Microsoft Defender XDR has recently encountered instances of false positives, where Adobe Acrobat Cloud links were erroneously flagged as "malicious" content. This misidentification exposed over 1700 Adobe Acrobat documents, each containing sensitive corporate information. These documents subsequently surfaced on a security service platform designed for users to analyze documents for malicious content. Unfortunately, a flaw in the system's handling of free-version users' uploads led to these PDF files becoming publicly accessible post-analysis, thereby leaking a substantial amount of confidential corporate data.
Despite prompt action by the platform provider to privatize all related analysis results, some files had already been shared publicly, and the issue remains unresolved. To preclude future occurrences, the platform provider emphatically advises users to adopt a commercial license when dealing with work-related tasks, thereby bolstering data security measures.
