Skip to content
OnMSFT.com
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
Menu
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
  1. Home
  2. News
  3. Russian hacking group ‘Midnight Blizzard’ targets global organizations via Teams, Microsoft warns

Russian hacking group ‘Midnight Blizzard’ targets global organizations via Teams, Microsoft warns

OnMSFT Staff OnMSFT Staff
August 3, 2023
2 min read

In a recent blog post by Microsoft and as reported by Reuters, Microsoft Threat Intelligence has revealed the detection of highly targeted social engineering attacks conducted by a threat actor known as Midnight Blizzard (formerly NOBELIUM). The attacks center around credential theft phishing lures delivered via Microsoft Teams chats and have affected fewer than 40 global organizations since late May. Even last month, Microsoft confirmed that services were disrupted and were caused by a Russian hacking group.

Midnight Blizzard, a hacking group linked to the Russian Foreign Intelligence Service (SVR), is notorious for its persistent espionage activities. The group has been targeting various sectors, including government, non-government organizations (NGOs), IT services, technology, discrete manufacturing, and media, since as far back as 2018.

To facilitate their attacks, the hackers utilized previously compromised Microsoft 365 tenants owned by small businesses to create new domains masquerading as technical support entities. By adopting security-themed keywords and names containing “Microsoft,” the threat actor attempted to lend legitimacy to their phishing messages.

The attack chain targets users with valid credentials or employs passwordless authentication through the Microsoft Authenticator app. The attackers convince the users to enter codes into the app, granting them unauthorized access to their Microsoft 365 accounts.

Despite multifactor authentication (MFA) being a widely recommended security measure, Midnight Blizzard found ways to evade it, raising concerns over the effectiveness of MFA in countering sophisticated social engineering attacks.

Microsoft has taken prompt action to mitigate the threat actor’s use of domains. It is actively investigating and remediating the impact of the attacks. Additionally, the company has notified targeted and compromised customers, providing them with crucial information to secure their environments.

Microsoft Teams boasts more than 280 million active users. Hence, the company advises users to remain cautious when encountering unexpected requests or messages, particularly from unfamiliar sources.

The Russian embassy in Washington has yet to respond to requests for comment on the matter, leaving organizations on high alert for potential further attacks from the persistent and adaptable hacking group Midnight Blizzard.

Related

Share this article:
Previous Article Activision to officially reveal Call of Duty 2023 next week Next Article Play WWE 2K23, Descenders and Dragon Ball Fighter Z with Xbox Free Play Days

Related Articles

Samsung and SK hynix stay cautious on DRAM expansion as AI demand surges but suppliers worry the memory boom may fade by 2028.

Memory Chip Makers Fear AI Demand Boom May Not Last Long

March 15, 2026

ByteDance pauses launch of Seedance 2.0 AI video tool after copyright complaints

March 15, 2026

Anthropic Offers Double Claude Usage Limits Until March 27

March 15, 2026

Leave a Comment Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • Memory Chip Makers Fear AI Demand Boom May Not Last Long
  • ByteDance pauses launch of Seedance 2.0 AI video tool after copyright complaints
  • Anthropic Offers Double Claude Usage Limits Until March 27
  • Elon Musk Plans to Reveal World’s Largest Chip Fab Project Next Week
  • Meta considers major layoffs while pouring billions into AI

Recent Comments

No comments to show.
OnMSFT.com

The Tech News Site

Categories

  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Gaming
  • Edge
  • Teams

Recent Posts

  • Memory Chip Makers Fear AI Demand Boom May Not Last Long
  • ByteDance pauses launch of Seedance 2.0 AI video tool after copyright complaints
  • Anthropic Offers Double Claude Usage Limits Until March 27
  • Elon Musk Plans to Reveal World’s Largest Chip Fab Project Next Week
  • Meta considers major layoffs while pouring billions into AI

Quick Links

  • About OnMSFT.com
  • Contact OnMSFT
  • Join Our Team
  • Privacy Policy
© 2010–2026 OnMSFT.com LLC. All rights reserved.
About OnMSFT.comContact OnMSFTPrivacy Policy