Skip to main content

Microsoft thwarts new Russian cyberattack on U.S. senators and think tanks

Microsoft has once again thwarted the efforts of Russian hackers ahead of the 2018 midterm elections in the United States in November. Through its Digital Crimes Unit (DCU), Microsoft was able to take down six malicious websites targeting political candidates, politicians, and think tanks. DCU traced the spearphishing campaign back to a group called Fancy Bear; the group is widely believed to have strong ties to Russia’s military.

For its spearphishing campaign, Fancy Bear created fake websites with similar domains to notable organizations, like the International Republican Institute and the Hudson Institute. The former counts high-profile Republicans in its leadership, including Senator John McCain and Governor Mitt Romney along with one Senate candidate, while the latter hosts talks on cybersecurity. Both organizations have been critical of Donald Trump and Russia in the past.

Recommended Videos

“Microsoft has notified both nonprofit organizations,” Microsoft wrote in a blog post. “Both have responded quickly, and Microsoft will continue to work closely with them and other targeted organizations on countering cybersecurity threats to their systems. We’ve also been monitoring and addressing domain activity with Senate IT staff the past several months, following prior attacks we detected on the staffs of two current senators.” The company said that there is no evidence that a successful attack was conducted, however.

Please enable Javascript to view this content

This latest effort to stop Russian meddling in U.S. elections follows Microsoft’s announcement in July that it had stopped a group tied to Russia’s intelligence agency of using a phishing campaign to target three political candidates ahead of the midterm elections.

“It’s clear that democracies around the world are under attack,” Microsoft said, highlighting that cyberattacks are on the rise, especially when the attacks could be used to influence elections. “Foreign entities are launching cyber strikes to disrupt elections and sow discord.”

Microsoft claims that its DCU has taken down 84 fake websites over the past two years and that more work is needed. “An effective response will require even more work to bring people and expertise together from across governments, political parties, campaigns and the tech sector,” the company said.

As part of its efforts to combat election meddling, Microsoft launched a new AccountGuard service, which will be available at no cost to candidates running for federal, state, or local office. To take advantage of AccountGuard, political candidates must have use Office 365 for their campaign, and the service provides threat notification across accounts, security guidance, and the opportunity to trial new security features. Microsoft said that these features are “on a par with the services offered to our large corporate and account customers.”

Microsoft has been demonstrating that it wants to be an upstanding corporate citizen, and AccountGuard follows recent Microsoft initiatives like the Cybersecurity Tech Accord and its work on creating ethical artificial intelligence systems.

Chuong Nguyen
Silicon Valley-based technology reporter and Giants baseball fan who splits his time between Northern California and Southern…
Microsoft stopped the largest DDoS attack ever reported
Nvidia T4 Enterprise Server Wall

Distributed Denial-of-Service (DDoS) attacks have become more common, and Microsoft recently published a blog post looking into the trends for such attacks on its own servers. In that post, the company says that, at one point, it stopped one of the largest-ever-recorded DDoS attacks on a Microsoft Azure server in Asia.

According to Microsoft's data, in November, an unnamed Azure customer in Asia was targeted with a DDoS attack with a throughput of 3.47 Tbps and a packet rate of 340 million packets per second (pps.) The attack came from 10,000 sources from multiple countries across the globe, including China, South Korea, Russia, Iran, and Taiwan. The attack itself lasted 15 minutes. Yet it is not the first one of such scale, as there were two additional attacks, one of 3.25 Tbps and another of 2.55 Tbps in December in Asia.

Read more
HMD Global shows its serious about U.S. expansion with 5 new Nokia phones
HMD Global's range of new Nokia phones at CES 2022.

HMD Global has big plans for the U.S. market, and at CES 2022 it has revealed a new range of devices that cost less than $250, all coming out over the next months. Buoyed by LG and ZTE both leaving the U.S., it has struck lucrative deals with T-Mobile, Tracfone, Verizon, and other carriers to supply Nokia phones on pre-paid contracts, including low-cost feature phones.

To help achieve its ambitious targets in the U.S. for the coming year -- it's targeting number one in feature phones, and number three in pre-paid smartphones -- it has announced five new U.S. exclusive phones that will arrive during the first six months of the year. Top of the list is an affordable 5G phone, followed by three 4G phones, and a new feature phone with Kai OS software onboard.

Read more
Huawei’s new plan may help it circumvent U.S. sanctions
Huawei logo seen on a banner at MWC.

Chinese smartphone maker Huawei, which has been badly hit by U.S.-imposed sanctions, is reportedly working on a new plan that could potentially help it circumvent those restrictions, Bloomberg reports. The plan involves the company licensing smartphone designs to some of its existing partners, which would then source parts and technology from entities that Huawei itself is barred from dealing with.

The companies that Huawei intends to work with include a little-known firm called Xnova and another company called TD Tech Ltd. Interestingly, Xnova is the subsidiary of a larger Chinese state-owned company called China National Postal and Telecommunications Appliances Co. (PTAC), which already sells Huawei’s existing Nova series devices on its own e-commerce platform. Both these companies aim to license smartphone designs from Huawei, but will most likely sell these devices under their own brand names.

Read more