Microsoft says early June disruptions to Outlook, cloud platform, were cyberattacks

Advertisement

Advertise with us

BOSTON (AP) — In early June, sporadic but serious service disruptions plagued Microsoft's flagship office suite — including the Outlook email and OneDrive file-sharing apps — and cloud computing platform. A shadowy hacktivist group claimed responsibility, saying it flooded the sites with junk traffic in distributed denial-of-service attacks.

Read this article for free:


or

Already have an account? Log in here »

To continue reading, please subscribe:

Subscribe and receive a limited-edition Free Press branded hat or tote.

Digital Subscription

One year of digital access for only $205*

  • Enjoy unlimited reading on winnipegfreepress.com
  • Read the E-Edition, our digital replica newspaper
  • Access News Break, our award-winning app
  • Play interactive puzzles

*First annual payment billed as $205.00 + GST for one year. This annual subscription will automatically renew at $233.00 + GST every 52 weeks (10% off the regular annual price of $259.35). Offer available to new and qualified returning subscribers only. Cancel any time.

To continue reading, please subscribe:

Add Free Press access to your Brandon Sun subscription for only an additional

$1 for the first 4 weeks*

  • Enjoy unlimited reading on winnipegfreepress.com
  • Read the E-Edition, our digital replica newspaper
  • Access News Break, our award-winning app
  • Play interactive puzzles
Start now

*Your next Brandon Sun subscription payment will increase by $1.00 and you will be charged $17.95 plus GST for four weeks. After four weeks, your payment will increase to $24.95 plus GST every four weeks.

Hey there, time traveller!
This article was published 17/06/2023 (1177 days ago), so information in it may no longer be current.

BOSTON (AP) — In early June, sporadic but serious service disruptions plagued Microsoft’s flagship office suite — including the Outlook email and OneDrive file-sharing apps — and cloud computing platform. A shadowy hacktivist group claimed responsibility, saying it flooded the sites with junk traffic in distributed denial-of-service attacks.

Initially reticent to name the cause, Microsoft has now disclosed that DDoS attacks by the murky upstart were indeed to blame.

But the software giant has offered few details — and did not immediately comment on how many customers were affected and whether the impact was global. A spokeswoman confirmed that the group that calls itself Anonymous Sudan was behind the attacks. It claimed responsibility on its Telegram social media channel at the time. Some security researchers believe the group to be Russian.

FILE - The Microsoft company logo is displayed at their offices in Sydney, Australia, on Feb. 3, 2021. Microsoft says the early June 2023 disruptions to its Microsoft’s flagship office suite — including the Outlook email and OneDrive file-sharing apps — were denial-of-service attacks by a shadowy new hacktivist group. (AP Photo/Rick Rycroft, File)
FILE - The Microsoft company logo is displayed at their offices in Sydney, Australia, on Feb. 3, 2021. Microsoft says the early June 2023 disruptions to its Microsoft’s flagship office suite — including the Outlook email and OneDrive file-sharing apps — were denial-of-service attacks by a shadowy new hacktivist group. (AP Photo/Rick Rycroft, File)

Microsoft’s explanation in a blog post Friday evening followed a request by The Associated Press two days earlier. Slim on details, the post said the attacks “temporarily impacted availability” of some services. It said the attackers were focused on “disruption and publicity” and likely used rented cloud infrastructure and virtual private networks to bombard Microsoft servers from so-called botnets of zombie computers around the globe.

Microsoft said there was no evidence any customer data was accessed or compromised.

While DDoS attacks are mainly a nuisance — making websites unreachable without penetrating them — security experts say they can disrupt the work of millions if they successfully interrupt the services of a software service giant like Microsoft on which so much global commerce depends.

It’s not clear if that’s what happened here.

“We really have no way to measure the impact if Microsoft doesn’t provide that info,” said Jake Williams, a prominent cybersecurity researcher and a former National Security Agency offensive hacker. Williams said he was not aware of Outlook previously being attacked at this scale.

“We know some resources were inaccessible for some, but not others. This often happens with DDoS of globally distributed systems,” Williams added. He said Microsoft’s apparent unwillingness to provide an objective measure of customer impact “probably speaks to the magnitude.”

Microsoft dubbed the attackers Storm-1359, using a designator it assigns to groups whose affiliation it has not yet established. Cybersecurity sleuthing tends to take time — and even then can be a challenge if the adversary is skilled.

Pro-Russian hacking groups including Killnet — which the cybersecurity firm Mandiant says is Kremlin-affiliated — have been bombarding government and other websites of Ukraine’s allies with DDoS attacks. In October, some U.S. airport sites were hit. Analyst Alexander Leslie of the cybersecurity firm Recorded Future said it’s unlikely Anonymous Sudan is located as it claims in Sudan, an African country. The group works closely with Killnet and other pro-Kremlin groups to spread pro-Russian propaganda and disinformation, he said.

Edward Amoroso, NYU professor and CEO of TAG Cyber, said the Microsoft incident highlights how DDoS attacks remain “a significant risk that we all just agree to avoid talking about. It’s not controversial to call this an unsolved problem.”

He said Microsoft’s difficulties fending of this particular attack suggest “a single point of failure.” The best defense against these attacks is to distribute a service massively, on a content distribution network for example.

Indeed, the techniques the attackers used are not old, said U.K. security researcher Kevin Beaumont. “One dates back to 2009,” he said.

Serious impacts from the Microsoft 365 office suite interruptions were reported on Monday June 5, peaking at 18,000 outage and problem reports on the tracker Downdetector shortly after 11 a.m. Eastern time.

On Twitter that day, Microsoft said Outlook, Microsoft Teams, SharePoint Online and OneDrive for Business were affected.

Attacks continued through the week, with Microsoft confirming on June 9 that its Azure cloud computing platform had been affected.

On June 8, the computer security news site BleepingComputer.com reported that cloud-based OneDrive file-hosting was down globally for a time.

Microsoft said at the time that desktop OneDrive clients were not affected, BleepingComputer reported.

Report Error Submit a Tip

More Stories

Microsoft says early June disruptions to Outlook, cloud platform, were cyberattacks

Frank Bajak, The Associated Press 4 minute read Preview

Microsoft says early June disruptions to Outlook, cloud platform, were cyberattacks

Frank Bajak, The Associated Press 4 minute read Saturday, Jun. 17, 2023

BOSTON (AP) — In early June, sporadic but serious service disruptions plagued Microsoft's flagship office suite — including the Outlook email and OneDrive file-sharing apps — and cloud computing platform. A shadowy hacktivist group claimed responsibility, saying it flooded the sites with junk traffic in distributed denial-of-service attacks.

Initially reticent to name the cause, Microsoft has now disclosed that DDoS attacks by the murky upstart were indeed to blame.

But the software giant has offered few details — and did not immediately comment on how many customers were affected and whether the impact was global. A spokeswoman confirmed that the group that calls itself Anonymous Sudan was behind the attacks. It claimed responsibility on its Telegram social media channel at the time. Some security researchers believe the group to be Russian.

Microsoft’s explanation in a blog post Friday evening followed a request by The Associated Press two days earlier. Slim on details, the post said the attacks “temporarily impacted availability” of some services. It said the attackers were focused on “disruption and publicity” and likely used rented cloud infrastructure and virtual private networks to bombard Microsoft servers from so-called botnets of zombie computers around the globe.

Read
Saturday, Jun. 17, 2023

Smith’s pretzel logic confuses

Editorial 4 minute read Preview

Smith’s pretzel logic confuses

Editorial 4 minute read Yesterday at 2:01 AM CDT

Alberta Premier Danielle Smith had both sides of her mouth working overtime on Aug. 30, when she spoke at an event in Calgary to commemorate Alberta Day, the annual celebration of the province’s entry into Confederation in 1905 (officially Sept. 1, it was celebrated on the weekend).

Smith’s comments — and the things she did not say — revealed a lot about the political tightrope the premier is trying to walk over the challenges currently faced by her province. At the top of that list of challenges is a persistent campaign to separate Alberta from the aforementioned Confederation. A campaign that Smith appears to both support and oppose, depending on which day of the week it is.

Her Alberta Day remarks were an excellent case in point.

Smith has decided that on Oct. 19, Albertans will vote on a series of non-binding propositions in a province referendum. One of those questions will ask Albertans whether they want to hold a referendum on separation, thus making this fall’s vote a “referendum on whether to hold a referendum,” as some observers have dubbed it.

Read
Yesterday at 2:01 AM CDT

Controlling pace of response path to success

Tim Kist 5 minute read Yesterday at 2:01 AM CDT

WITH the recent collapse of Canada-U.S. trade talks, the economic, political and social changes are coming at business leaders on a daily basis.

While you cannot control the pace of these changes, you can control the pace of response and timing of actions your organization takes. This is a time for thoughtful analysis and careful action, not chasing the latest trends.

Artificial intelligence, for example, can write articles, create images, draft emails and perform seemingly countless other tasks. But is this new tool solving a current business problem?

Successful companies know they must develop a strategy before launching any tactics. Otherwise, the strategy is based on “hope” — and we all know hope is not a strategy.

NDP minister needs lesson in political civility

Dan Lett 5 minute read Preview

NDP minister needs lesson in political civility

Dan Lett 5 minute read Friday, Sep. 4, 2026

Families Minister Nahanni Fontaine’s decision to intercede in Winnipeg’s mayoral election may be surprising to some political observers. To others, however, it is entirely on brand.

On Tuesday, Fontaine posted a video on social media in which she expressed concern that former city councillor and Progressive Conservative cabinet minister Kevin Klein was entering the race to challenge incumbent Mayor Scott Gillingham.

The caption on the video was blunt: “I mean, really, who chooses to work for Count Dracula?”

“Kevin Klein once worked for Peter Nygard. Peter Nygard is Canada’s equivalent to (American sex offender) Jeffrey Epstein — had his own little island, did unspeakable, disgusting things to women and girls … anyways, I just thought that Winnipeggers would want to know that Kevin Klein, at one point, worked for Peter Nygard,” she says in the video.

Read
Friday, Sep. 4, 2026

Wonderful wines to help welcome autumn

Ben Sigurdson 4 minute read Preview

Wonderful wines to help welcome autumn

Ben Sigurdson 4 minute read Yesterday at 3:00 AM CDT

As we creep ever closer to fall, many wine drinkers will start to think about popping corks (or screwcaps, as it were) on wines that suit cooler temperatures.

But summer’s not quite done yet. Here are six new and/or notable wines ideal for sipping as we make the transition from warmer weather into the first hints of autumn…

Wines of the weekThe Willm NV Blanc de Noirs Crémant d’Alsace Brut (Alsace, France — $28.99, Liquor Marts and beyond) is a French bubbly made from the Pinot Noir grape in the traditional method (secondary fermentation, which creates the bubbles, happens in the bottle rather than in tanks before bottling).

It’s pale gold with a hint of pink, and on the nose offers ripe cherry, cranberry, bread dough and strawberry compote notes. On the palate it’s light-bodied and mainly dry, with an almost-wild herbal component coming with the strawberry, tart peach, cranberry, raspberry and bread dough flavours.

Read
Yesterday at 3:00 AM CDT

Back to school means increased costs for parents, post-secondary students

Joel Schlesinger 6 minute read Preview

Back to school means increased costs for parents, post-secondary students

Joel Schlesinger 6 minute read Yesterday at 2:01 AM CDT

In the words of advice for students from Thornton Melon: “It’s rough out there. Move back in with your parents.”

As comedian Rodney Dangerfield’s character alluded to in the 1986 comedy Back to School, it is indeed a tough financial environment as students head back to the classroom in 2026.

A Capital One Canada survey found families are struggling with costs, with nearly six in 10 parents surveyed stating back-to-school expenses are higher than expected.

It’s not just tuition, new clothes and supplies. Extracurricular activities — like hockey, figure skating, ringette, soccer, dance, etc. — also ramp up, involving tuition-sized payments.

Read
Yesterday at 2:01 AM CDT