Microsoft made headlines this week when it was discovered that nearly 250 million customer service and support records were exposed on the web through several unsecured cloud servers. The incident points to security weaknesses in the industry that still need fixing.

Bob Diachenko, a security researcher with Comparitech, first discovered the vulnerability and immediately alerted Microsoft to the exposed data. “The records contained logs of conversations between Microsoft support agents and customers from all over the world, spanning a 14-year period from 2005 to December 2019,” according to a blog post on Comparitech’s Website. “All of the data was left accessible to anyone with a web browser, with no password or other authentication needed.”

Jaclyn Jaeger is a freelance contributor to Compliance Week after working for the company for 15 years. She writes on a wide variety of topics, including ethics and compliance, risk management, legal,...