Security News > 2021 > January > Continuous Updates: Everything You Need to Know About the SolarWinds Attack

Continuous Updates: Everything You Need to Know About the SolarWinds Attack
2021-01-08 16:30

Microsoft Believes 1,000 Hackers Involved in SolarWinds Attack - Microsoft executive Brad Smith says more than a thousand software engineers were most likely involved in the SolarWinds attack, and that Microsoft tasked 500 engineers with investigating the attack.

Many SolarWinds Customers Failed to Secure Systems Following Hack - Many companies still expose SolarWinds Orion to the internet and have failed to take action following the disclosure of the massive SolarWinds breach, according to RiskRecon.

CISA Says Many Victims of SolarWinds Hackers Had No Direct Link to SolarWinds - CISA says many of the victims of the threat group that targeted SolarWinds were not directly linked to SolarWinds.

Hundreds of Industrial Organizations Received Sunburst Malware in SolarWinds Attack - Hundreds of industrial organizations have apparently received a piece of malware named Sunburst as part of the supply chain attack that hit IT management and monitoring firm SolarWinds last year.

'Sunspot' Malware Used to Insert Backdoor Into SolarWinds Product in Supply Chain Attack - The threat group behind the attack on SolarWinds used a piece of malware named Sunspot to inject the previously analyzed Sunburst backdoor into the Orion product without being detected.

Kaspersky Connects SolarWinds Attack Code to Known Russian APT Group - Researchers have identified some similarities between the Sunburst malware used in the SolarWinds supply chain attack and Kazuar, a backdoor that appears to have been used by the Russia-linked cyber-espionage group known as Turla.


News URL

http://feedproxy.google.com/~r/Securityweek/~3/WOavAmaxKcU/continuous-updates-everything-you-need-know-about-solarwinds-attack

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Solarwinds 56 33 104 80 50 267