On the Site:

SCIENCE & TECHNOLOGY

Microsoft says early June disruptions to Outlook, cloud platform, were cyberattacks

Jun 17, 2023, 6:29 PM

FILE - In this July 3, 2014, file photo, the Microsoft Corp. logo is displayed outside the Microsof...

FILE - In this July 3, 2014, file photo, the Microsoft Corp. logo is displayed outside the Microsoft Visitor Center in Redmond, Wash. Microsoft is infusing generative AI tools into its Office software, including Word, Excel and Outlook emails. The company said Thursday, March 16, 2023 the new feature, named Copilot, is a processing engine that will allow users to do things like summarize long emails, draft stories in Word and animate slides in PowerPoint. (AP Photo/Ted S. Warren, File)
Credit: ASSOCIATED PRESS

(AP Photo/Ted S. Warren, File)

BOSTON (AP) — In early June, sporadic but serious service disruptions plagued Microsoft’s flagship office suite — including the Outlook email and OneDrive file-sharing apps — and cloud computing platform. A shadowy hacktivist group claimed responsibility, saying it flooded the sites with junk traffic in distributed denial-of-service attacks.

Initially reticent to name the cause, Microsoft has now disclosed that DDoS attacks by the murky upstart were indeed to blame.

But the software giant has offered few details — and did not immediately comment on how many customers were affected and whether the impact was global. A spokeswoman confirmed that the group that calls itself Anonymous Sudan was behind the attacks. It claimed responsibility on its Telegram social media channel at the time. Some security researchers believe the group to be Russian.

Microsoft’s explanation in a blog post Friday evening followed a request by The Associated Press two days earlier. Slim on details, the post said the attacks “temporarily impacted availability” of some services. It said the attackers were focused on “disruption and publicity” and likely used rented cloud infrastructure and virtual private networks to bombard Microsoft servers from so-called botnets of zombie computers around the globe.

Microsoft said there was no evidence any customer data was accessed or compromised.

While DDoS attacks are mainly a nuisance — making websites unreachable without penetrating them — security experts say they can disrupt the work of millions if they successfully interrupt the services of a software service giant like Microsoft on which so much global commerce depends.

It’s not clear if that’s what happened here.

“We really have no way to measure the impact if Microsoft doesn’t provide that info,” said Jake Williams, a prominent cybersecurity researcher and a former National Security Agency offensive hacker. Williams said he was not aware of Outlook previously being attacked at this scale.

“We know some resources were inaccessible for some, but not others. This often happens with DDoS of globally distributed systems,” Williams added. He said Microsoft’s apparent unwillingness to provide an objective measure of customer impact “probably speaks to the magnitude.”

Microsoft dubbed the attackers Storm-1359, using a designator it assigns to groups whose affiliation it has not yet established. Cybersecurity sleuthing tends to take time — and even then can be a challenge if the adversary is skilled.

Pro-Russian hacking groups including Killnet — which the cybersecurity firm Mandiant says is Kremlin-affiliated — have been bombarding government and other websites of Ukraine’s allies with DDoS attacks. In October, some U.S. airport sites were hit. Analyst Alexander Leslie of the cybersecurity firm Recorded Future said it’s unlikely Anonymous Sudan is located as it claims in Sudan, an African country. The group works closely with Killnet and other pro-Kremlin groups to spread pro-Russian propaganda and disinformation, he said.

Edward Amoroso, NYU professor and CEO of TAG Cyber, said the Microsoft incident highlights how DDoS attacks remain “a significant risk that we all just agree to avoid talking about. It’s not controversial to call this an unsolved problem.”

He said Microsoft’s difficulties fending of this particular attack suggest “a single point of failure.” The best defense against these attacks is to distribute a service massively, on a content distribution network for example.

Indeed, the techniques the attackers used are not old, said U.K. security researcher Kevin Beaumont. “One dates back to 2009,” he said.

Serious impacts from the Microsoft 365 office suite interruptions were reported on Monday June 5, peaking at 18,000 outage and problem reports on the tracker Downdetector shortly after 11 a.m. Eastern time.

On Twitter that day, Microsoft said Outlook, Microsoft Teams, SharePoint Online and OneDrive for Business were affected.

Attacks continued through the week, with Microsoft confirming on June 9 that its Azure cloud computing platform had been affected.

On June 8, the computer security news site BleepingComputer.com reported that cloud-based OneDrive file-hosting was down globally for a time.

Microsoft said at the time that desktop OneDrive clients were not affected, BleepingComputer reported.

KSL 5 TV Live

Science & Technology

IN SPACE - In this handout provided by the National Aeronautics and Space Administration, Earth as ...

Ashley Strickland, CNN

Astronomers discover nearby six-planet solar system with ‘pristine configuration’

Astronomers have used two different exoplanet-detecting satellites to solve a cosmic mystery and reveal a rare family of six planets located about 100 light-years from Earth. The discovery could help scientists unlock the secrets of planet formation.

3 minutes ago

A still image frame from the Apple NameDrop tutorial in the "Tips" app found on any iPhone. (Apple ...

Mary Culbertson

Online dispute rises over police warnings after iOS 17.1 software update

Police departments across the U.S. made posts on social media warning of the NameDrop feature that was activated by default with the iOS 17.1 update. Some posts weren't completely accurate.

1 day ago

An irrigation control wheel to allow or prevent water from running through ditches...

Dan Rascon and Larry D. Curtis

Great Salt Lake: Utah farmers adapting to survive drought, changing water laws

According to the USDA, more than 500 Utah farms went out of business between 2017 and 2022 while Utah goes through decades of drought. New Utah laws change a long-standing policy of 'use it or lose it.'

1 day ago

Meta has been collecting the personal information of children without their parents’ consent.
Man...

Eva Rothenberg, CNN

Meta collected children’s data from Instagram accounts, unsealed court document alleges

Since at least 2019, Meta has knowingly refused to shut down the majority of accounts belonging to children under the age of 13 while collecting their personal information without their parents’ consent.

3 days ago

More than a dozen dead cows have been spotted along a popular trail in Park City. (KSL TV)...

Shelby Lofton

Utah Department of Agriculture and Food investigating mysterious death of 13 cows

More than a dozen dead cows have been spotted along a popular trail in Park City.

7 days ago

In Utah, there’s a growing demand for workers in the field of life sciences, but finding good tal...

Tamara Vaifanua

Utah leaders announce plan to provide workers in the field of life sciences

In Utah, there’s a growing demand for workers in the field of life sciences, but finding good talent is a challenge. 

9 days ago

Sponsored Articles

Stylish room interior with beautiful Christmas tree and decorative fireplace...

Lighting Design

Create a Festive Home with Our Easy-to-Follow Holiday Prep Guide

Get ready for festive celebrations! Discover expert tips to prepare your home for the holidays, creating a warm and welcoming atmosphere for unforgettable moments.

Battery low message on mobile device screen. Internet and technology concept...

PC Laptops

9 Tips to Get More Power Out of Your Laptop Battery

Get more power out of your laptop battery and help it last longer by implementing some of these tips from our guide.

Users display warnings about the use of artificial intelligence (AI), access to malicious software ...

Les Olson

How to Stay Safe from Cybersecurity Threats

Read our tips for reading for how to respond to rising cybersecurity threats in 2023 and beyond to keep yourself and your company safe.

Design mockup half in white and half in color of luxury house interior with open plan living room a...

Lighting Design

Lighting Design 101: Learn the Basics

These lighting design basics will help you when designing your home, so you can meet both practical and aesthetic needs.

an antler with large horns int he wilderness...

Three Bear Lodge

Yellowstone in the Fall: A Wildlife Spectacle Worth Witnessing

While most people travel to this park in the summer, late fall in Yellowstone provides a wealth of highlights to make a memorable experience.

a diverse group of students raising their hands in a classroom...

Little Orchard Preschool

6 Benefits of Preschool for Kids

Some of the benefits of preschool for kids include developing independence, curiosity, and learning more about the world.

Microsoft says early June disruptions to Outlook, cloud platform, were cyberattacks