You are here: silicon.com > Software > Security Strategy

Security Strategy

Microsoft hack update: Damage limitation underway

Microsoft is attempting to play down the significance of the hack reported last week, denying any source code was stolen or altered. It has also hit out at ongoing rumours which suggest the attacks may have begun three months ago.

By Graham Hayday

Published: 30 October 2000 13:00 GMT

However, the software giant has admitted the hacker "may have viewed the source code for a single future product under development" but did not specify which product.

The Wall Street Journal - which first broke the story - alleged that the attack could have begun three months ago, and that the integrity of code under development in Redmond, including that of Windows ME and the next version of Windows 2000, may have been compromised.

In an official statement issued today, the software giant said that it became aware of the hack "shortly after it first occurred", and tracked the perpetrator's activities over the period 14 October to 25 October.

The company claims no customers have or will be affected by the incident.

It reiterated its belief that "there is no evidence the intruder gained access to the source code for Office or any Windows products".

The statement continues: "There is no evidence to suggest that any of Microsoft's online services have been or will be affected by the incident. The security breach did not involve a security vulnerability in any Microsoft product. We have no evidence to suggest that the hacker gained any other access to any other source code."

A report in Sunday's New York Times said Microsoft believes access was probably gained via a remote worker's PC. The report also suggests staff first noticed the problem on 17 October, when new accounts were discovered that did not match normal audit logs.

According to the report, Microsoft then monitored the intruder for two days as he or she created new accounts with varying degrees of access to the network. It was during this time the intruder came across the source code.

Microsoft is continuing to investigate the incident with the FBI.

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business

Jon Collins Is losing a mobile device really such a big deal? How to minimise the damage to your business


  • Jobs
Security Operations Centre Manager (SOC Manager), SC Security Cleared

Basic awareness of computer based network attack scenarios.Desirable Experience: Detailed understanding of networking protocols. Moderate awareness ...

AUTOMOTIVE DATA ANALYST

To investigate quality issues where necessary. Creatively continues to meet customer challenges. Experience gained within the automotive industry ...

IT Support Technician - New Position

Mamas & Papas products have set the high street alight, giving the world's parents the ultimate in choices. But the high street is only at the very ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: