Microsoft: Chinese Hackers Breached US Govt Email Accounts

FILE PHOTO: Microsoft logo is seen on a smartphone placed on displayed Activision Blizzard logo in this illustration taken January 18, 2022. REUTERS/Dado Ruvic/Illustration/File Photo
FILE PHOTO: Microsoft logo is seen on a smartphone placed on displayed Activision Blizzard logo in this illustration taken January 18, 2022. REUTERS/Dado Ruvic/Illustration/File Photo
TT

Microsoft: Chinese Hackers Breached US Govt Email Accounts

FILE PHOTO: Microsoft logo is seen on a smartphone placed on displayed Activision Blizzard logo in this illustration taken January 18, 2022. REUTERS/Dado Ruvic/Illustration/File Photo
FILE PHOTO: Microsoft logo is seen on a smartphone placed on displayed Activision Blizzard logo in this illustration taken January 18, 2022. REUTERS/Dado Ruvic/Illustration/File Photo

Chinese-based hackers seeking intelligence information breached the email accounts of a number of US government agencies, computer giant Microsoft said.

"The threat actor Microsoft links to this incident is an adversary based in China that Microsoft calls Storm-0558," the company said in a blog post late Tuesday.

Microsoft said Storm-0558 gained access to email accounts at approximately 25 organizations including government agencies, AFP said.

Microsoft did not identify the targets but a US State Department spokesperson said the department had "detected anomalous activity" and had taken "immediate steps to secure our systems."

"As a matter of cybersecurity policy, we do not discuss details of our response and the incident remains under investigation," the spokesperson said.

According to The Washington Post, the breached email accounts were unclassified and "Pentagon, intelligence community and military email accounts did not appear to be affected."

But the paper reported Wednesday evening, quoting US officials, that State Department email accounts and that of Commerce Secretary Gina Raimondo were hacked. Raimondo's agency has angered China by imposing tough export controls on Chinese technologies.

CNN, citing sources familiar with the investigation, said the Chinese hackers targeted a small number of federal agencies and the email accounts of specific officials at each agency.

In the blog post, Charlie Bell, a Microsoft executive vice president, said "we assess this adversary is focused on espionage, such as gaining access to email systems for intelligence collection.

"This type of espionage-motivated adversary seeks to abuse credentials and gain access to data residing in sensitive systems," Bell said.

US National Security Adviser Jake Sullivan addressed the hack in an appearance on Wednesday on ABC's Good Morning America, and said it had been detected "fairly rapidly."

"We were able to prevent further breaches," Sullivan said.

"The matter is still being investigated, so I have to leave it there because we're gathering further information in consultation with Microsoft and we will continue to apprise the public as we learn more," Sullivan said.

Espionage and data theft
Microsoft said Storm-0558 "primarily targets government agencies in Western Europe and focuses on espionage, data theft, and credential access."

The Redmond, Washington-based company said it had launched an investigation into "anomalous mail activity" on June 16.

"Over the next few weeks, our investigation revealed that beginning on May 15, 2023, Storm-0558 gained access to email accounts affecting approximately 25 organizations including government agencies as well as related consumer accounts.

"They did this by using forged authentication tokens to access user email using an acquired Microsoft account consumer signing key," the company said. "Microsoft has completed mitigation of this attack for all customers."

US Senator Mark Warner, chairman of the Senate Select Committee on Intelligence, said the panel is "closely monitoring what appears to be a significant cybersecurity breach by Chinese intelligence."

"It's clear that the PRC is steadily improving its cyber collection capabilities directed against the US and our allies," Warner said in a statement.

Disclosure of the Chinese hacking comes on the heels of trips to China by US Secretary of State Antony Blinken and Treasury Secretary Janet Yellen and the shooting down by the United States of a Chinese surveillance balloon.

In May, Microsoft said state-sponsored Chinese hackers called "Volt Typhoon" had infiltrated critical US infrastructure networks.

Microsoft highlighted Guam, a US territory in the Pacific Ocean with a vital military outpost, as one of the targets in that attack, but said "malicious" activity had also been detected elsewhere in the United States.

"Microsoft assesses with moderate confidence that this Volt Typhoon campaign is pursuing development of capabilities that could disrupt critical communications infrastructure between the United States and Asia region during future crises," the company said at the time.

Microsoft's May statement coincided with an advisory released by US, Australian, Canadian, New Zealand and British authorities warning that the hacking was likely occurring globally.

China denied the allegations, describing the Microsoft report as "extremely unprofessional" and "scissors-and-paste work."

"It is clear that this is a collective disinformation campaign of the Five Eyes coalition countries, initiated by the US for its geopolitical purposes," foreign ministry spokeswoman Mao Ning said, referring to the security alliance of the United States and its Western allies that wrote the report.



Poland Urges Brussels to Probe TikTok Over AI-Generated Content

The TikTok logo is pictured outside the company's US head office in Culver City, California, US, September 15, 2020. (Reuters)
The TikTok logo is pictured outside the company's US head office in Culver City, California, US, September 15, 2020. (Reuters)
TT

Poland Urges Brussels to Probe TikTok Over AI-Generated Content

The TikTok logo is pictured outside the company's US head office in Culver City, California, US, September 15, 2020. (Reuters)
The TikTok logo is pictured outside the company's US head office in Culver City, California, US, September 15, 2020. (Reuters)

Poland has asked the European Commission to investigate TikTok after the social media platform hosted AI-generated content including calls for Poland to withdraw from the EU, it said on Tuesday, adding that the content was almost certainly Russian disinformation.

"The disclosed content poses a threat to public order, information security, and the integrity of democratic processes in Poland and across the European Union," Deputy Digitalization Minister Dariusz Standerski said in a letter sent to the Commission.

"The nature of ‌the narratives, ‌the manner in which they ‌are distributed, ⁠and the ‌use of synthetic audiovisual materials indicate that the platform is failing to comply with the obligations imposed on it as a Very Large Online Platform (VLOP)," he added.

A Polish government spokesperson said on Tuesday the content was undoubtedly Russian disinformation as the recordings contained Russian syntax.

TikTok, representatives ⁠of the Commission and of the Russian embassy in Warsaw did not ‌immediately respond to Reuters' requests for ‍comment.

EU countries are taking ‍measures to head off any foreign state attempts to ‍influence elections and local politics after warning of Russian-sponsored espionage and sabotage. Russia has repeatedly denied interfering in foreign elections.

Last year, the Commission opened formal proceedings against social media firm TikTok, owned by China's ByteDance, over its suspected failure to limit election interference, notably in ⁠the Romanian presidential vote in November 2024.

Poland called on the Commission to initiate proceedings in connection with suspected breaches of the bloc's sweeping Digital Services Act, which regulates how the world's biggest social media companies operate in Europe.

Under the Act, large internet platforms like X, Facebook, TikTok and others must moderate and remove harmful content like hate speech, racism or xenophobia. If they do not, the Commission can impose fines of up to 6% ‌of their worldwide annual turnover.


Saudi National Cybersecurity Authority Launches Service to Verify Suspicious Links

Saudi National Cybersecurity Authority Launches Service to Verify Suspicious Links
TT

Saudi National Cybersecurity Authority Launches Service to Verify Suspicious Links

Saudi National Cybersecurity Authority Launches Service to Verify Suspicious Links

The National Cybersecurity Authority has launched the “Tahqaq” service, aimed at enabling members of the public to proactively and safely deal with circulated links and instantly verify their reliability before visiting them.

This initiative comes within the authority’s strategic programs designed to empower individuals to enhance their cybersecurity, SPA reported.

The authority noted that the “Tahqaq” service allows users to scan circulated links and helps reduce the risks associated with using and visiting suspicious links that may lead to unauthorized access to data. The service also provides cybersecurity guidance to users, mitigating emerging cyber risks and boosting cybersecurity awareness across all segments of society.

The “Tahqaq” service is offered as part of the National Portal for Cybersecurity Services (Haseen) in partnership with the authority’s technical arm, the Saudi Information Technology Company (SITE). The service is available through the unified number on WhatsApp (+966118136644), as well as via the Haseen portal website at tahqaq.haseen.gov.sa.


Saudi Arabia’s Space Sector: A Strategic Pillar of a Knowledge-Based Economy

The Kingdom is developing an integrated sovereign space system encompassing infrastructure and applications, led by national expertise - SPA
The Kingdom is developing an integrated sovereign space system encompassing infrastructure and applications, led by national expertise - SPA
TT

Saudi Arabia’s Space Sector: A Strategic Pillar of a Knowledge-Based Economy

The Kingdom is developing an integrated sovereign space system encompassing infrastructure and applications, led by national expertise - SPA
The Kingdom is developing an integrated sovereign space system encompassing infrastructure and applications, led by national expertise - SPA

Saudi Arabia is undergoing significant transformations toward an innovation-driven knowledge economy, with the space sector emerging as a crucial pillar of Saudi Vision 2030. This sector has evolved from a scientific domain into a strategic driver for economic development, focusing on investing in talent, developing infrastructure, and strengthening international partnerships.

CEO of the Saudi Space Agency Dr. Mohammed Al-Tamimi emphasized that space is a vital tool for human development. He noted that space exploration has yielded significant benefits in telecommunications, navigation, and Earth observation, with many daily technologies stemming from space research, SPA reported.

Dr. Al-Tamimi highlighted a notable shift with the private sector's entry into the space industry, which is generating new opportunities. He stressed that Saudi Arabia aims not just to participate but to lead in creating an integrated space ecosystem encompassing legislation, investment, and innovation.

He also noted the sector's role in fostering national identity among youth, key drivers of the industry. Investing in them is crucial for the Kingdom's future, focusing on creating a space sector that empowers Saudi citizens.

In alignment with international efforts, the Saudi Space Agency signed an agreement with NASA for the first Saudi satellite dedicated to studying space weather, part of the Artemis II mission under a scientific cooperation framework established in July 2024.

According to SPA, the Kingdom is developing an integrated sovereign space system encompassing infrastructure and applications, led by national expertise. This initiative is supported by strategic investments and advanced technologies within a governance framework that meets international standards. Central to this vision is the Neo Space Group, owned by the Public Investment Fund, which aims to establish Saudi Arabia as a space leader.

Saudi Arabia views space as a strategic frontier for human development. Vision 2030 transforms space into a bridge between dreams and achievements, empowering Saudi youth to shape their futures. Space represents not just data and satellites but a national journey connecting ambition with innovation.