Push for FTC to Investigate Microsoft

Posted on Monday, September 22, 2025 by AUSTIN HARRIS, Global Sales

U.S. Senator Ron Wyden has formally requested the Federal Trade Commission to examine Microsoft for what he describes as significant cybersecurity shortcomings. The request cites repeated security incidents and raises questions about the company’s role in safeguarding critical infrastructure.

Senator highlights cybersecurity risks

In a letter addressed to FTC Chairman Andrew Ferguson, Wyden emphasized that Microsoft’s approach to cybersecurity continues to pose potential threats to national security. The senator referenced ransomware attacks affecting infrastructure and healthcare organizations, which he attributes in part to default Windows system configurations.

Wyden characterized Microsoft as a company that, due to its extensive presence in enterprise IT, leaves organizations with limited choices but to rely on its products. He noted that this near-monopoly status amplifies the implications of any security gaps.

Ransomware incidents cited

A key example presented in the letter was a ransomware attack on the hospital operator Ascension in May 2024. According to Wyden, the attack exposed private medical and insurance data for approximately 5.6 million individuals. The breach reportedly occurred when a contractor using an Ascension laptop interacted with a malicious link served via Microsoft’s Bing search engine, ultimately providing hackers access to the organization’s network and its Microsoft Active Directory server.

Wyden suggested that outdated encryption technology and default security configurations contributed to the vulnerability exploited during this incident. He also noted that companies may not have sufficient guidance on mitigating these risks.

Microsoft response on encryption and mitigations

A Microsoft spokesperson addressed the concerns regarding the RC4 encryption standard mentioned in Wyden’s letter, explaining that the protocol is outdated and accounts for less than 0.1% of network traffic. The spokesperson emphasized that while Microsoft discourages its use, completely disabling it could disrupt customer systems.

Microsoft indicated that RC4 will be disabled by default in select Windows products starting in the first quarter of 2026. Additional mitigations and guidance are planned for existing deployments to reduce exposure while maintaining operational stability.


FTC involvement

The FTC acknowledged receipt of Wyden’s letter but declined to provide further comments. The senator has previously advocated for government oversight of Microsoft’s cybersecurity practices, particularly following disclosures of cyberattacks linked to foreign actors that targeted U.S. government officials.

Broader implications for enterprise IT

Wyden’s request underscores broader concerns about the security of enterprise IT systems. As Microsoft products are widely used across government agencies and private companies, any gaps in security or outdated protocols have the potential to impact numerous sectors. The discussion also raises considerations about regulatory oversight and the responsibility of large technology firms in mitigating cybersecurity risks.

Microsoft’s approach to security updates

Microsoft has emphasized gradual changes aimed at enhancing security without disrupting customers. The company maintains that it provides warnings and guidance to ensure safe use of legacy technologies and continues to implement security updates across its platforms.

Push for FTC to Investigate Microsoft as US Senator Wyden Calls for Action

Senator Wyden’s request represents a call for regulatory scrutiny of Microsoft’s cybersecurity practices. It highlights the intersection of corporate responsibility, technology standards, and national security concerns, prompting ongoing discussion about how large technology firms manage risk and support their customers in preventing cyber threats.

More App Developer News

APAC 5G expansion to fuel 347B mobile market by 2030



How AI is causing app litter everywhere



The App Economy Is Thriving



NIKKE 3.5 anniversary update livestream coming soon



New AI tool targets early dementia detection



Jentic launch gives AI agents api access



Experts warn ai-generated health content risks misinterpretation without human oversight



Ludo.ai Unveils API and MCP Beta to Power AI Game Asset Pipelines



AccuWeather Launches ChatGPT Integration for Live Weather Updates



Stop Using Business Jargon: 5 Ways Buzzwords Damage Job Performance



IT spending rises as banks balance legacy and innovation



Tech hiring slumps as Software Developer job postings fall



AI is becoming more widespread in collaboration tools



FCC prohibits new foreign router models citing critical infrastructure risks



ChatGPT Carbon Footprint Matches 1.3 Million Cars Report Finds



Lens Launches MCP Server to Connect AI Coding Assistants with Kubernetes



Accelerating corporate ai investment returns



Enviromates tech startup launches global participation platform



Private Repository Secures the AI-driven Development Boom



UK Fintech Platform Enviromates Connects Projects Brands and Consumers



Env Zero and CloudQuery Announce Merger



How Industrial AI Is Transforming Operations in 2026



AI generated work from managers is damaging trust among employees



Foresight Secures $25M to Bridge Infrastructure Execution Gap



UNESCO AI initiatives driving sustainable development in Africa



Copyright © 2026 by Moonbeam

Address:
1855 S Ingram Mill Rd
STE# 201
Springfield, Mo 65804

Phone: 1-844-277-3386

Fax:417-429-2935

E-Mail: contact@appdevelopermagazine.com