Incident · 8-K Item 1.05
Hewlett Packard Enterprise reports Midnight Blizzard access to cloud email
Compiled 2026-09-27 from public records. By the cisonews.net Desk.
Hewlett Packard Enterprise disclosed on January 24, 2024 that a suspected nation-state actor had gained access to its cloud-based email environment and taken data from a small percentage of mailboxes. HPE said it was notified of the intrusion on December 12, 2023, which puts 43 days between notice and the Item 1.05 filing.
What HPE said
The filing names the suspected group. According to HPE, the mailbox access and data theft began in May 2023 and touched people in cybersecurity, go-to-market, business segments and other functions.
HPE linked the email intrusion to an earlier episode. It had been told in June 2023 of unauthorized access to a limited number of SharePoint files, investigated at the time, and concluded then that the activity did not materially affect the company.
Status at filing
HPE reported no material impact on operations and had not determined that its finances were likely to be materially affected.
The filing does not say how many mailboxes were involved or what categories of data were taken.
Sources
- 2024-01-24 · AHewlett Packard Enterprise Company, Form 8-K (SEC EDGAR), published January 24, 2024
Tier A: the organization itself, a regulator or SEC EDGAR. Tier B: established press. Each fact on this page carries its supporting passage in the page source.
See an error? Corrections are made on the page and logged on the corrections page. Send them through contact.