Microsoft Confirms New Cyberattack by Group Linked to SolarWinds Hack

The Epoch Times

Microsoft said on Friday that the hackers behind the notorious SolarWinds cyberattack have launched a fresh campaign mostly focusing on U.S. interests that, while mostly unsuccessful, managed to compromise three entities.

The Russia-based hacking group, which goes by various names including Nobelium, launched the new campaign using “password spray and brute-force attacks,” the Microsoft Security Response Center said in an alert, noting that 36 countries in total had been targeted.

The bulk of the attacks—45 percent—targeted entities within the United States, followed by 10 percent in the UK, and smaller numbers in Germany and Canada. The activity targeted specific customers, Microsoft said, mostly IT companies (57 percent), government agencies (20 percent), followed by smaller percentages for non-governmental organizations, think tanks, and financial services.

“This recent activity was mostly unsuccessful, and the majority of targets were not successfully compromised—we are aware of three compromised entities to date,” Microsoft said. The company did not specify the entities that were breached or targeted, but said it was contacting all those affected by the cyberattack.

As part of its probe into the new campaign, Microsoft detected information-stealing malware on a computer belonging to one of its customer support agents who had access to account information for a “small number” of customers.

The threat actor, which Microsoft identified as Nobelium, “used this information in some cases to launch highly-targeted attacks as part of their broader campaign.” Microsoft said it “responded quickly, removed the access, and secured the device.”

A Microsoft spokesman told Reuters that the latest breach by the threat actor was not part of Nobelium’s previous successful attack on Microsoft, in which the group obtained some source code.

In the SolarWinds attack, which has been attributed to Nobelium, the group altered code to access SolarWinds customers, including nine U.S. federal agencies.

Microsoft later said that the group had compromised its own employee accounts and taken software instructions governing how Microsoft verifies user identities.

U.S. authorities have linked Nobelium to Russia’s Foreign Intelligence Service, allegations Moscow denies.

A spokesperson for the Department of Homeland Security, which oversees the U.S. Cybersecurity and Infrastructure Security Agency, told The Wall Street Journal that the agency is “aware of this activity and is working with Microsoft and our interagency partners to evaluate the impact.” He declined to say whether any government agencies had been affected by the new attack.

BY TOM OZIMEK

Read Full Article on TheEpochTimes.com

The Thinking Conservative
The Thinking Conservativehttps://www.thethinkingconservative.com/
The goal of THE THINKING CONSERVATIVE is to help us educate ourselves on conservative topics of importance to our freedom and our pursuit of happiness. We do this by sharing conservative opinions on all kinds of subjects, from all types of people, and all kinds of media, in a way that will challenge our perceptions and help us to make educated choices.

Columns

Illinois Thinks Gov. J.B. Pritzker Sucks!

Illinois Thinks Gov. J.B. Pritzker Sucks! And there are plenty of yard signs sprinkled around the State of Illinois saying so.

Secession’s Hotel California

England’s King George III found out the hard way that the very genesis of the American ethos is running our own affairs liberated from bureaucratic control. 

Vaccine Induced AIDS is a Thing Now

Podcaster Liz Wheeler discusses a Yale Medical School report about mRNA COVID-19 vaccines causing what may now be determined to be "vaccine" induced AIDS.

Feral Pharma-Phile Libs Riot Over RFK Jr. Investigating SSRI Safety

The progressive meltdown ensued after Secretary RFK Jr. confirmed he is going to re-evaluate the scam that is SSRIs, which I have covered at AP previously.

Congressional Millionaires May Get DOGED!

Rumor says 163 members of Congress may undergo a forensic audit by DOGE to determine how their net worth so rapidly outpaced their $174,000 annual salaries.

News

Probe of Maine Education Department Initiated Over Men Competing in Women’s Sports

U.S. Dept of Education launched an investigation into the Maine Dept of Education over its approval of male participation in women’s sporting events.

Newsom Asks Congress for Nearly $40 Billion for Los Angeles Wildfire Aid

California Gov. Gavin Newsom asked Congress to approve nearly $40 billion in relief aid for the Los Angeles area after last month’s destructive wildfires.

Supreme Court Allows Whistleblower Suit Against Wisconsin Bell

Supreme Court ruled a whistleblower’s fraud lawsuit against a WI telecommunications co. for allegedly overcharging schools for internet services may move forward.

Future Bright for Solar Power, but Slack Times Ahead for Offshore Wind

Wind and solar industries are experiencing divergent trends in wake of Trump’s EOs to unleash fossil fuel development and roll back incentives for renewable energy.
00:01:22

Trump January 6 Indictment Articles

Read January 6 related articles about indictments against Former President Donald Trump.

Buffett Offers Advice to Trump on Government Spending After Paying $26.8 Billion in Tax

In letter to shareholders, Warren Buffett reflected on Berkshire Hathaway’s successes while offering Trump admin some advice on stewardship of the U.S. economy.

Cartel-Linked Smugglers Arrested in US–Mexico Operation

An enforcement operation conducted as part of a bilateral cooperation between the US and Mexico led to disruptions and arrests in human smuggling operations.
spot_img

Related Articles

Popular Categories

MAGA Business Central