Microsoft Expands Free Logging Capabilities for all U.S. Federal Agencies
ID: 90586842-fea0-584c-9e65-0f179acd7c11
STIX ID: report--90586842-fea0-584c-9e65-0f179acd7c11
Feed Name: The Hacker News
Threat Score
Microsoft disclosed that a China-linked APT (Storm-0558) forged Azure AD tokens using a Microsoft account signing key to access Outlook mailboxes, exfiltrating approximately 60,000 unclassified State Department emails and compromising about two dozen organizations; in response Microsoft and U.S. agencies have expanded and enabled advanced Purview audit logging and extended retention to aid detection and remediation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
