Home Latest Microsoft claims Russian state-sponsored group hacked its workers’ emails: ‘Password spray attack’

Microsoft claims Russian state-sponsored group hacked its workers’ emails: ‘Password spray attack’

0
Microsoft claims Russian state-sponsored group hacked its workers’ emails: ‘Password spray attack’

[ad_1]

Microsoft has claimed {that a} Russian state-sponsored group hacked into its company techniques on January 12 and accessed the accounts of members of the corporate’s management crew, in addition to these of workers on its cybersecurity and authorized groups.

Satya Nadella, chairman and chief govt officer of Microsoft.(AP)

Microsoft, in a weblog submit, mentioned the hacking began in late November and was found on January 12. It mentioned the identical extremely expert Russian hacking crew behind the SolarWinds breach was accountable.

Stay tuned for all the most recent updates on Ram Mandir! Click here

“A very small percentage” of Microsoft company accounts have been accessed, the American multinational know-how company, best-known software program merchandise, mentioned, and a few emails and connected paperwork have been stolen.

The firm added that the Russian group was in a position to entry Microsoft company electronic mail accounts, together with members of its senior management crew and workers in its cybersecurity, authorized, and different features.

Microsoft’s risk analysis crew, which routinely investigates nation-state hackers, blamed Russia’s ‘Midnight Blizzard’ for the hacking.

Microsoft additionally mentioned its investigation into the breach indicated the hackers have been initially focusing on the software program big to study what the corporate knew about their operations.

Also Read: Meta joins AI race against rivals Google, Microsoft; in works to create ‘human-level’ AI soon

The firm added that the hackers used a “password spray attack” beginning in November 2023 to breach a Microsoft platform. Hackers use the method to infiltrate an organization’s techniques through the use of the identical compromised password in opposition to a number of associated accounts, Microsoft mentioned.

News company Reuters reported that the Russian embassy in Washington and the ministry of international affairs didn’t instantly reply to a request for remark.

“This attack does highlight the continued risk posed to all organizations from well-resourced nation-state threat actors like Midnight Blizzard,” Reuters quoted Microsoft as saying. The firm added that the assault was not the results of a particular vulnerability in its services or products.

“To date, there is no evidence that the threat actor had any access to customer environments, production systems, source code, or AI systems,” an organization weblog states.

What is Midnight Blizzard?

Midnight Blizzard, also referred to as APT29, Nobelium or Cozy Bear by cybersecurity researchers, is linked to Russia’s SVR spy company, US officers mentioned. The group is greatest identified for its intrusions into the Democratic National Committee surrounding the 2016 US elections.

Microsoft merchandise are extensively used throughout the US authorities. The firm confronted criticism final 12 months for its safety practices after Chinese hackers stole emails belonging to senior US State Department officers.

Before revamping its threat-actor nomenclature final 12 months, Microsoft known as the group Nobelium. The cybersecurity agency Mandiant, owned by Google, calls the group Cozy Bear.

In a 2021 weblog submit, Microsoft had known as the SolarWinds hacking marketing campaign “probably the most refined nation-state assault in historical past”. In addition to US government agencies, including the departments of justice and treasury, over 100 private companies and think tanks were compromised, including software and telecommunications providers, news agency AP reported.

(With inputs from Reuters, AP)

Unlock a world of Benefits with HT! From insightful newsletters to real-time news alerts and a personalized news feed – it’s all here, just a click away! – Login Now! Get Latest World News together with Latest News from India at Hindustan Times.

[adinserter block=”4″]

[ad_2]

Source link

LEAVE A REPLY

Please enter your comment!
Please enter your name here