Friday, Jun 19, 2026
English News
  • Hyderabad
  • Telangana
  • AP News
  • India
  • World
  • Entertainment
  • Sport
  • Science and Tech
  • Business
  • Rewind
  • ...
    • NRI
    • View Point
    • cartoon
    • My Space
    • Education Today
    • Reviews
    • Property
    • Lifestyle
E-Paper
  • NRI
  • View Point
  • cartoon
  • My Space
  • Reviews
  • Education Today
  • Property
  • Lifestyle
Home | News | Microsoft Disables Hackers Working With Iranian Intelligence

Microsoft disables hackers working with Iranian intelligence

San Francisco: Microsoft has detected and disabled a previously undocumented Lebanon-based activity group that is working with other actors affiliated with Iran’s Ministry of Intelligence and Security (MOIS) to attack organisations in Israel. Microsoft Threat Intelligence Center (MSTIC) named the group ‘Polonium’. The tech giant suspended more than 20 malicious OneDrive applications created by Polonium actors, […]

By IANS
Published Date - 4 June 2022, 12:15 PM
Microsoft disables hackers working with Iranian intelligence
whatsapp facebook twitter telegram

San Francisco: Microsoft has detected and disabled a previously undocumented Lebanon-based activity group that is working with other actors affiliated with Iran’s Ministry of Intelligence and Security (MOIS) to attack organisations in Israel.

Microsoft Threat Intelligence Center (MSTIC) named the group ‘Polonium’.


The tech giant suspended more than 20 malicious OneDrive applications created by Polonium actors, notified affected organisations, and deployed a series of security intelligence updates that will quarantine tools developed by Polonium operators.

“Our goal is to help deter future activity by exposing and sharing the Polonium tactics with the community at large,” the company said in a statement.

The group is linked with Iranian government and such collaboration or direction from Tehran would align with a string of revelations since late 2020 that the “Government of Iran is using third parties to carry out cyber operations on their behalf, likely to enhance Iran’s plausible deniability”.

Polonium has targeted or compromised more than 20 organisations based in Israel and one intergovernmental organisation with operations in Lebanon over the past three months.

“This actor has deployed unique tools that abuse legitimate cloud services for command and control (C2) across most of their victims. Polonium was observed creating and using legitimate OneDrive accounts, then utilising those accounts as C2 to execute part of their attack operation,” explained Microsoft.

This activity does not represent any security issues or vulnerabilities on the OneDrive platform.

“As with any observed nation-state actor activity, Microsoft directly notifies customers that have been targeted or compromised, providing them with the information they need to secure their accounts,” said the company.

Since February, Polonium has been observed primarily targeting organisations in Israel with a focus on critical manufacturing, IT, and Israel’s defense industry.

In at least one case, Polonium’s compromise of an IT company was used to target a downstream aviation company and law firm in a supply chain attack that relied on service provider credentials to gain access to the targeted networks, according to the researchers.

  • Follow Us :
  • Tags
  • hacker
  • Lebanon
  • Microsoft

Related News

  • Lebanese army withdraws from southern village as Israeli troops advance

    Lebanese army withdraws from southern village as Israeli troops advance

  • At least 18 killed in southern Lebanon as Israel-Hezbollah clashes intensify

    At least 18 killed in southern Lebanon as Israel-Hezbollah clashes intensify

  • Netanyahu calls off Lebanon raid after ‘heated’ call with Trump

    Netanyahu calls off Lebanon raid after ‘heated’ call with Trump

  • Israeli strikes kill 8 in Lebanon’s fourth largest city ahead of Washington talks

    Israeli strikes kill 8 in Lebanon’s fourth largest city ahead of Washington talks

Latest News

  • RBI compounds FEMA violations of Sai Rayalaseema Paper Mills

    7 hours ago
  • YSRCP chief Jagan seeks CBI inquiry into Vijayawada custodial death

    7 hours ago
  • Verdict on Telegram app suspension plea set for June 19

    7 hours ago
  • India, France to launch TRISHNA satellite for global food security

    7 hours ago
  • Bank of Baroda offers up to 6.25% interest to NRIs under new FCNR(B) scheme

    7 hours ago
  • Daily wager found dead in Siddipet lake after fishing trip

    7 hours ago
  • BSH unveils premium four-door side-by-side refrigerators in Hyderabad

    8 hours ago
  • Bisleri workers seek Labour Minister Vivek’s intervention over job dismissals in Sangareddy

    8 hours ago

company

  • Home
  • About Us
  • Contact Us
  • Privacy Policy

business

  • Subscribe

telangana today

  • Telangana
  • Hyderabad
  • Latest News
  • Entertainment
  • World
  • Andhra Pradesh
  • Science & Tech
  • Sport

follow us

  • Telangana Today Telangana Today
Telangana Today Telangana Today

© Copyrights 2024 TELANGANA PUBLICATIONS PVT. LTD. All rights reserved. Powered by Veegam