← Front PageCloud Desk
Cloud
Microsoft rejects critical Azure vulnerability report, no CVE issued
Vendor resistance to vulnerability disclosure creates compliance gaps for European organizations relying on Azure backup services.
Summary written by editorial AI · Source link below
A security researcher claims Microsoft quietly fixed an Azure Backup for AKS vulnerability after rejecting his report, and without issuing a CVE. Microsoft disputes the claim, telling BleepingComputer the behavior was expected and that "no product changes were made," despite the researcher documenting a silent fix. [...]
Continue at the source
Read the full report at BleepingComputerExternal link — opens at BleepingComputer in a new tab.
§
Continue with
More from the Cloud Desk
- New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes Tokens17 Jul
- Google Bets 'Agentic Defense' Strategy Can Outpace Attackers17 Jul
- {\epsilon}-Indistinguishability In Moving Target Defense: Framework, Algorithms, And Cloud Case Studies16 Jul
- The Risk of Exposed Cloud Functions and How to Harden15 Jul
- The Red Agent POV: The One Boolean That Broke a B2B Platform’s Credit System15 Jul