Security News > 2021 > May > Microsoft: SolarWinds hackers target govt agencies from 24 countries

Microsoft: SolarWinds hackers target govt agencies from 24 countries
2021-05-28 12:08

The Microsoft Threat Intelligence Center has discovered that the SolarWinds hackers are behind an ongoing spear-phishing campaign targeting government agencies worldwide.

"While organizations in the United States received the largest share of attacks, targeted victims span at least 24 countries."

The threat actors behind these attacks, a hacking group tracked as Nobelium by Microsoft and likely backed by the Russian government, sent the phishing emails using USAID's compromised Constant Contact account.

More details, including the attackers' motivation, the malicious behavior observed by Microsoft during the attacks, and best practices to defend against this ongoing campaign, can be found in MSTIC's report.

In December, the SolarWinds network management company was breached in a cyberattack that allowed the attackers to launch a supply chain attack targeting the company's customers.

The hacking group behind the SolarWinds supply-chain attack is tracked as Nobelium, NC2452, StellarParticle, SolarStorm, and Dark Halo.


News URL

https://www.bleepingcomputer.com/news/security/microsoft-solarwinds-hackers-target-govt-agencies-from-24-countries/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Solarwinds 56 33 104 77 36 250