HomeTechHow hackers used multiple...

How hackers used multiple points of entry to hack us – Microsoft

Microsoft Corp said on Thursday it found malicious software in its systems related to a massive hacking campaign disclosed by U.S. officials this week, adding a top technology target to a growing list of attacked government agencies.

The Redmond, Washington company is a user of Orion, the widely deployed networking management software from SolarWinds Corp which was used in the suspected Russian attacks on vital U.S. agencies and others.

Microsoft also had its own products leveraged to attack victims, said people familiar with the matter.

The U.S. National Security Agency issued a rare “cybersecurity advisory” Thursday detailing how certain Microsoft Azure cloud services may have been compromised by hackers and directing users to lock down their systems.

“Like other SolarWinds customers, we have been actively looking for indicators of this actor and can confirm that we detected malicious Solar Winds binaries in our environment, which we isolated and removed,” a Microsoft spokesperson said, adding that the company had found “no indications that our systems were used to attack others.”

One of the people familiar with the hacking spree said the hackers made use of Microsoft cloud offerings while avoiding Microsoft’s corporate infrastructure.

Microsoft did not immediately respond to questions about the technique.

Still, another person familiar with the matter said the Department of Homeland Security (DHS) does not believe Microsoft was a key avenue of fresh infection.

Both Microsoft and the DHS, which earlier on Thursday said the hackers used multiple methods of entry, are continuing to investigate.

The FBI and other agencies have scheduled a classified briefing for members of Congress Friday.

CISA said it was continuing to analyze the other avenues used by the attackers.

So far, the hackers are known to have at least monitored email or other data within the U.S. departments of Defense, State, Treasury, Homeland Security and Commerce.

As many as 18,000 Orion customers downloaded the updates that contained a back door, SolarWinds has said.

Since the campaign was discovered, software companies have cut off communication from those back doors to the computers maintained by the hackers.

But the attackers might have installed additional ways of maintaining access, CISA said, in what some have called the biggest hack in a decade.

The Department of Justice, FBI and Defense Department, among others, have moved routine communication onto classified networks that are believed not to have been breached, according to two people briefed on the measures.

They are assuming that the non-classified networks have been accessed, the people said.

CISA and private companies including FireEye Inc, which was the first to discover and reveal it had been hacked, have released a series of clues for organizations to look for to see if they have been hit.

But the attackers are very careful and have deleted logs, or electronic footprints or which files they have accessed, security experts said. That makes it hard to know what has been taken.

Some major companies have said they have “no evidence” that they were penetrated, but in some cases that may only be because the evidence was removed.

In most networks, the attackers would also have been able to create false data, but so far it appears they were interested only in obtaining real data, people tracking the probes said.

Meanwhile, members of Congress are demanding more information about what may have been taken and how, along with who was behind it.

The House Homeland Security Committee and Oversight Committee announced an investigation Thursday, while senators pressed to learn whether individual tax information was obtained.

In a statement, President-elect Joe Biden said he would “elevate cybersecurity as an imperative across the government” and “disrupt and deter our adversaries” from undertaking such major hacks.

- A word from our sponsors -

spot_img

Most Popular

LEAVE A REPLY

Please enter your comment!
Please enter your name here

More from Author

Cheta Nwanze: Failed visa Marriages

by Cheta Nwanze The 1990 film Green Card told a relatively innocent...

Digital Marketing for Attorneys

In the competitive landscape of legal services, personal injury and medical...

- A word from our sponsors -

spot_img

Read Now

“No Victor, No Vanquished” — Angbazo calls for unity after Nasarawa ADC Governorship Primary win

LAFIA — Retired General Nuhu Angbazo has emerged victorious from the Africa Democratic Congress, ADC, governorship primaries in Nasarawa State, calling on all party faithful to sheathe their swords and rally behind a common vision for the state's development. In a press statement issued shortly after his victory...

Lazarus Angbazo: The Countries that will lead the AI Economy are being decided right Now — By Their PowerGrids

Nigeria has enough installed generation to power a mid-sized country. The grid delivers less than half of it. Around the world, the race to build AI-ready power infrastructure is already underway — and the decisions African governments and investors make in the next eighteen months will determine...

Cheta Nwanze: Failed visa Marriages

by Cheta Nwanze The 1990 film Green Card told a relatively innocent story: a French immigrant and an American woman enter a marriage of convenience so he can stay in the US. They barely know each other. They hope never to see each other again after the deal...

Digital Marketing for Attorneys

In the competitive landscape of legal services, personal injury and medical malpractice attorneys are finding themselves overshadowed by competitors who dominate online visibility. The root of this issue lies in the digital presence that many firms lack. While traditional word-of-mouth referrals still hold value, the digital age...

Lazarus Angbazo: The global power industry is leaving Africa behind

 Dr. Lazarus AngbazoThe nascent AI revolution is not just driving electricity consumption and massive demand for additional capacity—it is reshaping how power is built, maintained, and delivered. For Africa, the real risk is no longer just insufficient capacity—it is also losing control and ability to manage the capacity it...

Bunmi Onabanjo-Kuku: The first thing you feel when you land in Nigeria

By Bunmi Onabanjo-Kuku The first thing you feel when you land in a country is not its culture, not its cuisine, not its people. It is its airport. That threshold, the space between the jet bridge and the city beyond, tells you everything a nation believes about itself...

Dr. Lazarus Angbazo: Why a fractured world strengthens the case for African Infrastructure

How inflation, energy insecurity, power scarcity, and geopolitical fragmentation are reshaping the risk-return case for African infrastructure By Dr. Lazarus Angbazo At a recent global infrastructure summit, the prevailing mood among institutional investors was unmistakable. Faced with surging capital requirements for energy transition, grid expansion, and digital infrastructure in Europe and...

Aliko Dangote to launch what could become Africa’s largest initial public offering to raise $5 billion from investors

Nigeria’s biggest local investor, Aliko Dangote, is moving ahead with plans to launch what could become Africa’s largest initial public offering, as Dangote Petroleum Refinery & Petrochemicals prepares to raise up to $5 billion from investors. The share sale is expected to open as early as May, with...

Criminal networks have turned Nigeria’s telecom towers into open-air warehouses for theft, looting

Criminal networks have turned Nigeria’s telecom towers into open-air warehouses for theft, looting 656 critical power assets across 14 states in 2025 alone and keeping up the pace in early 2026. The Nigerian Communications Commission (NCC) data showed the haul included 152 generators and 504 batteries stolen from...

Paul Yirenkyi: A call for Caution Needed, President Tinubu and the INEC-ADC Crisis

I have seen enough cycles of tension and resolution to recognise when restraint must prevail over confrontation. The current standoff between the Independent National Electoral Commission (INEC) and the African Democratic Congress (ADC) is one such moment. In early April 2026, INEC withdrew recognition of the Senator...

Nigeria’s opposition landscape appears increasingly fractured, disorganised and strategically weakened

10 months until the 2027 general elections, Nigeria’s opposition landscape appears increasingly fractured, disorganised and strategically weakened. Although no fewer than 21 political parties have been registered by the Independent National Electoral Commission (INEC) to participate in the polls, developments within the parties, including internal crises, litigations and other destabilising factors, may...

Power shortages weaken Nigeria’s business activity 

Nigeria’s business environment continued to expand in March 2026 but slowed as rising input costs and power supply deficits weighed on performance, according to the latest Business Confidence Monitor (BCM) report by the Nigerian Economic Summit Group (NESG). The report indicates that the Current Business Performance Index declined...