The BIG question is:

Since this is a mandatory module, doesn't that imply that the SAME facility is on all the other VMs running on Azure?

IF it does, then that implies the other VMs are ALSO vulnerable to the same/similar attack - each custom to the OS being hosted...

And THAT should scare the pants off Microsoft management.

