#nobelium — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #nobelium, aggregated by home.social.
-
Midnight Blizzard conducts large-scale spear-phishing campaign using RDP files | Microsoft Security Blog
Link
📌 Summary:
Microsoft安全團隊於2024年1月12日偵測到一起針對其企業系統的國家級攻擊,並迅速啟動了應對程序以調查、幹擾惡意活動、減輕襲擊,並阻止攻擊者進一步訪問。經過調查後,該威脅行為者被識別為「午夜暴風雪」(Midnight Blizzard),這是一個由俄羅斯國家支持的黑客組織,亦稱為NOBELIUM。
🎯 Key Points:
- 事件時間: 2024年1月12日,Microsoft偵測到國家級攻擊。
- 應對措施: 啟動調查和幹擾惡意行為,以防止未來攻擊。
- 威脅行為者: 識別為「午夜暴風雪」,即NOBELIUM,屬於俄羅斯國家支持的黑客集團。
- 目標: 攻擊針對Microsoft的企業系統,顯示出國家級攻擊的趨勢。
- 安全行動: Microsoft持續監控並強化其安全防護,以應對類似事件。
🔖 Keywords:
#Microsoft #網絡安全 #午夜暴風雪 #NOBELIUM #國家級攻擊 -
Google Catches Russian APT Reusing Exploits From Spyware Merchants NSO Group, Intellexa https://www.securityweek.com/google-catches-russian-apt-re-using-exploits-from-spyware-merchants-nso-group-intellexa/ #MidnightBlizzard #Malware&Threats #GoogleChrome #NationState #Nobelium #Russia #APT29
-
Google Catches Russian APT Reusing Exploits From Spyware Merchants NSO Group, Intellexa https://www.securityweek.com/google-catches-russian-apt-re-using-exploits-from-spyware-merchants-nso-group-intellexa/ #MidnightBlizzard #Malware&Threats #GoogleChrome #NationState #Nobelium #Russia #APT29
-
Russian hackers read the emails you sent us, Microsoft warns more customers https://www.bitdefender.com/blog/hotforsecurity/russian-hackers-read-your-emails-to-us-microsoft-warns-more-customers/ #Securitythreats #databreach #Guestblog #Microsoft #Dataloss #CozyBear #Nobelium
-
Russian hackers read the emails you sent us, Microsoft warns more customers https://www.bitdefender.com/blog/hotforsecurity/russian-hackers-read-your-emails-to-us-microsoft-warns-more-customers/ #Securitythreats #databreach #Guestblog #Microsoft #Dataloss #CozyBear #Nobelium
-
CISA issues emergency order on Microsoft breach by Russian hackers
Affected bodies must take immediate action, agency says
#cisa #midnightblizzard #russia #nobelium #microsoft #infosec
-
CISA issues emergency order on Microsoft breach by Russian hackers
Affected bodies must take immediate action, agency says
#cisa #midnightblizzard #russia #nobelium #microsoft #infosec
-
US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microsoft https://www.securityweek.com/us-government-on-high-alert-as-russian-hackers-steal-critical-correspondence-from-microsoft/ #IncidentResponse #MidnightBlizzard #DataBreaches #NationState #Microsoft #Featured #Nobelium #Russia #CISA
-
US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microsoft https://www.securityweek.com/us-government-on-high-alert-as-russian-hackers-steal-critical-correspondence-from-microsoft/ #IncidentResponse #MidnightBlizzard #DataBreaches #NationState #Microsoft #Featured #Nobelium #Russia #CISA
-
US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microsoft https://www.securityweek.com/us-government-on-high-alert-as-russian-hackers-steal-critical-correspondence-from-microsoft/ #IncidentResponse #MidnightBlizzard #DataBreaches #NationState #Microsoft #Featured #Nobelium #Russia #CISA
-
US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microsoft https://www.securityweek.com/us-government-on-high-alert-as-russian-hackers-steal-critical-correspondence-from-microsoft/ #IncidentResponse #MidnightBlizzard #DataBreaches #NationState #Microsoft #Featured #Nobelium #Russia #CISA
-
Russian APT29 Hackers Caught Targeting German Political Parties https://www.securityweek.com/russian-apt29-hackers-caught-targeting-german-political-parties/ #Cyberwarfare #Nation-State #CozyBear #Mandiant #Nobelium #APT29
-
Russian APT29 Hackers Caught Targeting German Political Parties https://www.securityweek.com/russian-apt29-hackers-caught-targeting-german-political-parties/ #Cyberwarfare #Nation-State #CozyBear #Mandiant #Nobelium #APT29
-
Mail-Hack mit Folgen: Russische Hacker klauen Quellcode von Microsoft #Hacker #Russland #Mail #Code #Quellcode #PasswordSpray #Nobelium #MidnightBlizzard https://winfuture.de/news,141628.html?utm_source=Mastodon&utm_medium=ManualStatus&utm_campaign=SocialMedia
-
Mail-Hack mit Folgen: Russische Hacker klauen Quellcode von Microsoft #Hacker #Russland #Mail #Code #Quellcode #PasswordSpray #Nobelium #MidnightBlizzard https://winfuture.de/news,141628.html?utm_source=Mastodon&utm_medium=ManualStatus&utm_campaign=SocialMedia
-
#Russia's #spies keep hacking into #Microsoft in 'ongoing attack,' company says, accessed #sourcecode
In January, Microsoft disclosed that #MidnightBlizzard (aka #NOBELIUM, #APT29 or #CozyBear) had breached corporate email servers after conducting a password spray attack. Microsoft says that Midnight Blizzard is using secrets found in the stolen data to gain access to some of the company's systems and source code repositories in recent weeks.
https://techcrunch.com/2024/03/08/microsoft-ongoing-cyberattack-russia-apt-29/ -
#Russia's #spies keep hacking into #Microsoft in 'ongoing attack,' company says, accessed #sourcecode
In January, Microsoft disclosed that #MidnightBlizzard (aka #NOBELIUM, #APT29 or #CozyBear) had breached corporate email servers after conducting a password spray attack. Microsoft says that Midnight Blizzard is using secrets found in the stolen data to gain access to some of the company's systems and source code repositories in recent weeks.
https://techcrunch.com/2024/03/08/microsoft-ongoing-cyberattack-russia-apt-29/ -
Did you notice that all the ML/AI defenses of Azure/M365 did not catch the #Nobelium intrusion?
-
Did you notice that all the ML/AI defenses of Azure/M365 did not catch the #Nobelium intrusion?
-
ICYMI: The #Microsoft #Nobelium breach is a flashpoint for everyone to reconsider their calculus on legacy systems on the internet.
How are you changing the calculus you use to balance business disruption with security risk management?
#Glassof0J #infosec #cybersecurity #dfir #threatintelligence
-
ICYMI: The #Microsoft #Nobelium breach is a flashpoint for everyone to reconsider their calculus on legacy systems on the internet.
How are you changing the calculus you use to balance business disruption with security risk management?
#Glassof0J #infosec #cybersecurity #dfir #threatintelligence
-
In case you missed it, #Microsoft announced on Friday that they got pwnd by Midnight Blizzard (NOBELIUM), whom "used a password spray attack to compromise a legacy non-production test tenant account and gain a foothold, and then used the account’s permissions to access a very small percentage of Microsoft corporate email accounts, including members of our senior leadership team and employees in our cybersecurity, legal, and other functions, and exfiltrated some emails and attached documents."
Notably Microsoft says that there were no vulnerabilities leveraged as part of this attack: "The attack was not the result of a vulnerability in Microsoft products or services."
This is a good reminder for us to clean up all of our test artifacts - AD accounts and objects, mailboxes, etc. This isn't talked about too much as part of routine cybersecurity hygiene, but it should be.
-
In case you missed it, #Microsoft announced on Friday that they got pwnd by Midnight Blizzard (NOBELIUM), whom "used a password spray attack to compromise a legacy non-production test tenant account and gain a foothold, and then used the account’s permissions to access a very small percentage of Microsoft corporate email accounts, including members of our senior leadership team and employees in our cybersecurity, legal, and other functions, and exfiltrated some emails and attached documents."
Notably Microsoft says that there were no vulnerabilities leveraged as part of this attack: "The attack was not the result of a vulnerability in Microsoft products or services."
This is a good reminder for us to clean up all of our test artifacts - AD accounts and objects, mailboxes, etc. This isn't talked about too much as part of routine cybersecurity hygiene, but it should be.
-
Microsoft sufre un robo de correos corporativos por parte de ciberdelincuentes rusos https://blog.elhacker.net/2024/01/microsoft-sufre-un-robo-de-correos-corporativo-nobelium-rusia.html #microsoft #nobelium #rusia #msrc #apt
-
Microsoft sufre un robo de correos corporativos por parte de ciberdelincuentes rusos https://blog.elhacker.net/2024/01/microsoft-sufre-un-robo-de-correos-corporativo-nobelium-rusia.html #microsoft #nobelium #rusia #msrc #apt
-
Microsoft Faces Cybersecurity Breach as Russian-Sponsored Hacker Group Targets Executives' Email Accounts: https://www.reviewspace.info/microsoft-faces-cybersecurity-breach-as-russian-sponsored-hacker-group-targets-executives-email-accounts
#Microsoft #Cybersecurity #HackerGroup #Nobelium #MidnightBlizzard #EmailSecurity #DataBreach #TechnologyNews #SecurityNews #ReviewSpace
-
https://devcodef1.com/news/1109770/microsoft-confirms-nobelium-breach?utm_source=mastodon #Microsoft #Hacking #Cybersecurity #Nobelium
Microsoft confirmed a breach of its systems by Nobelium (also known as Midnight Blizzard) on some corporate networks, including those belonging to senior leadership and legal teams, starting in late November 2023. The attackers gained access using compromised credentials and were able to access a small percentage of corporate email accounts, some documents, and -
The #microsoft #security team detected a nation-state attack on our corporate systems on January 12, 2024, and immediately activated our response process to investigate, disrupt malicious activity, mitigate the attack, and deny the threat actor further access. Microsoft has identified the threat actor as Midnight Blizzard, the #russian state-sponsored actor also known as #nobelium. https://msrc.microsoft.com/blog/2024/01/microsoft-actions-following-attack-by-nation-state-actor-midnight-blizzard/
-
The #microsoft #security team detected a nation-state attack on our corporate systems on January 12, 2024, and immediately activated our response process to investigate, disrupt malicious activity, mitigate the attack, and deny the threat actor further access. Microsoft has identified the threat actor as Midnight Blizzard, the #russian state-sponsored actor also known as #nobelium. https://msrc.microsoft.com/blog/2024/01/microsoft-actions-following-attack-by-nation-state-actor-midnight-blizzard/
-
Kriminelle Hacker haben es auf #Teams abgesehen – #Microsoft warnt | Security https://www.heise.de/news/Midnight-Blizzard-Microsoft-warnt-vor-Hackern-die-Anmeldedaten-erbeuten-wollen-9233919.html #Hacking #CyberCrime #SocialEngineering #MicrosoftTeams #Russland #Russia #APT29 #MidnightBlizzard #Nobelium
-
"Microsoft Warns of Widescale Credential Stealing Attacks by Russian Hackers" 🕵️🔓🧐
https://thehackernews.com/2023/06/microsoft-warns-of-widescale-credential.html
#microsoft #cybersec #cybersecurity #itsecurity #midnightblizzard #russia #nobelium #solarwinds #breach
-
"Microsoft Warns of Widescale Credential Stealing Attacks by Russian Hackers" 🕵️🔓🧐
https://thehackernews.com/2023/06/microsoft-warns-of-widescale-credential.html
#microsoft #cybersec #cybersecurity #itsecurity #midnightblizzard #russia #nobelium #solarwinds #breach
-
#NOBELIUM Uses Poland's Ambassador’s Visit to the U.S. to Target EU Governments Assisting #Ukraine
https://blogs.blackberry.com/en/2023/03/nobelium-targets-eu-governments-assisting-ukraine
-
#NOBELIUM Uses Poland's Ambassador’s Visit to the U.S. to Target EU Governments Assisting #Ukraine
https://blogs.blackberry.com/en/2023/03/nobelium-targets-eu-governments-assisting-ukraine
-
Beware #NOBELIUM (aka #APT29) – a sophisticated, Russian state-sponsored threat actor targeting EU governments helping Ukraine.
https://blogs.blackberry.com/en/2023/03/nobelium-targets-eu-governments-assisting-ukraine?utm_content=cyber&utm_medium=social -
Mandiant has gathered sufficient evidence to assess that the activity tracked as UNC2452, the group name used to track the #SolarWinds compromise in December 2020, is attributable to #Nobelium (APT29). #usa #russia #internet #apt #cyber #espionage #threats #backdoor #informatique
https://www.mandiant.com/resources/unc2452-merged-into-apt29
-
The elite 🇷🇺 Russian state hackers behind last year's massive #SolarWinds #cyber #espionage campaign hardly eased up this year, managing plenty of infiltrations of 🇺🇸 U.S. and allied government agencies and foreign policy think tanks with consummate craft and stealth. #Microsoft has also been involved in the Solarwinds attack which has seen more than 18,000 companies and government institutions being infected with a #backdoor which would allow hackers free access to their networks. #Nobelium (APT29), continue to infiltrate the government agencies, foreign policy think tanks, organizations,.. #usa #russia #internet #apt #threats #informatique
-
SolarWinds hackers have a whole bag of new tricks for mass compromise attacks - Enlarge (credit: Getty Images)
Almost exactly a year ago, secu... - https://arstechnica.com/?p=1818191 #solarwinds #nobelium #unc2652 #unc3004 #biz&it
-
Smashing Security podcast #234: Cozy Bear, dildo scams, and robo hires and fires https://grahamcluley.com/smashing-security-podcast-234/ #SmashingSecurity #Microsoft #Dataloss #CozyBear #Nobelium #Malware #Podcast #Privacy #Amazon #Scam