Close Menu
VernoNews
  • Home
  • World
  • National
  • Science
  • Business
  • Health
  • Education
  • Lifestyle
  • Entertainment
  • Sports
  • Technology
  • Gossip
Trending

‘We have now principally destroyed what capability we had to answer a pandemic,’ says main epidemiologist Michael Osterholm

September 10, 2025

Aaron Decide’s 359th Homer Passes Yogi Berra for fifth Place on Yankees Listing

September 10, 2025

Overlook the iPhone Air. iPhone 16 simply acquired a worth drop.

September 10, 2025

Klarna costs IPO at $40, above on-line lender’s anticipated vary

September 10, 2025

Tarboro, North Carolina residents oppose proposed 50-acre information heart

September 10, 2025

Katie Ginella on Being ‘Blocked’ From Filming With RHOC Solid & Shock at Lack of Backlash From Followers, Plus Future on Present

September 10, 2025

Singer D4vd’s Tesla with Human Stays Deserted for Days, LAPD Murder Investigating

September 10, 2025
Facebook X (Twitter) Instagram
VernoNews
  • Home
  • World
  • National
  • Science
  • Business
  • Health
  • Education
  • Lifestyle
  • Entertainment
  • Sports
  • Technology
  • Gossip
VernoNews
Home»Technology»Microsoft and Google e-mail defaults quietly failed and uncovered delicate affected person knowledge with out warning anybody or logging something
Technology

Microsoft and Google e-mail defaults quietly failed and uncovered delicate affected person knowledge with out warning anybody or logging something

VernoNewsBy VernoNewsJuly 2, 2025No Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Reddit WhatsApp Email
Microsoft and Google e-mail defaults quietly failed and uncovered delicate affected person knowledge with out warning anybody or logging something
Share
Facebook Twitter LinkedIn Pinterest WhatsApp Email




  • Specialists warn emails despatched with delicate knowledge are nonetheless getting delivered unencrypted, and nobody will get notified
  • Microsoft 365 sends e-mail in plain textual content when encryption fails, with out alerting the consumer in any respect
  • Google Workspace nonetheless makes use of insecure TLS 1.0 and 1.1 with out warning senders or rejecting messages

Most customers assume that emails despatched via cloud companies are encrypted and safe by default, however this may not all the time be the case, new analysis has claimed.

A report from Paubox discovered Microsoft 365 and Google Workspace each mishandle these failures in ways in which go away messages uncovered, with out notifying the sender or logging the failure.

“Utilizing out of date encryption supplies a false sense of safety as a result of it appears as if delicate knowledge is protected, regardless that it’s really not,” Paubox mentioned.


You could like

Default settings quietly undermine encryption

The issue isn’t only a technical edge case; it stems from how these platforms are designed to function below widespread circumstances.

Google Workspace, the report discovered, will fall again to delivering messages utilizing TLS 1.0 or 1.1 if the receiving server solely helps these outdated protocols.

Microsoft 365 refuses to make use of deprecated TLS, however as a substitute of bouncing the e-mail or alerting the sender, it sends the message in plain textual content.

In each circumstances, the e-mail is delivered, and no warning is issued.

Signal as much as the TechRadar Professional publication to get all the highest information, opinion, options and steerage your small business must succeed!

These behaviors pose severe compliance dangers, as in 2024, Microsoft 365 accounted for 43% of healthcare-related e-mail breaches.

In the meantime, 31.1% of breached healthcare entities had TLS misconfigurations, regardless of many of those organizations utilizing “power TLS” settings to satisfy compliance necessities.

However as Paubox notes, forcing TLS doesn’t assure encryption utilizing safe variations like TLS 1.2 or 1.3, and fails silently when these circumstances should not met.

The implications of silent encryption failures are far-reaching – healthcare suppliers routinely ship Protected Well being Info (PHI) over e-mail, assuming instruments like Microsoft 365 and Google Workspace supply sturdy protections.

In actuality, neither platform enforces trendy encryption when failures happen, and each danger violating HIPAA safeguards with out detection.

Federal pointers, together with these from the NSA within the US, have lengthy warned towards TLS 1.0 and 1.1 as a result of vulnerabilities and downgrade dangers.

But Google nonetheless permits supply over these protocols, whereas Microsoft sends unencrypted emails with out flagging the difficulty.

Each paths result in invisible compliance failures – in a single documented breach, Solara Medical Provides paid greater than $12 million after unencrypted emails uncovered over 114,000 affected person information.

Circumstances like this present why even the very best FWAAS or ZTNA answer should work in live performance with seen, enforceable encryption insurance policies throughout all communication channels.

“Confidence with out readability is what will get organizations breached,” Paubox concluded.

You may additionally like

Avatar photo
VernoNews

Related Posts

Overlook the iPhone Air. iPhone 16 simply acquired a worth drop.

September 10, 2025

Moderna CEO Responds to RFK Jr.’s Campaign Towards the Covid-19 Vaccine

September 9, 2025

NYT Strands hints and solutions for Wednesday, September 10 (recreation #556)

September 9, 2025
Leave A Reply Cancel Reply

Don't Miss
Science

‘We have now principally destroyed what capability we had to answer a pandemic,’ says main epidemiologist Michael Osterholm

By VernoNewsSeptember 10, 20250

COVID-19 has claimed the lives of greater than 7 million folks internationally, up to now,…

Aaron Decide’s 359th Homer Passes Yogi Berra for fifth Place on Yankees Listing

September 10, 2025

Overlook the iPhone Air. iPhone 16 simply acquired a worth drop.

September 10, 2025

Klarna costs IPO at $40, above on-line lender’s anticipated vary

September 10, 2025

Tarboro, North Carolina residents oppose proposed 50-acre information heart

September 10, 2025

Katie Ginella on Being ‘Blocked’ From Filming With RHOC Solid & Shock at Lack of Backlash From Followers, Plus Future on Present

September 10, 2025

Singer D4vd’s Tesla with Human Stays Deserted for Days, LAPD Murder Investigating

September 10, 2025
About Us
About Us

VernoNews delivers fast, fearless coverage of the stories that matter — from breaking news and politics to pop culture and tech. Stay informed, stay sharp, stay ahead with VernoNews.

Our Picks

‘We have now principally destroyed what capability we had to answer a pandemic,’ says main epidemiologist Michael Osterholm

September 10, 2025

Aaron Decide’s 359th Homer Passes Yogi Berra for fifth Place on Yankees Listing

September 10, 2025

Overlook the iPhone Air. iPhone 16 simply acquired a worth drop.

September 10, 2025
Trending

Klarna costs IPO at $40, above on-line lender’s anticipated vary

September 10, 2025

Tarboro, North Carolina residents oppose proposed 50-acre information heart

September 10, 2025

Katie Ginella on Being ‘Blocked’ From Filming With RHOC Solid & Shock at Lack of Backlash From Followers, Plus Future on Present

September 10, 2025
  • Contact Us
  • Privacy Policy
  • Terms of Service
2025 Copyright © VernoNews. All rights reserved

Type above and press Enter to search. Press Esc to cancel.