CISA Issues Emergency Directive After Midnight Blizzard Microsoft Hits
ID: 6bb7f59a-bc8e-5da4-a852-93eb6a81d214
STIX ID: report--6bb7f59a-bc8e-5da4-a852-93eb6a81d214
Feed Name: Dark Reading
Date Published: 2024-04-12
Date Updated: 2026-04-21
Author: Kristina Beek, Associate Editor, Dark Reading
CISA issued an emergency directive in response to Midnight Blizzard (Cozy Bear), a Russian state-sponsored group that used Microsoft 365 password-spray attacks to exfiltrate Microsoft corporate email and customer correspondence; federal agencies were ordered to investigate affected accounts, reset compromised credentials, secure privileged Azure accounts, and organizations are urged to enforce strong passwords and multifactor authentication.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
