this post was submitted on 02 Aug 2023
185 points (100.0% liked)

Technology

37699 readers
275 users here now

A nice place to discuss rumors, happenings, innovations, and challenges in the technology sphere. We also welcome discussions on the intersections of technology and society. If it’s technological news or discussion of technology, it probably belongs here.

Remember the overriding ethos on Beehaw: Be(e) Nice. Each user you encounter here is a person, and should be treated with kindness (even if they’re wrong, or use a Linux distro you don’t like). Personal attacks will not be tolerated.

Subcommunities on Beehaw:


This community's icon was made by Aaron Schneider, under the CC-BY-NC-SA 4.0 license.

founded 2 years ago
MODERATORS
 

The aftermath to the recent Microsoft Azure hack by suspected PRC actors.

What is the solution to this? Make sure cloud services are open source so they can be independently vetted? If government and corporate entities chose to use open source solutions, most are presented "as is" with no warranty.

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 47 points 1 year ago (3 children)

Recently I was doing some Azure integration work, with OAuth, Teams and Outlook. At one point I noticed that logging in with a MS account causes my browser to do ~10 redirects between different services while downloading over 30 MB of Javascript and thought "Huh, this looks like decades of technical debt. Either MS devs are waaay smarter than me or this is a pile of garbage". I guess both could be true.

[–] [email protected] 25 points 1 year ago (1 children)

They have no choice but to be smarter than us on account of the pile of garbage they've been given.

[–] [email protected] 7 points 1 year ago

Or they simply hope, that the pile of garbage is smarter than the attackers.

[–] [email protected] 18 points 1 year ago

I've done some contracts there and yeah, while they are incredibly smart, there's so much bloated corpo overhead that they are restricted by red tape. I'm not surprised a simple login takes 30 redirects at all.

[–] [email protected] 9 points 1 year ago

All their services are like that! Redirects for days. It’s an absolute gong show believe me. It’s way worse than the public knows.