Microsoft Shares Guidance on Securing Azure Accounts

September 1, 2021

Microsoft recently released some recommendations for securing Azure Cosmos DB accounts.

Microsoft presented several recommendations, including regenerating Cosmos DB keys, using a combination of firewall rules, vNet and/or Azure Private Link for all Azure Cosmos DB customers. They also recommended using Role-Based Access Control that allows per user and security principal access control to Azure Cosmos DB and, finally, implementing regularly scheduled key changes in case users cannot use Role-Based Access Control.

The warning became needed after a bug known as Chaos DB affected Microsoft Azure Cosmos DB.

The bug granted attackers full admin rights to user data without authorization and allowed users to steal their customers’ primary read-write keys, giving them the power to remotely take over their databases.

In addition to the various recommendations, Microsoft also added additional security measures to prevent future attempts to gain access to its customers’ Cosmos DB accounts without authorization.

For more information, read the original story in Bleeping Computer.

Top Stories

Related Articles

February 23, 2026 Researchers say they’ve identified a new strain of Android malware that uses Google’s own Gemini AI model more...

February 23, 2026 Texas officials are warning about what could be the largest data breach in U.S. history, with notification more...

February 20, 2026 ATM jackpotting attacks are accelerating from rare security demonstrations into a growing criminal enterprise, according to a more...

February 20, 2026 Bitdefender Labs says it is tracking an ongoing scam campaign on Meta platforms targeting users in the more...

Picture of TND News Desk

TND News Desk

Staff writer for Tech Newsday.
Picture of TND News Desk

TND News Desk

Staff writer for Tech Newsday.

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn