06 March 2021

210306 Microsoft Outlook.com latest massive hack

 About 2 weeks ago something strange happened.

A mail sent apparently from Microsoft Outlook servers invited me to click on a link to reconfirm my Google account designed as recovery account for my Microsoft account.

Why strange?


1. In case of account suspicious activity or hacking, there are well defined rules of alert.


2. Having more accounts on Microsoft and Google, respective suspicious email came only on certain accounts: those used for corporate purpose which were associated with interesting list of Contacts.


3. Analysis of email's header revealed only real internal ip addresses from Microsoft Outlook.

Same for the clickable link sent to click on in order to reverify your data.


4. Despite message said if you do not reverify, you can no longer use the account, checking the account from a different ip and device, all was ok, and more, the pretended email did not even existed, alike so-called flash-sms.


My Good Sense told me do ignore the email and for sure something happened inside Microsoft.


Today, the world news showed I was right.

Massive internal attack on Microsoft Outlook servers and Cloud- based email services.

I can only imagine how many US and world companies and authorities using Microsoft Outlook.com services are now in big trouble.


Such a sofisticated attack and hack could only be done by a state actor: China or Russia.

Israel is not in discussion, being an US ally.


In any case, the whole trouble was kept totally secret for at least 10 days.