Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

PSPS

(13,599 posts)
Fri May 28, 2021, 10:21 AM May 2021

SolarWinds hackers are at it again, Microsoft says

SolarWinds hackers are at it again, Microsoft says
By Phil Helsel and Ezra Kaplan

The Russian-based group behind the SolarWinds hack has launched a new campaign that appears to target government agencies, think tanks and non-governmental organizations, Microsoft said Thursday. Nobelium launched the current attacks after getting access to an email marketing service (Constant Contact) used by the United States Agency for International Development, or USAID, according to Microsoft. "These attacks appear to be a continuation of multiple efforts by Nobelium to target government agencies involved in foreign policy as part of intelligence gathering efforts," Tom Burt, Microsoft vice president of customer security and trust, wrote in a blog post.

The campaign, which Microsoft called an active incident, targeted 3,000 email accounts across 150 organizations, mostly in the United States, Burt said. But the targets are in at least 24 countries. At least a quarter of the targeted organizations are said to be involved in things like international development and human rights work. The effort involved sending phishing emails that were made to look legitimate but designed to deliver malicious files.

Cybersecurity firm Volexity, which also tracked the campaign but has less visibility into email systems than Microsoft, wrote in a post that relatively low detection rates of the phishing emails suggest the attacker was “likely having some success in breaching targets,” the Associated Press reported.

More at: https://www.nbcnews.com/tech/security/solarwinds-hackers-are-it-again-targeting-150-organizations-microsoft-warns-n1268893

3 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
SolarWinds hackers are at it again, Microsoft says (Original Post) PSPS May 2021 OP
Time to rein in your attack dogs, Putin Bayard May 2021 #1
Those aren't "hacks" they are phishing attacks. Companies need to have higher lockdown ... uponit7771 May 2021 #2
Kick dalton99a May 2021 #3

uponit7771

(90,346 posts)
2. Those aren't "hacks" they are phishing attacks. Companies need to have higher lockdown ...
Fri May 28, 2021, 12:17 PM
May 2021

... policies on their digital equipment including whitelisting IP addresses and 3 lockout attempts with codes to cell phones.

We might as well forget it in this country, don't even go to war ... their behind DoD dmz also

Latest Discussions»General Discussion»SolarWinds hackers are at...