or not knowing if it will be. The surface area that Azure/Microsoft have is just too large for i…
Re: Microsoft lost its keys, and the government got hacked
#24And it's not that the alternatives are perfect, but Windows is as secure as swiss cheese.
Re: Microsoft lost its keys, and the government got hacked
#25https://news.ycombinator.com/item?id=36690598 https://news.ycombinator.com/item?id=36692494 https://news.ycombinator.com/item?id=36693121 https://news.ycombinator.com/item?id=36693469 https://news.ycombinator.com/item?id=36694188 https://news.ycombinator.com/item?id=36696413 https://news.ycombinator.com/item?id=36696852 https://news.ycombinator.com/item?id=36697272 https://news.ycombinator.com/item?id=36699844 https:…
And yet, fascinatingly, very very little discussion. 60-ish comments was the most on any of those posts.
Re: Microsoft lost its keys, and the government got hacked
#26One of the reasons why we moved away from using Microsoft products for our identity management to Okta. Not that they are bad products per se, but as many organizations use Microsoft products they are prime targets for too many hackers and it’s hard going to bed thinking that your identity info might be hacked someday and/or not knowing if it will be. The surface area that Azure/Microsoft have is just too large for i…
Okta has been hacked a couple times now...
https://techcrunch.com/2022/12/22/okta-breach-source-code-gi...
Okta looked very bad during the entire saga where they kept denying they were hacked until the proof was insurmountable. Pretty sure there was a large discussion on HN at the time too.
Re: Microsoft lost its keys, and the government got hacked
#27Re: Microsoft lost its keys, and the government got hacked
#28Any Windows product/system is a liability. I'm not sure how to put this lightly. It was designed to create a monopoly first before any other goal. And it's not that the alternatives are perfect, but Windows is as secure as swiss cheese.
Re: Microsoft lost its keys, and the government got hacked
#29Re: Microsoft lost its keys, and the government got hacked
#30Any Windows product/system is a liability. I'm not sure how to put this lightly. It was designed to create a monopoly first before any other goal. And it's not that the alternatives are perfect, but Windows is as secure as swiss cheese.
In IT security jargon, the "Swiss cheese" model is a good practice: https://en.wikipedia.org/wiki/Swiss_cheese_model