"We were pwned by the Russians (again) and they were reading all of Satya's emails, but it's okay, they were just looking for shout-outs to post in their interoffice Telegram channel for the lulz." I understand that the company has to minimize every breach but this frankly looks a lot more serious than Microsoft suggests here.
Microsoft actions following attack by nation state actor Midnight Blizzard
61–70 of 204 posts
Re: Microsoft actions following attack by nation state actor Midnight Blizzard
#62How did they pivot from a test tenant to corporate email access? That's the most concerning fact that they just glossed over.
Non-production tenant PIVOT Satya’s email inbox. Like that.
Re: Microsoft actions following attack by nation state actor Midnight Blizzard
#63How did they pivot from a test tenant to corporate email access? That's the most concerning fact that they just glossed over.
Re: Microsoft actions following attack by nation state actor Midnight Blizzard
#64Earlier quoted context omitted.
I’m not aware of another company that uses a naming framework.
Crowdstrike. FireEye.
They even draw up supervillain graphics for them.
Re: Microsoft actions following attack by nation state actor Midnight Blizzard
#65I have so many questions from this sentence alone. What did they password spray? Microsoft's internal identity provider? Was the non-prod system internet facing? Why isn't MFA enforced?
Re: Microsoft actions following attack by nation state actor Midnight Blizzard
#66Earlier quoted context omitted.
trading MSFT doesn't cease when the NASDAQ closing bell rings
Still, it seems to be the custom.
Re: Microsoft actions following attack by nation state actor Midnight Blizzard
#67How did they pivot from a test tenant to corporate email access? That's the most concerning fact that they just glossed over.
You know, they pivoted. Non-production tenant PIVOT Satya’s email inbox. Like that.
2. Access non-prod environment
3. ???
4. "Look at me, look at me, I am the CEO now."
Re: Microsoft actions following attack by nation state actor Midnight Blizzard
#68How did they pivot from a test tenant to corporate email access? That's the most concerning fact that they just glossed over.
Just guessing but perhaps with a phishing attack on a Microsoft domain.
Re: Microsoft actions following attack by nation state actor Midnight Blizzard
#69Earlier quoted context omitted.
Seems weird to word it as “a very small percentage” instead of “a very small number” unless the number was a little bigger than they want to admit.
yes, at least 1% of their users which is a very large number > To date, there is no evidence that the threat actor had any access to customer environments, *production systems*, source code, or AI systems. senior executive's email accounts aren't production? having every western company use the garbage that are Microsoft's hosted products (notably Teams and Outlook) is a national security issue that's a massive disas…
Re: Microsoft actions following attack by nation state actor Midnight Blizzard
#70I wonder which mail client the execs were using. If Outlook, their messages would be already harvested by 700+ companies[0] and another leak wouldn't be an issue. [0] https://news.ycombinator.com/item?id=38441710 [0] https://news.ycombinator.com/item?id=38953618