logo

Microsoft says Russian hackers also targeted other organizations

ID: 258ee6e3-ad33-5b06-adbe-baeccdc4503d

STIX ID: report--258ee6e3-ad33-5b06-adbe-baeccdc4503d

Feed Name: TechCrunch Security News

Threat Score
85/100

Date Published: 2024-01-26

Date Updated: 2026-04-23

Author: Lorenzo Franceschi-Bicchierai

...
...

Microsoft disclosed that the Russian-linked group Midnight Blizzard (APT29) conducted a targeted espionage campaign beginning in late November, using password-spray attacks against legacy systems lacking MFA and distributed residential proxies to evade detection; the attackers accessed and exfiltrated some corporate emails and attachments from a small percentage of mailboxes—targeting senior executives and security/legal staff—and Microsoft has notified other targeted organizations, with HPE later reporting related mailbox and SharePoint data exfiltration.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.