• Video
  • Shop
  • Culture
  • Family
  • Wellness
  • Food
  • Living
  • Style
  • Travel
  • News
  • Book Club
  • Newsletter
  • Privacy Policy
  • Your US State Privacy Rights
  • Children's Online Privacy Policy
  • Interest-Based Ads
  • Terms of Use
  • Do Not Sell My Info
  • Contact Us
  • Recalls and Product Safety Alerts
  • © 2026 ABC News
  • News

Microsoft corporate emails hacked by Russian-backed group, company says

0:22
US government agencies hit by cyberattack, official says
Sipa USA via AP, FILE
ByIvan Pereira
January 19, 2024, 10:38 PM

Microsoft revealed Friday that some of its corporate email accounts were hacked by a Russian-backed group.

The tech company said in a blog post that its security team detected the attack on Jan. 12 and quickly identified the group responsible: Midnight Blizzard, "the Russian state-sponsored actor also known as Nobelium."

In this April 27, 2021, file photo, a sign is shown on the Microsoft corporate campus in Redmond, Wash.
Sipa USA via AP, FILE

In late November, the group allegedly used a "password spray attack," where a user uses a single common password against multiple accounts on the same application, to "compromise a legacy non-production test tenant account and gain a foothold," according to Microsoft.

Related Articles

MORE: 9 Russians charged with cyberattacks targeting US companies

The group then "used the account’s permissions to access a very small percentage of Microsoft corporate email accounts, including members of our senior leadership team and employees in our cybersecurity, legal, and other functions, and exfiltrated some emails and attached documents," the company said.

The hackers allegedly were targeting email accounts for information related to Midnight Blizzard, Microsoft said.

PHOTO: Students on computers in a classroom in an undated stock photo.
STOCK PHOTO/Getty Images

Microsoft was able to remove the hacker's access to the email accounts on Jan. 13, according to a company filing with the SEC.

Related Articles

MORE: DOJ charges 2 Russian officers with global hacking campaign targeting US, UK intelligence officials

"To date, there is no evidence that the threat actor had any access to customer environments, production systems, source code, or AI systems. We will notify customers if any action is required," the company said.

The company said it is in the process of informing its affected users.

The investigation is ongoing.

Up Next in News—

Cambridge professor resigns amid plagiarism allegations, questions about 'academic qualifications'

August 6, 2026

Lindsay Clancy's friend says she was having 'dark thoughts' prior to killing her children

August 6, 2026

Lindsay Clancy trial: Toxicology expert testifies that drug levels were low

August 5, 2026

Brothers describe catching tiger shark off coast of Cape Cod

August 5, 2026

Shop GMA Favorites

ABC will receive a commission for purchases made through these links.

Sponsored Content by Taboola

The latest lifestyle and entertainment news and inspiration for how to live your best life - all from Good Morning America.
  • Contests
  • Terms of Use
  • Privacy Policy
  • Do Not Sell My Info
  • Children’s Online Privacy Policy
  • Advertise with us
  • Your US State Privacy Rights
  • Interest-Based Ads
  • About Nielsen Measurement
  • Press
  • Feedback
  • Shop FAQs
  • ABC News
  • ABC
  • All Videos
  • All Topics
  • Sitemap
  • Recalls and Product Safety Alerts

© 2026 ABC News
  • Privacy Policy— 
  • Your US State Privacy Rights— 
  • Children's Online Privacy Policy— 
  • Interest-Based Ads— 
  • Terms of Use— 
  • Do Not Sell My Info— 
  • Contact Us— 
  • Recalls and Product Safety Alerts— 

© 2026 ABC News