* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Sunday, July 20, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    Canes owner Tom Dundon’s real estate firm eyes entertainment complex near RDU – The Business Journals

    Canes Owner Tom Dundon’s Real Estate Firm Unveils Plans for Thrilling New Entertainment Complex Near RDU

    Inspired Entertainment, Inc.’s (NASDAQ:INSE) Price Is Right But Growth Is Lacking After Shares Rocket 29% – simplywall.st

    Inspired Entertainment Soars 29% but Growth Momentum Falls Short

    Kroger shares summer entertainment tips – Supermarket Perimeter

    Ultimate Summer Entertainment Tips to Make Your Season Unforgettable

    Theater at Santa Fe’s San Isidro Plaza will be converted into IMAX, family entertainment venue – Santa Fe New Mexican

    Santa Fe’s San Isidro Plaza Theater Transforms into Exciting IMAX Family Entertainment Venue

    B&B Theatres will open massive entertainment complex in Texas – The Business Journals

    B&B Theatres will open massive entertainment complex in Texas – The Business Journals

    Rough times for broadcast networks illustrate changing media landscape – New Haven Register

    Broadcast Networks Confront Turbulent Times in a Rapidly Changing Media Landscape

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Bull of the Day: Credo Technology Group (CRDO) – Yahoo Finance

    Bull of the Day: Why Credo Technology Group (CRDO) Is Poised for a Breakout

    BlackSky Technology Inc. Stock Analysis and Forecast – Explosive wealth accumulation – Jammu Links News

    BlackSky Technology Inc.: Unlocking Explosive Wealth Potential Through Expert Stock Analysis and Forecast

    Polypurine Hairpin Technology is Safe, Effective at Inhibiting PCSK9 to Regulate Cholesterol – Pharmacy Times

    Polypurine Hairpin Technology: A Safe and Powerful Breakthrough for Controlling Cholesterol by Targeting PCSK9

    A major AI training data set contains millions of examples of personal data – MIT Technology Review

    A major AI training data set contains millions of examples of personal data – MIT Technology Review

    Simpson College to purchase medical simulation technology with grant funds – Iowa Capital Dispatch

    Simpson College to purchase medical simulation technology with grant funds – Iowa Capital Dispatch

    SailGP Technologies officially launches new center of excellence in technology & innovation – Sail-World.com

    SailGP Technologies officially launches new center of excellence in technology & innovation – Sail-World.com

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    Canes owner Tom Dundon’s real estate firm eyes entertainment complex near RDU – The Business Journals

    Canes Owner Tom Dundon’s Real Estate Firm Unveils Plans for Thrilling New Entertainment Complex Near RDU

    Inspired Entertainment, Inc.’s (NASDAQ:INSE) Price Is Right But Growth Is Lacking After Shares Rocket 29% – simplywall.st

    Inspired Entertainment Soars 29% but Growth Momentum Falls Short

    Kroger shares summer entertainment tips – Supermarket Perimeter

    Ultimate Summer Entertainment Tips to Make Your Season Unforgettable

    Theater at Santa Fe’s San Isidro Plaza will be converted into IMAX, family entertainment venue – Santa Fe New Mexican

    Santa Fe’s San Isidro Plaza Theater Transforms into Exciting IMAX Family Entertainment Venue

    B&B Theatres will open massive entertainment complex in Texas – The Business Journals

    B&B Theatres will open massive entertainment complex in Texas – The Business Journals

    Rough times for broadcast networks illustrate changing media landscape – New Haven Register

    Broadcast Networks Confront Turbulent Times in a Rapidly Changing Media Landscape

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    Bull of the Day: Credo Technology Group (CRDO) – Yahoo Finance

    Bull of the Day: Why Credo Technology Group (CRDO) Is Poised for a Breakout

    BlackSky Technology Inc. Stock Analysis and Forecast – Explosive wealth accumulation – Jammu Links News

    BlackSky Technology Inc.: Unlocking Explosive Wealth Potential Through Expert Stock Analysis and Forecast

    Polypurine Hairpin Technology is Safe, Effective at Inhibiting PCSK9 to Regulate Cholesterol – Pharmacy Times

    Polypurine Hairpin Technology: A Safe and Powerful Breakthrough for Controlling Cholesterol by Targeting PCSK9

    A major AI training data set contains millions of examples of personal data – MIT Technology Review

    A major AI training data set contains millions of examples of personal data – MIT Technology Review

    Simpson College to purchase medical simulation technology with grant funds – Iowa Capital Dispatch

    Simpson College to purchase medical simulation technology with grant funds – Iowa Capital Dispatch

    SailGP Technologies officially launches new center of excellence in technology & innovation – Sail-World.com

    SailGP Technologies officially launches new center of excellence in technology & innovation – Sail-World.com

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Business

Chinese hacker forged authentication tokens to access government email: Microsoft

July 14, 2023
in Business
Chinese hacker forged authentication tokens to access government email: Microsoft
Share on FacebookShare on Twitter

A China-based threat actor was able to access cloud-based Microsoft email accounts of approximately 25 organizations — including government agencies, as well as related consumer accounts of individuals likely associated with these organizations — by forging authentication tokens to access user email, the company has warned.

It doesn’t say how, but the group — which Microsoft dubs Storm-0558 — acquired a Microsoft account (MSA) consumer signing key. Then, for several weeks starting on May 15, it broke into Outlook Web Access (OWA) in Exchange Online and Outlook.com accounts.

Microsoft said in a report Tuesday that since being notified of suspicious activity in June, it blocked Storm-0558 from accessing customer email using forged authentication tokens. The company has contacted all targeted or compromised organizations directly via their tenant admins and provided them with important information to help them investigate and respond. If you haven’t been contacted by now, your organization hasn’t been impacted.

Microsoft’s warning came the same day as the U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued a cybersecurity advisory saying unnamed advanced persistent threat (APT) actors accessed and exfiltrated unclassified Exchange Online Outlook data from a unnamed federal civilian executive branch agency.

The CISA report says an unnamed APT actor accessed and exfiltrated unclassified Exchange Online Outlook data from a small number of accounts using a Microsoft account (MSA) consumer key. It was used to forge tokens to impersonate consumer and enterprise users, the CISA report says. Microsoft remediated the issue by first blocking tokens issued with the acquired key and then replacing the key to prevent continued misuse.

Microsoft said in its report that the gang used the acquired MSA key to forge tokens to access OWA and Outlook.com. MSA (consumer) keys and Azure AD (enterprise) keys are issued and managed from separate systems, and should only be valid for their respective systems. But the gang was able to exploit a token validation issue to impersonate Azure AD users and access enterprise mail.

“We have no indications that Azure AD keys or any other MSA keys were used by this actor,” Microsoft said. “OWA and Outlook.com are the only services where we have observed the actor using tokens forged with the acquired MSA key.”

The CISA and the FBI strongly encourage critical infrastructure organizations to enable audit logging, which caught this event. Federal agencies are obliged to do so.

In addition the CISA says organizations should

enable Purview Audit (Premium) logging. This logging requires licensing at the G5/E5 level. See Microsoft’s guidance on Assigning Microsoft 365 Licenses to Users for additional information;
ensure logs are searchable by operators. The relevant logs need to be accessible to operational teams in a platform (e.g., security operations center [SOC] tooling) that enables hunting for this activity and distinguishing it from expected behavior within the environment;
enable Microsoft 365 Unified Audit Logging (UAL). UAL should be enabled by default, but organizations are encouraged to validate these settings;
understand your organization’s cloud baseline. Organizations are encouraged to look for outliers and become familiar with baseline patterns to better understand abnormal versus normal traffic.

Howard Solomon

Howard Solomon

Currently a freelance writer. Former editor of ITWorldCanada.com and Computing Canada. An IT journalist since 1997, Howard has written for several of ITWC’s sister publications, including ITBusiness.ca. Before arriving at ITWC he served as a staff reporter at the Calgary Herald and the Brampton (Ont.) Daily Times.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : ITBusiness.ca – https://www.itbusiness.ca/news/chinese-hacker-forged-authentication-tokens-to-access-government-email-microsoft/125562

Tags: businessChinesehacker
Previous Post

KPMG, Microsoft sign cloud and AI alliance mega deal

Next Post

People With Low Emotional Intelligence Will Be More Effective By Using This Other Powerful Trait

Bull of the Day: Credo Technology Group (CRDO) – Yahoo Finance

Bull of the Day: Why Credo Technology Group (CRDO) Is Poised for a Breakout

July 20, 2025
Euro 2025: Germany Beats France on PKs to Reach Semifinals Despite Red Card – FOX Sports

Euro 2025 Showdown: Germany Edges Past France on Penalties to Reach Semifinals Despite Red Card

July 20, 2025
July 16 – Property owners fined $204,000 for damaging Deschutes River shoreline – Department of Ecology – State of Washington (.gov)

Property Owners Hit with $204,000 Fine for Destroying Deschutes River Shoreline

July 20, 2025
Scientists Found the Staggering Natural Switch That Could Bring Back Your Eyesight – Popular Mechanics

Scientists Discover Incredible Natural Switch That Could Restore Your Vision

July 20, 2025
UW scientists use AI to crack ‘undruggable’ proteins, opening door to new treatments – GeekWire

UW scientists use AI to crack ‘undruggable’ proteins, opening door to new treatments – GeekWire

July 20, 2025
EXCLUSIVE: Von Dutch Expands Reach With New Lifestyle Venture, Thanks Charli XCX for ‘Reigniting Gen Z’s Interest’ – WWD

Von Dutch Sparks Gen Z Excitement with Bold New Lifestyle Venture Inspired by Charli XCX

July 20, 2025
Pacquiao held to draw by Barrios in world title return – Yahoo Sports

Pacquiao’s Epic Comeback Fight Ends in a Heart-Stopping Draw Against Barrios

July 20, 2025
The kitchen sink has been thrown at the economy. Here’s why it’s not causing a recession. – MarketWatch

The kitchen sink has been thrown at the economy. Here’s why it’s not causing a recession. – MarketWatch

July 20, 2025
Canes owner Tom Dundon’s real estate firm eyes entertainment complex near RDU – The Business Journals

Canes Owner Tom Dundon’s Real Estate Firm Unveils Plans for Thrilling New Entertainment Complex Near RDU

July 20, 2025
Your health insurance premiums could soon go up 15 percent — or more – vox.com

Brace Yourself: Health Insurance Premiums Could Soar by 15%

July 20, 2025

Categories

Archives

July 2025
MTWTFSS
 123456
78910111213
14151617181920
21222324252627
28293031 
« Jun    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (730)
  • Economy (753)
  • Entertainment (21,638)
  • General (16,003)
  • Health (9,791)
  • Lifestyle (761)
  • News (22,149)
  • People (755)
  • Politics (762)
  • Science (15,970)
  • Sports (21,251)
  • Technology (15,736)
  • World (736)

Recent News

Bull of the Day: Credo Technology Group (CRDO) – Yahoo Finance

Bull of the Day: Why Credo Technology Group (CRDO) Is Poised for a Breakout

July 20, 2025
Euro 2025: Germany Beats France on PKs to Reach Semifinals Despite Red Card – FOX Sports

Euro 2025 Showdown: Germany Edges Past France on Penalties to Reach Semifinals Despite Red Card

July 20, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version