HPE, Microsoft breach disclosures mark new era of CISO accountability
ID: 9bf7ce4a-e9b4-586e-a9e4-5eb7470cc5db
STIX ID: report--9bf7ce4a-e9b4-586e-a9e4-5eb7470cc5db
Feed Name: ReversingLabs Blog
The report describes sophisticated nation-state espionage by Cozy Bear (Midnight Blizzard) that gained access to Microsoft and HPE cloud-based email environments and earlier SharePoint files, using techniques like password spraying and abuse of a legacy OAuth test application to exfiltrate sensitive information; it also discusses how new SEC disclosure rules and recent enforcement actions (e.g., SolarWinds) are driving more public disclosures and raising CISO accountability, and highlights the broader supply-chain and investor-risk implications.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
