In a security blog post, Microsoft said a group of Chinese hackers got access to an "inactive MSA consumer signing key" and used it to forge tokens to access Outlook email accounts.
A China-based cybercriminal known as Storm-0558 gained access to unclassified U.S. government email accounts using forged authentication tokens, accordi.
A "surgical campaign" by Storm-0558 gained access to unclassified U.S. government email accounts using forged authentication tokens, U.S. and Microsoft .
A China-based cybercriminal known as Storm-0558 gained access to unclassified U.S. government email accounts using forged authentication tokens accordin.