Get the latest tech news

Massive botnet hits Microsoft 365 accounts


A botnet of over 130,000 compromised devices is launching coordinated password-spraying attacks against Microsoft 365 accounts.

Security researchers at SecurityScorecard are examining possible connections to China-affiliated threat actors, citing evidence of infrastructure linked to CDS Global Cloud and UCLOUD HK, which have operational ties to China. Unlike previous attacks linked to Volt Typhoon(China) and APT33 (Iran), this botnet leverages Non-Interactive Sign-Ins to avoid detection by traditional security controls. Growing trend: Similar tactics have been observed in past campaigns, particularly targeting government agencies, critical infrastructure, and large enterprises.

Get the Android app

Or read this on r/technology

Read more on:

Photo of Microsoft

Microsoft

Photo of Accounts

Accounts

Photo of Massive botnet

Massive botnet

Related news:

News photo

Microsoft's drawback on datacenter investment may signal AI demand concerns

News photo

Google Wins Salesforce Cloud Deal in Bid to Counter Microsoft

News photo

Microsoft Cancels Leases for AI Data Centers, Analyst Says