Microsoft says it was hacked by Russian state-sponsored group

Microsoft says it was hacked by Russian state-sponsored group
Microsoft says it was hacked by Russian state-sponsored group

Hello and welcome to the details of Microsoft says it was hacked by Russian state-sponsored group and now with the details

Nevin Al Sukari - Sana'a - Microsoft's threat research team routinely investigates nation-state hackers such as Russia's Midnight Blizzard, who they say is linked to the breach. ― Reuters pic

SAN FRANCISCO, Jan 20 ― Microsoft said yesterday that a Russian state-sponsored group hacked into its corporate systems on January 12 and stole some emails and documents from staff accounts.

The Russian group was able to access “a very small percentage” of Microsoft corporate email accounts, including members of its senior leadership team and employees in its cybersecurity, legal, and other functions, the company said.

Microsoft's threat research team routinely investigates nation-state hackers such as Russia's Midnight Blizzard, who they say is linked to the breach.

Advertisement

The company said its probe into the breach indicated the Midnight Blizzard hackers were initially targeting email accounts that had information about themselves.

The software and tech company said the group also known in the cybersecurity industry as Nobelium used a “password spray attack” starting in Nov. 2023 to breach a Microsoft platform. Hackers use this technique to infiltrate a company's systems by using the same password across multiple accounts.

The Russian Embassy in Washington and Ministry of Foreign Affairs did not immediately respond to a request for comment.

Advertisement

Microsoft said it investigated the incident and disrupted the malicious activity, blocking the threat actor's access to its systems.

“This attack does highlight the continued risk posed to all organisations from well-resourced nation-state threat actors like Midnight Blizzard,” the company said.

Microsoft said the attack was not the result of a vulnerability in it products or services.

“To date, there is no evidence that the threat actor had any access to customer environments, production systems, source code, or AI systems,” the company said.

Microsoft's disclosure follows a new regulatory requirement implemented by the US Securities and Exchange Commission (SEC) in December that mandates publicly-owned companies to promptly disclose cyber incidents. Affected companies must file a report about the hack's impact within four business days of discovering the incident, disclosing the time, scope and nature of the breach.

Midnight Blizzard is also known as APT29 or Cozy Bear by cybersecurity researchers and linked to Russia's SVR spy agency, according to US officials. The hacking group is best known for its intrusions of the Democratic National Committee in 2016. ― Reuters

These were the details of the news Microsoft says it was hacked by Russian state-sponsored group for this day. We hope that we have succeeded by giving you the full details and information. To follow all our news, you can subscribe to the alerts system or to one of our different systems to provide you with all that is new.

It is also worth noting that the original news has been published and is available at Malay Mail and the editorial team at AlKhaleej Today has confirmed it and it has been modified, and it may have been completely transferred or quoted from it and you can read and follow this news from its main source.

PREV Former Miss Universe Porntip Nakhirunkanok loses Malibu home to LA wildfires
NEXT Island-wide blackout hits Puerto Rico on New Year’s Eve

Author Information

I am Joshua Kelly and I focus on breaking news stories and ensuring we (“Al-KhaleejToday.NET”) offer timely reporting on some of the most recent stories released through market wires about “Services” sector. I have formerly spent over 3 years as a trader in U.S. Stock Market and is now semi-stepped down. I work on a full time basis for Al-KhaleejToday.NET specializing in quicker moving active shares with a short term view on investment opportunities and trends. Address: 838 Emily Drive Hampton, SC 29924, USA Phone: (+1) 803-887-5567 Email: [email protected]