Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

A spyware researcher exposed Russian government hackers trying to break into Signal accounts

Clio’s $500 million milestone comes just as Anthropic steps up to first stage

Cerebras’ IPO earns Benchmark billions, but VC Eric Vishria almost didn’t get the meeting

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    What the jury will really decide in the case of Elon Musk v. Sam Altman

    15 May 2026

    Wirestock Raises $23M to Bring Creative Multimodal Data to AI Labs

    14 May 2026

    Notion just turned its workspace into a hub for AI agents

    14 May 2026

    The 6 stages at Disrupt 2026 — built for today’s toughest startup market

    13 May 2026

    Medicare’s new payment model is designed for artificial intelligence, and most of the tech world has no idea

    13 May 2026
  • Apps

    Spotify will adopt Apple’s new video podcast technology, offering creators easier cross-platform distribution

    15 May 2026

    X launches a History tab for bookmarks, likes, videos and articles

    14 May 2026

    Amazon launches an AI shopping assistant for the search bar, powered by Alexa+

    13 May 2026

    Everything Google announced at its Android Expo, from Googlebooks to vibe-encoded widgets

    13 May 2026

    TikTok now wants to be the place where you book that trip you just saw on TikTok

    12 May 2026
  • Crypto

    As crypto cools, a16z crypto raises $2.2 billion in capital

    6 May 2026

    Coinbase to lay off 14% of staff as part of broader restructuring

    5 May 2026

    British cryptographer Adam Back denies NYT report that he is Bitcoin creator Satoshi Nakamoto

    9 April 2026

    Hackers stole over $2.7 billion in crypto in 2025, data shows

    23 December 2025

    New report examines how David Sachs may benefit from Trump administration role

    1 December 2025
  • Fintech

    Venmo’s biggest makeover in years comes at a very interesting time

    11 May 2026

    Fintech startup Parker files for bankruptcy

    10 May 2026

    Robinhood’s venture fund IPO attracted 150,000+ private investors, CEO says

    7 May 2026

    PayPal says it’s “becoming a tech company again” — that’s AI

    6 May 2026

    Stripe introduces Link, a digital wallet that autonomous AI agents can also use

    1 May 2026
  • Hardware

    Cerebras raises $5.5 billion, then shares soar to $108, first huge tech IPO of 2026

    15 May 2026

    Google unveils Googlebook, a new line of laptops with native artificial intelligence

    13 May 2026

    The Instax Wide 400 takes the simplicity of instant photography and expands it, literally

    10 May 2026

    Google Unveils Fitbit Air Without Whoop-like Display

    8 May 2026

    Google’s $9.99 per month AI health plan launches on May 19

    8 May 2026
  • Media & Entertainment

    YouTube viewers watch 2 billion hours of Shorts on TV every month

    14 May 2026

    Digg is trying again, this time as an AI news aggregator

    12 May 2026

    Bravo creates unscripted mini-dramas for the Peacock app

    11 May 2026

    The hottest place for startups to strike a deal? The F1 mantra

    10 May 2026

    Netflix delays Greta Gerwig’s ‘Narnia’ for big theatrical push to 2027

    2 May 2026
  • Security

    A spyware researcher exposed Russian government hackers trying to break into Signal accounts

    15 May 2026

    OpenAI says hackers stole some data after the latest code security issue

    14 May 2026

    This is what some of the world’s largest malware banks look like stacked up as hard drives

    14 May 2026

    This is what some of the world’s largest malware banks look like stacked up as hard drives

    13 May 2026

    Exaforce Raises $125M Series B to Build AI to Catch and Stop Cyberattacks as They Happen

    13 May 2026
  • Startups

    Clio’s $500 million milestone comes just as Anthropic steps up to first stage

    15 May 2026

    Startup Battlefield 200 applications close on May 27

    14 May 2026

    Anduril Raises $5B, Doubles Valuation To $61B

    13 May 2026

    Korea’s biggest manufacturers support Config, TSMC robot data

    11 May 2026

    China’s Moonshot AI Raises $2B in $20B Valuation as Demand for Open Source AI Soars

    10 May 2026
  • Transportation

    Uber to open 2 campuses in India to support product development and operations

    14 May 2026

    Rep. Jeff Bezos steps down from Slate Auto board

    14 May 2026

    ‘Too early’ to talk about IPO, says incoming CFO of Redwood Materials

    13 May 2026

    Potholes are costing cities millions: This company uses artificial intelligence and trucks to fix them

    13 May 2026

    Waymo issues recall to address a flooding issue

    12 May 2026
  • Venture

    Cerebras’ IPO earns Benchmark billions, but VC Eric Vishria almost didn’t get the meeting

    15 May 2026

    Khosla Ventures bets $10 million on Ian Crosby, whose last startup, Bench, collapsed

    14 May 2026

    Anthropic warns investors against secondary platforms offering access to its shares

    13 May 2026

    Mother Ventures looks at moms as the ‘economic engine’

    9 May 2026

    2 days left: Get 50% off a second Disrupt 2026 pass

    7 May 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»Microsoft disrupts cybercrime business by selling fraudulent accounts to notorious hacking gang
Security

Microsoft disrupts cybercrime business by selling fraudulent accounts to notorious hacking gang

techtost.comBy techtost.com15 December 202304 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Microsoft Disrupts Cybercrime Business By Selling Fraudulent Accounts To Notorious
Share
Facebook Twitter LinkedIn Pinterest Email

Microsoft says it has successfully dismantled the infrastructure of a cybercrime operation that sold access to fraudulent Outlook accounts to other hackers, including the notorious Scattered Spider gang.

The group, tracked by Microsoft as “Storm-1152”, is described as a major player in the cybercrime-as-a-service (CaaS) ecosystem, where criminals provide hacking and cybercrime services to other individuals or groups. Storm-1152 created approximately 750 million fraudulent Microsoft accounts for sale through the “hotmailbox.me” service to earn “millions of dollars in illegal revenue” and cause “millions of dollars in damage to Microsoft,” according to the company. The tech giant described the business as “the number one seller and creator of fraudulent Microsoft accounts.”

Microsoft described this feature as “a scheme to use Internet ‘bots’ to breach and trick Microsoft’s security systems into thinking they are legitimate consumers of Microsoft services, open Microsoft Outlook email accounts under fictitious user names and sell these fraudulent accounts to cybercriminals.”

The group also operated rate solving services for CAPTCHAs, including “1stCAPTCHA,” “AnyCAPTCHA,” and “NoneCAPTCHA,” according to Microsoft. Storm-1152 promoted these solvers as a way to bypass any type of CAPTCHA, allowing fraudsters to abuse the online environments of Microsoft and businesses in other industries.

Microsoft said it had identified several ransomware and extortion groups using Storm-1152’s services, including Octo Tempest, better known as Scattered Spider. Scattered Spider, a now-infamous hacking group believed to be made up of young English-speaking members, was linked earlier this year to a spree of attacks targeting Okta customers in an attempt to extract sensitive data. The group also claimed responsibility for the attack on MGM Resorts that will cost the hotel and casino giant about $100 million.

Microsoft told one court order received on Dec. 7 that its investigation into Storm-1152 revealed that Scattered Spider hackers had also recently carried out “massive ransomware attacks against top Microsoft customers,” resulting in service outages that caused hundreds of millions of dollars in damage.

Storm-1152’s services have also been used by cybercriminal groups “to harm not only Microsoft, but many other technology companies such as X (formerly Twitter) and Google and their customers,” according to the complaint. Google did not immediately respond to TechCrunch’s questions. A message sent to X’s guy’s email got an automated reply: “Busy now, check back later.”

Microsoft announced on Wednesday that it has successfully seized the infrastructure and domains of US-based Storm-1152 after receiving a court order from the Southern District of New York. These measures included seizing hotmailbox.me and stopping services such as 1stCAPTCHA, AnyCAPTCHA and NoneCAPTCHA, as well as targeting social media accounts used by Storm-1152 to promote these services.

The company said it had also identified the people behind Storm-1152’s operations. Those individuals, named Duong Dinh Tu, Linh Van Nguyễn (also known as Nguyễn Van Linh) and Tai Van Nguyen, are based in Vietnam, according to Microsoft.

“With our action today, our goal is to prevent criminal behavior,” said April Hogan-Burney, general manager of Microsoft’s Digital Crimes Unit. “By trying to slow the speed at which cybercriminals launch their attacks, we aim to increase their cost of doing business while we continue our investigation and protect our customers and other online users.”

Microsoft was helped to take down Storm-1152 by San Francisco-based cybersecurity firm Arkose Labs, which said it had been monitoring the operation since August 2021.

“Storm-1152 is a formidable enemy created with the sole purpose of making money by enabling adversaries to carry out sophisticated attacks,” Kevin Gosschalk, founder and CEO of Arkose Labs, said in a statement sent to TechCrunch. “The group is distinguished by the fact that it built its CaaS business in daylight versus the dark web. Storm-1152 acted as a standard online office, providing training on its tools and even full customer support. In effect, Storm-1152 was an unlocked gateway to serious fraud.’

Accounts business cyber security cybercrime disrupts fraudulent Gang hacker Hacking Microsoft notorious selling
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleHere are the best options for raising capital for late-stage startups
Next Article Google debuts Imagen 2 with text and logo creation
bhanuprakash.cg
techtost.com
  • Website

Related Posts

A spyware researcher exposed Russian government hackers trying to break into Signal accounts

15 May 2026

OpenAI says hackers stole some data after the latest code security issue

14 May 2026

This is what some of the world’s largest malware banks look like stacked up as hard drives

14 May 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

A spyware researcher exposed Russian government hackers trying to break into Signal accounts

15 May 2026

Clio’s $500 million milestone comes just as Anthropic steps up to first stage

15 May 2026

Cerebras’ IPO earns Benchmark billions, but VC Eric Vishria almost didn’t get the meeting

15 May 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Venmo’s biggest makeover in years comes at a very interesting time

11 May 2026

Fintech startup Parker files for bankruptcy

10 May 2026

Robinhood’s venture fund IPO attracted 150,000+ private investors, CEO says

7 May 2026
Startups

Clio’s $500 million milestone comes just as Anthropic steps up to first stage

Startup Battlefield 200 applications close on May 27

Anduril Raises $5B, Doubles Valuation To $61B

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.