Get the latest tech news
Microsoft ‘senior leadership’ emails accessed by Russian SolarWinds hackers
The hackers were able to steal emails and documents in a November attack.
Microsoft says the hackers, known as Nobelium, were able to access email accounts of some members of its senior leadership team late last year. “Beginning in late November 2023, the threat actor used a password spray attack to compromise a legacy non-production test tenant account and gain a foothold, and then used the account’s permissions to access a very small percentage of Microsoft corporate email accounts, including members of our senior leadership team and employees in our cybersecurity, legal, and other functions, and exfiltrated some emails and attached documents,” says the Microsoft Security Response Center in a blog post filed late on Friday. It found itself at the center of the SolarWinds attack nearly three years ago, then 30,000 organizations’ email servers were hacked in 2021 due to a Microsoft Exchange Server flaw, and Chinese hackers breached US government emails via a Microsoft cloud exploit last year.
Or read this on The Verge