Saudi Press

Saudi Arabia and the world
Thursday, Mar 28, 2024

Microsoft: SolarWinds hackers target 150 orgs with phishing

Microsoft: SolarWinds hackers target 150 orgs with phishing

The effort targeted about 3,000 email accounts at more than 150 different organizations

The state-backed Russian cyber spies behind the SolarWinds hacking campaign launched a targeted spear-phishing assault on U.S. and foreign government agencies and think tanks this week using an email marketing account of the U.S. Agency for International Development, Microsoft said.

The effort targeted about 3,000 email accounts at more than 150 different organizations, at least a quarter of them involved in international development, humanitarian and human rights work, Microsoft Vice President Tom Burt said in a blog post late Thursday.

It did not say what portion of the attempts may have led to successful intrusions.

The cybersecurity firm Volexity, which also tracked the campaign but has less visibility into email systems than Microsoft , said in a post that relatively low detection rates of the phishing emails suggest the attacker was "likely having some success in breaching targets."

Burt said the campaign appeared to be a continuation of multiple efforts by the Russian hackers to "target government agencies involved in foreign policy as part of intelligence gathering efforts." He said the targets spanned at least 24 countries.

The hackers gained access to USAID's account at Constant Contact, an email marketing service, Microsoft said. The authentic-looking phishing emails dated May 25 purport to contain new information on 2020 election fraud claims and include a link to malware that allows the hackers to "achieve persistent access to compromised machines."

Microsoft said in a separate blog post that the campaign is ongoing and evolved out of several waves of spear-phishing campaigns it first detected in January that escalated to the mass-mailings of this week.


While the SolarWinds campaign, which infiltrated dozens of private sector companies and think tanks as well as at least nine U.S. government agencies, was supremely stealthy and went on for most of 2020 before being detected in December by the cybersecurity firm FireEye, this campaign is what cybersecurity researchers call noisy. Easy to detect.

Microsoft noted the two mass distribution methods used: the SolarWinds hack exploited the supply chain of a trusted technology provider's software updates; this campaign piggybacked on a mass email provider.

With both methods, the company said, the hackers undermine trust in the technology ecosystem.

Newsletter

Related Articles

Saudi Press
0:00
0:00
Close
Reports in Gaza: 5 dead from the impact of aid packages dropped by the USA
Apple warns against drying iPhones with rice
China Criticizes US for Vetoing UN Ceasefire Resolution in Gaza
In a recent High Court hearing, the U.S. argued that Julian Assange endangered lives by releasing classified information.
The U.S. vetoed a U.N. Security Council resolution calling for a temporary ceasefire in Gaza, instead proposing its own six-week ceasefire plan contingent upon the release of all hostages held by Hamas
Prince William Urges End to Gaza Conflict
Saudi Arabia ranks first in UN index for e-government services in MENA
Israel has gone ‘beyond self-defence’ in Gaza, says Labour’s Streeting
EU Calls for Immediate Ceasefire in Gaza Conflict
Israel Records 20% Drop In GDP, War In Gaza Is The Reason
Saudi Arabia's FDI Inflows Grow with New International Standards
Venture Capitals Power Up Across MENA Region
Saudi Arabia Introduces Terms for 30-Year Income Tax Exemption for Multinational Companies
Saudi FM: Establishing Palestinian state is only pathway for Mideast stability
Russian opposition leader Alexey Navalny has died at the Arctic prison colony
Elon Musk's Starlink Gets License For Israel, Parts Of Gaza
Influencers Exploit X Platform for Profit Amidst Israel-Gaza Conflict
PM Modi Announces Opening Of New CBSE Office In Dubai
International Criminal Court's Chief "Deeply Concerned" By Rafah Bombing
January Funding for MENA Startups Totals $86.5 Million
Saudi Arabia accelerates digital economy growth through Nvidia partnership
Indian female military officers commend Saudi Arabia's progress and women's empowerment
Israel unveils tunnels underneath Gaza City headquarters of UN agency for Palestinian refugees
Israel deploys new military AI in Gaza war
Egypt threatens to suspend key peace treaty if Israel pushes into Gaza border town, officials say
Israel Utilizes AI Military Technology in Gaza Conflict
Saudi Arabia Warns Of A "Humanitarian Catastrophe" If Israel Moves On Rafah
China Warns Iran to Halt Houthi Attacks or Damage Trade Ties
US University To Shut Qatar Campus Due To "Heightened Mideast Instability"
Iran-backed hackers interrupt UAE TV streaming services with deepfake news
Facebook and Instagram Ban Iran's Supreme Leader
Finnish Airline, Finnair, is voluntarily weighing passengers to better estimate flight cargo weight
U.S. Secretary of State Blinken: The Israelis underwent dehumanization on 7.10, this does not give them the right to do this to others.
Defense Technology Showcase Held in Riyadh
Saudi Arabia’s non-oil exports rise 2.5% to $6bn in November 2023: GASTAT
UK Bans Misleading "Zero Emissions" Claims for Electric Cars
Gaza's Teen Inventor Sparks Light in Displacement
Netanyahu Rejects Ceasefire Proposal, Insists On Total Victory Over Hamas
Guterres appoints independent UNRWA review panel
Private Sector Employment Hits Record High with Over 11 Million Employees in January
Rolls-Royce Executive Encourages Saudi Women to Tap into Their Inner 'Superhero' for Success in Defense Industry
Saudi Arabia launches National Academy of Vehicles and Cars
Saudi Tourism Minister Reveals Plan for 250,000 New Hotel Rooms by 2030
SAR to more than double eastern network passenger capacity with new trains deal
Saudi Arabia Enhances National Defense with New Partnerships
Saudi Aramco Maintains Arab Light Crude Pricing to Asia for March
NEOM Establishes New York Office to Support Investors
Saudi Wealth Fund Draws in Over $25 Billion Worth of Investments in Three Years, Al-Rumayyan Reveals
ZATCA Cautions Against Scammer Schemes
INTRA Defense Technologies inaugurates drone factory in Riyadh
×