Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Midnight Blizzard attack on Microsoft corporate environment: a detailed analysis, detections and recommendations

Summary

Analysis of Midnight Blizzard's (APT29) breach of Microsoft: a password-sprayed legacy test tenant plus abused OAuth apps led to corporate mailbox access; with detections and hardening advice.
Published
Collected

original ↗

Related coverage

back