LIVE TV
ZEE Business
ZEE BUSINESS
हिंदी में पढ़ें  हिंदी में पढ़ें
Live TV
Live TV
  • Home
  • Budget 2021
  • Personal Finance
    • PPF
    • Mutual Funds
    • Income tax
    • EPFO
    • Income Tax Calculator
    • Personal Loan Calculator
    • Car Loan Calculator
    • Home Loan Calculator
    • SIP calculator
    • SWP Calculator
    • MF Returns Calculator
    • Lumpsum Calculator
  • India
    • Companies
    • Property
    • Startups
    • Uidai
  • Economy
    • Aviation
  • Tech
    • Mobiles
    • Apps
  • Auto
    • Cars
    • Bikes
  • Markets
    • Commodities
    • Currency
  • Jobs
  • Indian Railways
  • World
    • Economy
    • Politics
    • Markets
  • videos
  • photos
  • Authors
  • More ...
    • VIDEOS
    • PHOTOS
Read in App
Business News » Technology News

Suspected Russian hackers used Microsoft vendors to breach customers

The suspected Russian hackers behind the worst U.S. cyber attack in years leveraged reseller access to Microsoft Corp services to penetrate targets that had no compromised network software from SolarWinds Corp, investigators said.

  • Twitter
  • Facebook
  • Linkedin
  • whatapp
  • View in App
Suspected Russian hackers used Microsoft vendors to breach customers
Microsoft requires its vendors to have access to client systems in order to install products and allow new users. But discovering which vendors still have access rights at any given time is so hard." Source: Reuters
Updated: Fri, Dec 25, 2020
01:50 pm
Reuters
RELATED NEWS
200 mn students, educators rely on our education products: Satya Nadella 200 mn students, educators rely on our education products: Satya Nadella
Microsoft says Surface Pro 7 better than MacBook Pro in new ad Microsoft says Surface Pro 7 better than MacBook Pro in new ad
Microsoft roll back Xbox Live Gold price hike after backlash from gaming community Microsoft roll back Xbox Live Gold price hike after backlash from gaming community
Microsoft Windows 10 users alert! This bizarre bug corrupts hard drive just by looking at icon Microsoft Windows 10 users alert! This bizarre bug corrupts hard drive just by looking at icon
Over 100 mn people still using Windows 7 globally Over 100 mn people still using Windows 7 globally

The suspected Russian hackers behind the worst U.S. cyber attack in years leveraged reseller access to Microsoft Corp services to penetrate targets that had no compromised network software from SolarWinds Corp, investigators said.

While updates to SolarWinds` Orion software was previously the only known point of entry, security company CrowdStrike Holdings Inc said Thursday hackers had won access to the vendor that sold it Office licenses and used that to try to read CrowdStrike`s email.

It did not specifically identify the hackers as being the ones that compromised SolarWinds, but two people familiar with CrowdStrike`s investigation said they were. CrowdStrike uses Office programs for word processing but not email. The failed attempt, made months ago, was pointed out to CrowdStrike by Microsoft on Dec. 15.

CrowdStrike, which does not use SolarWinds, said it had found no impact from the intrusion attempt and declined to name the reseller.

"They got in through the reseller`s access and tried to enable mail `read` privileges," one of the people familiar with the investigation told Reuters. "If it had been using Office 365 for email, it would have been game over."

Many Microsoft software licenses are sold through third parties, and those companies can have near-constant access to clients` systems as the customers add products or employees. Microsoft said Thursday that those customers need to be vigilant. "Our investigation of recent attacks has found incidents involving abuse of credentials to gain access, which can come in several forms," said Microsoft senior Director Jeff Jones. "We have not identified any vulnerabilities or compromise of Microsoft product or cloud services."

The use of a Microsoft reseller to try to break into a top digital defense company raises new questions about how many avenues the hackers, whom U.S. officials have alleged are operating on behalf of the Russian government, have at their disposal.

The known victims so far include CrowdStrike security rival FireEye Inc and the U.S. Departments of Defense, State, Commerce, Treasury, and Homeland Security. Other big companies, including Microsoft and Cisco Systems Inc, said they found tainted SolarWinds software internally but had not found signs that the hackers used it to range widely on their networks.

Until now, Texas-based SolarWinds was the only publicly confirmed channel for the initial break-ins, although officials have been warning for days that the hackers had other ways in.

Reuters reported a week ago that Microsoft products were used in attacks. But federal officials said they had not seen it as an initial vector, and the software giant said its systems were not utilized in the campaign. (https://www.reuters.com/article/idUSKBN28R2ZJ) Microsoft then hinted that its customers should still be wary. At the end of a long, technical blog post on Tuesday, it used one sentence to mention seeing hackers reach Microsoft 365 Cloud "from trusted vendor accounts where the attacker had compromised the vendor environment."

Microsoft requires its vendors to have access to client systems in order to install products and allow new users. But discovering which vendors still have access rights at any given time is so hard that CrowdStrike developed and released an auditing tool to do that. After a series of other breaches through cloud providers, including a major set of attacks attributed to Chinese government-backed hackers and known as CloudHopper, Microsoft this year imposed new controls on its resellers, including requirements for multifactor authentication.

The Cybersecurity and Infrastructure Security Agency and the National Security Agency had no immediate comment.

Also Thursday, SolarWinds released an update to fix the vulnerabilities in its flagship network management software Orion following the discovery of a second set of hackers that had targeted the company`s products.

That followed a separate Microsoft blog post on Friday saying that SolarWinds had its software targeted by a second and unrelated group of hackers in addition to those linked to Russia.

The identity of the second set of hackers, or the degree to which they may have successfully broken in anywhere, remains unclear.

Russia has denied having any role in the hacking.
 

The story has been taken from a news agency

Get Latest Business News, Stock Market Updates and Videos; Check your tax outgo through Income Tax Calculator and save money through our Personal Finance coverage. Check Business Breaking News Live on Zee Business Twitter and Facebook. Subscribe on YouTube.

TAGS:
Microsoft
RELATED NEWS
200 mn students, educators rely on our education products: Satya Nadella 200 mn students, educators rely on our education products: Satya Nadella
Microsoft says Surface Pro 7 better than MacBook Pro in new ad Microsoft says Surface Pro 7 better than MacBook Pro in new ad
Microsoft roll back Xbox Live Gold price hike after backlash from gaming community Microsoft roll back Xbox Live Gold price hike after backlash from gaming community
Microsoft Windows 10 users alert! This bizarre bug corrupts hard drive just by looking at icon Microsoft Windows 10 users alert! This bizarre bug corrupts hard drive just by looking at icon
Over 100 mn people still using Windows 7 globally Over 100 mn people still using Windows 7 globally

LATEST NEWS

Stamp duty cut led to demand recovery in real estate sector: Gautam Singhania, Raymond

Heranba IPO listing price today: Share soars to Rs 900 on debut - Anil Singhvi lays out strategy for investors

Platform ticket price today: Railways hikes fares from Rs 10 to Rs 30 across network

Post Office Schemes: Good news for savings account holders! Withdrawal limit hiked from Rs 5,000 to Rs 20,000 at these branches

SBI Gold Loan – Give a missed call and get loan; interest rate at 7.5 pct; no processing fee if applied through YONO

Gold Price Today 04-03-2021: EXCLUSIVE! Yellow metal may slide below Rs 44,000; check this money making idea

ESIC Recruitment 2021 Notification: Apply online at esic.nic.in for 6552 vacancies to be filled for UDC and Stenographer Posts

Realme GT 5G launched with 64MP triple camera setup and Snapdragon 888 chipset; Check price, India availability and more

7th Pay Commission latest news today: Big Holi gift for Central government employees! Center issues this notification on 7th CPC leave rule

MTAR Technologies IPO: Last Day to subscribe for the issue, retail portion subscribed over 16 times on 2nd day

  • India News
  • World News
  • Companies News
  • Market News
  • Personal Finance News
  • Technology News
  • Automobile News
  • Small Business News
  • Income Tax Calculator
  • Live TV
  • Videos
  • Photos
  • Author
  • Rss Feed
  • Advertise with us
  • Privacy Policy
  • Legal Disclaimer

Latest Trending Updates

  • EPFO
  • Budget 2020
  • Income Tax Return
  • Auto Expo 2020
  • Home Loan
  • Business News

Trending Topics

  • Income Tax
  • income Tax Calculator
  • 7th Pay Commission
  • Reserve Bank of India
  • GST
  • Latest Business News

Follow us on

zeebiz
zeebiz

Partner Sites

  • Zee News
  • Hindi News
  • Marathi News
  • Bengali News
  • Tamil News
  • Malayalam News
  • Gujarati News
  • Telugu News
  • Kannada News
  • DNA
  • WION
Copyright © Zee Media Corporation Ltd. All rights reserved