• About
  • Advertise
  • Privacy & Policy
  • Contact
Thursday, December 25, 2025
  • Login
  • Home
    • Home – Layout 1
    • Home – Layout 2
    • Home – Layout 3
    • Home – Layout 4
    • Home – Layout 5
    • Home – Layout 6
  • News
    • All
    • Business
    • Politics
    • Science
    • World
    Hillary Clinton in white pantsuit for Trump inauguration

    Hillary Clinton in white pantsuit for Trump inauguration

    Amazon has 143 billion reasons to keep adding more perks to Prime

    Amazon has 143 billion reasons to keep adding more perks to Prime

    Shooting More than 40 Years of New York’s Halloween Parade

    Shooting More than 40 Years of New York’s Halloween Parade

    These Are the 5 Big Tech Stories to Watch in 2017

    These Are the 5 Big Tech Stories to Watch in 2017

    Why Millennials Need to Save Twice as Much as Boomers Did

    Why Millennials Need to Save Twice as Much as Boomers Did

    Doctors take inspiration from online dating to build organ transplant AI

    Doctors take inspiration from online dating to build organ transplant AI

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Tech
    • All
    • Apps
    • Gadget
    • Mobile
    • Startup
    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    Shadow Tactics: Blades of the Shogun Review

    Shadow Tactics: Blades of the Shogun Review

    macOS Sierra review: Mac users get a modest update this year

    macOS Sierra review: Mac users get a modest update this year

    Hands on: Samsung Galaxy A5 2017 review

    Hands on: Samsung Galaxy A5 2017 review

    The Last Guardian Playstation 4 Game review

    The Last Guardian Playstation 4 Game review

    These Are the 5 Big Tech Stories to Watch in 2017

    These Are the 5 Big Tech Stories to Watch in 2017

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
  • Entertainment
    • All
    • Gaming
    • Movie
    • Music
    • Sports
    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    macOS Sierra review: Mac users get a modest update this year

    macOS Sierra review: Mac users get a modest update this year

    Hands on: Samsung Galaxy A5 2017 review

    Hands on: Samsung Galaxy A5 2017 review

    Heroes of the Storm Global Championship 2017 starts tomorrow, here’s what you need to know

    Heroes of the Storm Global Championship 2017 starts tomorrow, here’s what you need to know

    Harnessing the power of VR with Power Rangers and Snapdragon 835

    Harnessing the power of VR with Power Rangers and Snapdragon 835

    So you want to be a startup investor? Here are things you should know

    So you want to be a startup investor? Here are things you should know

  • Lifestyle
    • All
    • Fashion
    • Food
    • Health
    • Travel
    Shooting More than 40 Years of New York’s Halloween Parade

    Shooting More than 40 Years of New York’s Halloween Parade

    Heroes of the Storm Global Championship 2017 starts tomorrow, here’s what you need to know

    Heroes of the Storm Global Championship 2017 starts tomorrow, here’s what you need to know

    Why Millennials Need to Save Twice as Much as Boomers Did

    Why Millennials Need to Save Twice as Much as Boomers Did

    Doctors take inspiration from online dating to build organ transplant AI

    Doctors take inspiration from online dating to build organ transplant AI

    How couples can solve lighting disagreements for good

    How couples can solve lighting disagreements for good

    Ducati launch: Lorenzo and Dovizioso’s Desmosedici

    Ducati launch: Lorenzo and Dovizioso’s Desmosedici

    Trending Tags

    • Golden Globes
    • Game of Thrones
    • MotoGP 2017
    • eSports
    • Fashion Week
  • Review
    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    Shadow Tactics: Blades of the Shogun Review

    Shadow Tactics: Blades of the Shogun Review

    macOS Sierra review: Mac users get a modest update this year

    macOS Sierra review: Mac users get a modest update this year

    Hands on: Samsung Galaxy A5 2017 review

    Hands on: Samsung Galaxy A5 2017 review

    The Last Guardian Playstation 4 Game review

    The Last Guardian Playstation 4 Game review

    Intel Core i7-7700K ‘Kaby Lake’ review

    Intel Core i7-7700K ‘Kaby Lake’ review

No Result
View All Result
Ai News
Advertisement
  • Home
    • Home – Layout 1
    • Home – Layout 2
    • Home – Layout 3
    • Home – Layout 4
    • Home – Layout 5
    • Home – Layout 6
  • News
    • All
    • Business
    • Politics
    • Science
    • World
    Hillary Clinton in white pantsuit for Trump inauguration

    Hillary Clinton in white pantsuit for Trump inauguration

    Amazon has 143 billion reasons to keep adding more perks to Prime

    Amazon has 143 billion reasons to keep adding more perks to Prime

    Shooting More than 40 Years of New York’s Halloween Parade

    Shooting More than 40 Years of New York’s Halloween Parade

    These Are the 5 Big Tech Stories to Watch in 2017

    These Are the 5 Big Tech Stories to Watch in 2017

    Why Millennials Need to Save Twice as Much as Boomers Did

    Why Millennials Need to Save Twice as Much as Boomers Did

    Doctors take inspiration from online dating to build organ transplant AI

    Doctors take inspiration from online dating to build organ transplant AI

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Tech
    • All
    • Apps
    • Gadget
    • Mobile
    • Startup
    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    Shadow Tactics: Blades of the Shogun Review

    Shadow Tactics: Blades of the Shogun Review

    macOS Sierra review: Mac users get a modest update this year

    macOS Sierra review: Mac users get a modest update this year

    Hands on: Samsung Galaxy A5 2017 review

    Hands on: Samsung Galaxy A5 2017 review

    The Last Guardian Playstation 4 Game review

    The Last Guardian Playstation 4 Game review

    These Are the 5 Big Tech Stories to Watch in 2017

    These Are the 5 Big Tech Stories to Watch in 2017

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
  • Entertainment
    • All
    • Gaming
    • Movie
    • Music
    • Sports
    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    macOS Sierra review: Mac users get a modest update this year

    macOS Sierra review: Mac users get a modest update this year

    Hands on: Samsung Galaxy A5 2017 review

    Hands on: Samsung Galaxy A5 2017 review

    Heroes of the Storm Global Championship 2017 starts tomorrow, here’s what you need to know

    Heroes of the Storm Global Championship 2017 starts tomorrow, here’s what you need to know

    Harnessing the power of VR with Power Rangers and Snapdragon 835

    Harnessing the power of VR with Power Rangers and Snapdragon 835

    So you want to be a startup investor? Here are things you should know

    So you want to be a startup investor? Here are things you should know

  • Lifestyle
    • All
    • Fashion
    • Food
    • Health
    • Travel
    Shooting More than 40 Years of New York’s Halloween Parade

    Shooting More than 40 Years of New York’s Halloween Parade

    Heroes of the Storm Global Championship 2017 starts tomorrow, here’s what you need to know

    Heroes of the Storm Global Championship 2017 starts tomorrow, here’s what you need to know

    Why Millennials Need to Save Twice as Much as Boomers Did

    Why Millennials Need to Save Twice as Much as Boomers Did

    Doctors take inspiration from online dating to build organ transplant AI

    Doctors take inspiration from online dating to build organ transplant AI

    How couples can solve lighting disagreements for good

    How couples can solve lighting disagreements for good

    Ducati launch: Lorenzo and Dovizioso’s Desmosedici

    Ducati launch: Lorenzo and Dovizioso’s Desmosedici

    Trending Tags

    • Golden Globes
    • Game of Thrones
    • MotoGP 2017
    • eSports
    • Fashion Week
  • Review
    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    The Legend of Zelda: Breath of the Wild gameplay on the Nintendo Switch

    Shadow Tactics: Blades of the Shogun Review

    Shadow Tactics: Blades of the Shogun Review

    macOS Sierra review: Mac users get a modest update this year

    macOS Sierra review: Mac users get a modest update this year

    Hands on: Samsung Galaxy A5 2017 review

    Hands on: Samsung Galaxy A5 2017 review

    The Last Guardian Playstation 4 Game review

    The Last Guardian Playstation 4 Game review

    Intel Core i7-7700K ‘Kaby Lake’ review

    Intel Core i7-7700K ‘Kaby Lake’ review

No Result
View All Result
Ai News
No Result
View All Result
Home AI & Cybersecurity

Sloppy Entra ID Credentials Attract Hybrid Cloud Ransomware

AiNEWS2025 by AiNEWS2025
2024-12-09
in AI & Cybersecurity
0
Sloppy Entra ID Credentials Attract Hybrid Cloud Ransomware
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter


Adversaries have caught on to the complexity that cybersecurity teams face in securing hybrid cloud environments — the latest of which is a really odious group tracked as “Storm-0501,” a cash-grab operation that often targets most likely probably the most inclined organizations, along with faculties, hospitals, and regulation enforcement all through the US.

Storm-0501 has been spherical since 2021, in response to a model new report from Microsoft Menace Intelligence, working as associates of various ransomware-as-a-service (RaaS) strains along with BlackCat/ALPHV, LockBit, and Embargo.

Notably, Microsoft has observed a shift in technique by the ransomware group. As quickly as reliant on looking for preliminary entry from brokers, Storm-0501 has additional not too way back found success exploiting hybrid cloud environments with weak passwords and overprivileged accounts. They first crack into the on-premises setting at a aim, then pivot to burrow into the cloud, as seen in a single advertising marketing campaign that effectively targeted Entra ID credentials.

Microsoft Entra Be a part of Credential Crack

The Microsoft employees detailed a modern assault from Storm-0501 menace actors that used compromised credentials to entry Microsoft Entra ID (beforehand Azure AD). This on-premises Microsoft utility is liable for synching passwords and completely different delicate data between objects in Vigorous Itemizing and Entra ID, which primarily permits a client to examine in to every on-premises and cloud environments using the an identical credentials.

As quickly as Storm-0501 was able to switch laterally into the cloud, it was able to tamper with and exfiltrate data, organize persistent backdoor entry, and deploy ransomware, the report warned.

“We’ll assess with extreme confidence that throughout the newest Storm-0501 advertising marketing campaign, the menace actor notably located Microsoft Entra Be a part of Sync servers and managed to extract the plain textual content material credentials of the Microsoft Entra Be a part of cloud and on-premises sync accounts,” Microsoft reported. “Following the compromise of the cloud Itemizing Synchronization Account, the menace actor can authenticate using the clear-text credentials and get an entry token to Microsoft Graph.”

From there, an attacker can freely change the Microsoft Entra ID passwords of any hybrid, synced account.

Nonetheless that’s not the one technique these slippery cybercriminals have found to vault from a compromised Entra ID account into the cloud. The second method is additional tough, as Microsoft detailed, and relied on breaching a website admin account with a correlating Entra ID that is designated with worldwide admin permissions. Furthermore, the account will need to have multifactor authentication (MFA) disabled for the attackers to attain success.

“It is vitally necessary level out that the sync service is unavailable for administrative accounts in Microsoft Entra, due to this fact the passwords and completely different data mustn’t synced from the on-premises account to the Microsoft Entra account on this case,” Microsoft said. “Nonetheless, if the passwords for every accounts are the an identical, or obtainable by on-premises credential theft strategies (i.e. Web browsers’ passwords retailer), then the pivot is possible.”

As quickly because it was in, Storm-0501 acquired busy establishing persistent backdoor entry for later, working to appreciate neighborhood administration, and guaranteeing lateral movement to the cloud, Microsoft reported. As quickly as that was achieved, they exfiltrated the recordsdata they wished and deployed Embargo ransomware all through your full group.

“Throughout the situations observed by Microsoft, the menace actor leveraged compromised Space Admin accounts to distribute the Embargo ransomware by means of a scheduled course of named ‘SysUpdate’ that was registered by means of GPO on the devices throughout the neighborhood,” in response to the Microsoft report.

The two separate variations of assaults in opposition to Microsoft’s Entra ID utility show that cybercriminals of other have focused in on hybrid cloud environments, and their massive, fat assault surfaces, as simple wins.

Securing the Hybrid Cloud In the direction of Storm-0501 Assaults

“As hybrid cloud environments grow to be additional prevalent, the issue of securing sources all through quite a few platforms grows ever additional essential for organizations,” Microsoft’s Threat Intel team warned.

Enterprise cybersecurity teams can get hold of this by persevering with to maneuver in the direction of a zero-trust framework, in response to a press launch from Patrick Tiquet, vice chairman, security and construction, at Keeper Security.

“This model restricts entry based on regular verification, guaranteeing that clients solely have entry to the sources necessary for his or her explicit roles, minimizing publicity to malicious actors,” Tiquet outlined by means of e mail. “Weak credentials keep among the inclined entry elements in hybrid cloud environments, and groups like Storm-0501 usually tend to exploit them.”

Centralizing endpoint system administration (EDM) may also be “necessary,” he said. “Making sure fixed security patching all through all environments — whether or not or not cloud-based or on-premises — prevents attackers from exploiting acknowledged vulnerabilities.”

Superior monitoring will help teams spot potential threats all through hybrid cloud environments sooner than they may develop right into a breach, he added.

Stephen Kowski, topic CTO at SlashNext Security echoed a number of the same strategies in an emailed assertion.

“This report highlights the essential need for sturdy security measures all through hybrid cloud environments,” Kowski said. “Security teams must prioritize strengthening id and entry administration, implementing least privilege guidelines, and guaranteeing properly timed patching of Internet-facing strategies.”

In addition to, he really helpful shoring up security to protect in opposition to preliminary entry makes an try.

“Deploying superior e mail and messaging security choices might assist cease preliminary entry makes an try via phishing or social engineering strategies that at all times operate entry elements for these refined assaults,” he added.



Source link

#Sloppy #Entra #Credentials #Attraction to #Hybrid #Cloud #Ransomware


Unlock the potential of cutting-edge AI choices with our full selections. As a primary provider throughout the AI panorama, we harness the flexibility of artificial intelligence to revolutionize industries. From machine finding out and knowledge analytics to pure language processing and laptop imaginative and prescient, our AI choices are designed to strengthen effectivity and drive innovation. Uncover the limitless prospects of AI-driven insights and automation that propel your enterprise forward. With a dedication to staying on the forefront of the shortly evolving AI market, we ship tailored choices that meet your explicit desires. Be a part of us on the forefront of technological improvement, and let AI redefine the best way through which you utilize and obtain a aggressive panorama. Embrace the long term with AI excellence, the place prospects are limitless, and rivals is surpassed.

Previous Post

Article: ‘Operationalizing AI Ethics Principles’ published @ Communications of the ACM

Next Post

Robot Talk Episode 89 – Simone Schuerle

AiNEWS2025

AiNEWS2025

Next Post
Robot Talk Episode 89 – Simone Schuerle

Robot Talk Episode 89 – Simone Schuerle

Stay Connected test

  • 23.9k Followers
  • 99 Subscribers
  • Trending
  • Comments
  • Latest
A tiny new open source AI model performs as well as powerful big ones

A tiny new open source AI model performs as well as powerful big ones

0
Water Cooler Small Talk: The Birthday Paradox 🎂🎉 | by Maria Mouschoutzi, PhD | Sep, 2024

Water Cooler Small Talk: The Birthday Paradox 🎂🎉 | by Maria Mouschoutzi, PhD | Sep, 2024

0
Ghost of Yōtei: The acclaimed Ghost of Tsushima is getting a sequel

Ghost of Yōtei: The acclaimed Ghost of Tsushima is getting a sequel

0
Best Headphones for Working Out (2024): Bose, Shokz, JLab

Best Headphones for Working Out (2024): Bose, Shokz, JLab

0
The science of human touch – and why it’s so hard to replicate in robots

The science of human touch – and why it’s so hard to replicate in robots

2025-12-25
Meet the man hunting the spies in your smartphone

Meet the man hunting the spies in your smartphone

2025-12-25
The Machine Learning “Advent Calendar” Day 24: Transformers for Text in Excel

The Machine Learning “Advent Calendar” Day 24: Transformers for Text in Excel

2025-12-25
Being Santa Claus is a year-round calling

Being Santa Claus is a year-round calling

2025-12-25

Recent News

The science of human touch – and why it’s so hard to replicate in robots

The science of human touch – and why it’s so hard to replicate in robots

2025-12-25
Meet the man hunting the spies in your smartphone

Meet the man hunting the spies in your smartphone

2025-12-25
The Machine Learning “Advent Calendar” Day 24: Transformers for Text in Excel

The Machine Learning “Advent Calendar” Day 24: Transformers for Text in Excel

2025-12-25
Being Santa Claus is a year-round calling

Being Santa Claus is a year-round calling

2025-12-25
Footer logo

We bring you the best Premium WordPress Themes that perfect for news, magazine, personal blog, etc. Check our landing page for details.

Follow Us

Browse by Category

  • AI & Cloud Computing
  • AI & Cybersecurity
  • AI & Sentiment Analysis
  • AI Applications
  • AI Ethics
  • AI Future Predictions
  • AI in Education
  • AI in Fintech
  • AI in Gaming
  • AI in Healthcare
  • AI in Startups
  • AI Innovations
  • AI News
  • AI Research
  • AI Tools & Automation
  • Apps
  • AR/VR & AI
  • Business
  • Deep Learning
  • Emerging Technologies
  • Entertainment
  • Fashion
  • Food
  • Gadget
  • Gaming
  • Health
  • Lifestyle
  • Machine Learning
  • Mobile
  • Movie
  • Music
  • News
  • Politics
  • Review
  • Robotics & Smart Systems
  • Science
  • Sports
  • Startup
  • Tech
  • Travel
  • World

Recent News

The science of human touch – and why it’s so hard to replicate in robots

The science of human touch – and why it’s so hard to replicate in robots

2025-12-25
Meet the man hunting the spies in your smartphone

Meet the man hunting the spies in your smartphone

2025-12-25
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2025 JNews - Premium WordPress news & magazine theme by Jegtheme.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result

© 2025 JNews - Premium WordPress news & magazine theme by Jegtheme.