logo

Commvault Updates Security Advisory After Nation-State Threat Actor Activity in Azure

ID: 9a0d5244-58c7-5284-866f-7fa1575c9078

STIX ID: report--9a0d5244-58c7-5284-866f-7fa1575c9078

Feed Name: securityonline.info

Threat Score
75/100

Date Published: 2025-04-30

Date Updated: 2026-04-22

Author: Ddos

...
...

Commvault updated its March 7, 2025 security advisory after Microsoft alerted them to suspicious activity on February 20, 2025: a nation-state actor exploited a zero-day in their Azure environment (now patched). The company reports a small number of shared Microsoft customers were impacted but states there was no unauthorized access to stored customer backup data, activated its incident response plan, engaged external cybersecurity firms and authorities, implemented enhanced protections (key rotation, stronger monitoring, conditional access), and published recommended mitigations and IOCs (several malicious IP addresses) for customers to block and report.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.