logo

Microsoft Expands Free Logging Capabilities for all U.S. Federal Agencies

ID: 90586842-fea0-584c-9e65-0f179acd7c11

STIX ID: report--90586842-fea0-584c-9e65-0f179acd7c11

Feed Name: The Hacker News

Threat Score
90/100

Date Published: 2024-02-24

Date Updated: 2026-04-24

Author: [email protected] (The Hacker News)

...
...

Microsoft disclosed that a China-linked APT (Storm-0558) forged Azure AD tokens using a Microsoft account signing key to access Outlook mailboxes, exfiltrating approximately 60,000 unclassified State Department emails and compromising about two dozen organizations; in response Microsoft and U.S. agencies have expanded and enabled advanced Purview audit logging and extended retention to aid detection and remediation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.