HPE's Cloud-Based Email System Breached by Russian Hackers
Data exfiltrated from key departments; company investigating scope and impact of the breach
- Hewlett Packard Enterprise (HPE) has disclosed that its cloud-based email system was breached by the Russian hacking group known as Midnight Blizzard or Cozy Bear.
- The intrusion, which began in May 2023, resulted in the exfiltration of data from a small percentage of HPE mailboxes, primarily those belonging to individuals in cybersecurity, go-to-market, business segments, and other functions.
- HPE was informed of the breach on January 12, 2024, and immediately activated its response process to investigate, contain, and remediate the incident.
- The company believes the intrusion is likely related to an earlier activity by the same threat actor in June 2023, which involved unauthorized access to and exfiltration of a limited number of SharePoint files.
- HPE is still investigating the scope of the breach and its potential impact on the company's operations and financial health.