Get the latest tech news
Microsoft network breached through password-spraying by Russian-state hackers | Senior execs' emails accessed in network breach that wasn't caught for 2 months
Senior execs' emails accessed in network breach that wasn't caught for 2 months.
The attack, which Microsoft attributed to a Kremlin-backed hacking group it tracks as Midnight Blizzard, is at least the second time in as many years that failures to follow basic security hygiene has resulted in a breach that has the potential to harm customers. As Steve Bellovin, a computer science professor and affiliate law prof at Columbia University with decades of experience in cybersecurity, wrote on Mastodon: The age of Microsoft doing tents, incident code words, CELA’ing things and pretending MSTIC sees everything (threat actors have Macs too) are over — they need to do radical technical and cultural transformation to retain trust.
Or read this on r/technology