GadgetBond

  • Latest
  • How-to
  • Tech
    • AI
    • Amazon
    • Apple
    • CES
    • Computing
    • Creators
    • Google
    • Meta
    • Microsoft
    • Mobile
    • Samsung
    • Security
    • Xbox
  • Transportation
    • Audi
    • BMW
    • Cadillac
    • E-Bike
    • Ferrari
    • Ford
    • Honda Prelude
    • Lamborghini
    • McLaren W1
    • Mercedes
    • Porsche
    • Rivian
    • Tesla
  • Culture
    • Apple TV
    • Disney
    • Gaming
    • Hulu
    • Marvel
    • HBO Max
    • Netflix
    • Paramount
    • SHOWTIME
    • Star Wars
    • Streaming
Add GadgetBond as a preferred source to see more of our stories on Google.
Font ResizerAa
GadgetBondGadgetBond
  • Latest
  • Tech
  • AI
  • Deals
  • How-to
  • Apps
  • Mobile
  • Gaming
  • Streaming
  • Transportation
Search
  • Latest
  • Deals
  • How-to
  • Tech
    • Amazon
    • Apple
    • CES
    • Computing
    • Creators
    • Google
    • Meta
    • Microsoft
    • Mobile
    • Samsung
    • Security
    • Xbox
  • AI
    • Anthropic
    • ChatGPT
    • ChatGPT Atlas
    • Gemini AI (formerly Bard)
    • Google DeepMind
    • Grok AI
    • Meta AI
    • Microsoft Copilot
    • OpenAI
    • Perplexity
    • xAI
  • Transportation
    • Audi
    • BMW
    • Cadillac
    • E-Bike
    • Ferrari
    • Ford
    • Honda Prelude
    • Lamborghini
    • McLaren W1
    • Mercedes
    • Porsche
    • Rivian
    • Tesla
  • Culture
    • Apple TV
    • Disney
    • Gaming
    • Hulu
    • Marvel
    • HBO Max
    • Netflix
    • Paramount
    • SHOWTIME
    • Star Wars
    • Streaming
Follow US
MicrosoftSecurityTech

Russian attackers breach Microsoft leadership email accounts

The SolarWinds hackers struck Microsoft, using password attacks and compromised accounts to access executive emails undetected for a period of weeks.

By
Shubham Sawarkar
Shubham Sawarkar's avatar
ByShubham Sawarkar
Editor-in-Chief
I’m a tech enthusiast who loves exploring gadgets, trends, and innovations. With certifications in CISCO Routing & Switching and Windows Server Administration, I bring a sharp...
Follow:
- Editor-in-Chief
Jan 19, 2024, 5:30 PM EST
Share
We may get a commission from retail offers. Learn more
Russian attackers breach Microsoft leadership email accounts
Photo: Alamy
SHARE

Microsoft revealed on Friday that a sophisticated nation-state cyber attack breached email accounts belonging to members of its senior leadership team in late November 2023. The attack was conducted by Nobelium, the same group behind the extensive SolarWinds espionage campaign uncovered nearly three years ago.

According to Microsoft’s Security Response Center, the breach was not the result of a vulnerability in Microsoft products or services. Rather, it started with a password spray attack that allowed the hackers to gain access to a non-production legacy account. They then leveraged the compromised account’s permissions to access a “very small percentage” of corporate email accounts used by Microsoft leaders and employees in cybersecurity, legal, and other functions. The hackers were able to exfiltrate some emails and documents before Microsoft detected the intrusion on January 12th, 2024.

Microsoft stated that the initial goal seemed to be gathering intelligence and information about the company itself, and it is still unclear exactly what or how much data may have been stolen over the weeks or months the attackers had access. As of now, Microsoft says there is no evidence that customer data or production systems were impacted.

The timing of the attack is notable, coming just days after Microsoft announced sweeping changes to its software security practices in response to major breaches of its Azure cloud platform. Over the past few years, Microsoft has found itself at the center of several high-profile cyber incidents – from SolarWinds to exploits in Exchange Server and cloud services that enabled access to thousands of corporate and government email systems.

This latest sophisticated attack aimed at accessing sensitive information highlights the growing threat and willingness of nation-state actors to target technology providers and their leadership. Even with extensive resources and security expertise, Microsoft was unable to detect Nobelium’s presence for over a month. As the company works to revamp its internal security processes, it also serves as a sobering reminder that no organization is immune from cyber espionage.

The incident reveals both the increasing sophistication of state-sponsored hacking and the challenges of detecting stealthy, patient attackers focused on quietly stealing confidential information. It remains to be seen whether Nobelium was able to access extremely sensitive strategy, plans or other intellectual property from Microsoft’s senior leaders during its weeks of access.

Microsoft will now need to assess the damage from the breach, determine what may have been taken, and implement enhanced monitoring to spot similar attacks more rapidly. However, the complexity of detecting and rooting out intruders that have already established a foothold presents major hurdles – even for the world’s largest software company.


Discover more from GadgetBond

Subscribe to get the latest posts sent to your email.

Leave a Comment

Leave a ReplyCancel reply

Most Popular

Apple’s iPhone 18 plan is changing

What to watch on Paramount+ right now

Apple’s next Pro iPhone may not solve the scratch problem

Hypelist lets you build lists around the things you love

Snap’s new SPECS AR glasses are real, pricey, and coming this fall

Under-16s face social media ban in the UK

Here’s how to reset your Mac login password in a few steps

Before the web, there was print

iOS 27: Apple Wallet keys now support Disney World

Rec League is the kind of app the internet has been missing

Also Read
Promotional image for the Swipewipe photo cleaner app showing three versions of the same portrait photo arranged on a soft beige background. The center image is highlighted with a green checkmark to indicate a photo being kept, while the smaller images on either side feature trash can icons, representing photos selected for deletion. The visual illustrates Swipewipe’s swipe-based photo organization and cleanup process for managing duplicate or unwanted images.

Swipewipe makes clearing your camera roll feel oddly easy

The Apple Music logo in white text against a vibrant red background. The text has a slight distortion or wave effect, giving it a dynamic, musical appearance. The Apple logo precedes the word "Music" and both share the same rippling, audiographic style treatment.

Apple Music iOS 27 update: AutoMix, artist pages, and Siri AI

Soccer player Antonee Robinson stands backstage at a sporting event wearing a black team jacket and an accreditation badge while using a pair of unreleased over-ear Beats headphones. The headphones feature a white exterior with dark blue ear cushions and a minimalist Beats logo on the ear cup. Other team members wearing wireless earbuds can be seen in the background as the group prepares to enter the venue.

The new Beats headphones, Antonee Robinson just teased on his way to the World Cup

Promotional banner for Xbox Game Pass Ultimate showcasing a lineup of popular games across multiple genres. The artwork features an anime-style character, an American football player, an adventurer in a fedora, a futuristic armored soldier, and a block-based fantasy game scene. The Xbox logo and "Game Pass Ultimate" branding are displayed prominently in the center, emphasizing access to a wide catalog of console, PC, and cloud gaming titles through a single subscription.

Xbox Game Pass Ultimate: pricing, perks, and how it all fits together

Promotional artwork for PC Game Pass featuring a collage of game characters and worlds. The image includes a red-eyed fantasy character, a tactical soldier, an adventurer wearing a fedora, and a mythological bearded figure with glowing eyes. The Xbox logo and "PC Game Pass" branding appear across the center, highlighting a diverse library of action, adventure, strategy, and role-playing games available through the subscription service.

PC Game Pass in 2026: library, limits, and the new price cut

Promotional Xbox gaming image with the slogan “Play the Way You Want” displayed in large green text at the center. Surrounding the message are multiple gaming devices, including an Xbox console and controller, a gaming handheld, a laptop, a smartphone, and a TV, all showing Xbox games and the Xbox app interface. The artwork highlights Xbox Cloud Gaming and Game Pass, emphasizing the ability to play across console, PC, handheld, mobile, and streaming devices from a single gaming ecosystem.

Xbox Game Pass Premium: the middle tier that might be just right

Xbox Game Pass key art

Xbox Game Pass Essential: who it’s for, what it includes, what it skips

Promotional image of the PlayStation Portal handheld gaming device featuring the PlayStation Plus cloud streaming interface on its display. The screen shows the PlayStation Plus logo surrounded by a glowing purple ring, while the device's white DualSense-style controller grips frame the display on both sides. Set against a dark background with PlayStation-inspired colors, the image highlights cloud gaming and remote play capabilities available through PlayStation Plus.

New to PlayStation Plus? Here’s how the service really works

Company Info
  • Homepage
  • Support my work
  • Latest stories
  • Company updates
  • GDB Recommends
  • Daily newsletters
  • About us
  • Contact us
  • Write for us
  • Editorial guidelines
Legal
  • Privacy Policy
  • Cookies Policy
  • Terms & Conditions
  • DMCA
  • Disclaimer
  • Accessibility Policy
  • Security Policy
  • Do Not Sell or Share My Personal Information
Socials
Follow US

Disclosure: We love the products we feature and hope you’ll love them too. If you purchase through a link on our site, we may receive compensation at no additional cost to you. Read our ethics statement. Please note that pricing and availability are subject to change.

Copyright © 2026 GadgetBond. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | Do Not Sell/Share My Personal Information.