* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Friday, December 19, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    State Farm Arena Ranks In The Top 5 Live Entertainment Venues In The U.S. & Top 7 In The World, According To Billboard – Secret Atlanta

    State Farm Arena Ranks In The Top 5 Live Entertainment Venues In The U.S. & Top 7 In The World, According To Billboard – Secret Atlanta

    Walk on White features Conchettes and Santa – keysnews.com

    Uncover the Enchantment of Conchettes and Santa in Walk on White

    Blizzard Entertainment President on BlizzCon 2026, 35th Anniversary Plans – Variety

    Blizzard Entertainment President Reveals Thrilling BlizzCon 2026 and 35th Anniversary Celebrations

    SM Entertainment accelerates US push with early debut plans for rookie acts – The Korea Herald

    SM Entertainment Sets the Stage for a US Takeover with Exciting Early Debuts of New Rookie Acts

    Star Entertainment CEO Steve McCann to exit after bruising turnaround stint – Reuters

    Star Entertainment CEO Steve McCann to Step Down Following Tough Turnaround Battle

    Australia’s Star Entertainment CEO Steve McCann steps down By Reuters – Investing.com

    Australia’s Star Entertainment CEO Steve McCann steps down By Reuters – Investing.com

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    6G discussions: How things have changed – 5gtechnologyworld.com

    The Evolution of 6G: How the Conversation Has Transformed

    Retail supply chains brace for a redefined 2026 as tariffs, technology gaps, and nearshoring upend old models – Raleigh News & Observer

    Retail Supply Chains Revolutionize in 2026: How Tariffs, Technology Gaps, and Nearshoring Are Shaping the Future

    China exploits US-funded research on nuclear technology, a congressional report says – ABC News

    Congressional Report Uncovers China’s Exploitation of US-Funded Nuclear Technology Research

    Netcracker Dominates International Business and Technology Excellence Awards – Business Wire

    Netcracker Shines Bright at International Business and Technology Excellence Awards

    Can OpenAI Respond After Google Closes the A.I. Technology Gap? – The New York Times

    Can OpenAI Stay Ahead as Google Narrows the A.I. Technology Race?

    Abstract Technology Group moves location to Elmwood – Star City TV

    Abstract Technology Group Moves to the Vibrant Elmwood Neighborhood, Sparking Excitement

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    State Farm Arena Ranks In The Top 5 Live Entertainment Venues In The U.S. & Top 7 In The World, According To Billboard – Secret Atlanta

    State Farm Arena Ranks In The Top 5 Live Entertainment Venues In The U.S. & Top 7 In The World, According To Billboard – Secret Atlanta

    Walk on White features Conchettes and Santa – keysnews.com

    Uncover the Enchantment of Conchettes and Santa in Walk on White

    Blizzard Entertainment President on BlizzCon 2026, 35th Anniversary Plans – Variety

    Blizzard Entertainment President Reveals Thrilling BlizzCon 2026 and 35th Anniversary Celebrations

    SM Entertainment accelerates US push with early debut plans for rookie acts – The Korea Herald

    SM Entertainment Sets the Stage for a US Takeover with Exciting Early Debuts of New Rookie Acts

    Star Entertainment CEO Steve McCann to exit after bruising turnaround stint – Reuters

    Star Entertainment CEO Steve McCann to Step Down Following Tough Turnaround Battle

    Australia’s Star Entertainment CEO Steve McCann steps down By Reuters – Investing.com

    Australia’s Star Entertainment CEO Steve McCann steps down By Reuters – Investing.com

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    6G discussions: How things have changed – 5gtechnologyworld.com

    The Evolution of 6G: How the Conversation Has Transformed

    Retail supply chains brace for a redefined 2026 as tariffs, technology gaps, and nearshoring upend old models – Raleigh News & Observer

    Retail Supply Chains Revolutionize in 2026: How Tariffs, Technology Gaps, and Nearshoring Are Shaping the Future

    China exploits US-funded research on nuclear technology, a congressional report says – ABC News

    Congressional Report Uncovers China’s Exploitation of US-Funded Nuclear Technology Research

    Netcracker Dominates International Business and Technology Excellence Awards – Business Wire

    Netcracker Shines Bright at International Business and Technology Excellence Awards

    Can OpenAI Respond After Google Closes the A.I. Technology Gap? – The New York Times

    Can OpenAI Stay Ahead as Google Narrows the A.I. Technology Race?

    Abstract Technology Group moves location to Elmwood – Star City TV

    Abstract Technology Group Moves to the Vibrant Elmwood Neighborhood, Sparking Excitement

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

The life and times of Cozy Bear, the Russian hackers who just hit Microsoft and HPE

January 26, 2024
in Technology
The life and times of Cozy Bear, the Russian hackers who just hit Microsoft and HPE
Share on FacebookShare on Twitter

FROM RUSSIA WITH ROOT —

Hacks by Kremlin-backed group continue to hit hard.

Dan Goodin
– Jan 26, 2024 1:15 pm UTC

The life and times of Cozy Bear, the Russian hackers who just hit Microsoft and HPE

Getty Images

Hewlett Packard Enterprise (HPE) said Wednesday that Kremlin-backed actors hacked into the email accounts of its security personnel and other employees last May—and maintained surreptitious access until December. The disclosure was the second revelation of a major corporate network breach by the hacking group in five days.

The hacking group that hit HPE is the same one that Microsoft said Friday broke into its corporate network in November and monitored email accounts of senior executives and security team members until being driven out earlier this month. Microsoft tracks the group as Midnight Blizzard. (Under the company’s recently retired threat actor naming convention, which was based on chemical elements, the group was known as Nobelium.) But it is perhaps better known by the name Cozy Bear—though researchers have also dubbed it APT29, the Dukes, Cloaked Ursa, and Dark Halo.

“On December 12, 2023, Hewlett Packard Enterprise was notified that a suspected nation-state actor, believed to be the threat actor Midnight Blizzard, the state-sponsored actor also known as Cozy Bear, had gained unauthorized access to HPE’s cloud-based email environment,” company lawyers wrote in a filing with the Securities and Exchange Commission. “The Company, with assistance from external cybersecurity experts, immediately activated our response process to investigate, contain, and remediate the incident, eradicating the activity. Based on our investigation, we now believe that the threat actor accessed and exfiltrated data beginning in May 2023 from a small percentage of HPE mailboxes belonging to individuals in our cybersecurity, go-to-market, business segments, and other functions.”

An HPE representative said in an email that Cozy Bear’s initial entry into the network was through “a compromised, internal HPE Office 365 email account [that] was leveraged to gain access.” The representative declined to elaborate. The representative also declined to say how HPE discovered the breach.

Cozy Bear hacking its way into the email systems of two of the world’s most powerful companies and monitoring top employees’ accounts for months aren’t the only similarities in the two events. Both breaches also involved the compromise of a single device on each corporate network, then escalating that toehold to the network itself. From there, Cozy Bear camped out undetected for months. The HPE intrusion was all the more impressive because Wednesday’s disclosure said that the hackers also gained access to Sharepoint servers in May. Even after HPE detected and contained that breach a month later, it would take HPE another six months to discover the compromised email accounts.

The pair of disclosures, coming within five days of each other, may create the impression that there has been a recent flurry of hacking activity. But Cozy Bear has actually been one of the most active nation-state groups since at least 2010. In the intervening 14 years, it has waged an almost constant series of attacks, mostly on the networks of governmental organizations and the technology companies that supply them. Multiple intelligence services and private research companies have attributed the hacking group as an arm of Russia’s Foreign Intelligence Service, also known as the SVR.

The life and times of Cozy Bear (so far)

In its earliest years, Cozy Bear operated in relative obscurity—precisely the domain it prefers—as it hacked mostly western governmental agencies and related organizations such as political think tanks and governmental subcontractors. In 2013, researchers from security firm Kaspersky unearthed MiniDuke, a sophisticated piece of malware that had taken hold of 60 government agencies, think tanks, and other high-profile organizations in 23 countries, including the US, Hungary, Ukraine, Belgium, and Portugal.

MiniDuke was notable for its odd combination of advanced programming and the gratuitous references to literature found embedded into its code. (It contained strings that alluded to Dante Alighieri’s Divine Comedy and to 666, the Mark of the Beast discussed in a verse from the Book of Revelation.) Written in assembly, employing multiple levels of encryption, and relying on hijacked Twitter accounts and automated Google searches to maintain stealthy communications with command-and-control servers, MiniDuke was among the most advanced pieces of malware found at the time.

It wasn’t immediately clear who was behind the mysterious malware—another testament to the stealth of its creators. In 2015, however, researchers linked MiniDuke—and seven other pieces of previously unidentified malware—to Cozy Bear. After a half decade of lurking, the shadowy group was suddenly brought into the light of day.

Cozy Bear once again came to prominence the following year when researchers discovered the group (along with Fancy Bear, a separate Russian-state hacking group) inside the servers of the Democratic National Committee, looking for intelligence such as opposition research into Donald Trump, the Republican nominee for president at the time. The hacking group resurfaced in the days following Trump’s election victory that year with a major spear-phishing blitz that targeted dozens of organizations in government, military, defense contracting, media, and other industries.

One of Cozy Bear’s crowning achievements came in late 2020 with the discovery of an extensive supply chain attack that targeted customers of SolarWinds, the Austin, Texas, maker of network management tools. After compromising SolarWinds’ software build system, the hacking group pushed infected updates to roughly 18,000 customers. The hackers then used the updates to compromise nine federal agencies and about 100 private companies, White House officials have said.

Cozy Bear has remained active, with multiple campaigns coming to light in 2021, including one that used zero-day vulnerabilities to infect fully updated iPhones. Last year, the group devoted much of its time to hacks of Ukraine.

Page: 1 2 Next →

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : Ars Technica – https://arstechnica.com/?p=1999178

Tags: Russiantechnologytimes
Previous Post

Rocket Report: Iran reaches orbit; Chinese firm achieves impressive landing test

Next Post

Cruise failed to disclose disturbing details of self-driving car crash

Supporting productive farms and clean water – Department of Ecology – State of Washington (.gov)

Supporting productive farms and clean water – Department of Ecology – State of Washington (.gov)

December 19, 2025
UCLA: Quirkiest science stories of 2025 – Newsroom | UCLA

UCLA: Quirkiest science stories of 2025 – Newsroom | UCLA

December 19, 2025
Digital Science awards 2025 Catalyst Grants – Research Information

Unveiling the 2025 Catalyst Grants: Igniting Breakthroughs in Research Innovation

December 19, 2025
WHP Global Signs Deal with Pure Cotton Global Group to Relaunch Lotto as a Lifestyle Brand in the U.S. and Canada – Licensing International

WHP Global and Pure Cotton Global Group Join Forces to Relaunch Lotto as a Trendsetting Lifestyle Brand in North America

December 19, 2025
6G discussions: How things have changed – 5gtechnologyworld.com

The Evolution of 6G: How the Conversation Has Transformed

December 19, 2025
NFL playoff picture: How the Seahawks helped the 49ers with win over Rams on ‘TNF’ – CBS Sports

NFL playoff picture: How the Seahawks helped the 49ers with win over Rams on ‘TNF’ – CBS Sports

December 19, 2025
Saudi Arabia’s 2034 World Cup stadium plans face delays and cost-cutting – The Guardian

Saudi Arabia’s Bold 2034 World Cup Stadium Vision Faces Setbacks and Budget Challenges

December 19, 2025
Engaging Diversity: An Inclusive Approach to Undergraduate Mentorship in Mobilization and Political Economy – Political Science Now

Engaging Diversity: An Inclusive Approach to Undergraduate Mentorship in Mobilization and Political Economy – Political Science Now

December 19, 2025
State Farm Arena Ranks In The Top 5 Live Entertainment Venues In The U.S. & Top 7 In The World, According To Billboard – Secret Atlanta

State Farm Arena Ranks In The Top 5 Live Entertainment Venues In The U.S. & Top 7 In The World, According To Billboard – Secret Atlanta

December 19, 2025
Mpox transmission, US flu surveillance highlighted in first Public Health Alerts reports – CIDRAP

Breaking New Ground: Essential Insights into Mpox Transmission and US Flu Surveillance Unveiled

December 19, 2025

Categories

Archives

December 2025
M T W T F S S
1234567
891011121314
15161718192021
22232425262728
293031  
« Nov    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (977)
  • Economy (995)
  • Entertainment (21,872)
  • General (18,832)
  • Health (10,035)
  • Lifestyle (1,008)
  • News (22,149)
  • People (1,002)
  • Politics (1,009)
  • Science (16,211)
  • Sports (21,496)
  • Technology (15,978)
  • World (984)

Recent News

Supporting productive farms and clean water – Department of Ecology – State of Washington (.gov)

Supporting productive farms and clean water – Department of Ecology – State of Washington (.gov)

December 19, 2025
UCLA: Quirkiest science stories of 2025 – Newsroom | UCLA

UCLA: Quirkiest science stories of 2025 – Newsroom | UCLA

December 19, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version