Microsoft is warning of a spear-phishing campaign by Midnight Blizzard, targeting multiple sectors to collect intelligence and potentially infiltrate networks.
The group has been sending thousands of spear-phishing emails, impersonating legitimate organizations, leading victims to unwittingly connect to servers they control.
Once a target opens the RDP attachment, Midnight Blizzard gains access to sensitive files, network drives, and can install malware to maintain access.
The campaign, linked to Russia's intelligence agency, notably targets U.S., UK, Australian, and Japanese individuals and organizations, highlighting a global threat.
Collection
[
|
...
]