logo

Microsoft's Top Execs' Emails Breached in Sophisticated Russia-Linked APT Attack

ID: c0c2f1df-e5e4-5fd3-9731-7b305c91a426

STIX ID: report--c0c2f1df-e5e4-5fd3-9731-7b305c91a426

Feed Name: The Hacker News

Threat Score
85/100

Date Published: 2024-01-20

Date Updated: 2026-04-24

Author: [email protected] (The Hacker News)

...
...

Microsoft disclosed that a Russian-linked APT (Midnight Blizzard / APT29) conducted a password-spray campaign beginning in late November 2023 that compromised a legacy non-production test tenant, allowing the adversary to access and exfiltrate emails and attachments from a small percentage of corporate accounts—including senior leaders and employees in cybersecurity and legal—discovered and mitigated on January 12, 2024; Microsoft emphasized no evidence of customer, production, source-code, or AI-system access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.