In a blog post published Friday, the company said that the hackers were able to take advantage of "a validation error in Microsoft code" to carry out their cyberespionage campaign.

(Reporting by Raphael Satter)