Microsoft said on Thursday that it will keep all personal data of its cloud customers within the European Union instead of allowing transfers outside the EU. This is part of their ongoing efforts to comply with different privacy regulations in different places.
Microsoft will store customer data from its cloud services within the “EU data boundary” under the new policy. This includes Azure, Microsoft 365, Power Platform, and Dynamics 365.
By infosecbulletin
/ Thursday , January 23 2025
# "While many leaked security credentials belong to customers, some exposed sensitive accounts suggest that security vendors too have been...
Read More
By infosecbulletin
/ Thursday , January 23 2025
The Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) have released a joint Cybersecurity Advisory...
Read More
By infosecbulletin
/ Thursday , January 23 2025
GitLab has released update for high severity cross-site scripting (XSS) flaw. Versions 17.8.1, 17.7.3, and 17.6.4 for both Community Edition...
Read More
By infosecbulletin
/ Thursday , January 23 2025
Cisco has released a security advisory concerning a critical privilege escalation vulnerability (CVE-2025-20156) in its Meeting Management software. With a...
Read More
By infosecbulletin
/ Wednesday , January 22 2025
Fortinet customers must apply the latest updates, as almost 50,000 management interfaces remain vulnerable to the latest zero-day exploit. The...
Read More
By infosecbulletin
/ Tuesday , January 21 2025
Every day a lot of cyberattack happen around the world including ransomware, Malware attack, data breaches, website defacement and so...
Read More
By infosecbulletin
/ Tuesday , January 21 2025
Ubuntu 22.04 LTS users are advised to update their systems right away due to a crucial security patch from Canonical...
Read More
By infosecbulletin
/ Tuesday , January 21 2025
Attackers are pretending to be Ukraine's Computer Emergency Response Team (CERT-UA) using AnyDesk to access target computers. “Unidentified individuals are...
Read More
By infosecbulletin
/ Tuesday , January 21 2025
Oracle Critical Patch Update Pre-Release Announcement shares details about the upcoming update scheduled for January 21, 2025. Note that this...
Read More
By infosecbulletin
/ Tuesday , January 21 2025
OWASP has released its updated list of the top 10 vulnerabilities in smart contracts for 2025. This guide highlights the...
Read More
This includes “pseudonymized personal data,” which is found in system-generated logs and has been altered so as not to be directly linked to an individual — “making Microsoft the first large-scale cloud provider to deliver this level of data residency to European customers,” the company said in a release.
Microsoft announced in December 2022 that it will start localizing data storage soon. The first phase was completed last year and focused on storing personal data within the EU, excluding system-generated logs.
Recently, Microsoft and other big tech companies are under scrutiny from regulators over data transfers from the European Union, which has strict privacy laws under the General Data Protection Regulation (GDPR). In May 2023, Meta was fined $1.3 billion by the Irish Data Protection Commission for transferring data to the United States, where there are concerns about limited protections and sensitive information possibly ending up in the hands of law enforcement.
In July 2023, the EU and U.S. agreed on a new “Data Privacy Framework” allowing data transfers with protections. However, Microsoft is pursuing its EU Boundary plan, and Amazon plans to launch a “European Sovereign Cloud” service to keep customers’ metadata within the bloc.