Microsoft has successfully dismantled the infrastructure of the notorious cybercrime operation, “Storm-1152.” In a report by TechCrunch, it revealed that Storm-1152 operated as a major player in the cybercrime-as-a-service (CaaS) ecosystem, where they offered hacking and cybercrime services to other individuals and groups.
Microsoft’s thorough investigation revealed that Storm-1152, operating through the “hotmailbox.me” service, created approximately 750 million fraudulent Microsoft accounts, generating millions of dollars in illicit revenue while causing extensive damage to Microsoft.
The Elaborate Scheme by Storm-1152

Microsoft characterized Storm-1152’s operation as a scheme employing internet ‘bots’ to deceive Microsoft’s security systems. These bots simulated legitimate human consumers of Microsoft services, creating Outlook email accounts in the names of fictitious users. The fraudulent accounts were then sold to cybercriminals, making Storm-1152 the leading seller and creator of fraudulent Microsoft accounts.
Not limited to creating fake accounts, Storm-1152 offered rate solver services for CAPTCHAs, such as “1stCAPTCHA,” “AnyCAPTCHA,” and “NoneCAPTCHA.” Microsoft revealed that these solvers were promoted as tools to bypass any type of CAPTCHA, providing fraudsters the means to exploit Microsoft’s online environments and those of other enterprises.
Taking decisive legal action, Microsoft obtained a court order on December 7 and successfully seized the group’s U.S.-based infrastructure and domains. This included disrupting services like 1stCAPTCHA, AnyCAPTCHA, and NoneCAPTCHA. Microsoft also identified the individuals behind the group’s operations as Duong Dinh Tu, Linh Van Nguyễn (also known as Nguyễn Van Linh), and Tai Van Nguyen, all based in Vietnam.
In a resounding victory for digital security, Microsoft’s decisive actions have not only neutralized a significant threat but also reinforced the integrity of its services. The dismantling of the hacking group’s infrastructure sends a powerful message to cybercriminals worldwide: Microsoft is unwavering in its commitment to safeguarding its users and relentlessly pursuing those who seek to undermine digital trust.
The success of this operation is a testament to Microsoft’s sophisticated cybersecurity capabilities and its proactive stance against cyber threats. By taking down Storm-1152, Microsoft has protected countless users from potential harm and has made the digital world a safer place for everyone.
Discover more from Microsoft News Now
Subscribe to get the latest posts sent to your email.
