Microsoft Customer Support

NJCCIC Data Breach Notification

Original Release Date: 1/27/2020

Summary

Microsoft disclosed a security breach affecting five Elasticsearch servers that stored an internal customer support database. The servers contained approximately 250 million entries; however, some personally identifiable information (PII) had been redacted. Exposed data included: customer email addresses, IP addresses, locations, descriptions of CSS claims and cases, Microsoft support agent emails, case numbers, resolutions, remarks, and internal notes marked as “confidential.” This information could be used by threat actors to fabricate future support scams. The database was secured within 24 hours of notification and the resulting investigation determined that the accidental exposure was caused by misconfigured security rules established on December 5, 2019.

New Jersey Cybersecurity & Communications Integration Cell

2 Schwarzkopf Dr, Ewing Township, NJ 08628

njccic@cyber.nj.gov

OUR COMMITMENT

The NJCCIC is a component organization within the New Jersey Office of Homeland Security and Preparedness. We are the State's one-stop-shop for cyber threat analysis, incident reporting, and information sharing and are committed to making New Jersey more resilient to cyber threats by spreading awareness and promoting the adoption of best practices.

Agency Seals of State of NJ, NJOHSP and NJCCIC

STAY CONNECTED:

View our Privacy Policy here.

View our Site Index here.