BeyondTrust Report: Microsoft Security Vulnerabilities Decreased by 5% in 2023

Refreshed software and collaboration with the security researcher community may have contributed to the 5% drop. Continue reading BeyondTrust Report: Microsoft Security Vulnerabilities Decreased by 5% in 2023

US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microsoft

The US government says Midnight Blizzard’s compromise of Microsoft corporate email accounts “presents a grave and unacceptable risk to federal agencies.”
The post US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microso… Continue reading US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microsoft

CISA emergency directive tells agencies to fix credentials after Microsoft breach

CyberScoop first reported on the existence of the directive, which calls the pilfered emails “a grave and unacceptable risk to agencies.”

The post CISA emergency directive tells agencies to fix credentials after Microsoft breach appeared first on CyberScoop.

Continue reading CISA emergency directive tells agencies to fix credentials after Microsoft breach

Federal government affected by Russian breach of Microsoft

U.S. cybersecurity officials issued an emergency directive this week to address a breach by Russian operatives of Microsoft first disclosed in January.

The post Federal government affected by Russian breach of Microsoft appeared first on CyberScoop.

Continue reading Federal government affected by Russian breach of Microsoft

Russian Midnight Blizzard Hackers Breached Microsoft Source Code

By Deeba Ahmed
Midnight Blizzard (aka Cozy Bear and APT29) originally breached Microsoft on January 12, 2024.
This is a post from HackRead.com Read the original post: Russian Midnight Blizzard Hackers Breached Microsoft Source Code
Continue reading Russian Midnight Blizzard Hackers Breached Microsoft Source Code

Microsoft Says Russian Gov Hackers Stole Source Code After Spying on Executive Emails

Microsoft says the Midnight Blizzard APT group may still be poking around its internal network after stealing source code, spying on emails.
The post Microsoft Says Russian Gov Hackers Stole Source Code After Spying on Executive Emails appeared first … Continue reading Microsoft Says Russian Gov Hackers Stole Source Code After Spying on Executive Emails

Russian Cyberspies Targeting Cloud Infrastructure via Dormant Accounts

US government and allies expose TTPs used by notorious Russian hacking teams and warn of the targeting of dormant cloud accounts.
The post Russian Cyberspies Targeting Cloud Infrastructure via Dormant Accounts appeared first on SecurityWeek.
Continue reading Russian Cyberspies Targeting Cloud Infrastructure via Dormant Accounts

Tenable: Cyber Security Pros Should Worry About State-Sponsored Cyber Attacks

The outing of China-backed threat actor Volt Typhoon and Microsoft’s compromise by Russia-backed Midnight Blizzard provide important cyber security strategy lessons for Australia, says Tenable. Continue reading Tenable: Cyber Security Pros Should Worry About State-Sponsored Cyber Attacks

Microsoft Says State-Sponsored Attackers Accessed Senior Leaders’ Emails

The Midnight Blizzard gang appears to have been looking for information about itself. See how organizations can protect their accounts from password spray attacks. Continue reading Microsoft Says State-Sponsored Attackers Accessed Senior Leaders’ Emails