* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Wednesday, August 13, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    John Davison departs from IGN Entertainment – GamesIndustry.biz

    John Davison Steps Down from IGN Entertainment Leadership

    JPMorgan raises Flutter Entertainment stock price target to GBP273 – Investing.com

    JPMorgan Raises Flutter Entertainment Price Target to £273, Signaling Strong Growth Ahead

    Star Entertainment reaches deal to sell 50% stake in Brisbane resort to HK investors – Reuters

    Star Entertainment Seals Landmark Deal, Sells Half of Brisbane Resort to Hong Kong Investors

    Country music star ripped by ex-wife amid court battle: ‘Karma is a … well you know’ – PennLive.com

    This LA singer performed at Trump casinos. Now he’s a retired bus driver in Acadiana. – The Advocate

    This LA singer performed at Trump casinos. Now he’s a retired bus driver in Acadiana. – The Advocate

    Six Flags Entertainment Corporation Reports 2025 Second Quarter Results, Provides July Performance Update, and Updates Full-Year Guidance – Business Wire

    Six Flags Reveals Thrilling Q2 2025 Results, Shares July Highlights, and Updates Full-Year Outlook

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Indirect tax transformation: Navigating change, embracing technology – Thomson Reuters tax and accounting

    Revolutionizing Indirect Tax: Embracing Technology to Navigate Change

    California’s wildfire moonshot: How new technology will defeat advancing flames – Los Angeles Times

    California’s Wildfire Revolution: How Cutting-Edge Technology Is Poised to Stop Raging Flames

    LSU grad uses 3D printing to create adaptive technology for children – CBS News

    LSU Graduate Revolutionizes Adaptive Technology for Kids with 3D Printing

    Gas-to-liquids technology can support national resilience – The Strategist | ASPI’s analysis and commentary site

    Unlocking National Strength: How Gas-to-Liquids Technology Drives Resilience

    Micron Technology (MU) Launched a New Memory Chip for Space Application – Yahoo Finance

    Micron Technology Launches Revolutionary Memory Chip Built for Space Exploration

    United Airlines passengers in US delayed after tech glitch halts flights – BBC

    United Airlines passengers in US delayed after tech glitch halts flights – BBC

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    John Davison departs from IGN Entertainment – GamesIndustry.biz

    John Davison Steps Down from IGN Entertainment Leadership

    JPMorgan raises Flutter Entertainment stock price target to GBP273 – Investing.com

    JPMorgan Raises Flutter Entertainment Price Target to £273, Signaling Strong Growth Ahead

    Star Entertainment reaches deal to sell 50% stake in Brisbane resort to HK investors – Reuters

    Star Entertainment Seals Landmark Deal, Sells Half of Brisbane Resort to Hong Kong Investors

    Country music star ripped by ex-wife amid court battle: ‘Karma is a … well you know’ – PennLive.com

    This LA singer performed at Trump casinos. Now he’s a retired bus driver in Acadiana. – The Advocate

    This LA singer performed at Trump casinos. Now he’s a retired bus driver in Acadiana. – The Advocate

    Six Flags Entertainment Corporation Reports 2025 Second Quarter Results, Provides July Performance Update, and Updates Full-Year Guidance – Business Wire

    Six Flags Reveals Thrilling Q2 2025 Results, Shares July Highlights, and Updates Full-Year Outlook

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Indirect tax transformation: Navigating change, embracing technology – Thomson Reuters tax and accounting

    Revolutionizing Indirect Tax: Embracing Technology to Navigate Change

    California’s wildfire moonshot: How new technology will defeat advancing flames – Los Angeles Times

    California’s Wildfire Revolution: How Cutting-Edge Technology Is Poised to Stop Raging Flames

    LSU grad uses 3D printing to create adaptive technology for children – CBS News

    LSU Graduate Revolutionizes Adaptive Technology for Kids with 3D Printing

    Gas-to-liquids technology can support national resilience – The Strategist | ASPI’s analysis and commentary site

    Unlocking National Strength: How Gas-to-Liquids Technology Drives Resilience

    Micron Technology (MU) Launched a New Memory Chip for Space Application – Yahoo Finance

    Micron Technology Launches Revolutionary Memory Chip Built for Space Exploration

    United Airlines passengers in US delayed after tech glitch halts flights – BBC

    United Airlines passengers in US delayed after tech glitch halts flights – BBC

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Business

Chinese hacker forged authentication tokens to access government email: Microsoft

July 14, 2023
in Business
Chinese hacker forged authentication tokens to access government email: Microsoft
Share on FacebookShare on Twitter

A China-based threat actor was able to access cloud-based Microsoft email accounts of approximately 25 organizations — including government agencies, as well as related consumer accounts of individuals likely associated with these organizations — by forging authentication tokens to access user email, the company has warned.

It doesn’t say how, but the group — which Microsoft dubs Storm-0558 — acquired a Microsoft account (MSA) consumer signing key. Then, for several weeks starting on May 15, it broke into Outlook Web Access (OWA) in Exchange Online and Outlook.com accounts.

Microsoft said in a report Tuesday that since being notified of suspicious activity in June, it blocked Storm-0558 from accessing customer email using forged authentication tokens. The company has contacted all targeted or compromised organizations directly via their tenant admins and provided them with important information to help them investigate and respond. If you haven’t been contacted by now, your organization hasn’t been impacted.

Microsoft’s warning came the same day as the U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued a cybersecurity advisory saying unnamed advanced persistent threat (APT) actors accessed and exfiltrated unclassified Exchange Online Outlook data from a unnamed federal civilian executive branch agency.

The CISA report says an unnamed APT actor accessed and exfiltrated unclassified Exchange Online Outlook data from a small number of accounts using a Microsoft account (MSA) consumer key. It was used to forge tokens to impersonate consumer and enterprise users, the CISA report says. Microsoft remediated the issue by first blocking tokens issued with the acquired key and then replacing the key to prevent continued misuse.

Microsoft said in its report that the gang used the acquired MSA key to forge tokens to access OWA and Outlook.com. MSA (consumer) keys and Azure AD (enterprise) keys are issued and managed from separate systems, and should only be valid for their respective systems. But the gang was able to exploit a token validation issue to impersonate Azure AD users and access enterprise mail.

“We have no indications that Azure AD keys or any other MSA keys were used by this actor,” Microsoft said. “OWA and Outlook.com are the only services where we have observed the actor using tokens forged with the acquired MSA key.”

The CISA and the FBI strongly encourage critical infrastructure organizations to enable audit logging, which caught this event. Federal agencies are obliged to do so.

In addition the CISA says organizations should

enable Purview Audit (Premium) logging. This logging requires licensing at the G5/E5 level. See Microsoft’s guidance on Assigning Microsoft 365 Licenses to Users for additional information;
ensure logs are searchable by operators. The relevant logs need to be accessible to operational teams in a platform (e.g., security operations center [SOC] tooling) that enables hunting for this activity and distinguishing it from expected behavior within the environment;
enable Microsoft 365 Unified Audit Logging (UAL). UAL should be enabled by default, but organizations are encouraged to validate these settings;
understand your organization’s cloud baseline. Organizations are encouraged to look for outliers and become familiar with baseline patterns to better understand abnormal versus normal traffic.

Howard Solomon

Howard Solomon

Currently a freelance writer. Former editor of ITWorldCanada.com and Computing Canada. An IT journalist since 1997, Howard has written for several of ITWC’s sister publications, including ITBusiness.ca. Before arriving at ITWC he served as a staff reporter at the Calgary Herald and the Brampton (Ont.) Daily Times.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : ITBusiness.ca – https://www.itbusiness.ca/news/chinese-hacker-forged-authentication-tokens-to-access-government-email-microsoft/125562

Tags: businessChinesehacker
Previous Post

KPMG, Microsoft sign cloud and AI alliance mega deal

Next Post

People With Low Emotional Intelligence Will Be More Effective By Using This Other Powerful Trait

Comparative single-cell analyses reveal evolutionary repurposing of a conserved gene programme in bat wing development – Nature

Unveiling the Hidden Genetic Blueprint Behind the Evolution of Bat Wings Through Single-Cell Analysis

August 13, 2025
Opinion | Katharine Suding: 476 acres of possibility near Boulder for science, sustainability and the arts – The Boulder Reporting Lab

476 Acres of Possibility Near Boulder: A Bold Vision for Science, Sustainability, and the Arts

August 13, 2025
Interstellar Object 3I/ATLAS Seen in Stunning New Hubble Image – ScienceAlert

Stunning New Hubble Image Reveals Mysterious Interstellar Object 3I/ATLAS

August 13, 2025
MyMaine Media celebrates Maine’s modern lifestyle – WGME

Experience Maine’s Modern Lifestyle Like Never Before with MyMaine Media

August 13, 2025
Validea’s Top Information Technology Stocks Based On Martin Zweig – 8/13/2025 – Nasdaq

Must-Watch Information Technology Stocks for August 2025 Inspired by Martin Zweig’s Strategy

August 13, 2025
Grit, goals and glam: How beauty brands are making up for lost time and tapping into women’s sports – The New York Times

Grit, goals and glam: How beauty brands are making up for lost time and tapping into women’s sports – The New York Times

August 13, 2025
Trump Crypto Firm Announces $1.5 Billion Digital Coin Deal – The New York Times

Trump’s Crypto Company Unveils Revolutionary $1.5 Billion Digital Coin Deal

August 13, 2025
The end of ‘Townie Summer’: IU students return and stimulate Bloomington’s economy – WRTV

Townie Summer Wraps Up as IU Students Return, Revitalizing Bloomington’s Economy

August 13, 2025
John Davison departs from IGN Entertainment – GamesIndustry.biz

John Davison Steps Down from IGN Entertainment Leadership

August 13, 2025
Augusta Health takes a look at local health outcomes with needs assessment – The News Leader | Staunton, VA

Augusta Health Explores Local Health Outcomes Through Comprehensive Needs Assessment

August 13, 2025

Categories

Archives

August 2025
MTWTFSS
 123
45678910
11121314151617
18192021222324
25262728293031
« Jul    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (769)
  • Economy (791)
  • Entertainment (21,668)
  • General (16,446)
  • Health (9,830)
  • Lifestyle (802)
  • News (22,149)
  • People (793)
  • Politics (800)
  • Science (16,005)
  • Sports (21,289)
  • Technology (15,771)
  • World (774)

Recent News

Comparative single-cell analyses reveal evolutionary repurposing of a conserved gene programme in bat wing development – Nature

Unveiling the Hidden Genetic Blueprint Behind the Evolution of Bat Wings Through Single-Cell Analysis

August 13, 2025
Opinion | Katharine Suding: 476 acres of possibility near Boulder for science, sustainability and the arts – The Boulder Reporting Lab

476 Acres of Possibility Near Boulder: A Bold Vision for Science, Sustainability, and the Arts

August 13, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version