Observed Signal · Jul 18, 2026 · Security Incident · Source: t3n · Impact: 3/5 · Sentiment: Negative
Streamer loses 25 years of Microsoft data after hack
A Dutch streamer, Joshua Khane, lost access to his Microsoft account and the linked OneDrive after an account takeover. Microsoft suspended the account for suspicious activity and — citing changed security information, internal protocols, encryption, and privacy policies — told him the account cannot be restored and the stored files are irretrievably lost. The loss includes purchased games and family photos; Khane estimates 25 years of digital memories gone. The article highlights the fragility of relying solely on cloud storage and recommends the 3-2-1 backup rule to avoid permanent data loss. The piece was published by t3n on 2026-07-18.
Major cloud account takeover involving Microsoft highlights risks of relying solely on provider-managed cloud storage and reinforces the need for stronger consumer backup and identity-protection practices.
Track Microsoft Signals & Market Shifts in Real-Time
Polaris7 autonomous intelligence agents track regulatory filings, primary sources, executive changes, and deal flow 24/7. Create your free Explorer workspace to monitor these entities.
Key Takeaways & Evidence Grounding
- Dutch streamer Joshua Khane had his Microsoft account and linked OneDrive hijacked by unknown attackers.
- Microsoft suspended the account for suspicious activity and stated it cannot be restored because the account's security information was changed and internal protocols forbid modifying those settings.
- Microsoft said encryption and privacy policies prevent even their developers from recovering the deleted OneDrive data.
- The lost content included purchased games (e.g., Minecraft), thousands of euros spent on digital goods, and family photos; Khane stated 25 years of his digital life are gone.
- The article was published on 2026-07-18 by t3n.
Connected Companies & Entities
4 Entities mapped“Microsoft determined the account was taken over but said it cannot be restored because the account's security information was changed and in...”
“The article is published on t3n, the digital-pioneers publisher hosting the report about the streamer's lost Microsoft account....”
“The article includes recommended editorial content that references external content from TargetVideo GmbH....”
“Image credit in the article: 'The Microsoft account of the streamer is lost forever. (Image: Shutterstock/ungvar)'....”
Ontology Mapping & Concepts
Related Market Signals & Shifts
Recent verified developments and strategic activity across this market segment.
Steam fake games infected 8,000 PCs; FBI arrests suspect
Between May 2024 and February 2026, cybercriminals published seven fake games on Valve's Steam platform that concealed malware designed to harvest credentials and other sensitive data to access cryptocurrency wallets. The campaign infected nearly 8,000 PCs and allowed attackers to empty roughly 80 wallets, stealing about $220,000. The operators promoted the malicious titles via social media and bots to target high-value crypto holders; victims included Twitch streamer RastalandTV, who lost $32,000 and later died in March 2026. The FBI, working with affected gamers, traced stolen funds through Bitrefill vouchers and arrested a 21-year-old suspect in Florida. Authorities say the accused bought a Remote-Access Trojan for about $10,000 and faces charges including conspiracy to distribute malware, which carries potential prison terms of roughly 5–20 years.
GitHub Hack: Data Stolen from ~3,800 Internal Repos
GitHub, owned by Microsoft, confirmed a security breach in which attackers stole data from approximately 3,800 of the company’s internal code repositories. The company said it detected and contained a compromise of an employee device that involved a poisoned Visual Studio Code (VS Code) extension. GitHub reported no evidence so far that customer information stored outside of its internal repositories was impacted, and its investigation remains ongoing. A hacking group called TeamPCP has claimed responsibility and is reportedly selling the stolen data on a cybercrime forum. The incident follows a pattern of supply‑chain attacks against developer tools and extensions, with prior related breaches affecting Trivy, the European Commission, Tanstack, and resulting targeting of other major tech organisations.
Dev tools you paste data into can cause breaches
The article warns that third-party developer tools (online JSON formatters, regex testers, Base64 decoders, etc.) can be a major source of data exposure because users often paste sensitive data (API keys, auth tokens, production payloads) into them without verifying whether the site logs or ships that data. It cites a reported incident where a threat actor is selling roughly 3.6 million employee records taken from Microsoft Azure environments across multiple Fortune 500 companies. The author presents FormatStack, a set of browser-only developer utilities that perform all processing client-side so pasted content never leaves the user’s machine.
Track Real-Time Market Signals & Shifts
Set up custom watchlists to receive automated, evidence-grounded executive digests whenever material signals or shifts occur across your tracked landscape.
