NATIONAL NEWS

Microsoft says state-sponsored Russian hacking group accessed email accounts of senior leaders

Jan 19, 2024, 5:20 PM

Microsoft says it is in the process of notifying employees whose email was accessed by a Russian ha...

Microsoft says it is in the process of notifying employees whose email was accessed by a Russian hacking group. Mandatory Credit: Gary Hershorn/Getty Images

“The Microsoft security team detected a nation-state attack on our corporate systems on January 12, 2024, and immediately activated our response process to investigate, disrupt malicious activity, mitigate the attack, and deny the threat actor further access,” the Microsoft Security Response Center said in a blog post. “Microsoft has identified the threat actor as Midnight Blizzard, the Russian state-sponsored actor also known as Nobelium.”

Nobelium, notably, is the same group responsible for the infamous SolarWinds breach back in 2020.

Hackers were able to gain access to “a very small percentage of Microsoft corporate email accounts,” the blog post added, including accounts belonging to members of its senior leadership team and employees in its cybersecurity and legal departments.

The company said that hackers were able to exfiltrate some emails and attached documents, though the preliminary investigation indicates that the attackers seemed to be seeking information related to Midnight Blizzard itself. That mirrors what the same group did when it used tampered software made by SolarWinds to infiltrate US agencies in 2020 — and then sought to track how the US government was responding to its intrusions.

Microsoft said it is in the process of notifying employees whose email was accessed. There is currently no evidence that the hackers had any access to customer environments or AI systems, Microsoft said.

The attack began in late November 2023, the company said, and hackers gained an initial foothold using a so-called “password spray attack.” Password spraying refers to the attempt to access a large number of accounts using commonly known passwords.

The company said the investigation is ongoing and it will continue working with law enforcement and appropriate regulators, pledging to share more information publicly as it becomes available.

The attack highlights “the continued risk posed to all organizations from well-resourced nation-state threat actors like Midnight Blizzard,” the company said.

Microsoft systems have been the target of multiple recent high-profile hacking efforts.

The Federal Bureau of Investigation and the Cybersecurity and Infrastructure Security Agency did not immediately respond to CNN’s request for comment on the hack Friday. Microsoft declined a request for additional comment.

This story has been updated with additional developments.


The-CNN-Wire™ & © 2024 Cable News Network, Inc., a Warner Bros. Discovery Company. All rights reserved.

KSL 5 TV Live

National News

Researchers were able to locate a specific gene variant correlated with some people's weight gain, ...

Madeline Holcombe, CNN

Researchers have found a ‘clear genetic trigger for obesity’ that applies to some people

Obesity isn’t just a matter of food and exercise — it may be in your genetic code, according to new research.

2 hours ago

TikTok ramps up attacks on Biden administration in challenging prospective ban, and seen here, a vi...

Brian Fung, CNN

TikTok ramps up attacks on Biden administration in challenging prospective ban

TikTok ramped up its attacks on the Biden administration Thursday over a law that could ban the popular app from the United States, arguing in a court filing that US TikTok users could be forced to live on an “island” of content disconnected from the rest of the world if the platform is forced to find a new owner.

4 hours ago

Trucks have been delivering a nonstop stream of packages from Temu to a home in the western suburbs...

Tara Molina, WBBM

An Illinois family keeps getting packages they never ordered from Temu

Trucks have been delivering a nonstop stream of packages from Temu to a home in the Illinois suburbs lately, but the family is not ordering anything.

5 hours ago

Robert F. Kennedy Jr. apologized to members of his family who objected to a new TV ad released Sund...

Meg Kinnard, Associated Press

Robert F. Kennedy Jr. fails to qualify for CNN’s debate

Robert F. Kennedy Jr. has failed to qualify for next week’s debate in Atlanta. Host network CNN said Thursday the independent presidential candidate fell short of benchmarks both for state ballot qualification and polling

8 hours ago

Dave Drewry's pet donkey, Diesel disappeared in California five years ago and he’s been spotted l...

Scottie Andrew, CNN

A pet donkey disappeared in California five years ago was spotted living with a herd of wild elk

For years, Diesel's owners assumed the worst happened to their donkey after he ran away. But, a hunter found a particular sight when he was hunting deer earlier this year.

9 hours ago

In this still image taken from video of the Office of the New York Governor, Gov. Kathy Hochul sign...

Anthony Izaguirre

New York moves to limit ‘addictive’ social media feeds for kids

New York's governor has signed a bill that would allow parents to block their children from getting social media posts suggested by a platform’s algorithm.

10 hours ago

Sponsored Articles

Photo courtesy of Artists of Ballet West...

Ballet West

The rising demand for ballet tickets: why they’re harder to get

Ballet West’s box office is experiencing demand they’ve never seen before, leaving many interested patrons unable to secure tickets they want.

Electrician repairing ceiling fan with lamps indoors...

Lighting Design

Stay cool this summer with ceiling fans

When used correctly, ceiling fans help circulate cool and warm air. They can also help you save on utilities.

Side view at diverse group of children sitting in row at school classroom and using laptops...

PC Laptops

5 internet safety tips for kids

Read these tips about internet safety for kids so that your children can use this tool for learning and discovery in positive ways.

Women hold card for scanning key card to access Photocopier Security system concept...

Les Olson

Why printer security should be top of mind for your business

Connected printers have vulnerable endpoints that are an easy target for cyber thieves. Protect your business with these tips.

Modern chandelier hanging from a white slanted ceiling with windows in the backgruond...

Lighting Design

Light up your home with these top lighting trends for 2024

Check out the latest lighting design trends for 2024 and tips on how you can incorporate them into your home.

Technician woman fixing hardware of desktop computer. Close up....

PC Laptops

Tips for hassle-free computer repairs

Experiencing a glitch in your computer can be frustrating, but with these tips you can have your computer repaired without the stress.

Microsoft says state-sponsored Russian hacking group accessed email accounts of senior leaders