Russian hackers exploiting Outlook bug to hijack Exchange accounts

The targeted entities include government, energy, transportation, and other key organizations in the United States, Europe, and the Middle East.

SECURITY

12/6/20231 min read

Microsoft's Threat Intelligence team issued a warning earlier today about the Russian state-sponsored actor APT28 (aka "Fancybear" or "Strontium") actively exploiting the CVE-2023-23397 Outlook flaw to hijack Microsoft Exchange accounts and steal sensitive information.

More Information: https://www.bleepingcomputer.com/news/microsoft/russian-hackers-exploiting-outlook-bug-to-hijack-exchange-accounts/