FOLLOW US

Wed

June 24, 2026

America June 5, 2022 3 mins read

Cybersecurity: Microsoft disrupts POLONIUM group hackers targeting Israel 

America ı By Jackie Allen

0 Comments

POLONIUM

On Thursday the Microsoft Threat Intelligence Center (MSTIC) issued a report. It claims it proactively "identified and disabled" a Lebanon-based hacking group known as POLONIUM, believed to be working with Iranian intelligence.

The hacking group they tracked targeted or compromised more than 20 Israeli organizations l and one intergovernmental organization with operations in Lebanon. The activity took place over the last 3-months. And the activities appeared to focus on IT, critical manufacturing, and Israel’s defense industry.

Microsoft also posted details of a cloud services provider that “was used to target a downstream aviation company and law firm in a supply chain attack." 

POLONIUM same targets as Muddywater APT

 POLONIUM operators also targeted multiple victims compromised by MuddyWater (aka SeedWorm/Temp.Zagros) a high-profile Advanced Persistent Threat (APT) actor sponsored by Iran. 

The MuddyWater APT group was tracked by Microsoft as “Mercury”, which U.S. Cyber Command earlier this year linked to Iranian intelligence. 

The hackers, known as POLONIUM, were previously unknown threat actors.

They initially created legitimate Microsoft OneDrive accounts. And then utilized those accounts as command and control (C2) to execute part of their attack operation. 

According to the report, “POLONIUM has been observed deploying a series of custom implants that utilize cloud services for command and control as well as data exfiltration. MSTIC has observed implants connecting to POLONIUM-owned accounts in OneDrive and Dropbox.” 

The threat actor did not exploit any security issues or vulnerabilities within OneDrive.

MSTIC determined with high confidence that the hacker group is based in Lebanon. And claims they are "moderately" confident that Polonium was collaborating with Iran’s Ministry of Intelligence and Security (MOIS).

“The uniqueness of the victim organizations suggests a convergence of mission requirements with MOIS,” according to the Microsoft report. “It may also be evidence of a ‘hand-off’ operational model where MOIS provides Polonium with access to previously compromised victim environments to execute new activity.”

Microsoft also claims it suspended more than 20 malicious OneDrive applications created by the new threat actors. And added that all affected organizations had been notified. And they had deployed a series of security intelligence updates that will quarantine tools developed by the Iranian-linked hackers.

Although MSTIC is still uncertain how the attackers gained initial access to their victims’ networks. And notes that at least 80% of compromised organizations were running Fortinet appliances. This “suggests but does not definitively prove” that the Polonium compromised the Fortinet using a three-year-old vulnerability identified as CVE-2018-13379.

12

Previous Article

Less Than Three in Ten Americans Back Biden’s Management of Inflation

Read More
Jackie Allen
3192 Posts

Jackie Allen

Jackie is a freelance journalist and technology geek. She worked as a telecom project director for AT&T and BellSouth. Before joining the USA Herald she has written books, articles, blogs and whitepapers. Her clients include Samsung and other technology companies.

Discussion

No comments yet. Be the first to join the discussion!

Don’t Miss It
Arizona January 11, 2025
Kelly Warner Law Firm Blames USA…

In what appears as a desperate attempt to defend multiple…

By – USA Herald
Arizona January 4, 2025
Aaron Kelly Law Firm Resorts To…

Attorney Aaron Kelly and his law partner Daniel Warner are…

By – Jeff Watterson
Arizona December 12, 2024
Arizona Bar Opens Investigation on Attorney…

USA Herald recently reported on a developing story involving Attorneys…

By – Paul O'Neal
Entertainment June 24, 2026
Paris Rejects the “Looksmaxxing” Influencer: Why…

In the world of online influencers, there is a growing…

By – Tyler Brooks
High Profile Court Cases June 23, 2026
€100,000 Reward Offered in Hunt for…

The Sofitel Barcelona and its General Manager escalate the search…

By – Tyler Brooks
High Profile Court Cases June 23, 2026
The Sleight-of-Hand City

How Barcelona became Europe’s pickpocket capital — and the night…

By – Tyler Brooks
America June 23, 2026
Was Marilyn Monroe Murdered?

Marilyn Monroe remains one of the most recognizable and influential…

By – Jackie Allen
America June 23, 2026
‘I Have Met Non-Human Intelligence in…

By Samuel López | USA Herald They walk among us.…

By – Samuel Lopez
America June 23, 2026
Biden Cognitive Issues: Court Fight Over…

Questions about Biden cognitive issues surround the former President. This…

By – Jackie Allen
America June 23, 2026
Biden Cognitive Issues: Court Fight Over…

Questions about Biden cognitive issues surround the former President. This…

By – Jackie Allen
America June 23, 2026
Tesla Self-Driving Car Crashes Into Texas…

Federal safety regulators in the United States have launched a…

By – Tyler Brooks
America June 23, 2026
NASA Astronaut Heading to Space Station…

For decades, the question of whether life exists beyond Earth…

By – Tyler Brooks
America June 22, 2026
Chevron Locks in 20-Year Deal to…

In a landmark partnership that underscores the growing energy demands…

By – Rihem Akkouche
America June 22, 2026
World Cup History Made as Lionel…

World Cup history was made Monday afternoon in Arlington, Texas,…

By – Jackie Allen
America June 22, 2026
Lucid Motors Slashes 18% of U.S.…

Lucid Group, the luxury electric vehicle maker once seen as…

By – Rihem Akkouche
America June 22, 2026
Final Wish: Oliver Tree’s Family Honors…

Final Wish is how the family of singer Oliver Tree…

By – Jackie Allen
America June 21, 2026
Reflecting Pool Incident Leads to Arrest…

The Reflecting Pool at the Lincoln Memorial has become the…

By – Jackie Allen
America June 21, 2026
Nuclear Talks Begin in Switzerland as…

Nuclear Talks between the United States and Iran officially began…

By – Jackie Allen
America June 20, 2026
Pizza Hut to Be Sold in…

Pizza Hut is entering a new chapter after parent company…

By – Jackie Allen
America June 19, 2026
Jane Street Emerges from the Shadows…

Jane Street is one of the most secretive and profitable…

By – Jackie Allen
America June 19, 2026
Peace Agreement Between US and Iran…

A proposed Peace Agreement framework between the United States and…

By – Jackie Allen
America June 19, 2026
Peace Agreement Between US and Iran…

A proposed Peace Agreement framework between the United States and…

By – Jackie Allen
America June 18, 2026
Internet’s First Serial Killer Used Early…

The story of Serial Killer John Edward Robinson remains one…

By – Jackie Allen
America June 18, 2026
The 9-Second Disaster: The Edge of…

The tech industry is learning that AI autonomy can be…

By – Jackie Allen
America June 17, 2026
Southern Poverty Law Center Indictments Linked…

The Southern Poverty Law Center (SPLC), one of the nation’s…

By – Jackie Allen
America June 16, 2026
Anna Kepner Killing: Federal Judge Orders…

The legal proceedings surrounding the cruise ship murder of Anna…

By – Jackie Allen
America June 16, 2026
Russia Shadow Fleet Captain Faces UK…

The captain of a Russian Shadow Fleet tanker intercepted by…

By – Jackie Allen
Entertainment June 23, 2026
Kourtney Kardashian Celebrates Travis Barker on…

Kourtney Kardashian had plenty of love to share this Father’s…

By – Tyler Brooks
Entertainment June 23, 2026
Jay-Z and Roc Nation Win Major…

The legal war between rap mogul Jay-Z and Houston-based attorney…

By – Tyler Brooks
America June 22, 2026
Lucid Motors Slashes 18% of U.S.…

Lucid Group, the luxury electric vehicle maker once seen as…

By – Rihem Akkouche
Entertainment June 22, 2026
GTA 6 Music File Discovered in…

With GTA 6 pre-orders officially opening on Thursday, June 25,…

By – Tyler Brooks
Business June 22, 2026
Toy Story 5 Shatters Box Office…

When the lights dimmed and the familiar Pixar lamp bounced…

By – Tyler Brooks
Entertainment June 22, 2026
BTS Comeback Tour Ticket Chaos: Fans…

The long awaited return of global K-pop sensation BTS has…

By – Tyler Brooks
Health June 23, 2026
Your Blood Pressure Reading May Be…

Millions of people living with high blood pressure believe that…

By – Tyler Brooks
America June 6, 2026
Nichelle Nichols’ Final Mission Ends in…

By Samuel López | USA Herald The woman who helped…

By – Samuel Lopez
America June 5, 2026
Cannabis Giants Hit with Sweeping Class…

A major class action filed May 4, 2026, accuses five…

By – Samuel Lopez
Health June 1, 2026
New Pill Doubles Survival for Pancreatic…

Pancreatic cancer pill doubles life to 13 months By Tyler…

By – Tyler Brooks
California News May 31, 2026
FDA warns public as cookie firm…

FDA warns public as cookie firm rejects urgent recall request…

By – Tyler Brooks
Health May 31, 2026
Trump orders CDC to slash childhood…

Trump orders CDC to slash childhood vaccines from 17 to…

By – Tyler Brooks
America June 22, 2026
Lionel Messi, at 39, Shatters All-Time…

Lionel Messi has done it again. The Argentine superstar etched…

By – Rihem Akkouche
Pennsylvania June 22, 2026
Will a Massive Storm Derail the…

The 2026 FIFA World Cup is already delivering unforgettable moments…

By – Tyler Brooks
Sports June 18, 2026
Extraterrestrial Kickoff? Viral Psychic Warns of…

Football fans around the globe are currently deep in the…

By – Tyler Brooks
Business June 16, 2026
Dana White Declares The Historic UFC…

WASHINGTON D.C. — It was 3:00 a.m. on Monday, and…

By – Tyler Brooks
Sports June 15, 2026
Pulisic Is Not Training. What Happens…

Mauricio Pochettino pulled Christian Pulisic at halftime of the USMNT’s…

By – Nicolas Carreno
America June 14, 2026
New York Chaos Erupts After Knicks…

New York Chaos unfolded across the city after the New…

By – Jackie Allen

No posts found.

No posts found.

Signup for the USA Herald
exclusive Newsletter