Russian hackers behind fresh US cyberattack: Microsoft


Team Udayavani, Oct 26, 2021, 9:54 AM IST

Credit: iStock Photo

The state-backed Russian hacking group that carried out last year’s massive SolarWinds cyberattacks is behind a new and ongoing assault against US and European targets, Microsoft said Monday.

The software giant’s Threat Intelligence Center (MSTIC) said in a blog post that the Nobelium group was attempting to gain access to customers of cloud computing services and other IT service providers to infiltrate “the governments, think tanks, and other companies they serve”.

Describing the cyberattack as “nation-state activity”, MSTIC said it “shares the hallmarks” of the assault on SolarWinds, a Texas-based software company targeted as its 300,000-strong customer base gave the hackers access to a huge number of companies.

“It appears the widespread SolarWinds Russia-linked hackers from last year’s attack are again on the hunt for sensitive data and stepping up supply chain attacks across the board,” Wedbush analyst Dan Ives said in a note to investors.

Washington imposed sanctions in April and expelled Russian diplomats in retaliation for Moscow’s alleged involvement in the SolarWinds attack, as well as election interference and other hostile activity.

The latest attack has been underway since at least May, MSTIC said, with Nobelium deploying a “diverse and dynamic toolkit that includes sophisticated malware”.

“Nobelium has been attempting to replicate the approach it has used in past attacks by targeting organisations integral to the global IT supply chain,” Microsoft vice president Tom Burt wrote in a blog post published late Sunday.

This time, Burt noted, Nobelium is targeting “resellers” — companies that customise Microsoft’s cloud computing services for use by businesses and other organisations.

“Since May, we have notified more than 140 resellers and technology service providers that have been targeted by Nobelium,” he wrote.

“We continue to investigate, but to date we believe as many as 14 of these resellers and service providers have been compromised.”

Microsoft said it had notified known victims of the latest attack. While it did not specify any of the organisations hit, it noted they included “victims of interest for intelligence gain”.

The software company urged its customers to check on their security arrangements, using multi-factor authentification where possible.

It is not the first time Nobelium has mounted a comeback since SolarWinds, with Microsoft announcing in May that it had again detected a series of attacks by the group on government agencies, think tanks, consultants and other organisations.

Burt said the speed of the attacks was escalating, with Microsoft notifying more than 600 customers this year of nearly 23,000 attempted intrusions.

While the success rate was only “in the low single digits”, this compares to “attacks from all nation-state actors 20,500 times over the past three years”.

The past year has seen a number of high-profile cyberattacks with major consequences as companies increasingly find themselves unable to do business when their online infrastructure is compromised.

Udayavani is now on Telegram. Click here to join our channel and stay updated with the latest news.

Top News

Wanted to kill Ajmal Kasab who caused so much of pain, recalls 26/11 terror attack victim

Two retired revenue officials among four arrested in land grabbing case in Jammu

Kerala govt to revise manual for junior doctors, house surgeons

State can interfere with religious practices if they impede development, equality rights: SC

Four cheers at MP’s Kuno park; cheetah Neerva gives birth to cub quartet

HC directs Delhi govt to appoint ex-officio members to state mental health authority

‘Challenge after 44 years’: Supreme Court junks pleas against ‘socialist’, ‘secular’ in Preamble

Related Articles More

Rapid digital expansion to create over 1 lakh new jobs in fiber tech in India in next 5 years

National Consumer Helpline to roll out AI-based features, partners with 1,000 firms

BTS2024: If India can make rocket sensors, it can also make car sensors, says ISRO chief Somanath

World COPD Day: Know your lung function

SpaceX successfully launches ISRO’s 4,700 kg communication satellite from US

MUST WATCH

Coconut Flower

Prakash Belawadi

Naxal Leader Vikram Gowda

Christmas Cake Fruit Mixing

DK Shivakumar


Latest Additions

Wanted to kill Ajmal Kasab who caused so much of pain, recalls 26/11 terror attack victim

Two retired revenue officials among four arrested in land grabbing case in Jammu

Kerala govt to revise manual for junior doctors, house surgeons

State can interfere with religious practices if they impede development, equality rights: SC

Four cheers at MP’s Kuno park; cheetah Neerva gives birth to cub quartet

Thanks for visiting Udayavani

You seem to have an Ad Blocker on.
To continue reading, please turn it off or whitelist Udayavani.