Bonum Certa Men Certa

Microsoft Breaking European Privacy Laws While Distracting the Public: The Evidence (a Formal 91-Page Report)

"This latest attack marks a return to Microsoft’s longtime practices. And it’s no coincidence that Microsoft’s newfound interest in attacking us comes on the heels of the SolarWinds attack and at a moment when they’ve allowed tens of thousands of their customers — including government agencies in the U.S., NATO allies, banks, nonprofits, telecommunications providers, public utilities, police, fire and rescue units, hospitals and, presumably, news organizations — to be actively hacked via major Microsoft vulnerabilities. Microsoft was warned about the vulnerabilities in their system, knew they were being exploited, and are now doing damage control while their customers scramble to pick up the pieces from what has been dubbed the Great Email Robbery. So maybe it’s not surprising to see them dusting off the old diversionary Scroogled playbook."

--Google's Official Blog this week



Video download link



Summary: Today's video examining the report, which includes hard evidence, of Microsoft's privacy violations (never mind privacy failures due to security breaches, which have become more than routine)

THE NINTH part of the ongoing series has just been published. Cited in this part was this report [PDF] from/for Dutch authorities. We've made a local copy of this report and produced an HTML version (it's long!) as we typically do when it comes to historically significant documents. They tend to vanish after less than a decade (not just broken links but lack of copies anywhere except the Internet Archive).



It is no secret that Microsoft keeps breaking the privacy laws, it keeps losing control of its data (due to security reasons, not just deliberate neglect and law-breaking), and it always gets away with it, somehow, owing to political clout. Look no further than yesterday's report about those billionaires grifting billions of dollars (taking away money from taxpayers in the name of "relief"), this time because of their very own failures at security. It's incredible, isn't it? It's just about as ridiculous as that sounds; they're being rewarded for breaking the law and making bad products at the expense of the public, which shoulders the cost induced by corporate failure (some might call this "communism"). Here's a quick reminder that Microsoft's total incompetence is being excused using racist tactics (based on claims later disproved) and a new article entitled "Microsoft could reap more than $193m in new US cyber spending" by Joseph Menn, Christopher Bing and Raphael Satter. To quote:

Microsoft stands to receive nearly a quarter of Covid relief funds destined for US cybersecurity defenders, angering some lawmakers who don't want to increase funding for a company whose software was recently at the heart of two big hacks.

Congress allocated the funds at issue in the Covid relief bill after two enormous cyber attacks leveraged weaknesses in Microsoft products to reach into computer networks at federal and local agencies and tens of thousands of companies.

One breach attributed to Russia in December grabbed emails from the Justice Department, Commerce Department and Treasury Department.



Notice the attempts to blame nations rather than the company that makes faulty products.

NL ReportEither way, the EPO has outsourced to a vendor notorious for security failures. Azure was recently cracked, Microsoft's own systems and network got breached (they belatedly admitted this), and just about everyone deploying Exchange for E-mail got pale in the face. Trillions of E-mail messages are floating everywhere, waiting for yet-unknown victims of espionage, blackmail and so on.

The video discusses what it means for António Campinos to outsource the EPO's data, including data associated with EPO staff and stakeholders, to Microsoft. This Microsoft iscandal is a lot worse than Benoît Battistelli's Microsoft scandal (giving preferential treatment for Microsoft, which lobbies the EPO for illegal European software patents).

Part 10 of the series will be published later today, focusing again on the GDPR. We've meanwhile noticed that in Twitter the FFII and Mr. Schrems talk about the series. There are already consequences, which is why the EPO was fast to issue face-saving communications to all staff.

Image credit: the Dutch report on Microsoft's privacy violations [PDF]. Notice "ActiveX" in there.

Recent Techrights' Posts

Two Risks to Companies: The Microsoft Culture and the Microsoft Tools
Novell was killed by a form of "social engineering" by Microsoft
It's Hard to Trust People Who Worked - Not Only Those Who Still Work - at Microsoft
Bryan Lunduke is just what people would call an "arsehole of a person"
Links 06/07/2025: Climate Change and "The Right to Criticise"
Links for the day
 
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, July 06, 2025
IRC logs for Sunday, July 06, 2025
Gemini Links 07/07/2025: BaseLibre Numerical System and TUI Rant
Links for the day
[Video] "Copyleft Isn't a Bug."
"Copyleft isn’t a bug. It’s a feature. GNU GPL forced the world to treat code like a public good."
Being in Social Control Media Means Exposing Oneself to Heckling
Richard Stallman does not (either himself or directly) post to any social control media
Links 06/07/2025: Airlines Perils, Scams, and Breaches
Links for the day
For the Second Time, Bryan Lunduke From Microsoft is Siccing Racist Trolls and Vandals at Me
You're only reinforcing the point we made yesterday
Links 06/07/2025: End to End Encryption at Risk, Reuters Twitter ("X") Account Withheld in India
Links for the day
Gemini Links 06/07/2025: Tinylog and Certification Rotation
Links for the day
PCLinuxOS Sites Coming Back, Gradually
let's just be patient
Social Control Media, Even If Based on Free Software, Still Has Many Problems
a distraction from what actually mattered and still matters
IBM is Not Your Master
IBM makes friends with people who exclude the majority of the population: women
Help Fund the Free Software Foundation (FSF)
If you have some dollars to spare, go support the FSF
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, July 05, 2025
IRC logs for Saturday, July 05, 2025
A Short History of Attacks on Techrights (and Boycott Novell Before That)
good opportunity to tell again the story of several (not all) attempts to silence us
The Mainstream Media Took 4 Days to Realise Microsoft Shut Down Its Operations in Pakistan and Fired Everybody
We estimate that Microsoft has had about 29,000 layoffs since January
Leadership in Free Software
Don't let IBM lead. It's a terrible flag bearer.
“Twibel” Actions Against Comedians (and Why It's a Truly Low Blow)
they try to make up in quantities for a lack of merit or quality
Linux Foundation Apparently Flirting With Slop (Marketing by LLM-Generated SPAM)
The Web is in a really bad state!
COVID-19 Sped Up Site Improvements in Techrights
A few months later we created our very own IRC network
Gemini Links 05/07/2025: Negative Questions and 'Touching Grass' (Going Outside)
Links for the day
Links 05/07/2025: Dalai Lama Succession as 90th Birthday Approaches, 40 deg C in China
Links for the day
Links 05/07/2025: Hungary and US Defecting to Russia, "Google's Hotseat Hypocrisy"
Links for the day
Gemini Links 05/07/2025: 4th of July 2025 and "Zig Roadmap 2026"
Links for the day
How to Combat the Exploitation and Abuse by Microsoft GitHub
Not to mention corruption and crimes against women
Bryan Lunduke is Actually Sending His Audience to Attack People
"[Lunduke] is actually sending his audience to attack people."
Even The Right Wing is Rejecting Bryan Lunduke
no wonder he became so irrelevant and marginal
Microsoft's MSN Helps Microsoft Spread Lies About the Layoffs' Scale (Well Over 25,000 People Laid Off This Year)
There seem to be monopolies on lies and on truth
The Death of X Has Been Greatly Exaggerated (by Compromised Media)
X.Org Server is alive and well
Rewriting Things in Rust
How far would you go?
In 2025 Everything is "AI". Remember Blockchains?
Talk about what companies and things (services, products, software) actually do, not the labels they use
Julian Assange Has Been Free for a Year
Julian Assange and I disagreed on some things
Monopolies and Scalping
Monopolies gravitate towards price hikes
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, July 04, 2025
IRC logs for Friday, July 04, 2025
Microsoft's August Layoffs Wave: "August is Confirmed for Additional Performance Based Cuts"
"August is confirmed for additional performance based cuts from the recent connects along with additional organizational cuts."
What Microsoft Reputation Laundering (With a Weaponised Law Degree) Looks Like in a Foreign Continent
You would expect this in uncivilised and primitive countries
Slopwatch: LLMs 'Write' Fake or Distorted 'News' About "Linux"
LLM slop disguised as news