Security News > 2020 > September > China, Russia and Iran all attacking US elections and using some nasty new tactics, says Microsoft

China, Russia and Iran all attacking US elections and using some nasty new tactics, says Microsoft
2020-09-11 01:26

Microsoft believes there have been extensive "Cyberattacks targeting people and organizations involved in the upcoming presidential election," and that foreign government hackers responsible for attacks ahead of the 2016 vote are back with new and nastier tactics.

The Windows giant's corporate veep for Customer Security & Trust Tom Burt said both sides of US politics are being attacked, that China, Russia and Iran are all active, and that the spies are also actively targeting UK political parties and other international institutions.

Strontium has largely abandoned phishing and is now using brute-force attacks and password spray, Microsoft suggests.

Microsoft has code-named China's attackers Zirconium, and Burt wrote that the team has conducted "Thousands of attacks. between March 2020 and September 2020 resulting in nearly 150 compromises."

"While the political organizations targeted in attacks from these actors are not those that maintain or operate voting systems, this increased activity related to the US electoral process is concerning for the whole ecosystem. We continue to encourage state and local election authorities in the US to harden their operations and prepare for potential attacks. But as election security experts have noted, additional funding is still needed, especially as resources are stretched to accommodate the shift in COVID-19-related voting."


News URL

https://go.theregister.com/feed/www.theregister.com/2020/09/11/microsoft_us_election_security_assessment/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Microsoft 480 75 2308 5127 264 7774