logo

What Microsoft's latest email breach says about this IT security heavyweight

ID: 5ac43719-57e2-59a3-8c60-432c51d7fac9

STIX ID: report--5ac43719-57e2-59a3-8c60-432c51d7fac9

Feed Name: The Register (Security)

Threat Score
90/100

Date Published: 2024-01-24

Date Updated: 2026-04-26

Author: Jessica Lyons Hardcastle

...
...

Microsoft disclosed that the Russia-linked APT Cozy Bear (aka Midnight Blizzard/Nobelium) breached its network via an older testing environment lacking multi-factor authentication, stealing emails and files from executives and security/legal staff; the intrusion occurred in late November 2023 and was detected on January 12, 2024. Microsoft warned of potential disruption while remediating legacy systems, and reports indicate Hewlett Packard Enterprise was also targeted; the incident follows prior high-impact intrusions involving the same threat actor and raises oversight and cloud-security concerns.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.