Google are no better
I'm not sure how different this is from Google constantly badgering me to use chrome when I read my Gmail from a different browser. I know el reg has a hate-hate thing going for Microsoft but all these companies are the same.
5 publicly visible posts • joined 25 Mar 2020
Like many cloud services, not only in Azure but AWS as well (the ubiquitous S3 storage for instance), in Cosmos the most basic form of access control uses secret "keys" to secure accounts.
While this is a serious hack, the only accounts that are at risk of data breach are those that:
a) are using basic key based access rather than RBAC with AD
b) AND have enabled a public IP endpoint for their database
c) AND have disabled all the firewall controls on that public endpoint