logo

Microsoft names alleged credential-snatching 'Azure Abuse Enterprise' operators

ID: ab6180d9-6e3d-5744-bf32-7a18ddb5d9ce

STIX ID: report--ab6180d9-6e3d-5744-bf32-7a18ddb5d9ce

Feed Name: The Register (Security)

Threat Score
65/100

Date Published: 2025-02-28

Date Updated: 2026-04-26

Author: Jessica Lyons

...
...

Microsoft filed a civil lawsuit and amended complaint naming four alleged members of the 'Azure Abuse Enterprise' / Storm-2139 who reportedly accessed Azure OpenAI via leaked API keys, resold access, and developed tools to generate and monetize deepfake sexual imagery of celebrities; Microsoft seized domains, identified additional suspects across multiple countries, and is preparing criminal referrals.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.