Microsoft Actions Following Attack by Nation State Actor Midnight Blizzard
msrc.microsoft.com
msrc.microsoft.com
It would certainly be nice to know which of things they "gained" access to, versus which of them they "attempted to gain" access to. The fact that this blog post doesn't specify makes me assume the worst case scenario: that the attackers got a decent amount of source code to comb through for more vulnerabilities in the future.
No. Just Microsoft. They take security seriously, only when there is a major worm ravaging their customers.