{"id":307655,"date":"2025-07-31T22:19:10","date_gmt":"2025-07-31T22:19:10","guid":{"rendered":"https:\/\/www.europesays.com\/uk\/307655\/"},"modified":"2025-07-31T22:19:10","modified_gmt":"2025-07-31T22:19:10","slug":"microsoft-accuses-russias-fsb-of-using-malware-against-foreign-embassies-cybersecurity-news","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/uk\/307655\/","title":{"rendered":"Microsoft accuses Russia\u2019s FSB of using malware against foreign embassies | Cybersecurity News"},"content":{"rendered":"<p class=\"article__subhead\">Microsoft says cyber-espionage campaign \u2018poses high risk\u2019 to foreign embassies, diplomats and other groups in Moscow.<\/p>\n<p>Microsoft has accused one of the Russian government\u2019s premier cyber-espionage units of deploying malware against embassies and diplomatic organisations in Moscow by leveraging local internet service providers.<\/p>\n<p>In a <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2025\/07\/31\/frozen-in-transit-secret-blizzards-aitm-campaign-against-diplomats\/\" target=\"_blank\" rel=\"noopener\">blog post<\/a> on Thursday, Microsoft Threat Intelligence said the campaign by Russia\u2019s Federal Security Service, also known as the FSB, \u201chas been ongoing since at least 2024\u201d.<\/p>\n<p>The effort \u201cposes a high risk to foreign embassies, diplomatic entities, and other sensitive organizations operating in Moscow, particularly to those entities who rely on local internet providers\u201d, Microsoft said.<\/p>\n<p>The analysis confirms for the first time that the FSB is conducting cyber-espionage at the ISP level, according to Microsoft\u2019s findings.<\/p>\n<p>\u201cThis means that diplomatic personnel using local ISP or telecommunications services in Russia are highly likely targets of [the campaign] within those services,\u201d the blog post reads.<\/p>\n<p>Microsoft tracked an alleged FSB cyber-espionage campaign that in February targeted unnamed foreign embassies in Moscow.<\/p>\n<p>The FSB activity facilitates the installation of custom backdoors on targeted computers, which can be used to install additional malware, as well as steal data, Microsoft said.<\/p>\n<p>The findings come amid increasing <a href=\"https:\/\/www.aljazeera.com\/news\/2025\/7\/28\/trump-gives-russia-10-or-12-days-to-end-war-on-ukraine\" target=\"_blank\" rel=\"noopener\">pressure from Washington<\/a> for Moscow to agree to a ceasefire in its war in Ukraine and pledges from NATO countries to increase defence spending surrounding their own concerns about Russia.<\/p>\n<p>Microsoft did not say which embassies were targeted by the FSB campaign.<\/p>\n<p>The US Department of State, as well as Russian diplomats, did not respond to requests for comment from the Reuters news agency.<\/p>\n<p>Russia has denied carrying out <a href=\"https:\/\/www.aljazeera.com\/news\/2025\/7\/18\/uk-sanctions-senior-russian-intelligence-officers-over-cyberattacks\" target=\"_blank\" rel=\"noopener\">cyber-espionage operations<\/a>. There was no immediate comment from Moscow on Microsoft\u2019s report on Thursday.<\/p>\n<p>The hacking unit linked to the activity, which Microsoft tracks as \u201cSecret Blizzard\u201d and others categorise as \u201cTurla\u201d, has been hacking governments, journalists and others for nearly 20 years, the US government said in May 2023.<\/p>\n","protected":false},"excerpt":{"rendered":"Microsoft says cyber-espionage campaign \u2018poses high risk\u2019 to foreign embassies, diplomats and other groups in Moscow. Microsoft has&hellip;\n","protected":false},"author":2,"featured_media":307656,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7655],"tags":[3457,1700,299,3082,12,332,49,286],"class_list":{"0":"post-307655","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-russia","8":"tag-cybersecurity","9":"tag-economy","10":"tag-europe","11":"tag-internet","12":"tag-news","13":"tag-russia","14":"tag-united-states","15":"tag-us-canada"},"share_on_mastodon":{"url":"https:\/\/pubeurope.com\/@uk\/114950174485117902","error":""},"_links":{"self":[{"href":"https:\/\/www.europesays.com\/uk\/wp-json\/wp\/v2\/posts\/307655","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/uk\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/uk\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/uk\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/uk\/wp-json\/wp\/v2\/comments?post=307655"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/uk\/wp-json\/wp\/v2\/posts\/307655\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/uk\/wp-json\/wp\/v2\/media\/307656"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/uk\/wp-json\/wp\/v2\/media?parent=307655"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/uk\/wp-json\/wp\/v2\/categories?post=307655"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/uk\/wp-json\/wp\/v2\/tags?post=307655"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}