General Discussion
Related: Editorials & Other Articles, Issue Forums, Alliance Forums, Region ForumsSolarWinds hackers are at it again, Microsoft says
SolarWinds hackers are at it again, Microsoft says
By Phil Helsel and Ezra Kaplan
The Russian-based group behind the SolarWinds hack has launched a new campaign that appears to target government agencies, think tanks and non-governmental organizations, Microsoft said Thursday. Nobelium launched the current attacks after getting access to an email marketing service (Constant Contact) used by the United States Agency for International Development, or USAID, according to Microsoft. "These attacks appear to be a continuation of multiple efforts by Nobelium to target government agencies involved in foreign policy as part of intelligence gathering efforts," Tom Burt, Microsoft vice president of customer security and trust, wrote in a blog post.
The campaign, which Microsoft called an active incident, targeted 3,000 email accounts across 150 organizations, mostly in the United States, Burt said. But the targets are in at least 24 countries. At least a quarter of the targeted organizations are said to be involved in things like international development and human rights work. The effort involved sending phishing emails that were made to look legitimate but designed to deliver malicious files.
Cybersecurity firm Volexity, which also tracked the campaign but has less visibility into email systems than Microsoft, wrote in a post that relatively low detection rates of the phishing emails suggest the attacker was likely having some success in breaching targets, the Associated Press reported.
More at: https://www.nbcnews.com/tech/security/solarwinds-hackers-are-it-again-targeting-150-organizations-microsoft-warns-n1268893
Bayard
(22,075 posts)uponit7771
(90,346 posts)... policies on their digital equipment including whitelisting IP addresses and 3 lockout attempts with codes to cell phones.
We might as well forget it in this country, don't even go to war ... their behind DoD dmz also