Module Summary Paper

docx

School

Saint Leo University *

*We aren’t endorsed by this school

Course

510

Subject

Communications

Date

Feb 20, 2024

Type

docx

Pages

2

Uploaded by ColonelKomodoDragonPerson999

Report
Joshua Dowling COM 510 Saint Leo University 1/21/24 Module 1 Summary Paper https://abcnews.go.com/Business/microsoft-corporate-emails-hacked-russian- backed-group-company/story?id=106527859 On January 19 th , 2024 Microsoft reported that they were hacked by a Russian backed group. The focus of the hacking was to get into some of it’s corporate email accounts. Microsoft identified the group as Midnight Blizzard, also known as Nobelium. The group was able to access the accounts using a technique called a “password spray attack.” This is when someone attempts to gain access using a single common password against multiple accounts on the same application. Once they were able to gain a foothold on the accounts, they “used the account’s permissions to access a very small percentage of Microsoft corporate email accounts, including members of our senior leadership team and employees in our cybersecurity, legal, and other functions, and exfiltrated some emails and attached documents”, the company said. Microsoft was able to mitigate the hacker’s intrusion without any evidence of harm being done to any customers in any of their various environments, applications, code, or other systems. The investigation is still ongoing and as information is obtained, customers will be notified if they were affected. After reading the article and since there is still an investigation pending, I think making suggestions would/could be difficult. In my current occupation, I have to sign into work using a
multifactor authentication system. I have a username, a password, and then I receive a code either through text message or a linked token. I think this would have been a good way to help secure in this situation, especially since it would have slowed down the attempts and it would have signaled to someone that something suspicious was happening. If that were the case, then maybe they could have stopped the intrusion before it happened and kept safe any information that they were able to procure. Pereira, I. (2024, January 19). Microsoft corporate emails hacked by Russian-backed group, company says . ABC News. https://abcnews.go.com/Business/microsoft-corporate-emails- hacked-russian-backed-group-company/story?id=106527859
Your preview ends here
Eager to read complete document? Join bartleby learn and gain access to the full version
  • Access to all documents
  • Unlimited textbook solutions
  • 24/7 expert homework help