TechCrunch News 02月07日
HPE begins notifying data breach victims after Russian government hack
index_new5.html
../../../zaker_core/zaker_tpl_static/wap/tpl_guoji1.html

 

惠普企业(HPE)已开始通知个人,他们在2023年遭受的网络攻击中个人信息被盗。HPE将此次攻击归咎于俄罗斯政府支持的黑客组织。泄露的数据包括社会安全号码、驾照信息和信用卡号码。攻击源于2023年5月对HPE的电子邮件系统和SharePoint环境的入侵,这些系统由微软托管。HPE于2024年1月公开披露了该事件,确认黑客窃取了少量电子邮件邮箱和一些SharePoint文件的内容。黑客利用一个被入侵的账户访问了HPE内部的Office 365电子邮件环境中的邮箱。被盗邮箱数据主要属于HPE网络安全、市场推广和业务团队的个人。

🚨HPE遭受网络攻击,个人信息泄露:惠普企业(HPE)通知用户,其个人信息在2023年遭受的网络攻击中被盗,泄露信息包括社会安全号码、驾照信息和信用卡号码。

🇷🇺俄罗斯黑客组织Midnight Blizzard:HPE将此次攻击归咎于俄罗斯政府支持的黑客组织Midnight Blizzard(又名APT29),该组织与俄罗斯对外情报局SVR有关联。

📧攻击目标:黑客通过入侵HPE的电子邮件系统和SharePoint环境窃取数据,尤其针对HPE网络安全、市场推广和业务团队的个人邮箱。

🛡️微软也受牵连:微软也确认其公司网络受到Midnight Blizzard的攻击,目标是公司高管和网络安全高级职员的电子邮件账户,试图了解微软对该黑客组织的了解。

Hewlett Packard Enterprise has begun notifying individuals whose personal information was stolen during a 2023 cyberattack, which the company blamed on Russian government hackers.

HPE has so far notified more than a dozen individuals whose data was stolen in the cyberattack, according to TechCrunch’s review of breach notices filed with at least two U.S. state attorneys general. 

The breached data included Social Security numbers, driver’s license information and credit card numbers, per a filing with the state of Massachusetts

HPE spokesperson Adam R. Bauer did not return requests for comment with questions about the breach.

The breach relates to an intrusion beginning May 2023 into HPE’s email systems and SharePoint environments, referring to Microsoft SharePoint software that allows companies to build intranet portals; both of which were hosted by Microsoft. HPE publicly disclosed the incident in January 2024, confirming that the hackers exfiltrated the contents of a “small number” of its email mailboxes and some SharePoint files. 

HPE said the hackers used “a compromised account to access internal HPE email boxes in our Office 365 email environment.” HPE later told regulators that the stolen mailbox data predominantly belonged to individuals in HPE’s cybersecurity, go-to-market, and business teams. 

HPE attributed the hack to a group dubbed Midnight Blizzard, which security researchers say is linked to Russia’s foreign intelligence service, known as the SVR. Midnight Blizzard (also known as APT29) has been linked to a number of high-profile attacks, including the 2019 SolarWinds espionage campaign targeting the federal government 

Microsoft also confirmed in January 2024 that its corporate network was compromised by Midnight Blizzard. Microsoft said that the Russian hackers targeted the email accounts of corporate executives, as well as senior staff working in cybersecurity, which Microsoft said was likely in an effort to learn what the company knows about the hackers themselves

Fish AI Reader

Fish AI Reader

AI辅助创作,多种专业模板,深度分析,高质量内容生成。从观点提取到深度思考,FishAI为您提供全方位的创作支持。新版本引入自定义参数,让您的创作更加个性化和精准。

FishAI

FishAI

鱼阅,AI 时代的下一个智能信息助手,助你摆脱信息焦虑

联系邮箱 441953276@qq.com

相关标签

HPE 网络攻击 数据泄露 Midnight Blizzard 俄罗斯黑客
相关文章