Russian state-sponsored hackers accessed the emails of Microsoft’s ‘senior leadership’

A hacking group linked to a Russian intelligence agency accessed the emails of several senior Microsoft executives and other employees, the company disclosed Friday.

Microsoft said it detected the attack on January 12, and has determined that a hacking group known as Midnight Blizzard or Nobelium is responsible. That’s the same group behind the 2020 SolarWinds cyberattack. Microsoft and US cybersecurity officials have said Nobelium is part of Russia’s Foreign Intelligence Service (SVR).

“Beginning in late November 2023, the threat actor used a password spray attack to compromise a legacy non-production test tenant account and gain a foothold, and then used the account’s permissions to access a very small percentage of Microsoft corporate email accounts, including members of our senior leadership team and employees in our cybersecurity, legal, and other functions, and exfiltrated some emails and attached documents,” the company wrote in a blog post.

The company didn’t identify which members of its “senior leadership” were targeted, but said its initial investigation suggests the group was looking for information related to itself. Company officials so far have no evidence that “customer environments, production systems, source code, or AI systems,” were accessed.

Though the company says the attack “was not the result of a vulnerability in Microsoft products or services,” it is taking steps to “immediately” improve the security of “Microsoft-owned legacy systems and internal business processes.” The changes “will likely cause some level of disruption,” it added.

This article originally appeared on Engadget at https://www.engadget.com/russian-state-sponsored-hackers-accessed-the-emails-of-microsofts-senior-leadership-232945155.html?src=rss https://www.engadget.com/russian-state-sponsored-hackers-accessed-the-emails-of-microsofts-senior-leadership-232945155.html?src=rss
Creato 1y | 21 gen 2024, 02:40:20


Accedi per aggiungere un commento

Altri post in questo gruppo

The Tacx Alpine is a $1,100 gradient simulator for your Garmin smart bike trainer

Cycling season may have only just started, but that’s not stopping Garmin from looking ahead to when all the roadies need to take their bikes indoors. On Tuesday, the company announced the Tacx Alp

24 giu 2025, 13:20:40 | Engadget
T-Mobile's Starlink satellite service launches on July 23

T-Mobile's satellite service, or simply called T-Satellite, with Starlink

24 giu 2025, 13:20:38 | Engadget
The Morning After: Samsung’s big foldable Unpacked event takes place on July 9

The third Unpacked of 2025 (following installments in

24 giu 2025, 13:20:37 | Engadget
UK proposes greater regulation for Google's search practices

The UK might introduce new regulations for Google. The country's Competition and Markets Authority (CMA) has proposed designating the company's search services with "

24 giu 2025, 13:20:34 | Engadget
Netflix is removing over 20 games, including Hades and Monument Valley

Netflix's games arm is struggling. The streamer is removing over 20 games from its library,

24 giu 2025, 13:20:33 | Engadget