Sunday, July 6, 2025

the executive headlines
logo
  • Home
  • Technology
  • Industry
  • Magazines
  • Our Clients
  • Startup Insights
  • CXOs
  • Leaders Speak
  • Videos
  • News/Blogs
Home

Technology

Industry

Magazines
Our Clients
Startup Insights
CXOs
Leaders Speak
Videos

News/Blogs

Home

Technology

Industry

Magazines
Our Clients
Startup Insights
CXOs
Leaders Speak
Videos

News/Blogs

  1. Home
  2. cyber-security
  3. microsoft-resolves-azure-ad-issues-impacting-bing-major-apps
The executive headlines
FacebookInstagramTwitterlinkedinPinterestyoutube

QuickLinks

About UsContact UsReprint & PermissionDisclaimerPrivacy PolicyAdvertise

Latest Magazines

10 Most Visionary Leaders to Watch in 2025
10 Most Influential Business Leaders to Watch in 2025

Subscribe to Our Newsletter

© 2025 The Executive Headlines. All rights reserved.

Microsoft Resolves Azure AD Issues Impacting Bing and Major Apps

microsoft-resolves-azure-ad-issues-impacting-bing-major-apps

“The root cause of the vulnerability arises from what’s called "Shared Responsibility confusion," wherein an Azure app can be inappropriately configured to enable users from any Microsoft tenant, leading to a potential case of unintended access.”

Microsoft has rectified a misconfiguration loophole that was affecting the Azure Active Directory (AAD) identity and access management service that brought down multiple “high-impact” applications to unauthorized access.

Also Read, Opti9 Launches Observr SaaS for Ransomware Detection Managed Services for Veeam Software

Cloud security firm, Wiz, said, "One of these apps is a content management system (CMS) that powers Bing.com and allowed us to not only modify search results but also launch high-impact XSS attacks on Bing users. Those attacks could compromise users' personal data, including Outlook emails and SharePoint documents."

Wiz reported these vulnerabilities to Microsoft in January and February 2022 and received a prize of $40, 000 from the tech giant. Microsoft fixed these issues subsequently.

The root cause of the vulnerability arises from what’s called "Shared Responsibility confusion," wherein an Azure app can be inappropriately configured to enable users from any Microsoft tenant, leading to a potential case of unintended access.

Interestingly a couple of internal apps by Microsoft were seen showing this behavior, thereby permitting external parties to get read and write to the impacted applications.

One of those apps is the Bing Trivia app, which the cybersecurity firm exploited to impact search results in Bing and even control the content on the homepage as part of a cyber attack chain dubbed BingBang.

To create worst situations, the exploit could be armored to accelerate a cross-site scripting (XSS) attack on Bing.com and draw out a victim’s Outlook emails, Team messages, calendars, SharePoint documents, and OneDrive files.

Business News

Passing the Torch: Warren Buffett Bows Out, but Not Away

John Ridding Bids Farewell: The End of an Era at Financial Times

Cleveland-Cliffs CEO Declares War on Japan as He Eyes U.S. Steel Takeover

Harnessing AI: Transforming the Workplace for Enhanced Productivity

Navigating Economic Turbulence: The Inflation Conundrum

Featured Companies
logologologologologologologologologologologologologologologologologologologologo

Contact us for our upcoming Awards

why us ?

Elevate your understanding of the world of business with Best Business Magazine and news platform. The Executive Headlines genuinely support all top business leaders and the innovative technological ecosystem that surrounds and engages with them. The company ' logo encapsulates our entire idea; it comprises a magazine for influential business leaders and decision-makers. Offering up-to-the-minute, all-encompassing news coverage, market perspectives, and exclusive dialogues with corporate pioneers, we are your ultimate destination for remaining at the vanguard of the business sphere. Enroll with us today and position yourself at the forefront of business acumen with Best News Platform and Business Magazine