I Could've Accessed 17T Microsoft Records

(blog.faav.net)

111 points | by luispa 1 day ago

15 comments

  • john_strinlai 1 hour ago
    >Microsoft had editorial control over this post, cutting sections and figures and reshaping how the impact is described before publication.

    that is... not great. shame on microsoft.

    its actions like that which shed light on why we get the nighmare eclipses of the world. pressuring a kid into handing over full editorial control of a disclosure is gross.

    • rkagerer 59 minutes ago
      Love to hear more on the motivation for agreeing to this.

      e.g. The $5000? Amnesty from being sued?

      • srdjanr 51 minutes ago
        Also he's 16. I'd definitely be less willing to push back (especially on something like this) at his age
      • icantevenhold 37 minutes ago
        Not getting your life ruined by getting sued by a trillion dollar company sounds like a pretty good motivation
    • igleria 1 hour ago
      reminds me of a former job in which my goodbye letter was heavily editorialized...
  • sdfhbdf 1 hour ago
    > awarded $5000

    It's a little perplexing. Of course it's always a controversial topic since it's difficult to value an exploit, but whenever we read about these online, which probably goes through some survivorship bias, they seem pretty low.

    On https://www.microsoft.com/en-us/msrc/bounty it seems the top is $100,000 or $250,000 depending which program this counts under.

    What does HN think? Why would it be only $5000?

    • muglug 1 hour ago
      As I understand it, bug bounty awards are a rough proxy for "would nation-state actors be able to exploit this for operational purposes without getting caught".

      Zero-click iPhone exploits that affect the current OS and also previous ones are worth hundreds of thousands.

      • buckle8017 1 hour ago
        Try 10-20 million USD for a zero click iPhone exploit.
    • bix6 1 hour ago
      $5k is a literal penny for Microsoft. Give the kid $100k.
    • Perz1val 1 hour ago
      Microsoft's bounty program and payouts are known to be pathetic, see that nightmare eclipse situation
  • verst 1 hour ago
    There is an internal library at Microsoft that reliably avoids all these JWT problems - Microsoft Identity Service Essentials (MISE). Adopting MISE and upgrading to the latest versions of it have been part of the Secure Future Initiative (SFI) that can be read about in the news of previous years. Unfortunately it sounds like the service team intentionally deferred the compliance alerts they will have received.
    • jhfdbkofdchk 1 hour ago
      There is so much work to do for SFI that is still being ignored. The only way that some of these services will update is by being the target of the red team, security researcher, or threat actor.
      • verst 53 minutes ago
        And all of that is definitely happening.

        That being said, just last night I observed that the identity team is now opening up agent-assisted PRs against individual service team repos to force MISE adoption and upgrade to the latest version and best practices. I think that's a great thing because many individual service teams simply lack the bandwidth or knowledge. Prior to GenAI availability I wasted many cycles on this kind of work. While GenAI made it easier - internal source documentation still does not unambiguously address every use case. So having the identity team drive this now with the help of agent sessions initiated by them is great.

  • throwaway2037 1 hour ago

        > Hey! I’m Faav. A little over a year ago, when I was 15, I published Break into any Microsoft building: Leaking PII in Microsoft Guest Check-In, my first Microsoft write-up. I’m 16 now, and this one is a little bigger.
    
    Damn, these guys got schooled by a 15 year old! Say less...
    • bsoqk 56 minutes ago
      You assume that whoever was responsible for the implementation of this feature cares in the slightest beyond “it seems to work”.
  • rdtsc 1 hour ago
    > {"alg":"none","typ":"JWT"}

    I don't know how this ever became a thing that was allowed into the spec and then picked from the spec and implemented in various implementations.

  • er0k 1 hour ago
    wow I am so surprised to hear once again how JWTs are terrible

    https://www.howmanydayssinceajwtalgnonevuln.com/

    • fabian2k 1 hour ago
      Someone not verifying the signature at all is not a mistake where you can blame the JWT spec itself.
      • meindnoch 38 minutes ago
        They did verify the signature, and it was correct according to the "none" algorithm.
        • fabian2k 18 minutes ago
          Argh, I missed that it actually uses the "none" algorithm. Yeah, the existence of that option is extremely dumb and it shouldn't be possible to use that. I misread the post and thought it was a regular JWT, but they simply didn't validate it.
        • alex_suzuki 32 minutes ago
          “Works as designed.”
      • buckle8017 1 hour ago
        JWT is complicated.

        Complexity is a spec failure in security issues.

        It's that simple.

    • talon8635 48 minutes ago
      Does this extend to OIDC? I’m not knowledgeable on the topic but it uses JWT right? Is it also prone to poor implementation? If you just error on alg=none does that solve it?
    • Perz1val 1 hour ago
      Idk if that's not too much of an oversimplification, maybe more like JWTs are an indicator/enabler of architecture level bugs?
    • skhameneh 1 hour ago
      Other commenters are suggesting you can’t blame the spec for end implementation mistakes, except that’s one of the many issues - JWT being so error-prone is a problem.

      I use JWT just for handling of tokens, because it’s so well supported, but I won’t use it for anything more than token storage _because_ it is so vulnerable to mistakes.

      The fact that mistakes are so easy to make is indicative of poor design in the spec itself.

  • advael 2 minutes ago
    This is a pretty typical example of the security posture of microsoft, and yet people continually buy their arguments that open-source and therefore auditable alternatives are inherently less secure than their "trust me bro"
  • f311a 2 hours ago
    What is Antares? Can't find anything related to it except for the 1B model, which does not seem to be capable of autoresearch.

    UPD: It's his personal bot.

    • Alifatisk 1 hour ago
      > I also started building AI into how I hunt, which led me to develop Antares, my personal AI hackbot.
  • khalic 1 hour ago
    You’re going places kid :) keep up the good work
    • matroxmemories 1 hour ago
      Possibly jail if the wrong people get upset.
      • bix6 1 hour ago
        Well college isn’t worth it according to the Thiel crowd so maybe this will be better.
      • Waterluvian 1 hour ago
        Great way to use up that 6-10 years of vacation and sabbatical time.
  • gnarlouse 14 minutes ago
    If a 15yo can find it
  • Kuyawa 1 hour ago
    Next time you find a bug like that, offer it to the black market, you could make millions instead of measly salty peanuts
    • sdcfgy 1 hour ago
      I bet someone already did that and didn't disclose it.
      • arm32 1 hour ago
        Now some blackhat somewhere can't afford their monthly Lamborghini payment.
  • nenadg 24 minutes ago
    You should have.
  • sdcfgy 1 hour ago
    Wait until someone does that to your favourite cloud provider's customer data.
  • sophietaylor 1 hour ago
    [flagged]
  • ltbarcly3 2 hours ago
    > Two quick notes first. The impact I describe is hypothetical. It’s what an attacker could have done with this access, but luckily I found the bug instead, reported it, and never touched any customer data or PII.

    I am the last person to judge someone for using AI to help them write a blog post, but what I wonder is: Do people not read what the AI produces before putting their name on it, or is the AI writing style not obvious to some people, or do they just not care that it's obviously AI and bad style?

    • t-writescode 1 hour ago
      That.. looks like a normal sentence to me, and very probably one of the ones Microsoft required they add.

      Did you give the article a once-over beyond that? It’s one of the decidedly not-AI lines.

      • 0x_rs 1 hour ago
        It's not a "normal" sentence and is quite clearly produced by an LLM, it's a typical Claudeism so probably that. The entire post is also flagged by Pangram, so OP is correct.
      • ltbarcly3 1 hour ago
        Prefixing saying something with "Two quick notes first" is extremely common AI meta commentary. You may be right that it is something Microsoft insisted he put at the top, which would also explain the weird style.
        • functionmouse 1 hour ago
          From where do you think AI learned that?
          • vonneumannstan 1 hour ago
            Weird user preferences during RLHF. Also how we got bulleted lists and emojis everywhere.
          • Forgeties79 1 hour ago
            All AI semantic tendencies were “learned” from us. That doesn’t change anything.
    • eviks 52 minutes ago
      All of the above, though mostly the last one.
    • gosub100 1 hour ago
      Explain why easily 40% of HN posts are about AI, and when people actually _use_ AI for this task, they are vilified for (allegedly) using it.
      • bix6 1 hour ago
        He’s fine to use the AI for bug hunting but nobody wants to read AI’s bullshit slop and tone
        • icantevenhold 32 minutes ago
          I’m as tired of slopped up text as the next person but the example OP gave really isn’t that bad