City
Epaper

Russian govt threat actors hacked company's exec emails: Microsoft

By IANS | Updated: January 20, 2024 13:35 IST

New Delhi, Jan 20 Microsoft has claimed that about two months ago, Russian state-sponsored threat actors gained access ...

Open in App

New Delhi, Jan 20 Microsoft has claimed that about two months ago, Russian state-sponsored threat actors gained access to its corporate networks and obtained emails belonging to executives and certain staff members in its legal and cybersecurity divisions.

The company has identified the threat actor as 'Midnight Blizzard', also known as 'Nobelium'.

Microsoft said that it detected the November 2023 breach on January 12 and later notified employees whose communications were intercepted.

"Beginning in late November 2023, the threat actor used a password spray attack to compromise a legacy non-production test tenant account and gain a foothold, and then used the account’s permissions to access a very small percentage of Microsoft corporate email accounts," Microsoft said in a blogpost on Friday.

"The investigation indicates they were initially targeting email accounts for information related to Midnight Blizzard itself," it added.

The company also disclosed the intrusion in a filing with the US Securities and Exchange Commission (SEC), in which it mentioned that they "were able to remove the threat actor’s access to the email accounts on or about January 13, 2024".

The tech giant is also examining the information accessed to determine the impact of the incident and said that it will continue to investigate the extent of the incident.

"As of the date of this filing, the incident has not had a material impact on the Company’s operations. The Company has not yet determined whether the incident is reasonably likely to materially impact the Company’s financial condition or results of operations," Microsoft said.

In addition, the company noted that this incident has highlighted the urgent need to move even faster and will act immediately to apply the company's current security standards to Microsoft-owned legacy systems and internal business processes, even when these changes might cause disruption to existing business processes.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Open in App

Related Stories

International"That's okay": Trump jokes about being called "fascist" by NYC mayor-elect Mamdani in White House

InternationalTrump meets NYC mayor-elect Mamdani, calls interaction "great and productive"

International"Fruitful interaction": PM Modi after meeting Indian-origin tech entrepreneurs in Johannesburg

InternationalPM Modi interacts with heads of prominent community organisations in Johannesburg

InternationalPM Modi meets Australian counterpart Albanese on sidelines of G20 Summit, pledges deeper India-Australia strategic cooperation

Technology Realted Stories

TechnologyRajasthan Police conference concludes with focus on technology, road safety

TechnologyMinistry will work on practical solutions to build more flexible, globally competitive SEZ framework: Commerce Secretary

TechnologyCommunity participation foundation of early disease detection and surveillance: Dr V K Paul

TechnologyIndia-UAE CEPA offers shared innovation, opportunity for startups: Envoy

TechnologyEarly action on AMR key to ensure infections remain treatable, surgeries stay safe: WHO