It seems hacking is the in thing in the IT industry these days. After companies like Apple, Twitter and Facebook admitting to high-profile attacks, software giant Microsoft announced that a 'small number' of its computers were attacked.
In a blog post, Matt Thomlinson, GM, Trustworthy Computing Security of Microsoft, wrote that the company faced a security intrusion similar to that of Apple and Facebook. Some of Microsoft's computers, including a few in its Mac business units, were infected by malicious software that used similar techniques to break into other high-profile websites. Microsoft has claimed, like almost every other company that was hacked in February, that user-data remained untouched during this breach.
Consistent with security practices, Thomlinson says Microsoft kept mum about the attack until the initial round of investigations was finished. "This type of cyber attack is no surprise to Microsoft and other companies that must grapple with determined and persistent adversaries," Thomlinson wrote adding, "We continually re-evaluate our security posture and deploy additional people, processes, and technologies as necessary to help prevent future unauthorized access to our networks."
Twitter was one of the first websites to own-up to a breach earlier in February, and also admit that data of about 250,000 users may have been compromised. Twitter wrote in its blog that it detected "unusual access patterns that led to us identifying unauthorized access attempts to Twitter user data." The company claimed that it managed to detect and shut down a live attack within moments, but its investigation indicated that the attackers may have found limited user information.
Facebook got off lighter, as only a few employee computers were infected with malware and no user data was compromised. The incident occurred when a handful of employees visited a mobile developer website that had been compromised.
Apple too said that it had been hacked and that a "small number" of employee computers were affected in an attack that exploited a Java vulnerability. The malware had been specially designed to attack Macs. Apple found that the malware was installing itself using a vulnerability in the Java plug-in for browsers and immediately released updates to patch it up.