Microsoft patches Bing vulnerability allowing data snooping and search result manipulation.

1 min read
Source: The Verge
Microsoft patches Bing vulnerability allowing data snooping and search result manipulation.
Photo: The Verge
TL;DR Summary

A vulnerability in Microsoft's Bing search engine was discovered earlier this year that allowed users to alter search results and access other Bing users' private information from Teams, Outlook, and Office 365. The vulnerability was detected in the Azure Active Directory (AAD) identity and access management service, and over 1,000 apps and websites on Microsoft's cloud were discovered with similar misconfiguration exploits. The exploit was patched on February 2nd, just days before Microsoft launched Bing's AI-powered Chat feature.

Share this article

Reading Insights

Total Reads

0

Unique Readers

8

Time Saved

3 min

vs 3 min read

Condensed

87%

58578 words

Want the full story? Read the original article

Read on The Verge