Skip to content
OnMSFT.com
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
Menu
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
  1. Home
  2. News
  3. Russian hacking group ‘Midnight Blizzard’ targets global organizations via Teams, Microsoft warns

Russian hacking group ‘Midnight Blizzard’ targets global organizations via Teams, Microsoft warns

OnMSFT Staff OnMSFT Staff
August 3, 2023
2 min read

In a recent blog post by Microsoft and as reported by Reuters, Microsoft Threat Intelligence has revealed the detection of highly targeted social engineering attacks conducted by a threat actor known as Midnight Blizzard (formerly NOBELIUM). The attacks center around credential theft phishing lures delivered via Microsoft Teams chats and have affected fewer than 40 global organizations since late May. Even last month, Microsoft confirmed that services were disrupted and were caused by a Russian hacking group.

Midnight Blizzard, a hacking group linked to the Russian Foreign Intelligence Service (SVR), is notorious for its persistent espionage activities. The group has been targeting various sectors, including government, non-government organizations (NGOs), IT services, technology, discrete manufacturing, and media, since as far back as 2018.

To facilitate their attacks, the hackers utilized previously compromised Microsoft 365 tenants owned by small businesses to create new domains masquerading as technical support entities. By adopting security-themed keywords and names containing “Microsoft,” the threat actor attempted to lend legitimacy to their phishing messages.

The attack chain targets users with valid credentials or employs passwordless authentication through the Microsoft Authenticator app. The attackers convince the users to enter codes into the app, granting them unauthorized access to their Microsoft 365 accounts.

Despite multifactor authentication (MFA) being a widely recommended security measure, Midnight Blizzard found ways to evade it, raising concerns over the effectiveness of MFA in countering sophisticated social engineering attacks.

Microsoft has taken prompt action to mitigate the threat actor’s use of domains. It is actively investigating and remediating the impact of the attacks. Additionally, the company has notified targeted and compromised customers, providing them with crucial information to secure their environments.

Microsoft Teams boasts more than 280 million active users. Hence, the company advises users to remain cautious when encountering unexpected requests or messages, particularly from unfamiliar sources.

The Russian embassy in Washington has yet to respond to requests for comment on the matter, leaving organizations on high alert for potential further attacks from the persistent and adaptable hacking group Midnight Blizzard.

Related

Share this article:
Previous Article Activision to officially reveal Call of Duty 2023 next week Next Article Play WWE 2K23, Descenders and Dragon Ball Fighter Z with Xbox Free Play Days

Related Articles

Asha Sharma scraps Xbox campaign, leads brand reset, refocuses messaging, signals new direction for consoles, Game Pass, and future strategy changes.

Xbox Chief Asha Sharma Ends ‘This Is an Xbox’ Campaign, Starts Brand Reset

March 27, 2026
Jensen Huang Expected at COMPUTEX 2026 as NVIDIA Books Major Taipei Event Space

Jensen Huang Expected at COMPUTEX 2026 as NVIDIA Books Major Taipei Event Space

March 27, 2026
AMD Ryzen 9 9950X3D2

AMD 9950X3D2 launch video flooded with FSR 4 requests for older GPUs

March 27, 2026

Leave a Comment Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • Xbox Chief Asha Sharma Ends ‘This Is an Xbox’ Campaign, Starts Brand Reset
  • Jensen Huang Expected at COMPUTEX 2026 as NVIDIA Books Major Taipei Event Space
  • AMD 9950X3D2 launch video flooded with FSR 4 requests for older GPUs
  • Intel Arc Pro B70 First Gaming Tests Show 45% Performance Jump Over B60
  • Sony Raises PS5, PS5 Pro, and PlayStation Portal Prices Again Starting April 2, 2026

Recent Comments

  1. XxRIVTYxX on Intel Says It Tried to Help Before Crimson Desert Dropped Arc Support
  2. Gaurav Kumar on Chrome Prepares Nudge to ‘Move Tabs to the Side’ as Vertical Tabs Near Release
OnMSFT.com

The Tech News Site

Categories

  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Gaming
  • Edge
  • Teams

Recent Posts

  • Xbox Chief Asha Sharma Ends ‘This Is an Xbox’ Campaign, Starts Brand Reset
  • Jensen Huang Expected at COMPUTEX 2026 as NVIDIA Books Major Taipei Event Space
  • AMD 9950X3D2 launch video flooded with FSR 4 requests for older GPUs
  • Intel Arc Pro B70 First Gaming Tests Show 45% Performance Jump Over B60
  • Sony Raises PS5, PS5 Pro, and PlayStation Portal Prices Again Starting April 2, 2026

Quick Links

  • About OnMSFT.com
  • Contact OnMSFT
  • Join Our Team
  • Privacy Policy
© 2010–2026 OnMSFT.com LLC. All rights reserved.
About OnMSFT.comContact OnMSFTPrivacy Policy