13.1 C
London
Saturday, November 23, 2024
HomeNewsTechMicrosoft says Russian hackers launched large spear-phishing attacks against US government officials

Microsoft says Russian hackers launched large spear-phishing attacks against US government officials

Date:

Related stories

spot_imgspot_img

Notorious Russian-linked threat actor Midnight Blizzard has targeted U.S. officials with spearphishing attacks across multiple government and non-government sectors, new research shows.

Findings released by Microsoft Threat Intelligence Midnight Blizzard has been using these attacks to gather intelligence since they were first spotted on October 22.

These campaigns have also been observed and confirmed by Amazon and Ukraine’s Government Computer Emergency Response Team.

Highly targeted spear phishing

The latest spearphishing attacks employ a strong social engineering element, using Microsoft, Amazon Web Services (AWS), and Zero Trust hooks to trick targets into opening Remote Desktop Protocol (RPD)-loaded files attached to emails. These files allow Midnight Blizzard to control the taretg system’s functions and resources via a remote server.

Midnight Blizzard is also said to be able to gather important information about compromised devices by mapping the target’s local device resources, including information about “all logical hard drives, clipboard contents, printers, attached peripherals, audio, and authentication functions and facilities of the Windows computers.” operating system, including smart cards.”

This assignment occurs each time the target device connects to the RDP server. The connection allows Midnight Blizzard to install Remote Access Trojans (RAT) to establish persistent access when the device is not connected to the RDP server.

As a result, Midnight Blizzard was able to install malware on both the target device and other devices on the same network, in addition to the possibility of credential theft during the RDP connection.

Sign up for the FactTimes newsletter and get all the best news, views, features and guidance your business needs to succeed!

The campaign has so far targeted government, higher education, defense and non-governmental organization officials in the UK, Europe, Australia and Japan. You can view the full details on Microsoft’s mitigation measures here.

Subscribe

- Never miss a story with notifications

- Gain full access to our premium content

- Browse free from up to 5 devices at once

[tds_leads input_placeholder="Your email address" btn_horiz_align="content-horiz-center" pp_msg="SSd2ZSUyMHJlYWQlMjBhbmQlMjBhY2NlcHQlMjB0aGUlMjAlM0NhJTIwaHJlZiUzRCUyMiUyMyUyMiUzRVByaXZhY3klMjBQb2xpY3klM0MlMkZhJTNFLg==" pp_checkbox="yes" tdc_css="eyJhbGwiOnsibWFyZ2luLXRvcCI6IjMwIiwibWFyZ2luLWJvdHRvbSI6IjQwIiwiZGlzcGxheSI6IiJ9LCJwb3J0cmFpdCI6eyJtYXJnaW4tdG9wIjoiMTUiLCJtYXJnaW4tYm90dG9tIjoiMjUiLCJkaXNwbGF5IjoiIn0sInBvcnRyYWl0X21heF93aWR0aCI6MTAxOCwicG9ydHJhaXRfbWluX3dpZHRoIjo3NjgsImxhbmRzY2FwZSI6eyJtYXJnaW4tdG9wIjoiMjAiLCJtYXJnaW4tYm90dG9tIjoiMzAiLCJkaXNwbGF5IjoiIn0sImxhbmRzY2FwZV9tYXhfd2lkdGgiOjExNDAsImxhbmRzY2FwZV9taW5fd2lkdGgiOjEwMTksInBob25lIjp7Im1hcmdpbi10b3AiOiIyMCIsImRpc3BsYXkiOiIifSwicGhvbmVfbWF4X3dpZHRoIjo3Njd9" display="column" gap="eyJhbGwiOiIyMCIsInBvcnRyYWl0IjoiMTAiLCJsYW5kc2NhcGUiOiIxNSJ9" f_msg_font_family="downtown-sans-serif-font_global" f_input_font_family="downtown-sans-serif-font_global" f_btn_font_family="downtown-sans-serif-font_global" f_pp_font_family="downtown-serif-font_global" f_pp_font_size="eyJhbGwiOiIxNSIsInBvcnRyYWl0IjoiMTEifQ==" f_btn_font_weight="700" f_btn_font_size="eyJhbGwiOiIxMyIsInBvcnRyYWl0IjoiMTEifQ==" f_btn_font_transform="uppercase" btn_text="Unlock All" btn_bg="#000000" btn_padd="eyJhbGwiOiIxOCIsImxhbmRzY2FwZSI6IjE0IiwicG9ydHJhaXQiOiIxNCJ9" input_padd="eyJhbGwiOiIxNSIsImxhbmRzY2FwZSI6IjEyIiwicG9ydHJhaXQiOiIxMCJ9" pp_check_color_a="#000000" f_pp_font_weight="600" pp_check_square="#000000" msg_composer="" pp_check_color="rgba(0,0,0,0.56)" msg_succ_radius="0" msg_err_radius="0" input_border="1" f_unsub_font_family="downtown-sans-serif-font_global" f_msg_font_size="eyJhbGwiOiIxMyIsInBvcnRyYWl0IjoiMTIifQ==" f_input_font_size="eyJhbGwiOiIxNCIsInBvcnRyYWl0IjoiMTIifQ==" f_input_font_weight="500" f_msg_font_weight="500" f_unsub_font_weight="500"]

Latest stories

spot_img