logo

HPE, Microsoft breach disclosures mark new era of CISO accountability

ID: 9bf7ce4a-e9b4-586e-a9e4-5eb7470cc5db

STIX ID: report--9bf7ce4a-e9b4-586e-a9e4-5eb7470cc5db

Feed Name: ReversingLabs Blog

Threat Score
90/100

Date Published: 2024-01-30

Date Updated: 2026-04-29

Author: [email protected] (Paul Roberts)

...
...

The report describes sophisticated nation-state espionage by Cozy Bear (Midnight Blizzard) that gained access to Microsoft and HPE cloud-based email environments and earlier SharePoint files, using techniques like password spraying and abuse of a legacy OAuth test application to exfiltrate sensitive information; it also discusses how new SEC disclosure rules and recent enforcement actions (e.g., SolarWinds) are driving more public disclosures and raising CISO accountability, and highlights the broader supply-chain and investor-risk implications.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.