Get the latest tech news

Microsoft network breached through password-spraying by Russian-state hackers | Senior execs' emails accessed in network breach that wasn't caught for 2 months


Senior execs' emails accessed in network breach that wasn't caught for 2 months.

The attack, which Microsoft attributed to a Kremlin-backed hacking group it tracks as Midnight Blizzard, is at least the second time in as many years that failures to follow basic security hygiene has resulted in a breach that has the potential to harm customers. As Steve Bellovin, a computer science professor and affiliate law prof at Columbia University with decades of experience in cybersecurity, wrote on Mastodon: The age of Microsoft doing tents, incident code words, CELA’ing things and pretending MSTIC sees everything (threat actors have Macs too) are over — they need to do radical technical and cultural transformation to retain trust.

Get the Android app

Or read this on r/technology

Read more on:

Photo of Microsoft

Microsoft

Photo of Russian

Russian

Photo of emails

emails

Related news:

News photo

Senua’s Saga: Hellblade II will be with us in just a few months

News photo

Microsoft Executive Emails Hacked By Russian Intelligence Group, Company Says

News photo

Microsoft Executives’ Emails Hacked by Group Tied to Russian Intelligence