UPDATE 2-Microsoft says it was hacked by Russian state-sponsored group

(Adds detail from Microsoft and background on the hackers)

By Zeba Siddiqui and Christopher Bing

Jan 19 (Reuters) –

Microsoft said on Friday that a Russian state-sponsored group hacked into its corporate systems on Jan. 12 and stole some emails and documents from staff accounts.

The Russian group was able to access “a very small percentage” of Microsoft corporate email accounts, including members of its senior leadership team and employees in its cybersecurity, legal, and other functions, the company said.

Microsoft’s threat research team routinely investigates nation-state hackers such as Russia’s Midnight Blizzard, who they say is linked to the breach.

The company said its probe into the breach indicated the Midnight Blizzard hackers were initially targeting email accounts that had information about themselves.

The software and tech company said the group also known in the cybersecurity industry as Nobelium used a “password spray attack” starting in Nov. 2023 to breach a Microsoft platform. Hackers use this technique to infiltrate a company’s systems by using the same password across multiple accounts.

The Russian Embassy in Washington and Ministry of Foreign Affairs did not immediately respond to a request for comment.

Microsoft said it investigated the incident and disrupted the malicious activity, blocking the threat actor’s access to its systems.

“This attack does highlight the continued risk posed to all organizations from well-resourced nation-state threat actors like Midnight Blizzard,” the company said.

Microsoft said the attack was not the result of a vulnerability in it products or services.

“To date, there is no evidence that the threat actor had any access to customer environments, production systems, source code, or AI systems,” the company said.

Microsoft’s disclosure follows a new regulatory requirement implemented by the U.S. Securities and Exchange Commission (SEC) in December that mandates publicly-owned companies to promptly disclose cyber incidents. Affected companies must file a report about the hack’s impact within four business days of discovering the incident, disclosing the time, scope and nature of the breach.

Midnight Blizzard is also known as APT29 or Cozy Bear by cybersecurity researchers and linked to Russia’s SVR spy agency, according to U.S. officials. The hacking group is best known for its intrusions of the Democratic National Committee in 2016. (Reporting by Zeba Siddiqui and Harshita Mary Varghese; Editing by Chris Sanders, Maju Samuel and Anna Driver)

News Related

OTHER NEWS

Jimmy Carter and all living former first ladies to attend Rosalynn Carter’s memorial service

Former President Jimmy Carter is expected to attend the Tuesday memorial service for his late wife, Rosalynn Carter, in Atlanta, his grandson told CNN – a tribute that will also be ... Read more »

Rob Reiner to Film ‘This Is Spinal Tap' Sequel in February, Says Paul McCartney and Elton John Will Appear

Rob Reiner to Film ‘This Is Spinal Tap’ Sequel in February, Says Paul McCartney and Elton John Will Appear Forty years after making his directorial debut with the 1984 cult ... Read more »

Best Buy's Biggest Cyber Monday Deals on Samsung TVs, Sony Headphones, and Dyson Vacuums

Plus laptops and more last-minute deals you don’t want to miss People / Jaclyn Mastropasqua We have reached Cyber Monday is officially here, and there are loads of great deals ... Read more »

The Joffre Lakes surge returns north of Pemberton

The Joffre Lakes surge is back, much to the dismay of Pemberton and Mount Currie locals. Video footage shared with Pique shows a long line of cars illegally parked on ... Read more »

Activists calling for Gaza ceasefire begin hunger strike outside White House

Photograph: Jim Watson/AFP/Getty Images Leftwing activists including the actor Cynthia Nixon, famous for her role in Sex and the City, have begun a hunger strike outside the White House aimed ... Read more »

We just got a first look at McDonald's secretive new spinoff restaurant CosMc's

A construction site in Bolingbrook, Illinois, presumed to be the first location of CosMc’s. Scott Fredrickson McDonald’s has been reluctant to share many details about its planned new restaurant concept ... Read more »

Conor McGregor’s The Black Forge posts more than $2 million in losses since 2021 opening

Conor McGregor’s The Black Forge posts more than $2 million in losses since 2021 opening Conor McGregor made around a $2 million investment when he purchased the Dublin bar he ... Read more »
Top List in the World