Bonum Certa Men Certa

Microsoft Breaking European Privacy Laws While Distracting the Public: The Evidence (a Formal 91-Page Report)

"This latest attack marks a return to Microsoft’s longtime practices. And it’s no coincidence that Microsoft’s newfound interest in attacking us comes on the heels of the SolarWinds attack and at a moment when they’ve allowed tens of thousands of their customers — including government agencies in the U.S., NATO allies, banks, nonprofits, telecommunications providers, public utilities, police, fire and rescue units, hospitals and, presumably, news organizations — to be actively hacked via major Microsoft vulnerabilities. Microsoft was warned about the vulnerabilities in their system, knew they were being exploited, and are now doing damage control while their customers scramble to pick up the pieces from what has been dubbed the Great Email Robbery. So maybe it’s not surprising to see them dusting off the old diversionary Scroogled playbook."

--Google's Official Blog this week



Video download link



Summary: Today's video examining the report, which includes hard evidence, of Microsoft's privacy violations (never mind privacy failures due to security breaches, which have become more than routine)

THE NINTH part of the ongoing series has just been published. Cited in this part was this report [PDF] from/for Dutch authorities. We've made a local copy of this report and produced an HTML version (it's long!) as we typically do when it comes to historically significant documents. They tend to vanish after less than a decade (not just broken links but lack of copies anywhere except the Internet Archive).



It is no secret that Microsoft keeps breaking the privacy laws, it keeps losing control of its data (due to security reasons, not just deliberate neglect and law-breaking), and it always gets away with it, somehow, owing to political clout. Look no further than yesterday's report about those billionaires grifting billions of dollars (taking away money from taxpayers in the name of "relief"), this time because of their very own failures at security. It's incredible, isn't it? It's just about as ridiculous as that sounds; they're being rewarded for breaking the law and making bad products at the expense of the public, which shoulders the cost induced by corporate failure (some might call this "communism"). Here's a quick reminder that Microsoft's total incompetence is being excused using racist tactics (based on claims later disproved) and a new article entitled "Microsoft could reap more than $193m in new US cyber spending" by Joseph Menn, Christopher Bing and Raphael Satter. To quote:

Microsoft stands to receive nearly a quarter of Covid relief funds destined for US cybersecurity defenders, angering some lawmakers who don't want to increase funding for a company whose software was recently at the heart of two big hacks.

Congress allocated the funds at issue in the Covid relief bill after two enormous cyber attacks leveraged weaknesses in Microsoft products to reach into computer networks at federal and local agencies and tens of thousands of companies.

One breach attributed to Russia in December grabbed emails from the Justice Department, Commerce Department and Treasury Department.



Notice the attempts to blame nations rather than the company that makes faulty products.

NL ReportEither way, the EPO has outsourced to a vendor notorious for security failures. Azure was recently cracked, Microsoft's own systems and network got breached (they belatedly admitted this), and just about everyone deploying Exchange for E-mail got pale in the face. Trillions of E-mail messages are floating everywhere, waiting for yet-unknown victims of espionage, blackmail and so on.

The video discusses what it means for António Campinos to outsource the EPO's data, including data associated with EPO staff and stakeholders, to Microsoft. This Microsoft iscandal is a lot worse than Benoît Battistelli's Microsoft scandal (giving preferential treatment for Microsoft, which lobbies the EPO for illegal European software patents).

Part 10 of the series will be published later today, focusing again on the GDPR. We've meanwhile noticed that in Twitter the FFII and Mr. Schrems talk about the series. There are already consequences, which is why the EPO was fast to issue face-saving communications to all staff.

Image credit: the Dutch report on Microsoft's privacy violations [PDF]. Notice "ActiveX" in there.

Recent Techrights' Posts

Why Cyber Resilience Act (CRA) Won't Work
American companies don't follow laws, they work around them
Net Gain of 50 Gemini Capsules in Just One Month
a big jump in just one month
 
SLAPP Censorship - Part 179 Out of 200: Using One's Clients to Save Face at Their Expense
Who's being served really?
Switzerland's Software Freedom/Digital Sovereignty is Improving as People Move to GNU/Linux
Well done to them
Links 12/09/2026: "U.S. Debt Surpasses $40 Trillion" and "Trump Wants to [Illegally] Bribe Voters."
Links for the day
Gemini Links 12/09/2026: Readjusting, Fighting Sleep, and FreeBSD bhyve
Links for the day
Matt Mullenweg Got the 'Linus Treatment' or 'RMS Treatment'
"back, but not in charge any more..."
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, September 11, 2026
IRC logs for Friday, September 11, 2026
Earlier This Year Microsoft's Chief Liar Frank Shaw Lied About the Layoffs. Now He's Leaving.
he's nowhere near retirement age
Gemini Links 11/09/2026: Small Things and "Hitching Your Wagon"
Links for the day
Links 11/09/2026: Tristan Buckmaster Ripped Off by Slop, Social Control Media Spreads Hatred for Profit
Links for the day
Animals Smarter Than Chatbots
Quack quack goes the chatbot
IBM Isn't Reporting Layoffs, But It Removes Tens of Thousands of People From Its Workforce
Red Hat and IBM already mark people for removal
"A Tale of Two Antónios" Will Resume Soon
In November the site turns 20
Links 11/09/2026: Cyberattack in Berlin (Windows/Microsoft TCO) and Hype About Slop as 'Existential' Something; Scam Altman et al Caught Stealing/Plagiarising "Mathematical Breakthrough"
Links for the day
Microsoft/GNOME 9/11
Garrett and Graveley (Microsoft/GNOME) will have a lot to explain
Keeping Linux Reliable
If Linux becomes a lot more reliable in the future, it'll be an "hey hi" miracle. If Linux becomes a lot less reliable in the future, we'll know why and who is responsible for it.
9/11 Was a National Event, Not an International Event
They insist that back doors will "save lives"
Very Sloppy PR From a Dying IBM, Company in Disarray and in Need of Distractions
IBM could really use distractions right now
Cyber Show on the Fallacy of Salary/Ego as a Function of Wisdom in the Era of Pyramid Schemes (Cheating People Using Buzzwords and Complicit Media)
"the remuneration fallacy and the role of reluctance as a negative feedback force."
What a Price-Fixing Cartel Can Look Like
If your prices increase five-fold or ten-fold and so do your revenues/income, what does that tell us?
SLAPP Censorship - Part 178 Out of 200: Explaining to Your American Clients That Spending 130,000+ United States Dollars on a Single Hearing in Another Continent Means the UK's National Archives Will Retain in Perpetuity What Your Spouse or Girlfriend Said
Balabhadra (Alex) Graveley should ask Garrett how much money he has lost so far
EPO's Local Staff Committee Munich Organises General Assembly Next Week, the Goal is to Oust the Corrupt President and Derail His Unlawful Agenda
They're aiming to show Campinos the door
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, September 10, 2026
IRC logs for Thursday, September 10, 2026
Latest IBM Gossip is, Over 25,000 People to be PIPed (by Year's End)
That figure, 10%, is different from 15% (what we saw a lot). 10% is over 25,000 staff.
Solidarity at EPO
"Many colleagues have made personal and professional sacrifices by participating in the ongoing strike and work-to-rule action"
Gemini Links 11/09/2026: Culture Stuck, Robot Symphony, and Back to Geminispace
Links for the day
Links 10/09/2026: Facebook Unsafe for Kids, Fake Songs (Against Right of Publicity, CG Forgeries Basically) a Growing Problem
Links for the day
Rust is Financially and Technically Controlled by Microsoft. Rust Foundation is a Front for Microsoft's Proprietary Software.
Rust is not and has never been about security
Gemini Links 10/09/2026: "I Don’t Want to Interact With Stochastic Parrots" and "ROOPHLOCH 2026!"
Links for the day
What the British School Closure (BSN Senior School Leidschenveen) Means to EPO Staff
The only European thing about the EPO is the staff
Standing in Solidarity With Matt Mullenweg
I don't trust the people and companies that want Mullenweg out. Neither should you.
Links 10/09/2026: "Smear Campaign Says Anti-Flock Movement Is Chinese Propaganda" and "Flock Employee Calls Cops on Reporter Filming Them"
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, September 09, 2026
IRC logs for Wednesday, September 09, 2026