logo

Another Supply Chain Vulnerability

ID: cf083c7c-03fb-5cbf-8fb3-b60d58ee4b64

STIX ID: report--cf083c7c-03fb-5cbf-8fb3-b60d58ee4b64

Feed Name: Schneier on Security

Threat Score
70/100

Date Published: 2025-07-21

Date Updated: 2026-04-19

Author: Bruce Schneier

...
...

ProPublica reported that Microsoft relied on China-based engineers to support Defense Department cloud systems with oversight by U.S. "digital escorts" who frequently lacked the technical ability to effectively police foreign engineers, creating a supply-chain vulnerability that could expose sensitive data; the blog post highlights the risk of espionage and notes Microsoft has stopped the practice.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.