Microsoft and the DOJ intercept this Russian hacking group’s spear phishing campaign

A hacking group tied to Russian intelligence tried to worm its way into the systems of dozens of Western think tanks, journalists and former military and intelligence officials, Microsoft and U.S. authorities said Thursday.

The group, known as Star Blizzard to cyberespionage experts, targeted its victims with emails that appeared to come from a trusted source—a tactic known as spear phishing. In fact, the emails sought access to the victims’ internal systems, as a way to steal information and disrupt their activities.

Star Blizzard’s actions were persistent and sophisticated, according to Microsoft, and the group often did detailed research on its targets before launching an attack. Star Blizzard also went after civil society groups, U.S. companies, American military contractors and the Department of Energy, which oversees many nuclear programs, the company said.

On Thursday, a U.S. court unsealed documents authorizing Microsoft and the Department of Justice to seize more than 100 website domain names associated with Star Blizzard. That action came after a lawsuit was filed against the network by Microsoft and the NGO-Information Sharing and Analysis Center, a nonprofit tech organization that investigated Star Blizzard.

Authorities haven’t gone into details about Star Blizzard’s effectiveness but said they expect Russia to keep deploying hacking and cyberattacks against the U.S. and its allies.

“The Russian government ran this scheme to steal Americans’ sensitive information, using seemingly legitimate email accounts to trick victims into revealing account credentials,” Deputy Attorney General Lisa Monaco said in announcing the U.S. actions against Star Blizzard. “With the continued support of our private sector partners, we will be relentless in exposing Russian actors and cybercriminals and depriving them of the tools of their illicit trade.”

Star Blizzard has been linked to Russia’s Federal Security Service, or FSB. Last year, British authorities accused the group of mounting a yearslong cyberespionage campaign against U.K. lawmakers. Microsoft said it has been tracking the group’s activities since 2017.

Microsoft said it observed Star Blizzard attempt dozens of hacking efforts targeting 30 different groups since January 2023. The tech giant’s cybersecurity experts say Star Blizzard has proven to be especially elusive.

“Star Blizzard’s ability to adapt and obfuscate its identity presents a continuing challenge for cybersecurity professionals,” the company wrote in a report on its findings.

U.S. authorities charged two Russian men last year in connection with Star Blizzard’s past actions. Both are believed to be in Russia.

Along with American targets, Star Blizzard went after people and groups throughout Europe and in other NATO countries. Many had supported Ukraine following Russia’s invasion.

A message left with the Russian Embassy in Washington was not immediately returned Thursday.

—David Klepper, Associated Press

https://www.fastcompany.com/91203365/microsoft-doj-intercept-russian-hacking-groups-spear-phishing-campaign?partner=rss&utm_source=rss&utm_medium=feed&utm_campaign=rss+fastcompany&utm_content=rss

Created 9mo | Oct 4, 2024, 4:10:07 PM


Login to add comment

Other posts in this group

These are the top 10 emerging technologies of 2025, according to the World Economic Forum

Breakthroughs happen all the time in the tech world, but only a select few manage to make a lasting impact.

Predicting which innovations will shape the future is always a challenge. On T

Jun 25, 2025, 4:50:06 AM | Fast company - tech
Anthropic’s AI copyright ‘win’ is more complicated than it looks

Big tech scored a major victory this week in the battle over using copyrighted materials to train AI models. Anthropic

Jun 24, 2025, 7:40:06 PM | Fast company - tech
How Roblox handles millions of players on viral games like ‘Grow a Garden’

Just this past weekend, social and gaming platform Roblox saw a peak of 30.6 million concurrently active players, the

Jun 24, 2025, 5:30:02 PM | Fast company - tech
Meet the 4 a.m. club, TikTok’s mystical election night movement

Did you wake up at 4 a.m. on November 6, 2024? If so, you’re not alone.

The 4 a.m. club is a group of people, mostly on TikTok, who say they were spiritually “activated” when they

Jun 24, 2025, 3:10:08 PM | Fast company - tech
Nonstop news alerts are driving people to disable their phone notifications

New analysis has found mobile phone users are being pinged with as many as 50 news alerts daily. Unsurprisingly, many are experiencing “alert fatigue.”

The use of news alerts on phones h

Jun 24, 2025, 3:10:06 PM | Fast company - tech
Warp’s new agentic development environment helps developers work with AI coding agents

The startup Warp is best known for its modern, AI-empowered take on the terminal—the decades-old,

Jun 24, 2025, 3:10:04 PM | Fast company - tech
This free read-it-later app is the perfect replacement for Pocket

Want to save pages on the web for later? You could always bookmark them in your browser of choice, of course. But that’s a quick way to end up with a messy bookmarks toolbar. And organizing your b

Jun 24, 2025, 12:40:09 PM | Fast company - tech