UPDATED 21:16 EDT / MARCH 26 2017

CLOUD

Microsoft pulls search from Docs.com after private files were shared publicly

Microsoft Corp. has removed the search function from its Docs.com service after it was revealed that the feature allowed anyone to search and view documents from other users.

The security flaw, first identified by Twitter users over the weekend, allowed anyone to use the search box on the site to access publicly accessible documents and files stored on the site that were clearly meant to remain private. Some of the documents included divorce settlement agreements, loan applications, birth certificates, credit card statements, password lists, investment portfolios and even Social Security numbers.

According to reports, files might have been shared because users weren’t advised by Microsoft to change the default setting on their accounts before uploading files from public to private. Just to repeat that more clearly: Microsoft had all uploaded files set to public by default, meaning that unsuspecting users were unwittingly sharing their files without knowing they were doing so.

Microsoft has taken some responsibility in pulling the search service. However, the company nonetheless blamed users, with a spokesman saying that they were “taking steps to help those who may have inadvertently published documents with sensitive information.”

While the decision to pull Docs.com search is a positive move, the documents can still be found in the caches of Bing or Google Inc.’s search service, meaning that they can be accessed and documented by anyone searching for what should otherwise be private information. Whether Google or Bing will move to remove this otherwise accidentally shared information is yet to be known.

Microsoft has advised users to review and update their settings by logging into their account, changing their default setting and the settings on all the documents they have uploaded to private. But given the damage this default setting has caused, some users might consider downloading their documents and deleting their accounts altogether.

Image: Microsoft

Since you’re here …

… We’d like to tell you about our mission and how you can help us fulfill it. SiliconANGLE Media Inc.’s business model is based on the intrinsic value of the content, not advertising. Unlike many online publications, we don’t have a paywall or run banner advertising, because we want to keep our journalism open, without influence or the need to chase traffic.The journalism, reporting and commentary on SiliconANGLE — along with live, unscripted video from our Silicon Valley studio and globe-trotting video teams at theCUBE — take a lot of hard work, time and money. Keeping the quality high requires the support of sponsors who are aligned with our vision of ad-free journalism content.

If you like the reporting, video interviews and other ad-free content here, please take a moment to check out a sample of the video content supported by our sponsors, tweet your support, and keep coming back to SiliconANGLE.