Particle.news

Download on the App Store

Russian Hackers Steal U.S. Government Emails Through Microsoft Breach

CISA issues emergency directive as Russian-backed group Midnight Blizzard exploits Microsoft systems to access federal emails.

(FILES) In this file photo taken on August 04, 2020, Prince, a member of the hacking group Red Hacker Alliance who refused to give his real name, uses a website that monitors global cyberattacks on his computer at their office in Dongguan, China's southern Guangdong province. - As the number of online devices surges and super-fast 5G connections roll out, record numbers of companies are offering up to seven-figure rewards to ethical hackers who can successfully attack their cybersecurity systems. (Photo by NICOLAS ASFOURI / AFP) (Photo by NICOLAS ASFOURI/AFP via Getty Images)
Russian flag displayed on a laptop screen and binary code code displayed on a screen are seen in this multiple exposure illustration photo taken in Krakow, Poland on February 16, 2022. (Photo illustration by Jakub Porzycki/NurPhoto via Getty Images)
Image
Image

Overview

  • Russian government-backed hackers, identified as Midnight Blizzard, have successfully infiltrated Microsoft's email systems, compromising U.S. federal agency communications.
  • CISA has issued an emergency directive requiring affected agencies to reset credentials and secure their systems by May 1.
  • The breaches, first detected in January, involved sophisticated techniques such as brute-force password attacks and exploitation of authentication details.
  • Microsoft is cooperating with CISA to provide metadata and assistance in investigating the breaches, which pose significant security risks.
  • The ongoing cybersecurity threat highlights systemic vulnerabilities in Microsoft's security protocols, prompting urgent calls for enhanced safeguards.