• DaddleDew@lemmy.world
    link
    fedilink
    English
    arrow-up
    17
    ·
    3 days ago

    Almost everything Microsoft claims to be doing in the name of “security” nowadays are just poorly disguised anti consumer tactics

    • Default Username@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      6
      ·
      edit-2
      3 days ago

      Also the UK government.

      As Benjamin Franklin put it, “Those who would give up essential Liberty, to purchase a little temporary Safety, deserve neither Liberty nor Safety.”

  • Phoenixz@lemmy.ca
    link
    fedilink
    English
    arrow-up
    6
    ·
    3 days ago

    Again?

    You just gotta love how Microsoft keeps promising that THIS TIME they weally weally will do security, pinky promise!

    Just like this did about a year or so ago where they promised the US Senate that they wouldn’t again purposefully leave security bugs open as fixing it would cost money and cause negative press, better just hide it and whoopsie poopsie, the US government got hacked by China now because of that bug? Owwie bowwie, we so sowwie…

    Fuck Microsoft

    Install Linux already and have a system that is not designed to make a few people insanely rich, have a system that makes computers fun again

  • F04118F@feddit.nl
    link
    fedilink
    English
    arrow-up
    1
    ·
    edit-2
    2 days ago

    The Federal Risk and Authorization Management Program (FedRAMP for short) stipulates that specially trained personnel must look after the servers that provide these services. And because the data on these servers is confidential and security-relevant, these administrators must also have a special security clearance that is only granted to US citizens.

    Such personnel are in short supply and correspondingly expensive. But what is Microsoft doing? As ProPublica recently uncovered, they hired cheap admins with the necessary certificates for server administration abroad. And they put ex-military personnel with security clearance at their side, who they also hired for minimum wages.

    They (untrained ex-military) were then supposed to carry out the actions specified by the trained (foreign) IT admins. They were also supposed to monitor what they were doing. But they were not sufficiently qualified for this.

    What the actual fuck?

    They apparently took the cheapest (IT talent) available – even if they lived in China. You read that correctly: In fact, Chinese IT specialists were administering the cloud servers of the US Department of Defense, among others. What could possibly go wrong?