Image courtesy of CyberScoop
Microsoft obtained a court order from the Southern District of New York to seize U.S.-based websites used by Storm-1152, a cybercrime-as-a-service group it identified as the number one creator of fraudulent Microsoft accounts — roughly 750 million in total. The operation targeted sites used to sell those accounts and CAPTCHA-bypass tools to other criminal groups enabling phishing, identity theft and DDoS attacks. Arkose Labs provided threat intelligence that helped identify Storm-1152's activities ahead of the Microsoft-led disruption.



