City
Epaper

Russian govt threat actors hacked company's exec emails: Microsoft

By IANS | Updated: January 20, 2024 13:35 IST

New Delhi, Jan 20 Microsoft has claimed that about two months ago, Russian state-sponsored threat actors gained access ...

Open in App

New Delhi, Jan 20 Microsoft has claimed that about two months ago, Russian state-sponsored threat actors gained access to its corporate networks and obtained emails belonging to executives and certain staff members in its legal and cybersecurity divisions.

The company has identified the threat actor as 'Midnight Blizzard', also known as 'Nobelium'.

Microsoft said that it detected the November 2023 breach on January 12 and later notified employees whose communications were intercepted.

"Beginning in late November 2023, the threat actor used a password spray attack to compromise a legacy non-production test tenant account and gain a foothold, and then used the account’s permissions to access a very small percentage of Microsoft corporate email accounts," Microsoft said in a blogpost on Friday.

"The investigation indicates they were initially targeting email accounts for information related to Midnight Blizzard itself," it added.

The company also disclosed the intrusion in a filing with the US Securities and Exchange Commission (SEC), in which it mentioned that they "were able to remove the threat actor’s access to the email accounts on or about January 13, 2024".

The tech giant is also examining the information accessed to determine the impact of the incident and said that it will continue to investigate the extent of the incident.

"As of the date of this filing, the incident has not had a material impact on the Company’s operations. The Company has not yet determined whether the incident is reasonably likely to materially impact the Company’s financial condition or results of operations," Microsoft said.

In addition, the company noted that this incident has highlighted the urgent need to move even faster and will act immediately to apply the company's current security standards to Microsoft-owned legacy systems and internal business processes, even when these changes might cause disruption to existing business processes.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Open in App

Related Stories

InternationalFrance appoints new Cabinet amid political turmoil

InternationalUK fleet's Konkan Exercise to follow port calls to Mumbai, Goa

International"Everybody's pretty much agreed to it," says Trump on Gaza peace plan

InternationalEarthquake of magnitude 3.6 strikes Myanmar

InternationalIndian consulate in New York holds session on AI's role in healthcare

Technology Realted Stories

TechnologyBSNL’s indigenous 4G network to be upgraded to 5G in next 6-8 months: Minister

TechnologyPeople’s Plan Campaign paves the way for more responsive, empowered Panchayats

TechnologyIndia should focus on atmanirbhar innovation, aims to rank in top five AI nations globally: Scindia

TechnologyImpact of GST reforms starts showing as festive sales breaks 10-year record: Experts

TechnologyBitcoin touches record high crossing $125,000