Skip to main content

Microsoft contractors reviewed Skype, Cortana audio with ‘no security measures’

Microsoft contractors reportedly reviewed recordings from Skype and Cortana with “no security measures” in place, compromising the security of the apps’ users.

The Guardian reported the security risk from an interview with a former contractor, who said that he used his personal laptop while working on the project over a span of two years from his home in Beijing.

Recommended Videos

The source, a British national, claimed that the recordings, which included Skype phone calls and Cortana activations, were simply accessed by workers through a Google Chrome app over China’s internet. The workers were given new Microsoft accounts that had the same password for easier management, and the employees were hired without proper background checks.

Please enable Javascript to view this content

The former contractor said that he started his employment in an office, but he was eventually allowed to work at home on his personal laptop after he was issued a username and password to access the recordings.

“I heard all kinds of unusual conversations, including what could have been domestic violence. It sounds a bit crazy now, after educating myself on computer security, that they gave me the URL, a username and password sent over email,” The Guardian’s source said.

The interview with The Guardian follows Vice’s report in August 2019 that revealed humans were vetting Skype calls with the live text translation enabled, as well as Cortana recordings.

Microsoft said in a statement that since Vice’s report, it ended its grading programs for Skype and Cortana for Xbox, and transferred the rest of its human grading work into “secure facilities” that are not in China. The company also said that review snippets are usually less than 10 seconds long, with workers in the program not allowed access to longer recordings.

“We will continue to take steps to give customers greater transparency and control over how we manage their data,” said Microsoft.

Microsoft is not the only company that has been criticized for allowing workers to listen to recordings made by its users, as Amazon, Apple, and Google were also sending audio to contractors for grading. For Alexa-enabled device users, here is how you can stop Amazon from listening in on your Alexa conversations.

Aaron Mamiit
Aaron received an NES and a copy of Super Mario Bros. for Christmas when he was four years old, and he has been fascinated…
Microsoft accidentally released 38TB of private data in a major leak
A large monitor displaying a security hacking breach warning.

It’s just been revealed that Microsoft researchers accidentally leaked 38TB of confidential information onto the company’s GitHub page, where potentially anyone could see it. Among the data trove was a backup of two former employees’ workstations, which contained keys, passwords, secrets, and more than 30,000 private Teams messages.

According to cloud security firm Wiz, the leak was published on Microsoft’s artificial intelligence (AI) GitHub repository and was accidentally included in a tranche of open-source training data. That means visitors were encouraged to download it, meaning it could have fallen into the wrong hands again and again.

Read more
Is macOS more secure than Windows? This malware report has the answer
A person using a laptop with a set of code seen on the display.

It’s a long-held belief that Macs are less at risk of malware and viruses than Windows PCs, but how true is that? Well, a new report has shed some light on the situation -- and the results might surprise you.

According to threat research firm Elastic Security Labs, roughly 39% of all malware infections happen on Windows PCs. In good news for Apple fans, only 6% of breaches occurred on macOS, making Mac systems far less vulnerable than their Windows counterparts.

Read more
Apple’s security trumps Microsoft and Twitter’s, say feds
Apple's Craig Federighi speaking about macOS security at WWDC 2022.

Apple has long held a reputation for rock-solid security, and now the U.S. government seemingly agrees after praising the company for its security procedures. At the same time, the feds have suggested Microsoft and Twitter need to pull their socks up and make their products much more secure for their users, according to CNBC.

In a speech given at Carnegie Mellon University, Cybersecurity and Infrastructure Security Agency Director Jen Easterly pointed to Apple as a company that took security and accountability seriously, and suggested other companies should take note.

Read more