Close Menu
Breaking News in Technology & Business – Tech Geekwire

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    IEEE Spectrum: Flagship Publication of the IEEE

    July 4, 2025

    GOP Opposition Mounts Against AI Provision in Reconciliation Bill

    July 4, 2025

    Navigation Help

    July 4, 2025
    Facebook X (Twitter) Instagram
    Breaking News in Technology & Business – Tech GeekwireBreaking News in Technology & Business – Tech Geekwire
    • New
      • Amazon
      • Digital Health Technology
      • Microsoft
      • Startup
    • AI
    • Corporation
    • Crypto
    • Event
    Facebook X (Twitter) Instagram
    Breaking News in Technology & Business – Tech Geekwire
    Home ยป Microsoft Discovers Fake Entra Pages in Phishing Emails Targeting Critical Infrastructure
    Microsoft

    Microsoft Discovers Fake Entra Pages in Phishing Emails Targeting Critical Infrastructure

    techgeekwireBy techgeekwireMay 29, 2025No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email

    Microsoft security researchers have identified a significant shift in the tactics of the Russian hacking group Void Blizzard, also known as Laundry Bear. The group, previously known for purchasing login credentials on the dark web, has begun stealing credentials directly by creating fake Microsoft Entra login pages. These counterfeit pages are distributed through spear phishing emails, targeting small and medium-sized businesses (SMBs) in the West, with a particular focus on organizations in Ukraine and NATO member states.

    The Changing Tactics of Void Blizzard

    Void Blizzard’s new approach involves creating typosquatted domains to host fake Entra login pages, which are then used in phishing campaigns to trick victims into revealing their login credentials. This marks a significant change from their previous method of buying credentials on the dark web. Once inside their targets’ IT infrastructure, the hackers exfiltrate sensitive data, including emails, files, and business information, and attempt to move laterally within the organization.

    Targets and Motivations

    The campaign primarily targets organizations in critical sectors such as government, defense, transportation, media, NGOs, and healthcare. Education, telecommunications, and law enforcement agencies have also been targeted in some instances. Microsoft’s analysis suggests that the campaign is part of Russia’s broader war effort against Ukraine, aiming to gather intelligence from critical infrastructure.

    Intersection with Other Russian State Actors

    Microsoft’s findings indicate that Void Blizzard’s targets often overlap with those of other known Russian state actors, including Forest Blizzard, Midnight Blizzard, and Secret Blizzard. This overlap suggests shared espionage and intelligence collection interests among these groups, pointing to a coordinated Russian strategy to gather intelligence from strategic targets in Ukraine and NATO member states.

    Implications for Cybersecurity

    The shift in Void Blizzard’s tactics highlights the evolving nature of cyber threats associated with state-sponsored hacking groups. Organizations, particularly those in critical sectors, need to remain vigilant against sophisticated phishing campaigns and ensure robust security measures are in place to protect against credential theft and data exfiltration.

    cybersecurity Entra Microsoft phishing Russian hacking Void Blizzard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    techgeekwire
    • Website

    Related Posts

    IEEE Spectrum: Flagship Publication of the IEEE

    July 4, 2025

    GOP Opposition Mounts Against AI Provision in Reconciliation Bill

    July 4, 2025

    Navigation Help

    July 4, 2025

    Andreessen Horowitz Backs Controversial Startup Cluely Despite ‘Rage-Bait’ Marketing

    July 4, 2025

    Invesco QQQ ETF Hits All-Time High as Tech Stocks Continue to Soar

    July 4, 2025

    ContractPodAi Partners with Microsoft to Advance Legal AI Automation

    July 4, 2025
    Leave A Reply Cancel Reply

    Top Reviews
    Editors Picks

    IEEE Spectrum: Flagship Publication of the IEEE

    July 4, 2025

    GOP Opposition Mounts Against AI Provision in Reconciliation Bill

    July 4, 2025

    Navigation Help

    July 4, 2025

    Andreessen Horowitz Backs Controversial Startup Cluely Despite ‘Rage-Bait’ Marketing

    July 4, 2025
    Advertisement
    Demo
    About Us
    About Us

    A rich source of news about the latest technologies in the world. Compiled in the most detailed and accurate manner in the fastest way globally. Please follow us to receive the earliest notification

    We're accepting new partnerships right now.

    Email Us: info@example.com
    Contact: +1-320-0123-451

    Our Picks

    IEEE Spectrum: Flagship Publication of the IEEE

    July 4, 2025

    GOP Opposition Mounts Against AI Provision in Reconciliation Bill

    July 4, 2025

    Navigation Help

    July 4, 2025
    Categories
    • AI (2,696)
    • Amazon (1,056)
    • Corporation (990)
    • Crypto (1,130)
    • Digital Health Technology (1,079)
    • Event (523)
    • Microsoft (1,230)
    • New (9,568)
    • Startup (1,164)
    © 2025 TechGeekWire. Designed by TechGeekWire.
    • Home

    Type above and press Enter to search. Press Esc to cancel.