logo

On Microsoft’s Lousy Cloud Security

ID: a2f94408-c948-5bb4-8d2a-79ce3e7fe02b

STIX ID: report--a2f94408-c948-5bb4-8d2a-79ce3e7fe02b

Feed Name: Schneier on Security

Date Published: 2026-04-09

Date Updated: 2026-05-05

Author: Bruce Schneier

...
...

ProPublica reported that federal cybersecurity evaluators found Microsoft’s Government Community Cloud High lacked sufficient detailed security documentation, leaving reviewers unable to assess its overall security posture; despite these concerns, FedRAMP granted authorization, raising questions about the rigor of the approval and potential government exposure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.