Jump to content
Whte_rbt

SolarWinds Orion Hack

2 posts in this topic Last Reply

Highlighted Posts

Posted:
Last Online:  
 

Dunno if any of you use this software for network monitoring but there has been a major hack reported by US Treasury concerning any computer that is monitored by the SolarWinds Orion system. Given the required actions listed in the DHS cyber response if anyone is using this you may want to take it offline immediately and look for an alterntive arrangment till it gets fixed.

Original Article: https://www.bbc.co.uk/news/world-us-canada-55265442

DHS Cyber Response: https://cyber.dhs.gov/ed/21-01/

All affected government agencies have to comply (take it offline) by 12.00 (Noon) EST 14/12/2020.

  • Like 1

Share this post


Link to post
Share on other sites
Posted:
Last Online:  
 

Two follow up articles. The 2nd one is too long to quote anything. Besides, I would have to read it to do that. Some other time.

~Microsoft unleashes ‘Death Star’ on SolarWinds hackers in extraordinary response to breachBy Christopher Budd on December 16, 2020 at 3:20 pm: https://www.geekwire.com/2020/microsoft-unleashes-death-star-solarwinds-hackers-extraordinary-response-breach/amp/

small quote from article above

" 1) On Dec. 13, the day this became public, Microsoft announced that it removed the digital certificates that the Trojaned files used."

"2) That same day, Microsoft announced that it was updating Microsoft Windows Defender, the antimalware capability built into Windows, to detect and alert if it found the Trojaned file on the system."

"3) Next, on Tuesday, Dec. 15, Microsoft and others moved to “sinkhole” one of the domains that the malware uses for command and control..."

"4) Finally, today, Wednesday, Dec. 16, Microsoft basically changed its phasers from “stun” to “kill” by changing Windows Defender’s default action for Solorigate from “Alert” to “Quarantine,” a drastic action that could cause systems to crash but will effectively kill the malware when it finds it."

"In the end, this all reminds us how much power Microsoft has at its disposal. Between its control of the Windows operating system, its robust legal team, and its position in the industry, it has the power to change the world nearly overnight if it wants to. And when it chooses to train that power on an adversary, it really is the equivalent of the Death Star: able to completely destroy a planet in a single blast."

Fortunately these days, Microsoft is sparing in its use of its power. But as I’ve noted before, we should never mistake Microsoft’s gentleness for weakness.

And anyway, what’s the point in having a Death Star if you don’t get to use it (for good) sometimes?"

 

~Analyzing Solorigate, the compromised DLL file that started a sophisticated cyberattack, and how Microsoft Defender helps protect customers~ by Microsoft on December 18, 2020: https://www.microsoft.com/security/blog/2020/12/18/analyzing-solorigate-the-compromised-dll-file-that-started-a-sophisticated-cyberattack-and-how-microsoft-defender-helps-protect/ *

*This is a really long article.

  • Like 2

Kloudkicker
Life's cold and I'm chillin
Kloudkicker's Lot Creations
Kloudkicker's Tech Tools, News and More

 

Share this post


Link to post
Share on other sites

Sign In or register to comment...

To comment in reply, you must be a community member

Sign In  

Already have an account? Sign in here.

Sign In Now

Create an Account  

Sign up to join our friendly community. It's easy!  

Register a New Account


×

Thank You for the Continued Support!

Simtropolis depends on donations to fund site maintenance costs.
Without your support, we just would not be in our 24th year online!  You really help make this a great community. *:thumb:

But we still need your support to stay online. If you're able to, please consider a donation to help us stay up and running. This helps sustain a platform where we can share our community creations for years to come.

Make a Donation, Get a Gift!

Expand your city with the best from the Simtropolis Exchange.
Make a Donation and get one or all three discs today!

STEX Collections

By way of a "Thank You" gift, we'd like to send you our STEX Collector's DVD. It's some of the best buildings, lots, maps and mods collected for you over the years. Check out the STEX Collections for more info.

Each donation helps keep Simtropolis online, open and free!

Thank you for reading and enjoy the site!

More About STEX Collections