About this site

Previous work

Projects

   

   

   

   

   

   

   

   

   

   

    Discovered order

    Date 2024-06-15

  1. Historical Hacks: SolarWinds
  2. The Vital Role of CISOs in Cybersecurity (Spiceworks)
  3. UnitedHealth leaders 'should be held responsible' for installing inexperienced CISO, senator says
  4. CISOs under pressure from boards to downplay cyber risk: study (Cybersecurity Dive)
  5. Inexpert CISO Blamed For Cyberattack On Change Healthcare
  6. After Recall's mess, Microsoft isn't beating the security loopholes allegation any time soon (MSPoweruser)
  7. Microsoft Ignored Whistleblower Warnings Before SolarWinds Attack (PCMag)
  8. Microsoft Security Failures Get Rough Treatment On Capitol Hill
  9. US Senator Demands Probe On Microsoft Cybersecurity Breach
  10. U.S. Ambassador to China Hacked in China-Linked Spying Operation (WSJ)
  11. Microsoft says new security protocols address whistleblower concerns
  12. Understanding the Impact of CVE-2024 (29003 on the SolarWinds Platform)
  13. Microsoft whistleblower says firm ignored early warnings about flaw exploited in SolarWinds breach (ITPro)
  14. Date 2024-06-14

  15. What the Charges Against the SolarWinds CISO Mean for Security in 2024 (secblvd)
  16. SolarWinds Sunburst: One of the biggest cyber attacks targeting the software industry supply chain in history (secblvd)
  17. Microsoft Refused to Fix Flaw Years Before SolarWinds Hack — ProPublica
  18. Why public/private cooperation is the best bet to protect people on the internet (CSO Online)
  19. Date 2024-06-13

  20. CVE-2024-28995: Trivially Exploitable Information Disclosure Vulnerability in SolarWinds Serv-U (Rapid7 Blog)
  21. “Trivially exploitable” bug in SolarWinds file server needs prompt fixing
  22. A Vulnerability in SolarWinds Serv (U Could Allow for Path Transversal)
  23. Many software makers will miss Biden’s cybersecurity deadline today
  24. NVD - CVE-2024 (28995)
  25. Rapid7 expects hackers to take advantage of ‘trivially exploitable’ SolarWinds file transfer bug (Cyber Daily)
  26. SolarWinds fixed multiple flaws in Serv (U and SolarWinds Platform)
  27. SolarWinds addressed critical RCEs in Access Rights Manager
  28. SolarWinds fixed three critical RCE flaws in its Access Rights Manager product
  29. Researchers shared the lists of victims of Solarwinds hack
  30. SolarWinds and the SEC.
  31. SolarWinds and the SEC.
  32. SolarWinds And The SEC. CyberWire Daily podcast
  33. Client Alert: Takeaways from SEC v. SolarWinds Motion to Dismiss Hearing (Jenner & Block - JDSupra)
  34. Are Your Online Security Statements Making Misrepresentations? Lessons Learned From The SEC Lawsuit Against SolarWinds (MarketScreener)
  35. CVE Record (CVE)
  36. Multiple vulnerabilities in SolarWinds Orion Platform
  37. CVE Record (CVE)
  38. Understanding CVE-2024 (28999: Race Condition Vulnerability in SolarWinds Platform)
  39. Multiple Vulnerabilities in SolarWinds Platform June 4th 2024 (Tenable®)
  40. SolarWinds Flaw Flagged by NATO Pen Tester
  41. Date 2024-04-22

  42. Why Microsoft is a national security threat (Register)
  43. Date 2024-01-21

  44. Microsoft executive emails hacked by Russian intelligence group
  45. Microsoft says state-backed Russian hackers accessed emails of senior leadership team members (ABC News)
  46. Microsoft says Russian hackers stole email from its executives (wapo)
  47. Inline XBRL Viewer
  48. SolarWinds hackers studied Microsoft source code for authentication and email (Reuters)
  49. Chinese hackers breach U.S. government email through Microsoft cloud (wapo)
  50. date: 2024-01 (19 flags: Microsoft, overhaul, attach, attribution, breach, passwords, disclosure)
  51. Microsoft says exec emails accessed in hack by Russian group (GeekWire)
  52. Microsoft Executives’ Emails Hacked by Group Tied to Russian Intelligence (nyt)
  53. Chinese Hackers Stole 60,000 State Dept. Emails in Breach Reported in July (nyt)
  54. Microsoft says Russia-linked group hacked employee emails (The Japan Times)
  55. Russian Espionage Group Tapped Microsoft Corporate E-Mails - (Redmondmag.com)
  56. Microsoft Executive Emails Hacked By Russian Intelligence Group: Company Confirms Security Breach, Assures No Impact On Customer Data - Microsoft (NASDAQ:MSFT) (Benzinga)
  57. Microsoft's Top Execs' Emails Breached in Sophisticated Russia (Linked APT Attack)
  58. Date 2024-01-20

  59. Microsoft ‘senior leadership’ emails accessed by Russian SolarWinds hackers (Verge)
  60. Hackers backed by Russian government reportedly breached US government agencies (Verge)
  61. FireEye cybersecurity tools compromised in state-sponsored attack (Verge)
  62. Unauthorized Access of FireEye Red Team Tools (Mandiant)
  63. GitHub (mandiant/red_team_tool_countermeasures)
  64. Customer Guidance on Recent Nation-State Cyber Attacks | MSRC Blog (Microsoft Security Response Center)
  65. Security Advisory (SolarWinds)
  66. Move over, SolarWinds: 30,000 orgs’ email hacked via Microsoft Exchange Server flaws (Verge)
  67. HAFNIUM targeting Exchange Servers with 0-day exploits (Microsoft Security Blog)
  68. Chinese Hacking Spree Hit an ‘Astronomical’ Number of Victims (WIRED)
  69. Date 2024-01-08

  70. SolarWinds Execs Targeted by SEC, CEO Vows to Fight
  71. Date 2023-12-07

  72. SolarWinds CISO and CFO are focus of SEC’s Orion investigation (scmedia)
  73. CSP #78 – Solarwinds From the Inside: The Breach and the Aftermath – Tim Brown (scmedia)
  74. SEC notice to SolarWinds CISO and CFO roils cybersecurity industry (CSO Online)
  75. Date 2023-11-01

  76. SEC Charges SolarWinds and Its CISO With Fraud and Cybersecurity Failures (SecurityWeek)
  77. SEC.gov (SEC Charges SolarWinds and Chief Information Security Officer with Fraud, Internal Control Failures)
  78. SolarWinds charged by SEC for failing to disclose cybersecurity problems (wapo)
  79. SEC notifies SolarWinds CISO and CFO of possible action in cyber investigation (Cybersecurity Dive)
  80. SolarWinds Sunburst Attack: Lessons On Dealing With A Cyberattack
  81. SolarWinds (SolarWinds CISO Tim Brown Named CISO of the Year by Globee Cybersecurity Awards)
  82. SEC charges SolarWinds CISO with fraud for misleading investors before major cyberattack
  83. SEC sues SolarWinds for misleading investors before 2020 hack
  84. DOJ Detected SolarWinds Breach Months Before Public Disclosure (WIRED)
  85. SEC charges SolarWinds, CISO with fraud in 2020 supply chain attacks (scmedia)
  86. What to know about the SEC’s case against SolarWinds (wapo)
  87. US regulators sue SolarWinds and its security chief for alleged cyber neglect ahead of Russian hack
  88. Reuters Legal on X: "The SEC sued SolarWinds Corp and its top cybersecurity executive, saying they repeatedly misled investors and the public about a software product linked to one of biggest hackings targeting the US government https://t.co/ENR9Rioxaq ht
  89. US SEC sues SolarWinds for concealing cyber risks before massive hacking (Reuters)
  90. Techmeme: The US SEC charges SolarWinds for failing to disclose alleged cybersecurity failures ahead of a breach by suspected Russian hackers that began as early as 2019 (Tim Starks/Washington Post)
  91. SEC charges SolarWinds, its CISO with fraud (Cybersecurity Dive)
  92. BREAKING: Feds Take Unprecedented Action Against CISO in SolarWinds Case
  93. SolarWinds CISO Sued for Fraud by US SEC (secblvd)
  94. SEC charges SolarWinds with fraud over SUNBURST attacks (Register)
  95. SolarWinds, chief information security officer charged with fraud by SEC (NYSE:SWI) (Seeking Alpha)
  96. Austin's SolarWinds buying N.C. (based IT company for $350 million)
  97. SolarWinds faces SEC lawsuit after 2020 hack
  98. SEC Charges SolarWinds and CISO With Misleading Investors (Infosecurity Magazine)
  99. U.S. SEC sues SolarWinds and security chief for fraud (Fortune)
  100. SEC sues SolarWinds over massive cyberattack
  101. SolarWinds and CISO accused of fraud, control failures (Help Net Security)
  102. (2816) From Hexacon 2023 - A Demonstration of CVE-2022-47504: An RCE in SolarWinds NPM (YouTube)
  103. IANS LIVE-US SUES SUDHAKAR RAMAKRISHNA (RUN SOLARWINDS FOR MISLEADING INVESTORS BEFORE MASSIVE HACK)
  104. SolarWinds Misled Public on Cyber Risk Before Hack, SEC Claims (Bloomberg)
  105. Bob Ackerman on LinkedIn: US SEC sues SolarWinds for concealing cyber risks before massive hacking (13 comments)
  106. SolarWinds Patches High-Severity Flaws in Access Rights Manager (SecurityWeek)
  107. SEC Charges SolarWinds and CISO With Misleading Investors (Infosecurity Magazine)
  108. SEC charges SolarWinds, top security executive with fraud in 2020 incident
  109. SEC charges SolarWinds with fraud tied to its IPO and cybersecurity hack (Austin Business Journal)
  110. SEC Suit Claims SolarWinds Misled Investors On Cyber Risks (Law360)
  111. US regulators sue SolarWinds and its security chief for alleged cyber neglect ahead of Russian hack (ABC News)
  112. SolarWinds allegedly misled public on its security before Sunburst cyberattack: SEC (IT World Canada News)
  113. Ex (SolarWinds Adviser Warned Company of Security Issues in 2017: 'Incredibly Easy Target to Hack')
  114. SolarWinds Adviser Warned of Lax Security Years Before Hack (Bloomberg)
  115. Date 2023-10-31

  116. SEC Sues SolarWinds Over 2020 Hack Attributed to Russians (WSJ)
  117. US SEC sues SolarWinds for concealing cyber risks before massive hacking (Reuters)
  118. Date 2023-10-25

  119. Critical SolarWinds RCE Bugs Enable Unauthorized Network Takeover
  120. Critical RCE flaws found in SolarWinds access audit solution
  121. Date 2023-08-08

  122. Microsoft Signing Key Stolen by Chinese (Schneier)
  123. Date 2023-08-02

  124. US senator blasts Microsoft for “negligent cybersecurity practices” (ars)
  125. Solarwinds From the Inside: The Breach and the Aftermath – Tim Brown – CSP #78 (scmedia)
  126. Date 2023-06-27

  127. SolarWinds Execs Targeted by SEC, CEO Vows to Fight
  128. Date 2023-05-10

  129. SolarWinds: The Untold Story of the Boldest Supply-Chain Hack (WIRED)
  130. Date 2023-03-10

  131. SolarWinds Breach Revealed Shortcomings At CISA, DHS IG Report Shows
  132. SolarWinds Announces Upcoming Patches for High-Severity Vulnerabilities (SecurityWeek)
  133. Date 2022-12-22

  134. Layoffs at N-able came 'out of nowhere' (WRAL TechWire)
  135. Date 2022-11-03

  136. Phylum Discovers Dozens More PyPI Packages Attempting to Deliver W4SP Stealer in Ongoing Supply (Chain Attack)
  137. Date 2022-05-23

  138. CVE-2021-35235 (SolarWinds Kiwi Syslog Server ASP.NET Debugging information disclosure)
  139. Reversing Golang used in SolarWinds : ReverseEngineering
  140. How the SolarWinds Hack (almost) went Undetected
  141. (1293) SEC-T 0x0D: Erik Hjelmvik - Hiding in Plain Sight - How the SolarWinds Hack Went Undetected (YouTube)
  142. Scientists create most detailed map of Uranus' mysterious auroras to date (Space)
  143. CISA exec calls SolarWinds hack a wake-up call for government cybersecurity | Secondary Sources | National (Westlaw Today)
  144. DOJ Won't Prosecute White Hat Hackers, Only Bad Cybercriminals
  145. SolarWinds Orion Platform 2020.2.0 < 2020.2.6 Multiple Vulnerabilities - Nessus (InfosecMatter)
  146. SolarWinds is ready to overcome violations and help customers manage them (Newjerseyupdates.com)
  147. One year after Biden executive order, cyber officials defend progress (The Record by Recorded Future)
  148. SonarSource Appoints Kevin Thompson on its Board of Directors
  149. SolarWinds and the Challenges of Patching: Can We Ever Stop Dancing With the Devil?
  150. The Four Horsemen of Software Supply Chain Attacks (MSSP Alert)
  151. Biden administration makes inroads amid zero trust rollout (Cybersecurity Dive)
  152. Conditions are cooling off for troubled SolarWinds (FRN)
  153. Third (Party Cyber Risk Management Primer)
  154. Court denies SolarWinds bid to throw out breach lawsuit
  155. SolarWinds breach lawsuits: 6 takeaways for CISOs (CSO Online)
  156. SolarWinds Board Sued by Pension Funds Over Cyberattack (1)
  157. SolarWinds data breach lawsuit takeaways for CISOs (Security Magazine)
  158. Shareholders Seek to Hold Current and Former SolarWinds Officials Liable for Massive 2020 Security Breach (Benesch - JDSupra)
  159. Date 2022-04-24

  160. Another Hacking Group Has Targeted SolarWinds Systems
  161. 60% of Healthcare Orgs Say Third (Party Risk Management Needs Improvement)
  162. Federal News Network: SCuBA gears up agencies to survive the ‘next’ SolarWinds attack (G2Xchange FedCiv)
  163. CISA Seeks Comment on Visibility Effort Being Piloted with Cloud Service Providers (Nextgov)
  164. Secure Cloud Business Applications
  165. The SolarWinds hack pokes holes in Defend Forward (CISSAR)
  166. SCuBA gears up agencies to survive the ‘next’ SolarWinds attack (FRN)
  167. Lessons Learned from Cyberattacks on Critical Infrastructure (Toolbox It-security)
  168. SolarWinds Co. (NYSE:SWI) Sees Significant Decrease in Short Interest (ETF Daily News)
  169. Date 2022-02-14

  170. Hacks Bring New Urgency to Moves by Congress and Agencies to Reduce Future Cybersecurity Risks (U.S. GAO)
  171. SolarWinds breach updates. Microsoft sinkholes Sunburst’s C&C domain. Facebook takes down inauthentic networks targeting Africa. (SDR News)
  172. Date 2022-02-13

  173. GovCon Expert Dana Barnes: Reflections on White House Zero Trust Cybersecurity Plan
  174. Date 2022-02-12

  175. SEC.gov (Statement on Cybersecurity Risk Management for Investment Advisers, Registered Investment Companies, and Business Development Companies)
  176. Ten Questions We Hope the Cyber Safety Review Board Answers—and Three It Should Ignore (Lawfare)
  177. DHS Launches First-Ever Cyber Safety Review Board (Homeland Security)
  178. Date 2022-02-09

  179. NIST Suggests Agencies Accept the Word of Software Producers Per Executive Order (Nextgov)
  180. Date 2022-01-21

  181. Microsoft: Hackers Exploiting New SolarWinds Serv (U Bug Related to Log4j Attacks)
  182. Date 2022-01-14

  183. Statutory restrictions hindered federal response to SolarWinds, Microsoft Exchange
  184. Date 2021-12-27

  185. SolarWinds investors allege board knew about cyber risks (Reuters)
  186. Date 2021-12-25

  187. Threat actors behind SolarWinds compromise are still active, warns Mandiant (IT World Canada News)
  188. EETimes (SolarWinds Fallout: When Will Breach Reporting Become Mandatory?)
  189. Re: Is there a tool similar to Solarwinds Network Configuration Manager for... (The Meraki Community)
  190. Harris calls for 'cyber doctrine' to address increasing attacks (hill)
  191. Federal Agencies Issue New Breach Notification Rules for Banking Organizations and Banking Service Providers (Benesch - JDSupra)
  192. New SUNSHUTTLE Second-Stage Backdoor Uncovered Targeting U.S.-Based Entity; Possible Connection to UNC2452 (Mandiant)
  193. FireEye finds new malware likely linked to SolarWinds hackers - AlienVault (Open Threat Exchange)
  194. Opinion (To keep our country safe, we need a national Cyber Academy. Think of it as West Point for technology defense. - The Washington Post)
  195. IT reseller challenges USDA’s ’20 (year tradition’ of sticking with Microsoft)
  196. White House national security adviser asks software companies to discuss cybersecurity (Reuters)
  197. White House national security adviser asks software companies to discuss cybersecurity
  198. Federal CISO Clarifies Support for a Standard that Could Make Passwords History (Nextgov)
  199. SolarWinds breach updates. Microsoft sinkholes Sunburst's C&C domain. Facebook takes down inauthentic networks.
  200. White House national security adviser asks software ...
  201. The new PseudoManuscrypt malware puts over 35,000 PCs at risk (TheDigitalHacker)
  202. From Cybercrime To National Security Priority: Biden’s War On Ransomware – Analysis (Eurasia Review)
  203. SolarWinds Orion sql injection [CVE-2021 (35234] – Yet Another News Aggregator Channel)
  204. CVE-2021-35234 (SolarWinds Orion sql injection)
  205. SolarWinds Government Data Breach Leads to Securities Action (Proskauer - Corporate Defense and Disputes - JDSupra)
  206. CVE-2021-35248 (SolarWinds Orion Settings access control)
  207. SolarWinds Trust Center Security Advisories (CVE-2021-44228)
  208. Massive Software Flaw With Global Reach Forces Quebec To Shut Government Websites (The Street Journal)
  209. Did a Russian Cyberattack Affect the Election? Officials Couldn't Be Sure
  210. Remote code execution in SolarWinds Database Performance Analyzer (Apache Log4j component)
  211. Research: Announcement of Periodic Review: Moody's announces completion of a periodic review of ratings of SolarWinds Holdings, Inc. (Moody's)
  212. SolarWinds (NYSE:SWI) Downgraded by JPMorgan Chase & Co. to Neutral (MarketBeat)
  213. NASA Probe Becomes First Spacecraft to Enter Sun’s Atmosphere
  214. EETimes (SolarWinds Fallout: When Will Breach Reporting Become Mandatory?)
  215. Nobelium gang malware evolves one year after SolarWinds
  216. Date 2021-12-10

  217. Microsoft: Russia Behind 58% of Detected State (Backed Hacks)
  218. SolarWinds hack may have been more damaging than previously thought (TechRadar)
  219. Nobelium Makes Russia Leader in Cyberattacks (BankInfoSecurity)
  220. Microsoft Says Russia Behind Over 50% Of State (Sponsored Cyber Hacks)
  221. VA found ‘no evidence’ of compromise in SolarWinds hack: CISO Cunningham
  222. DOJ to Federal Contractors: Report Cyberattacks or Face the False Claims Act (Lexology)
  223. Part of Earth’s Water Came from the Sun, New Study Suggests (Sci-News.com)
  224. Microsoft says it identified 40+ victims of the SolarWinds hack | #microsoft | #hacking (#cybersecurity - NATIONAL CYBER SECURITY NEWS TODAY)
  225. Cybersecurity for Idiots (Lawfare)
  226. A Year After the SolarWinds Hack, Supply Chain Threats Still Loom (WIRED)
  227. You can't stop the 'next SolarWinds' -- but you can slow it down (VentureBeat)
  228. Reviewing the Biggest Data Breaches of 2021 (secblvd)
  229. Breach reporting requirement sputters as House passes NDAA (scmedia)
  230. House Passes NDAA Without Cyber Incident Reporting Legislation (Nextgov)
  231. Rules Committee Print 117 (21; Text of House Amendment to S. 1605)
  232. SolarWinds Attackers Spotted Using New Tactics, Malware (tpost)
  233. SolarWinds APT Targets Tech Resellers in Latest Supply-Chain Cyberattacks (tpost)
  234. SolarWinds Attackers Hit Active Directory Servers with FoggyWeb Backdoor (tpost)
  235. You can’t stop the ‘next SolarWinds’—but you can slow it down (Opera News)
  236. Date 2021-12-09

  237. Russian group behind SolarWinds incident ramping up hacking efforts, analysis says (hill)
  238. SolarWinds hackers kept busy in the year since the seminal hack, Mandiant finds
  239. Suspected Russian Activity Targeting Government and Business Entities Around the Globe (Mandiant)
  240. Russian Actors Behind SolarWinds Attack Hit Global Business & Government Targets
  241. SolarWinds Attacker Targets Cloud Service Providers in New Supply Chain Threat
  242. SolarWinds hackers have been quietly targeting governments, cloud providers (scmedia)
  243. Mandiant: SolarWinds Attackers Continue to Innovate
  244. The Microsoft paradox: Contributing to cyber threats and monetizing the cure (Fortune)
  245. Date 2021-12-08

  246. SolarWinds hackers have been quietly targeting governments, cloud providers (scmedia)
  247. Date 2021-12-07

  248. SolarWinds hackers have a whole bag of new tricks for mass compromise attacks (ars)
  249. Date 2021-11-15

  250. solarwinds serv (u vulnerabilities and exploits)
  251. Lawmakers introduce bill to identify and protect critical groups from cyber threats (hill)
  252. HILL TECH & CYBER BRIEFING: Senators Weigh Cyber Reporting Mandate
  253. Mandia Alerted NSA on FireEye’s SolarWinds Breach
  254. TSA to issue regulations to secure rail, aviation groups against cyber threats (hill)
  255. DOJ to go after government contractors that fail to report breaches (hill)
  256. Kevin Mandia: Coordination, Tech Among Keys to Cybersecurity Advancement (ExecutiveBiz)
  257. Warning as Microsoft malware attack 'creates backdoor for hackers' to enter servers
  258. Russian hackers behind SolarWinds hack are trying to infiltrate US and European government networks (CNNPolitics)
  259. Senate Panel Advances FISMA Reform Bill (MeriTalk)
  260. Mandiant Is Back: What to Expect From ‘Part Deux’ (SDxCentral)
  261. Lawmakers advocate for establishment of standalone House and Senate cyber panels (hill)
  262. Russian hackers behind SolarWinds hack trying to infiltrate US and European government networks - WRCBtv.com | #government | #hacking (#cyberattack - National Cyber Security News Today)
  263. Senate Committee Passes Major FISMA Changes—Including a New Definition of ‘Major Incident’  (Nextgov)
  264. Hackers in SolarWinds breach stole data on U.S. sanctions policy, intelligence probes -sources (National Post)
  265. Microsoft Digital Defense Report and Security Intelligence Reports
  266. Microsoft: Russia is behind 58% of detected state-sponsored hacks (Fortune)
  267. Hackers in SolarWinds breach stole data on U.S. sanctions policy, intelligence probes -sources (Nasdaq)
  268. Biden signs bill to strengthen K-12 school cybersecurity (hill)
  269. The SolarWinds hack may have been more damaging than previously thought
  270. Date 2021-11-05

  271. Known Exploited Vulnerabilities Catalog (CISA)
  272. Date 2021-11-02

  273. White House to convene 30-country cybersecurity meeting (ZDNet)
  274. Insurance carriers scrutinize cybersecurity controls (Crain's Cleveland Business)
  275. Hospital ransomware attack led to infant's death, lawsuit alleges (Healthcare IT News)
  276. Date 2021-11-01

  277. Leading Cyber Officials Favor Fines Over Subpoenas to Enforce Incident Reporting (Nextgov)
  278. SolarWinds CEO Says Attackers Gained Entry, Began Recon in January 2019 (Opera News)
  279. EETimes (SolarWinds Fallout: Cloud Security is the Weak Link)
  280. EU 'denounces' Russian malicious cyber activity aimed at member states (hill)
  281. SolarWinds CEO talks about protecting IT in the wake of a sunburst (Fuentitech)
  282. Autodesk reveals it was targeted by Russian SolarWinds hackers | #computerhacking (#hacking - National Cyber Security News Today)
  283. A multi-party data breach creates 26x the financial damage of single-party breach (Help Net Security)
  284. SolarWinds attackers drop 'FoggyWeb' backdoor on AD SSO servers - Security - Software (iTnews)
  285. Microsoft Warns of FoggyWeb Malware Targeting Active Directory FS Servers
  286. Microsoft warning: This malware creates a 'persistent' backdoor for hackers (ZDNet)
  287. New malware from SolarWinds attackers leaves behind a backdoor (TechRadar)
  288. SolarWinds hackers Nobelium spotted using a new backdoor
  289. Microsoft Details FoggyWeb Backdoor Used by SolarWinds Hackers (SecurityWeek.Com)
  290. Russia (Linked Nobelium Deploying New 'FoggyWeb' Malware)
  291. How one red team exercise averted a new SolarWinds (style attack)
  292. Nearly all third-party containers deployed in the cloud harbor known vulnerabilities (scmedia)
  293. ‘Tomiris’ Backdoor Linked to SolarWinds Malware (tpost)
  294. House passes legislation to strengthen federal cybersecurity workforce (hill)
  295. Tomiris backdoor and its connection to Sunshuttle and Kazuar (Securelist)
  296. New Tomiris Backdoor Found Linked to Hackers Behind SolarWinds Cyberattack
  297. Date 2021-10-08

  298. Hackers of SolarWinds stole data on U.S. sanctions policy, intelligence probes (Reuters)
  299. Date 2021-10-04

  300. Suing the CISO: SolarWinds Fires Back
  301. Earnings are growing at SolarWinds (NYSE:SWI) but shareholders still don't like its prospects (Simply Wall St News)
  302. SolarWinds and the Holiday Bear Campaign: A Case Study for the Classroom (Lawfare)
  303. What’s Up With Apple: National Security, Google Pays Up, and More (24/7 Wall St.)
  304. An Update on Recent Major Breaches (Cyber Security Hub)
  305. Microsoft, Google Among Tech Giants Pledging Big Money to Cybersecurity (eSecurityPlanet)
  306. Zero trust is not enough: The case for continuous control validation - (GCN)
  307. House panel mulls mandatory disclosure bill - (FCW)
  308. Industry lobbies Congress to extend notification timeline after cybersecurity incidents (hill)
  309. Autodesk reveals it was targeted by Russian SolarWinds hackers – Techtwiddle (Technology News and Kicks)
  310. OMB directs agencies to increase log sharing to combat cyber incidents
  311. Eight US investment firms fined over inadequate cyber security policies (IT PRO)
  312. SolarWinds Attack Spurring Additional Federal Investigations
  313. The SEC gets tough on cybersecurity disclosure controls (Lexology)
  314. Venafi Survey: Execs Say Companies Negligent in Protecting Security Software Build Environments Should Face Clear Consequences (bizwire)
  315. SolarWinds CEO: Breach transparency 'painful' but necessary
  316. APT focus: ‘Noisy’ Russian hacking crews are among the world’s most sophisticated (The Daily Swig)
  317. Date 2021-09-27

  318. Most IT executives fear nation-state hacking tools will be used on them (IT PRO)
  319. 2 million government records exposed online in 'no-fly' watchlist, researcher says (CNET)
  320. Microsoft touts role in meeting Biden's order to fend off major hacks on the US (ZDNet)
  321. Sights and sounds of a Venus flyby
  322. SolarWinds and the Challenges of Patching: Can We Ever Stop Dancing With the Devil?
  323. Date 2021-09-26

  324. Experts Uncover Several C&C Servers Linked to WellMess Malware (News Nation USA)
  325. Senators will vote for amendments to the infrastructure bill as the recess approaches.National news (Pennsylvania News Today)
  326. Hackers Linked to SolarWinds Return With Phishing Attack, Microsoft Says | #cybersecurity (#cyberattack - National Cyber Security News Today)
  327. Date 2021-09-14

  328. Exclusive: Wide-ranging SolarWinds probe sparks fear in Corporate America (Reuters)
  329. Microsoft Says Chinese Hackers Were Behind SolarWinds Serv-U SSH 0-Day Attack (News Nation USA)
  330. Wide-ranging SolarWinds probe sparks fear in Corporate America - Security - Software (iTnews)
  331. The imperative of the U.S. government’s Zero Trust measures (Digital Journal)
  332. Infosec Community Increasingly Concerned about SolarWinds Breach, Four Months In
  333. First on CNN Business: Moody's is spending $250 million to measure the risk of America's biggest companies getting hacked
  334. EarthSky (Jupiter’s energy crisis solved: Auroras roast upper atmosphere)
  335. Date 2021-09-11

  336. Microsoft Says Chinese Hackers Were Behind SolarWinds Serv-U SSH 0 (Day Attack)
  337. Microsoft Says Chinese Hackers Were Behind SolarWinds Serv-U SSH 0-Day Attack (The Cyber Security News)
  338. Autodesk Disclosed it was Targeted in SolarWinds Hack (IT Security News)
  339. SolarWinds CEO Sudhakar Ramakrishna on 2020's Massive Hack (Time)
  340. Autodesk Says Company Was Targeted by SolarWinds Attackers - Latest Hacking News Today (HakTechs)
  341. Microsoft Reveals The Real Culprits Behind SolarWinds Serv-U SSH-0 Day Attack (Cyberintel Magazine)
  342. Attacks against SolarWinds Serv (U SW were possible due to the lack of ASLR mitigationSecurity Affairs)
  343. Congress seeks to compel infrastructure operators to report cyberattacks | National (union-bulletin.com)
  344. A deep-dive into the SolarWinds Serv-U SSH vulnerability (Microsoft Security Blog)
  345. Inside the response to the massive Russian SolarWinds hack (Axios)
  346. Lawmakers question impact of SolarWinds hack on US attorneys' offices (hill)
  347. Microsoft's $20 billion plan for cybersecurity's big spending problem
  348. Congress May Require Some Companies to Report Cyber Attacks
  349. SolarWinds: How Russian spies hacked the Justice, State, Treasury, Energy and Commerce Departments
  350. Congress Weighs Bills Requiring Firms to Report Cyberattacks (The Crime Report)
  351. Wide (ranging SolarWinds investigation sparks panic in U.S. business Reuters – Business Press, Business News Portal)
  352. EXCLUSIVE Wide-ranging SolarWinds probe sparks fear in Corporate America (Reuters)
  353. EXCLUSIVE- Wide-ranging SolarWinds probe sparks fear in Corporate America (Nasdaq)
  354. SolarWinds Hack: A wide-ranging SEC investigation has triggered fear in the US corporate world (Technology Shout)
  355. SolarWinds Hack: Extensive SEC Probes Cause Terror in Enterprise America (Fuentitech)
  356. Exclusive: Wide-ranging SolarWinds probe sparks fear in Corporate America (CBNC)
  357. This Week In Security: Ghoscript In Imagemagick, Solarwinds, And DHCP Shenanigans (Hackaday)
  358. SEC Advances Broad Theory of Required Disclosures of Security Incidents
  359. Corporate Execs Fear SEC's SolarWinds Probe Will Expose Unreported Cybersecurity Incidents - by Cynthia Brumfield (Metacurity)
  360. Date 2021-08-15

  361. Russian Hackers Continue With Attacks Despite Biden Warning (Bloomberg)
  362. Russian hackers continue with attacks despite Biden warning | National (union-bulletin.com)
  363. Justice Department says Russians hacked federal prosecutors
  364. SolarWinds hackers accessed over two dozen federal prosecutors' offices: DOJ (hill)
  365. DOJ says SolarWinds hack impacted 27 US attorneys' offices (The Record by Recorded Future)
  366. US bids 'do svidaniya' to Russian staff at Moscow embassy
  367. SolarWinds releases security advisory after Microsoft discovers vulnerability (ZDNet)
  368. Microsoft blames a Chinese hacker group for the new SolarWinds attack (List23: Latest U.S. News & Breaking World News)
  369. SolarWinds: Russian hackers broke into email accounts at US attorney offices
  370. Lawmakers roll out bipartisan bill to help track cyber crimes (hill)
  371. Bitglass Security Spotlight: Ransomware Developments, Additional SolarWinds Victims, and More Data Breaches
  372. CISA's Easterly Unveils Joint Cyber Defense Collaborative
  373. SolarWinds (NYSE:SWI) Shares Gap Down After Analyst Downgrade (MarketBeat)
  374. DOJ states that Russians detained in SolarWinds have hacked federal prosecutors: NPR (Eminetra)
  375. Serendipitous double flyby of Venus provides unprecedented science opportunity | Imperial News (Imperial College London)
  376. Senate includes over $1.9 billion for cybersecurity in infrastructure bill (hill)
  377. Date 2021-08-01

  378. Podcast: Why Securing Active Directory Is a Nightmare (tpost)
  379. Biden to Sign Cyber Security Executive Order (nyt)
  380. Date 2021-07-27

  381. SolarWinds Corporation Loss Submission Form | Levi & Korsinsky, LLP (Securities Class Action Attorneys)
  382. DHS cybersecurity chief confirmed amid fallout from another ransomware attack (News Nation USA)
  383. Date 2021-07-24

  384. Microsoft suspects hacker attacks on SolarWinds in another country
  385. Video - A Documentary on The SolarWinds Hack (MalwareTips Community)
  386. Senate appoints former NSA official as head of US cybersecurity agency (Engadget - News Nation USA)
  387. US puts trade restrictions on six Russian organisations (IT PRO)
  388. Biden administration to blame hackers tied to China for Microsoft cyberattack spree
  389. U.S., allies say Chinese intelligence service behind massive Microsoft hack (Washington Times)
  390. Cyber leaders officially join the ranks as White House grapples with remediation (Utility Dive)
  391. US and allies accuse China of hacking campaign
  392. US and allies accuse Chinese government of masterminding Microsoft Exchange cyberattack (Sports Grind Entertainment)
  393. Biden Administration Blames Hackers Tied to China for Microsoft Cyberattack Spree (WSJ)
  394. SEC Reportedly Probing SolarWinds Breach (Hacking - nativenewspost)
  395. Solarwinds Corp 2021 Current Report 8 (K)
  396. SolarWinds Corp. (SWI) Stock Plummets Following Announcement of Completion of Spin-Off Business (Stocks Telegraph)
  397. After failing to dissuade cyber-attacks, America looks to its friends for help (The Economist)
  398. SolarWinds Shares Rise, N-able Falls After Spinoff Completed (MarketWatch)
  399. SolarWinds Stock Flies Higher after Completing Spin-Off (Millennial Money)
  400. New bill would make some companies report cyberattacks to government
  401. Senators introduce bill requiring some critical groups to report cybersecurity incidents (hill)
  402. House GOP calls for Biden to sanction China over hacks
  403. SolarWinds spins off enterprise unit into new firm, N-able (News)
  404. Blunt, Colleagues Introduce Bipartisan Cyber Reporting Bill Following SolarWinds and Colonial Hacks (U.S. Senator Roy Blunt of Missouri)
  405. NIST Publishes 'Critical Software' Security Guidance
  406. Date 2021-07-18

  407. SolarWinds patches critical Serv (U vulnerability exploited in the wild)
  408. SolarWinds patches critical Serv (U vulnerability exploited in the wild – News Block)
  409. Microsoft discovers critical SolarWinds zero-day under active attack (ars)
  410. Rosen Leads Bipartisan Call to Provide $10 Million in Funding for Cybersecurity Education and Training (Senator Jacky Rosen)
  411. Senate confirms Jen Easterly as head of U.S. cyber agency (POLITICO)
  412. Chris Inglis formally sworn in as national cyber director (hill)
  413. SolarWinds fixes critical Serv-U zero (day exploited in the wildSecurity Affairs)
  414. Microsoft Discovers SolarWinds Critical Zero-Day Under Active Attack (Insider Voice)
  415. SolarWinds Discloses Zero-Day Under Active Attack (NewsOpener)
  416. Microsoft detects critical SolarWinds zero (day during active attack)
  417. SolarWinds says unknown hackers exploited newly discovered software flaw (Reuters)
  418. SolarWinds Discloses Zero (Day Under Active Attack)
  419. Another zero-day vulnerability in SolarWinds Serv (U product exploited by cyber criminals)
  420. SolarWinds releases security advisory after Microsoft discovers vulnerability (ZDNet)
  421. SolarWinds issues software update – one it wrote for a change (to patch hole exploited in the wild • The Register)
  422. SolarWinds Trust Center Security Advisories (CVE-2021-35211)
  423. SolarWinds Serv-U FTP and Managed File Transfer CVE-2021-35211: What You Need to Know (Rapid7 Blog)
  424. SolarWinds releases patch for actively exploited zero (day vulnerability)
  425. SolarWinds warns of ‘targeted’ breach by hackers exploiting new software flaw (MarketWatch)
  426. Solarwinds Serv-U Zero-Day Vulnerability: Dataprise Defense Digest (Dataprise)
  427. SolarWinds issues yet another emergency patch after hackers strike again (TechRadar)
  428. Remote code execution in SolarWinds Serv (U)
  429. Microsoft warns SolarWinds customers that Serv-U is under attack (TechCentral.ie)
  430. SolarWinds patches critical Serv-U vulnerability (July 2021) (Born's Tech and Windows World)
  431. SolarWinds released security advisory for critical Serv-U vulnerability (Cloud7 News)
  432. SolarWinds Issues Patches in Wake of Zero (Day Attacks – Threat.Technology)
  433. SolarWinds patches sensitive Serv-U Vulnerability used in the Wild (Xiarch Solutions Private Limited)
  434. BreachExchange: SolarWinds Confirms New Zero (Day Flaw Under Attack)
  435. SolarWinds Zero-Day Critical New Vulnerability Under Active Attack – . (FR24 News English)
  436. SolarWinds Issues Hotfix for Zero-Day Flaw Under Active Attack (tpost)
  437. SolarWinds Identifies, Patches Critical Vulnerability in Serv-U (My TechDecisions)
  438. A New Critical SolarWinds Zero-Day Vulnerability Reported (Cyberintel Magazine)
  439. SolarWinds, Alerted By Microsoft, Patches Serv-U Vulnerability (MSSP Alert)
  440. New CISA Director Confirmed, W.H. Gains Cyber-Director (tpost)
  441. Microsoft links Serv-U zero-day attacks to Chinese hacking group (The Record by Recorded Future)
  442. SolarWinds 0-day gave Chinese hackers privileged access to customer servers (ars)
  443. New SolarWinds vulnerability under attack: RCE in Serv (U file sharing tool)
  444. Chinese hacking group DEV-0322 behind Solarwinds Serv (U 0day attacksSecurity Affairs)
  445. Microsoft Says SolarWinds Serv-U Zero-Day Exploited by Chinese Group (SecurityWeek.Com)
  446. SolarWinds Releases Patch for Active Vulnerability in Serv (U Software – Computer – News)
  447. Microsoft: Chinese Hackers Use Zero-Day to Exploit SolarWinds Software (Tech Times)
  448. Zero (Trust Implementation Using WHOIS, IP, and DNS Data)
  449. Microsoft attributes new SolarWinds attack to a Chinese hacker group (NewsBeezer)
  450. Microsoft says new SolarWinds zero-day was exploited by China (based threat actor)
  451. Chinese hackers behind SolarWinds attack: Microsoft
  452. SolarWinds Cyberattack: Chinese Hackers Behind SolarWinds Attack, Says Microsoft
  453. Microsoft links SolarWinds hacker group to China
  454. CVE-2021-35211 (SolarWinds Serv-U Managed File Transfer buffer overflow)
  455. Chinese Attack Group Exploiting SolarWinds Zero Day (Decipher)
  456. 'Chinese hackers behind SolarWinds attack' Says Microsoft (Sentinelassam)
  457. Chinese hackers behind new SolarWinds software attack: Microsoft
  458. Microsoft: SolarWinds cyberattack operated by hackers from China: Microsoft, IT Security News, ET CISO
  459. Chinese threat actor exploited zero-day SolarWinds (ExBulletin)
  460. Daily Roundup: SolarWinds Patches Critical Zero-Day Bug (Opera News)
  461. SolarWinds Patches Critical Zero-Day Bug Amid Targeted Attacks (SDxCentral)
  462. According to Microsoft, Chinese hackers used a SolarWinds exploit to carry out attacks
  463. Date 2021-07-13

  464. Another Cybersecurity Attack: State Department in Russian Crosshairs This Time (ClearanceJobs)
  465. Biden warns Putin on Russian ransomware attacks (hill)
  466. Biden Tells Putin Russia Must Crack Down on Cybercriminals (Military.com)
  467. U.S. Cyber Chief in Limbo During REVil Attacks Set to Start Work
  468. Microsoft Is Said to Be Buying Cybersecurity Company RiskIQ (Bloomberg)
  469. Date 2021-07-10

  470. Solarwinds Serv-U 15.2.3 Share URL XSS (CVE-2021-32604) (Trustwave)
  471. Russia ‘Cozy Bear’ Breached GOP as Ransomware Attack Hit (wapo)
  472. Republican National Committee Hack: Russian Cozy Bear Group Breached Computers (Bloomberg)
  473. Russian hackers targeted Republican National Committee last week, reports say (The Independent)
  474. RNC says contractor breached in hack, GOP data secure (hill)
  475. CRN
  476. Attempted Hack of R.N.C. and Russian Ransomware Attack Test Biden (nyt)
  477. A cyberattack on the R.N.C. was likely carried out by Russians, posing a challenge for Biden. (nyt)
  478. Attempted to hack RNC and Russian ransomware attack test Biden (Eminetra)
  479. Russian Hacker Group Cozy Bear Behind GOP Cyberattack: Reports (Tech Times)
  480. N-able Reveals Sales Hit From SolarWinds Hack Amid Spin (Off)
  481. The fencing built around the Capitol after the Jan. 6 riot is coming down. (nyt)
  482. Cyber Command lawyer calls for military operations against hackers (hill)
  483. FERC and NERC Publish Whitepaper on SolarWinds and Related Supply Chain Compromise (Akin Gump Strauss Hauer & Feld LLP - JDSupra)
  484. SolarWinds and Related Supply Chain Compromise (Federal Energy Regulatory Commission)
  485. Three new security plunders: Microsoft said it’s the same group behind SolarWinds hack
  486. GOP allegedly hacked by APT29, known as Cozy Bear | 2021-07-08 (Security Magazine)
  487. US, UK warn about Russia's brute force cyber campaign (Illinois News Today)
  488. 4 key takeaways from Biden’s Executive Order on cybersecurity (secblvd)
  489. FERC, NERC whitepaper warns of supply (chain risk)
  490. SolarWinds and Related Supply Chain Compromise
  491. Russia (linked ‘Cozy Bear’ Hackers Breach Republican Party Computer Systems From Harlem To Harare)
  492. Date 2021-07-07

  493. SolarWinds hackers had access to Denmark’s central bank for months
  494. Microsoft admits certifying a driver loaded with rootkit malware, says 'small number' of customers compromised by SolarWinds hackers (HITBSecNews)
  495. Solar Winds Hackers Continue To Cause Grief (Cyber Security Hub)
  496. The Countdown Towards Zero Trust and MFA (Infosecurity Magazine)
  497. China Likely Outed Soon For Exchange Hacks - Breaking Defense Breaking Defense (Defense industry news, analysis and commentary)
  498. Understanding Zero Trust in the Cyber Executive Order for Federal Agencies (MeriTalk)
  499. Debate Heats Up as Senator Prepares to Introduce Incident-Reporting Legislation (Nextgov)
  500. Microsoft Customers Warned of Targeted Scams by NOBELLIUM (Data Privacy + Cybersecurity Insider)
  501. SolarWinds hack exposes Denmark’s central bank (IceNews - Daily News)
  502. Denmark's central bank affected by SolarWinds compromise. Notes from the underground. (Publicnewsportal)
  503. The Hope spacecraft records the aurora borealis of Mars in the most detailed images so far (science and health)
  504. CISA sees zero trust adoption coming into focus under cyber executive order (FRN)
  505. Date 2021-07-02

  506. SolarWinds hackers breach new victims, including a Microsoft support agent – Ars Technica (Million Dollar Business Blog)
  507. SolarWinds hackers attack new victims, including Microsoft support agent – . (FR24 News English)
  508. Microsoft admits to signing rootkit malware in supply-chain fiasco (Business Standard News)
  509. Microsoft says a new breach was discovered in a suspected investigation into SolarWinds hackers (India News Republic)
  510. SolarWinds clients say they will face an investigation from the USSEC over disclosure of cyber breaches (Fuentitech)
  511. Microsoft says new breach was discovered in probe by suspected SolarWinds hackers by Reuters (My Blog)
  512. SolarWinds hackers breach new victims, including a Microsoft support agent (HITBSecNews)
  513. Microsoft says its own customer support tools were compromised by SolarWinds hackers (TechNewsBoy.com)
  514. SolarWinds Hackers Breach Microsoft Customer Support to Target its Customers (The Cyber Security News)
  515. Microsoft support agent and some basic customer details hit by SolarWinds attackers (ZDNet)
  516. Microsoft (NASDAQ:MSFT) customers compromised in a cyberattack
  517. Microsoft Corporation (NASDAQ:MSFT) - Microsoft Says Its Customer Support Tools, Users' Information Were Exploited By The Hackers Behind SolarWinds (Benzinga)
  518. Microsoft says new breach discovered in probe of suspected SolarWinds hackers (Regina Leader Post)
  519. Microsoft says new breach discovered in probe of suspected SolarWinds hackers (The Star Phoenix)
  520. SolarWinds hackers attack Microsoft, shocking security analysts (Techzine Europe)
  521. Cybersecurity study: SolarWinds attack cost affected companies an average of $12 million (TechRepublic)
  522.  New Research Finds the SolarWinds Cyber Attack Cost Affected Companies in Key Sectors 11% of Total Annual Revenue on Average
  523. Microsoft says hackers who compromised SolarWinds breached three new victims
  524. Microsoft Discovers New Attacks by SolarWinds Group, Including One Against Its Own Agent - by Cynthia Brumfield (Metacurity)
  525. Microsoft’s customer support targeted by SolarWinds hackers
  526. Cybersecurity study: SolarWinds attack cost affected companies an average of $12 million (TechRepublic)
  527. Russian hackers breached Microsoft customer support to try phishing targets in 36 countries
  528. Hassan, Cornyn float bill to create new federal cybersecurity training programs - (FCW)
  529. Microsoft support agent and some basic customer details hit by SolarWinds attackers (ZDNet)
  530. Bipartisan Bill Aims to Strengthen Federal Cyber Workforce (MeriTalk)
  531. Microsoft Tracks Attack Campaign Against Customer ...
  532. IT services firms shoulder undue amount of security risk
  533. Lawmaker, Tech Companies Clash on Software Transparency Requirements (Nextgov)
  534. Microsoft accidentally approved malware that could spy on Windows users
  535. Investigating and Mitigating Malicious Drivers (Microsoft Security Response Center)
  536. Microsoft customer support hacked in new campaign by APT29
  537. The SolarWinds hackers are attacking again. (Aluria Tech)
  538. Microsoft uncovers new breach while investigating SolarWinds hackers, Digital News (AsiaOne)
  539. Microsoft Signed Malware That Spreads Through Gaming (tpost)
  540. SolarWinds hack: Microsoft says new breach discovered during SolarWinds hack probe (The Economic Times)
  541. Details of basic customers attacked by Microsoft support agents and SolarWinds attackers (Fuentitech)
  542. Nobelium, After SolarWinds, Has Now Hit Microsoft (Cyberintel Magazine)
  543. Denmark's central bank exposed in SolarWinds hack, media report says
  544. Major Danish bank was attacked by SolarWinds (NewsLine)
  545. The Impact of the SolarWinds Cost Companies 11% of Their Annual Revenue
  546. Denmark's central bank exposed in SolarWinds hack, media report says (Reuters)
  547. Administration to release attribution for Microsoft vulnerabilities in 'coming weeks' (hill)
  548. Cybersecurity Survey: SolarWinds Attack Costs Impacted Enterprises On Average $ 12 Million (Fuentitech)
  549. Denmark's Central Bank hacked through SolarWinds vulnerability
  550. BreachExchange: SolarWinds hackers breach Microsoft support agent to target customers
  551. Hackers Disguise Rootkit as Microsoft Drivers
  552. SolarWinds Hackers Continue Assault With a New Microsoft Breach (Forbes Alert)
  553. SolarWinds hackers remained in Denmark's central bank for monthsSecurity Affairs
  554. Microsoft: malicious cyber group Nobelium tried to attack entities in 36 countries (Israel Defense)
  555. SEC Conducts Sweep Of Customers Impacted By SolarWinds Cyber Breach - Corporate/Commercial Law (United States)
  556. SEC Conducts Sweep of Customers Impacted by SolarWinds Cyber Breach (Securities Litigation and Regulatory Enforcement)
  557. Denmark’s Central Bank Compromised by SolarWinds Cyber Attack: Media Report
  558. Danmarks Nationalbank’s comments on media reports about SolarWinds
  559. Senators propose bill to help private sector defend against hackers (hill)
  560. Danish central bank denies suffering breach in SolarWinds hack (Central Banking)
  561. Russian hackers had months (long access to Denmark's central bank)
  562. SolarWinds Investigation Leads Microsoft to Another Security Breach Discovery (FindBiometrics)
  563. SolarWinds Hackers Breach Microsoft Customer Support to Target its Customers (NY Press News)
  564. NSA discloses hacking methods it says are used by Russia (The Seattle Times)
  565. Hackers Had Secret Access to Danish National Bank for Seven Months After SolarWinds Attack – Report (SGT Report)
  566. Date 2021-07-01

  567. SolarWinds hackers had access to Denmark's central bank for 7 months, report says (CyberScoop)
  568. Microsoft says new breach discovered in probe of suspected SolarWinds hackers (Reuters)
  569. Microsoft says SolarWinds hacking group has breached three new victims (The Record by Recorded Future)
  570. Bipartisan Legislation Would Establish Cybersecurity Literacy Campaign
  571. Microsoft says its own customer support tools were compromised by SolarWinds hackers (Verge)
  572. SolarWinds backdoor gang pwns Microsoft support agent to turn sights on customers (Register)
  573. Microsoft says its own customer support tools were compromised by SolarWinds hackers (Sports Grind Entertainment)
  574. Microsoft reports previously undetected security breach while investigating SolarWinds hack — RT USA News
  575. SolarWinds : Cyberattack Generates Recent Widespread SEC Enforcement Requests (MarketScreener)
  576. Microsoft: Russia (linked SolarWinds hackers breached three new entitiesSecurity Affairs)
  577. Senators propose bill to help tackle cybersecurity workforce shortage (hill)
  578. SolarWinds hackers breach new victims, including a Microsoft support agent (ars)
  579. Microsoft Discloses New Customer Hack Linked to SolarWinds Cyberattackers (WSJ)
  580. Microsoft says new breach discovered in probe of suspected SolarWinds hackers (Netscape Money & Business)
  581. Microsoft claims its own customer support tools have been compromised by SolarWinds hackers – . (FR24 News English)
  582. SEC FORM 3
  583. SolarWinds hackers breach new victims, together with a Microsoft help agent (EAUC News)
  584. SolarWinds Hackers Accessed Microsoft Customer Service Tools (Teller Report)
  585. SolarWinds hackers break into new victims, including Microsoft support agents (Fuentitech)
  586. SolarWinds Hackers Breach New Victims, Including Microsoft Support Agent (Salesground)
  587. Microsoft Says SolarWinds Hackers Attacked Three in New Breach (usnewsmail)
  588. Date 2021-06-26

  589. US Seizes Domains Used by SolarWinds Hackers in Cyber Espionage Attacks (News Nation USA)
  590. Date 2021-06-25

  591. Hillicon Valley: Cyber agency says SolarWinds hack could have been deterred | Civil rights groups urge lawmakers to crack down on Amazon's 'dangerous' worker surveillance | Manchin-led committee puts forth sprawling energy infrastructure proposal (TheHil)
  592. U.S. SEC probing SolarWinds clients over cyber breach disclosures -sources (Reuters)
  593. U.S. SEC seeks information from SolarWinds clients in cyber breach probe (Regina Leader Post)
  594. ‎World Business Report: Update: US authorities open probe into SolarWinds' cyber breach on Apple Podcasts
  595. Cyber agency says SolarWinds hack could have been deterred by simple security measures
  596. U.S. SEC probing SolarWinds clients over cyber breach disclosures (sources)
  597. SolarWinds’ Breach Disclosures Being Painstakingly Examined by U.S. SEC (Byte News)
  598. Mandatory Cyber Reporting Within 24 Hours: Sen. Warner Bill - Breaking Defense Breaking Defense (Defense industry news, analysis and commentary)
  599. Software bills of materials (SBOM) could help improve cybersecurity (CNX Software)
  600. SolarWinds Hackers Could Have Been Waylaid by Simple Countermeasure -US Officials - Latest Tweet by Reuters (LatestLY)
  601. SolarWinds hackers may have been thwarted by simple security measures, officials say (Fuentitech)
  602. US SEC Requests Information from SolarWinds Customers in Cyber ​​Attack Investigation (RB Tech Inc)
  603. The Cybersecurity 202: Defense contractors are yet another sector highly vulnerable to hacking, study finds (wapo)
  604. Government-mandated SBOMs to throw light on software supply chain security (CSO Online)
  605. US SEC investigates SolarWinds clients over cyber breach disclosures (IT PRO)
  606. Rethinking US Federal network defenses. Mandatory reporting laws. International CyberCrime Prevention Act, RICO, and money laundering.
  607. U.S. SEC has begun probe of cyber breach by SolarWinds – sources
  608. US SEC investigates SolarWinds clients over cyber breach disclosures (The Cyber Security News)
  609. SolarWinds hackers could have been waylaid by simple countermeasure – U.S. officials (102.5 Duke FM)
  610. SolarWinds Clients Said to Face US SEC Probe Over Cyberattack Disclosures (News Update)
  611. Could better cyber hygiene have prevented the SolarWinds attack?
  612. Hillicon Valley: Cyber agency says SolarWinds hack could have been deterred | Civil rights groups urge lawmakers to crack down on Amazon's 'dangerous' worker surveillance (Manchin-led committee puts forth sprawling energy infrastructure proposal - The Ne)
  613. The US Securities and Exchange Commission is investigating SolarWinds clients for hacking detection - Sources by Reuters (Asia Pacific Live Update)
  614. US SEC Investigates SolarWinds Clients for Cyber ​​Breach: Report (Economy and Business News - Insider Voice)
  615. Total Solar Eclipses Shed Light on the Temperature of Solar Winds and Sun's Corona (Science Times)
  616. Politics: Cyber agency says SolarWinds hack could have been deterred by simple security measures - PressFrom (US)
  617. SolarWinds customers asked to face investigation from US SEC over cyber breach disclosure (Indian Lekhak)
  618. SEC Investigates If Companies Did Not Disclose Effects of SolarWinds Cyber ​​Breach (UK Time News)
  619. CISA: Firewall Rules Could Have Blunted SolarWinds Malware
  620. SEC Reportedly Probing SolarWinds Breach | Hacking (TechNewsWorld)
  621. CISA believes SolarWinds attack could have been prevented with simple countermeasures | 2021-06-23 (Security Magazine)
  622. SolarWinds Cyberattack Generates Recent Widespread SEC Enforcement Requests (Troutman Pepper - JDSupra)
  623. CISA: No organization in the public or private sector could’ve prevented SolarWinds breach (FRN)
  624. Did Companies Fail to Disclose Being Affected by SolarWinds Breach? (The Cyber Post)
  625. Recent SEC Enforcement Requests Related to SolarWinds Cyberattack (Skadden, Arps, Slate, Meagher & Flom LLP - JDSupra)
  626. CISA believes SolarWinds attack could have been prevented with simple countermeasures (Cyber Reports Cybersecurity News & Information)
  627. SEC Reportedly Probing SolarWinds Breach (Hacking - newsbinding)
  628. SEC “Sweep” of Public Companies’ & Registrants’ Responses to the SolarWinds Cyberbreach
  629. Federal Agencies Could Have Neutralized SolarWinds Breach, CISA Says
  630. The SEC is reportedly investigating SolarWinds breaches (Hacking - Fuentitech)
  631. US SEC probing clients of SolarWinds over cyber (breach)
  632. SEC Reportedly Investigating SolarWinds Disruption (Breaking into - The Rv Article)
  633. Energy wants $201 million to bolster cybersecurity in wake of attacks
  634. House lawmakers introduce bill to increase American awareness of cyber threats (hill)
  635. SEC “Sweep” of Public Companies’ & Registrants’ Responses to the SolarWinds Cyberbreach (Faegre Drinker Biddle & Reath LLP - JDSupra)
  636. CMMC: The Dramatic Year of the Pentagon’s Contractor Cybersecurity Program (Nextgov)
  637. Key Lawmaker Calls on Pentagon Leadership to Act on Cyber Certification Program (Nextgov)
  638. Open Source Security: Google Has New Plans to Stop Software Supply Chain Attacks (Texas News Today)
  639. SEC.gov (In the Matter of Certain Cybersecurity-Related Events (HO-14225) FAQs)
  640. Date 2021-06-23

  641. SEC still digging into SolarWinds fallout, nudges undeclared victims (Register)
  642. SP 800-216 (Draft), Recommendations for Federal Vulnerability Disclosure Guidelines (CSRC)
  643. Date 2021-06-22

  644. Jake Sullivan: U.S. preparing more sanctions for Russia
  645. SolarWinds hackers could have been waylaid by simple countermeasure -US officials (National Post)
  646. Biden’s executive order on cybersecurity should include behavior transparency (TechCrunch)
  647. U.S. SEC probing SolarWinds clients over cyber breach disclosures -sources (Reuters)
  648. US SEC officials say government agencies have begun investigating SolarWinds cyber infringement (Texas News Today)
  649. SEC Investigating Companies’ Handling of SolarWinds Attack (Bloomberg)
  650. SolarWinds hackers could have been waylaid by simple countermeasure -US officials (Reuters)
  651. Date 2021-06-21

  652. Cybersecurity Rule Could Prompt DoD Supplier Fallout (EE Times)
  653. Date 2021-06-20

  654. SolarWinds response team recounts early days of attack
  655. Senate bill proposes requiring cyber incident notification to feds within 24 hours (CyberScoop)
  656. Senate confirms first White House cyber director
  657. What Microsoft officials know about Russian phishing hacks aimed at USAID (Illinois News Today)
  658. Open-source security: Google has a new plan to stop software supply chain attacks (ZDNet)
  659. Binary Authorization for Borg: how Google verifies code provenance and implements code identity
  660. Critical cyber targets: You can't touch this (again), Biden tells Putin
  661. Google dishes out homemade SLSA, a recipe to thwart software supply (chain attacks • The Register)
  662. Cybersecurity Rule Could Prompt DoD Supplier Fallout (EE Times)
  663. Systemic cyberattacks trigger response from insurers (Insurance Business)
  664. The Cybersecurity 202: The race is on to make hacked companies more accountable to government. (wapo)
  665. Google’s latest framework aims to prevent SolarWinds (like supply chain attacks)
  666. Senators Draft a Federal Breach Notification Bill
  667. Britain blames Putin's spies for massive SolarWinds cyber attack (Daily Mail Online)
  668. Date 2021-06-18

  669. Cyber EO May Move Software Supply Chain Security From Neutral to Highway Speed (MeriTalk)
  670. NSA cyber director discusses US response, approach to apparent espionage operation
  671. Is an Attacker Living Off Your Land?
  672. SolarWinds hackers are attempting phishing attacks targeting 150 organizations, Microsoft said. (Illinois News Today)
  673. Tonya Ugoretz: FBI Needs Industry Cooperation to Address Cyber Incidents
  674. Microsoft's CISO: Why we're trying to banish passwords forever (ZDNet)
  675. Date 2021-06-17

  676. Federal CISO forecasts one of toughest tasks in sweeping Biden cyber executive order
  677. Cyber EO response will involve leaders from every agency, Federal CISO says (FedScoop)
  678. Biden Signs Executive Order Intended to Improve the Federal Government's Cybersecurity (Troutman Pepper - JDSupra)
  679. How FireEye attributed the SolarWinds hacking campaign to Russian spies (CyberScoop)
  680. Preventing Supply Chain Attacks like SolarWinds (Linux Foundation)
  681. How LF communities enable security measures required by the US Executive Order on Cybersecurity (Linux Foundation)
  682. Federal Register :: Software Bill of Materials Elements and Considerations
  683. A New Kind of Trust Root. Announcing the Sigstore Root Key… | by Dan Lorenc | Jun, 2021 (sigstore)
  684. Date 2021-06-16

  685. Key Senator Wants Biden to Raise SolarWinds in International Negotiations (Nextgov)
  686. DHS poised to remake federal hiring in September to confront cybersecurity gap - (FCW)
  687. Bank of America spends over $1 billion per year on cybersecurity
  688. Solarwinds Corp 2021 Definitive information statements DEF 14C
  689. Form DEF 14C SolarWinds Corp For: Jun 11
  690. Notification no (nos: What to avoid when alerting customers of a breach)
  691. Biden Signs Executive Order Aimed at Improving the Federal Government’s Cybersecurity (Troutman Pepper - JDSupra)
  692. Federal cyber spending to drive an M&A surge, analyst says (Washington Business Journal)
  693. Cyber ​​regulation could come after a series of hacks and ransomware attacks (Voice of America - Texas News Today)
  694. Date 2021-06-12

  695. US Cyber Command wants more money for network defense
  696. Biden moves closer to filling critical cyber roles as administra (WENY News)
  697. Sen. Warner teases bipartisan bill requiring some companies to report cyberattacks
  698. Time (lapse Video and Photos of Michigan's 2021 Solar Eclipse)
  699. We Already Know How to Stop SolarWinds (Like Hacks)
  700. Understanding the Biden Administration’s Cybersecurity Executive Order (ABA Banking Journal)
  701. How Attackers Exploit Active Directory: Lessons Learned from High-Profile Breaches (secblvd)
  702. DOJ Seizes Millions in Ransom Paid to Colonial Pipeline Hackers (Kramer Levin Naftalis & Frankel LLP - JDSupra)
  703. Date 2021-06-11

  704. SolarWinds Corporation (Bernstein Litowitz Berger & Grossmann LLP)
  705. Consolidated Complaint for Violations of the Federal Securities Laws
  706. Date 2021-06-09

  707. Security clearance demands are exploding and government must keep up - (FCW)
  708. DOJ recovers most of ransom Colonial Pipeline paid to DarkSide hackers | News (coloradopolitics.com)
  709. Zero Trust is the Only Way: President Biden’s Executive Order Simplified (secblvd)
  710. Biden prepping cybersecurity executive order in response to SolarWinds attack
  711. SolarWinds lawsuit expands to include private equity owners
  712. FireEye CEO Kevin Mandia On Ransomware: Businesses Must ‘Try To Reduce The Blast Radius’ Of Attacks
  713. SolarWinds lawsuit claims private equity owners ‘sacrificed cybersecurity to boost short-term profits’ (The Open Security)
  714. Russian SolarWinds hackers have launched a new campaign using their USAID email address, Microsoft said. (Illinois News Today)
  715. CISA launches platform to let hackers report security bugs to US federal agencies (TechCrunch)
  716. FireEye CEO: 'We are getting sucker (punched in cyberspace')
  717. Date 2021-06-08

  718. Strengthening US Cybersecurity: Impacts of the Executive Order (NAVEX Global - JDSupra)
  719. America must repel and punish cyber-attackers | Editorials (mtexpress.com)
  720. India's Cybersecurity Breach Reporting Law: Time for an Overhaul? (Illinois News Today)
  721. Energy secretary backs ban on ransomware payments: 'You are encouraging the bad actors'
  722. Meatpacking giant JBS believes Russia behind hack that hit plants - Raw Story (Celebrating 17 Years of Independent Journalism)
  723. Date 2021-06-05

  724. will over solarwinds latest massive phishing
  725. Biden weighs direct action against Russian targets following cyberattacks (WHAM)
  726. Russia's Nobelium uses USAID's email system for hacking, according to Microsoft (Illinois News Today)
  727. Biden Warns Businesses of Increased Cybersecurity Threat
  728. New Executive Order Issued on Improving Nation’s Cybersecurity (Lexology)
  729. Date 2021-06-03

  730. Cybersecurity for U.S. critical infrastructure a ‘national (security imperative,’ NSC official says – Urgent Comms)
  731. Here Are Some Of The Major Hacks The U.S. Blamed On Russia In The Last Year
  732. Meatpacking giant JBS hit by cyberattack; believes Russia involved
  733. SolarWinds Threat Actors Behind New Email Attack Campaign
  734. Poisoned Installers Found in SolarWinds Hackers Toolkit (Flizzyy News)
  735. NobleBaron (New Poisoned Installers Could Be Used In Supply Chain Attacks - SentinelLabs)
  736. Justice Department seizes domains used in Nobelium-USAID phishing campaign (ZDNet)
  737. US seizes 2 domain names used in cyberespionage campaign (The Seattle Times)
  738. Feds seize two domains used by SolarWinds intruders for malware spear (phishing op • The Register)
  739. Senate Hearing Considers CMMC, and Ability to Stop a SolarWinds-Type Attack (PubKGroup)
  740. SolarWinds lawsuit claims private equity owners ‘sacrificed cybersecurity to boost short-term profits’ (The Cyber Security News)
  741. Cyberattack On World's Biggest Meat Company 'Likely Based In Russia'
  742. New Wave of Phishing Attacks: SolarWinds Hackers Target Government and NGOs
  743. SolarWinds Attackers Launch New Wave Of Nobelium Attacks - Malware News (Malware Analysis, News and Indicators)
  744. SolarWind Attackers Launch New Wave Of Phishing Attacks
  745. New sophisticated email-based attack from NOBELIUM (MS Security)
  746. US SolarWinds hackers seize domains used in cyber espionage attacks (Jioforme)
  747. U.S. seizes domains used in USAID hack (UPI)
  748. Date 2021-06-02

  749. SolarWinds Hackers Return, Launch Phishing Campaign Using Compromised Account of US Foreign Aid Agency (CPO Magazine)
  750. Another Nobelium Cyberattack (Microsoft On the Issues)
  751. SolarWinds Attack Ongoing U.S. Sets Aside $750 Million to Respond   (USA Herald)
  752. SolarWinds Engineer's Toolset vs. Splunk Enterprise vs. Terabit Security Comparison
  753. Solarwinds: 150 companies massively targeted by APT29
  754. Nobelium: The SolarWinds Hackers is Back With Another Cyber Attack (secblvd)
  755. US Proposes $750m For Federal SolarWinds Response (IT Security News)
  756. Russian hackers of SolarWinds back on the attack
  757. How SolarWinds Hackers ‘Nobelium’ Used Constant Contact in Mass Phishing Campaign
  758. Russian SolarWinds Hacker Launches New Phishing Campaign-Security (Illinois News Today)
  759. New breach by hackers behind SolarWinds 'mostly unsuccessful', says Microsoft (Secure books)
  760. Biden's $6T budget includes cybersecurity, broadband infrastructure (Healthcare IT News)
  761. GISEC 2021: SolarWinds CEO to deliver a keynote address titled SolarWinds: Secure by Design on June 2 (Enterprise Channels MEA)
  762. The Line in the Sand: How We Respond Today Impacts Our Security Tomorrow (secblvd)
  763. Cyberattacks on Companies' IP Threaten the Global Order (Barron's)
  764. Biden budget seeks $750 million to respond to SolarWinds compromises, plus billions more for cyber
  765. SolarWinds hackers launch phishing attack - (GCN)
  766. JBS cyber attack: 1/5 of beef production wiped out in massive hack (Axios)
  767. U.S. seizes two domains used in cyberattacks that mimicked USAID communications (Nasdaq)
  768. Date 2021-06-01

  769. Gen. Alexander Says Russian Cyber Attacks Escalating, ‘More Blatant’ (News Talk WBAP-AM)
  770. Gen. Alexander Says Russian Cyber Attacks Escalating, 'More Blatant' (Newsmax.com)
  771. The SolarWinds hackers aren’t back—they never went away (ars)
  772. Keith Alexander Warns About Cyberattacks Linked to Russia
  773. Microsoft Says SolarWinds Hackers Are Back, USAID Breached
  774. SolarWinds Hackers Have Not Returned, They Have Never Been Removed (J99news)
  775. Implications Of Russian Solarwinds Hackers New Email Attack On Government Agencies (Information Security Buzz)
  776. US agencies lack supply chain best practices post (SolarWinds)
  777. Microsoft unleashes ‘Death Star’ on SolarWinds hackers in extraordinary response to breach | #microsoft | #hacking (#cybersecurity - National Cyber Security News Today)
  778. Microsoft has discovered yet more SolarWinds malware | #microsoft | #hacking (#cybersecurity - National Cyber Security News Today)
  779. Written Sttement of jamie Dimon to Senate Banking Committee
  780. (16) Dimon: Cyberattacks are getting worse. DC must do more
  781. SolarWinds prevention, avoiding a cyber security disaster (CyberTalk)
  782. Hackers targeted SolarWinds faster than previously known (Florida News Times)
  783. Biden’s Cybersecurity EO: The Wrong Issues (tpost)
  784. SolarWinds attacker Nobelium targets almost 3,000 emails (ARN)
  785. Microsoft Catches NOBELIUM's Email Malware Plans, Also Known for its Part in SolarWinds' Attack (Tech Times)
  786. Microsoft: SolarWinds hackers target 150 orgs with phishing
  787. SolarWinds hack: Microsoft says SolarWinds hackers now targeting US agencies, NGOs (The Economic Times)
  788. Microsoft says group behind SolarWinds hack now targeting government agencies, NGOs (Reuters)
  789. Microsoft: SolarWinds hackers target 150 orgs with phishing | Govt. & Politics (yorknewstimes.com)
  790. Russian gang behind SolarWinds hack returns with phishing attack disguised as mail from US aid agency (Register)
  791. SolarWinds hackers are at it again, targeting 150 organizations, Microsoft warns
  792. Microsoft says group behind SolarWinds hack now targetting government agencies, NGOs (Regina Leader Post)
  793. Microsoft says SolarWinds hackers have struck again at the US and other countries (CNN)
  794. New York And Illinois Regulators Recommend Third Party Cybersecurity Review For Specific Vulnerabilities - Technology (United States)
  795. Khanna, Mace introduce bill to strengthen federal cyber workforce following major hacks (hill)
  796. MSFT warns group behind SolarWinds cyberattack's returned to target over 150 organizations
  797. Russian Hackers Of SolarWinds Back On The Attack
  798. SolarWinds hackers using NativeZone backdoor against 24 countries
  799. Kremlin says has no information on U.S. cyber attack, directs questions to Microsoft (The Star Phoenix)
  800. SolarWinds attacker Nobelium targets over 150 companies in new mass email campaign (CSO Online)
  801. Hackers are using Trump’s election fraud conspiracy to break into U.S. government agencies
  802. Microsoft warns that Russian hackers used US agency to mount huge cyberattack (CNET)
  803. 14 Alternatives To SolarWinds Network Bandwidth Analyzer, Pros, Cons & Questions (Hackers Pad)
  804. Annual FireEye Mandiant M (Trends Report Reveals Global Statistics and Insights From Hundreds of Diverse Intrusions)
  805. FireEye Mandiant M (Trends 2021 report)
  806. Fireeyye - [Report] M (Trends 2021)
  807. Date 2021-05-27

  808. It's Time for Congress to Push Companies to Come Forward on Hacks (Just Security)
  809. Turn the Tables: Supply Chain Defense Needs Some ...
  810. United States House of Representatives : Chairman Foster Opening Statement for Hearing on SolarWinds and Improving the Cybersecurity of Software Supply Chains
  811. DoJ, FBI, IC reviewing supply chain threats posed by Russian companies (FRN)
  812. VIDEO: Congress Holds Joint Hearing On SolarWinds Hack And Cybersecurity (LiveTube)
  813. SolarWinds, Exchange attacks revive calls for mandatory breach notification, better information sharing (R Street)
  814. SolarWinds hack 'a big wakeup call,' NASA's human spaceflight chief says (Space)
  815. Biden urged by tech firms to embrace commercial software
  816. White House taps Matt Olsen, Uber security boss and former NSA lawyer, to lead key DOJ division
  817. Date 2021-05-26

  818. Colonial ransomware hack spurs first-ever cybersecurity regulations for pipeline industry (wapo)
  819. Date 2021-05-25

  820. 'Early recon activities' for SolarWinds hack may have started in early 2019 ⋅ Windows Global
  821. Date 2021-05-23

  822. Plurilock Issues Statement Following U.S. Executive Order to Increase Cybersecurity Defenses
  823. Senate Homeland Security and Governmental Affairs Hearing on Cybersecurity (UPI)
  824. Parsing Biden’s Cybersecurity Order (secblvd)
  825. SolarWinds CEO extends hack timeline, rethinks intern blame (Cybersecurity Dive)
  826. Would CMMC compliance block a SolarWinds-style attack? - (FCW)
  827. How 2 New Executive Orders May Reshape ...
  828. How to Avoid Another Cybersecurity Disaster Like SolarWinds
  829. 12 Lessons Learned From The SolarWinds Breach: RSA Conference
  830. CrowdStrike breaks down 'Golden SAML' attack
  831. Hackers targeted SolarWinds earlier than previously known (WDHN - DothanFirst.com)
  832. Hackers targeted SolarWinds earlier than previously known (Arab News PK)
  833. New Bill Proposes that Americans Should Be Able to Sue Foreign Hackers (Faegre Drinker Biddle & Reath LLP - JDSupra)
  834. SolarWinds CEO: Attack Began Much Earlier Than Previously Thought (NewsOpener)
  835. Hackers targeted SolarWinds earlier than previously known (Inside Telecom)
  836. CISA and NIST Guidance on Software Supply Chain Attacks
  837. Is it time to test the limits -- and potential -- of expanding CMMC? - (Defense Systems)
  838. UPDATE 1 (SolarWinds CEO says hackers may have struck months earlier than thought)
  839. Hackers Targeted Solarwinds Earlier than Previously Known (VOA)
  840. What to do? GSA cyber advisor offers tips on supply chain risk management. (scmedia)
  841. Hackers targeted SolarWinds earlier than previously known
  842. SolarWinds hack: Nation-state attackers could have launched supply chain attack nine months before previously thought (The Daily Swig)
  843. SolarWinds CEO Apologizes For Blaming An Intern
  844. The 3 elements of a sound threat intelligence program (TechRepublic)
  845. SECURITY ALERT - SolarWinds CEO: Attack Began Much Earlier Than Previously Thought (MalwareTips Community)
  846. Veterans Affairs says no evidence of data loss from SolarWinds hack (FRN)
  847. CMMC is not as scary as you think (secblvd)
  848. Dave MacKinnon takes over as CSO of N-able (formerly SolarWinds MSP) | 2021-05-21 (Security Magazine)
  849. SolarWinds hackers had earlier access than previously thought; Russia denies role (Seeking Alpha)
  850. President Biden Announces Sweeping New Cybersecurity Reforms (Pillsbury Winthrop Shaw Pittman LLP - JDSupra)
  851. N-able Announces New Chief Security Officer and General Counsel to Its Executive Leadership Team (N-able)
  852. The UK’s Approach to Russian Cyber Operations Shows No Signs of Changing (RUSI)
  853. Hackers targeted SolarWinds earlier than previously known (Arab News)
  854. SimuLand: Understand adversary tradecraft and improve detection strategies (MS Security)
  855. Solar Storm Coming to Earth at 2.1 Million km per Hour: How Dangerous Is It? (Nature World News)
  856. Hackers targeted SolarWinds earlier than previously known
  857. SolarWinds CEO: Hackers Were Doing "Early Recon" As Early As January 2019 (My TechDecisions)
  858. Cybersecurity Legal Task Force
  859. Date 2021-05-21

  860. SolarWinds: A Harbinger For a National Data Breach Reporting Law (Decipher)
  861. Microsoft Corporation (NASDAQ:MSFT), Solarwinds, Inc. (NYSE:SWI) - Biden Administration Prioritizes Cybersecurity Funding Following Multiple Hacks (Benzinga)
  862. How CISA limited the impact of the SolarWinds attack (FRN)
  863. SolarWinds CEO says hackers may have struck in January 2019, months earlier than thought (Reuters)
  864. Biden calls for $22 billion in cyber security funding (IT PRO)
  865. CEO: SolarWinds Attack Dates Back to at Least January 2019 (PCMag)
  866. SolarWinds CEO says hackers may have struck months earlier ...
  867. President Biden's Executive Order to Improve Cybersecurity Issued (King & Spalding - JDSupra)
  868. SolarWinds CEO apologizes for blaming an intern, says attack may have started in January 2019 (The Record by Recorded Future)
  869. SolarWinds CEO reveals much earlier hack timeline, regrets company blaming intern
  870. SolarWinds CEO says hackers may have struck months earlier than thought (Nasdaq)
  871. SolarWinds: The Detailed Account of the Incident Response (RSA)
  872. #RSAC: SolarWinds CEO Provides new details on attack and response (Jioforme)
  873. #RSAC: SolarWinds CEO Provides New Details into Attack and Response (The Cyber Security News)
  874. SolarWinds CEO says hackers may have struck months earlier than thought (Reuters)
  875. President Biden’s Cybersecurity Order Takes Security Seriously (Lowndes - JDSupra)
  876. House Panel Passes Bill to Explore Bringing State and Local Cybersecurity Workers into CISA (Nextgov)
  877. The Negligence behind the Colonial Pipeline Hack | Business (stltoday.com)
  878. To avoid insider threats, security strategies call for behavioral profiling and anomaly comparison | 2021-05-20 (Security Magazine)
  879. President Biden’s Recent Cybersecurity Executive Order Will Increase Compliance Obligations on the Private Sector (Lexology)
  880. Date 2021-05-20

  881. Cyber Defense Isn't a Niche Issue Anymore (Bloomberg)
  882. CISA’s EINSTEIN had a chance to be great, but it’s more than good enough (FRN)
  883. Biden Proposes Billions for Cybersecurity After Wave of Attacks (Regina Leader Post)
  884. CISA Issues Guidance on Evicting Adversaries from Networks Following SolarWinds Attacks
  885. Nearly 40 defense companies were impacted in SolarWinds breach (FedScoop)
  886. Cybersecurity for All: President Biden Issues Sweeping Cybersecurity Executive Order (Holland & Knight LLP - JDSupra)
  887. Biden administration eyes cybersecurity funding after attacks | The Mighty 790 KFGO (KFGO)
  888. False Claims Act is a Weapon against Breaches and Whistlenlowers
  889. Gibson Dunn (President Biden Issues Executive Order to Enhance U.S. Cybersecurity in the Wake of Major Cyber Incidents)
  890. Legislation to secure critical systems against cyberattacks moves forward in the House (hill)
  891. CISA releases Eviction Guidance for SolarWinds, Microsoft O365 compromises
  892. #RSAC: Anne Neuberger Sets Out Biden Administration’s Plan to Modernize US Cyber-defenses (Infosecurity Magazine)
  893. Biden EO Has Teeth, But May Prove Difficult to Implement (secblvd)
  894. Biden administration eyes cybersecurity funding after hacks
  895. Date 2021-05-19

  896. Biden's cyber order lays foundation for securing government - (Defense Systems)
  897. Voyager 1 discovers faint plasma 'hum' in interstellar space (Space)
  898. Biden Administration Issues Cybersecurity Executive Order
  899. CISA releases Eviction Guidance for SolarWinds Orion, Microsoft Office365 users (Industrial Cyber)
  900. Solarwinds : Security vulnerabilities
  901. Russia Sanctioned For Role In SolarWinds Supply Chain Attack - Technology (United States)
  902. SolarWinds breach exposes hybrid multicloud security weaknesses (Public News)
  903. CISA: Disconnect Internet for 3-5 Days to Evict SolarWinds Hackers From Network (SecurityWeek.Com)
  904. Can NTSB-style oversight work for cybersecurity? - (FCW)
  905. Zero trust moves from vision to reality - (GCN)
  906. DOD Zero Trust Reference Architecture
  907. Russian spy chief denies SVR was behind Solarwinds cyber ...
  908. Date 2021-05-18

  909. How Hackers Infiltrated U.S. Government Servers Through A Texas (Based Company)
  910. Subscribe to read (FT)
  911. 1 - Unpacking the SolarWinds Breach: Now What? | Infrastructure Anywhere: A Podcast Series from CPP Associates | Podcasts on Audible (Audible.com)
  912. CISA Eviction Guide for SolarWinds, Microsoft O365 Compromises
  913. Date 2021-05-17

  914. Congress to Speed up Efforts on Pushing out Hack Reporting Law (KMJ-AF1)
  915. Biden issues order to strengthen nationwide cyber defenses
  916. National Cyber Defense Is a "Wicked" Problem: Why the Colonial Pipeline Ransomware Attack and the SolarWinds Hack Were All but Inevitable
  917. SolarWinds breach exposes hybrid multicloud security weaknesses (VentureBeat)
  918. President Biden pens Executive Order to boost US cybersecurity
  919. The SolarWinds and Zero Trust Conversation You've Been Waiting For | The Well Aware Security Show | Podcasts on Audible (Audible.com)
  920. SolarWinds breach exposes hybrid multicloud security weaknesses (DNyuz)
  921. Date 2021-05-16

  922. Cybersecurity Execs Weigh In On Biden Executive Order (SDxCentral)
  923. Executive Order on Improving the Nation's Cybersecurity (The White House)
  924. Biden Says Gov't To Disrupt Pipeline Ransomware Hackers (Law360)
  925. Biden's Cybersecurity Order Benefits CrowdStrike, Dragos: Experts
  926. President Biden signs cybersecurity executive order (SD Times)
  927. The politics and policy of SolarWinds (CSO Online)
  928. Supply Chain Cybersecurity Risks: What the SolarWinds Breach Should Teach Us (BTB Security)
  929. Cyber EO lays a foundation for securing government - (GCN)
  930. iTWire (New cyber rules will be judged by their efficacy: Tenable chief)
  931. Former CISA chief says Biden order on cybersecurity is "dramatic game change" (CBS News)
  932. Biden Order Aims To Tighten Software Security Practices - (Redmondmag.com)
  933. Responding With Strength To The SolarWinds Attack - Technology (United States)
  934. Joe Biden Signs Executive Order to Boost Cybersecurity
  935. Biden Takes Executive Action to Strengthen National Cybersecurity, Secure Supply Chains
  936. Opinion: Agencies Need More Reliable Authentication To De-Weaponize Stolen Data During SolarWinds Breach (Potomac Officers Club)
  937. CISA Publishes Eviction Guidance for Networks Affected by SolarWinds and AD/M365 Compromise (CISA)
  938. Eviction Guidance for Networks Affected by the SolarWinds and Active Directory/M365 Compromise (CISA)
  939. Remediating Networks Affected by the SolarWinds and Active Directory/M365 Compromise: Risk decisions for Leaders
  940. Biden signs executive order to modernize cyberdefenses
  941. Lawmakers introduce bill to protect critical infrastructure against cyberattacks (hill)
  942. Biden signs executive order to bolster US cyber security following pipeline attack
  943. Microsoft Could Get $150 Million in US Cyber Spending Despite Recent Hacks (English Bulletin)
  944. White House cybersecurity order lands with a plea for private sector help (Utility Dive)
  945. Linux and open-source communities rise to Biden's cybersecurity challenge (ZDNet)
  946. Biden's Cybersecurity Order Likely To Reach Beyond Gov't (Law360)
  947. Cybersecurity Executive Order: Can automation fix the nation’s misconfiguration problem? (secblvd)
  948. Cybersecurity: Why the new White House executive order is a major turning point (Fortune)
  949. President Biden outlines new software policy following recent cyberattacks (TechRadar)
  950. Former head of U.S. cybersecurity Christopher Krebs on “The Takeout” - 5/14/2021 (CBS News)
  951. In EO, federal security provides impetus for far reaching cyber implications
  952. US sanctions 10 Pakistani individuals and companies for meddling in 2020 presidential election - World (Business Recorder)
  953. Security News in Review: Biden Administration Aims to Disrupt Ransomware Gangs (secblvd)
  954. Why the Colonial Pipeline Ransomware Attack and the SolarWinds Hack Were All but Inevitable (California News Times)
  955. UK and US confirm Russian responsibility for SolarWinds attack - Industry (update.com)
  956. Date 2021-05-14

  957. Senators discuss federal cybersecurity following SolarWinds hack (WYTV)
  958. Senators Want FISMA Changes on Cyberattack Reporting (MeriTalk)
  959. Senators Cite Colonial Pipeline Hack in Calling for Cyber Response and Recovery Fund (Nextgov)
  960. Senate committee holds hearing on cybersecurity after massive SolarWinds hack (The Global Herald)
  961. RSAC insights: SolarWinds hack illustrates why software builds need scrutiny — at deployment (secblvd)
  962. Lawmakers eye tightening law to get more details on cyberattacks (Roll Call)
  963. Federal SolarWinds Recovery : FedNet
  964. SolarWinds CEO describes overhauled Orion build system after that ‘very small, unique’ security breach (IT Security News)
  965. CISA to pilot secure cloud instance in response to SolarWinds attack (FRN)
  966. Supply chain penetration: Here’s how you can protect yourself (HT Tech)
  967. Russia must do more to tackle cyber criminals operating from within its borders, says UK (ZDNet)
  968. Mark Warner calls for mandatory reporting of hacks after Colonial Pipeline attack
  969. Dark Reading | Security (Protect The Business)
  970. Statemtnt of Ryan A Higgins, CISO Dept Commerce reporting to DHS
  971. Moscow Cuts U.S. Embassy Staff Marking Latest Decline In U.S. (Russia Relationship)
  972. Biden signs executive order to strengthen cybersecurity after Colonial Pipeline hack
  973. Biden Signs Order to Boost Cybersecurity After Pipeline Hack (Bloomberg)
  974. Biden signs much-anticipated cybersecurity executive order - (FCW)
  975. House lawmakers roll out bill to invest $500 million in state and local cybersecurity (hill)
  976. How SolarWinds cyber-attack forced US to sanction Russia - CRN (India)
  977. FACT SHEET: President Signs Executive Order Charting New Course to Improve the Nation’s Cybersecurity and Protect Federal Government Networks (The White House)
  978. Biden signs order to beef up federal cyber defenses (LV Sun)
  979. Biden cyber executive order reignites push to cloud, zero trust
  980. SolarWinds CEO describes overhauled Orion build system after that 'very small, unique' security breach • The Register (SecuritNEWS)
  981. Biden Plans Order to Strengthen U.S. Cyberattack Defenses (nyt)
  982. Biden signs executive order aiming to prevent future cybersecurity disasters (Verge)
  983. Biden issues executive order following mounting cyberattacks (Axios)
  984. Biden Orders IT Gov't Contractors To Report Data Breaches (Law360)
  985. Biden orders federal cyber upgrade after barrage of hacks (POLITICO)
  986. Biden signs cybersecurity executive order after ransomware attack on fuel pipeline (CBS 42)
  987. Biden signs order to improve federal cybersecurity
  988. How Biden's new executive order plans to prevent another SolarWinds attack (The Record by Recorded Future)
  989. Biden signs executive order to improve federal cybersecurity (hill)
  990. Biden Signs Cybersecurity Executive Order Following Colonial Pipeline Hack : NPR
  991. Biden cybersecurity order mandates new rules for govt ...
  992. Biden signs cybersecurity executive order in the wake of pipeline shutdown
  993. Biden signs security (focused executive order meant to accelerate breach reporting, boost software standards)
  994. Biden signs executive order aimed at boosting cybersecurity
  995. SolarWinds Hacking Claim a 'False Flag' by US Intelligence Seeking More Funding, Moscow Says (Sputnik)
  996. Biden Executive Order Follows Recent Cyberattacks : NPR
  997. Microsoft's new security feature locks hackers out with GPS (ZDNet)
  998. Biden's Executive Order Will Not Stop Cyber Attacks (LinkedIn)
  999. Biden cybersecurity order tackles software risks in energy, other sectors following Colonial hack (Utility Dive)
  1000. Biden’s Cyber Strategy Must De-weaponize Civilian Data (Nextgov)
  1001. Cybersecurity executive order or fire drill? (FRN)
  1002. Biden Signs Executive Order to Bolster Federal Government’s Cybersecurity (nyt)
  1003. President Biden signs executive order to strengthen U.S. cybersecurity defenses | 2021-05-13 (Security Magazine)
  1004. Biden says Colonial Pipeline hackers based in Russia, but not government-backed (hill)
  1005. Bahamas must ‘step up game’ on cyber security (The Tribune)
  1006. Biden signs cybersecurity executive order, though rules wouldn't (WENY News)
  1007. Joe Biden signs executive order to beef up federal cyber defenses following pipeline hack - ABC11 Raleigh (Durham)
  1008. Biden Executive Order Mandates MFA, Zero Trust Model and Standardized Incident Reporting
  1009. Everything You Need to Know about the New Executive Order on Cybersecurity (Lawfare)
  1010. Biden's Cybersecurity Executive Order: 4 Key Takeaways
  1011. Senator Proposes Cyber 'Academy' to Attract More to National Service (Military.com)
  1012. Biden Executive Order on Cybersecurity Calls for Enhanced Software Supply Chain Security (secblvd)
  1013. Education CISO Discusses Zero Trust, Automation Going Hand-in (Hand – MeriTalk)
  1014. Rapid7 says attacker accessed its source code in Codecov supply chain hack
  1015. Cyber Response Bill Advances in Senate (Nextgov)
  1016. Biden Signs Executive Order On Cybersecurity In Wake Of Pipeline Hack (WXXI News)
  1017. Date 2021-05-13

  1018. SolarWinds CEO describes overhauled Orion build system after that 'very small, unique' security breach (Register)
  1019. Biden Signs Executive Order to Bolster Federal Government’s Cybersecurity (nyt)
  1020. Date 2021-05-12

  1021. US spy agencies review software suppliers' ties to Russia following SolarWinds hack
  1022. SolarWinds Says Hackers Probably Stole Data from Email Accounts — GigaLaw
  1023. Mandatory Breach Notification Requirements Are Coming For Government Contractors - Technology (United States)
  1024. Watch live: Acting CISA director testifies on cybersecurity following SolarWinds hack (hill)
  1025. SolarWinds Opened the Door for Cybersecurity Culture Overhaul at DHS
  1026. Date 2021-05-11

  1027. U.S., U.K. Reveal Code Flaws Abused by SolarWinds Hackers
  1028. Hackers accessed SolarWinds' Office 365 since early 2019 - Security - Channel Meets (CRN Australia)
  1029. SolarWinds Says Russian Group Likely Took Data During Cyber-Attack (HITBSecNews)
  1030. Defending Against Software Supply Chain Attacks
  1031. NIST and CISA Release Guidelines for Organizations and Vendors To Defend Against Software Supply Chain Attacks (CPO Magazine)
  1032. SolarWinds Shares More Information on Cyberattack Impact, Initial Access Vector (SecurityWeek.Com)
  1033. The Cybersecurity 202: Biden's new CISA director will confront a host of complex challenges (wapo)
  1034. State (Sponsored Cyberattacks Aren’t Going Away — Here’s How To Defend Your Organization)
  1035. Russia targeting these 11 vulnerabilities, US, UK cyber agencies
  1036. Date 2021-05-09

  1037. CISA has a better understanding of critical software post (SolarWinds hack)
  1038. NYDFS recommends critical new practices to reduce supply chain risk in wake of SolarWinds attack (Lexology)
  1039. CISA used new subpoena power to contact US companies vulnerable to hacking
  1040. NSA: Connecting OT to the net can lead to "indefensible levels of risk"
  1041. US spy agencies review software suppliers' ties to Russia following SolarWinds hack (CyberScoop)
  1042. Fact Sheet: Russian SVR Activities Related to SolarWinds Compromise
  1043. US-UK Gov Warning: SolarWinds Attackers Add Open-Source PenTest Tool to Arsenal (SecuritNEWS)
  1044. Further TTPs associated with SVR cyber actors
  1045. SolarWinds: Hackers Accessed Our Office 365 Since Early 2019
  1046. An Investigative Update of the Cyberattack (Orange Matter)
  1047. DHS, DOC to Testify Tuesday at SolarWinds Hearing
  1048. Joint advisory: Further TTPs associated with SVR cyber actors (NCSC.GOV.UK)
  1049. SolarWinds Believes Russian Group Took Data During Cyber-Attack (Bloomberg)
  1050. Lawmakers push for increased cybersecurity funds in annual appropriations (hill)
  1051. Date 2021-05-05

  1052. Stopping the Next SolarWinds Requires Doing ...
  1053. Date 2021-05-04

  1054. Administration drafting EO to help U.S. Gov’t secure digital supply chain
  1055. Date 2021-05-03

  1056. NSA: OT Security Guidance in Wake of SolarWinds Attack
  1057. Tips on Enhancing Supply Chain Security (DataBreachToday)
  1058. APT actors increasingly turn to exploits to launch attacks (TahawulTech.com)
  1059. Security News in Review: Emotet Uninstalled Worldwide; Babuk “Goes Dark” (secblvd)
  1060. Date 2021-05-01

  1061. More US agencies potentially hacked, this time with Pulse Secure exploits (ars)
  1062. New York State Department of Financial Services Releases Report on SolarWinds Cyber Espionage Attack
  1063. Top US military intelligence official says Russian military pose (WENY News)
  1064. Hunting Hackers: Reducing the Time to Discovery (CSO Online)
  1065. ‘Accelerate change or lose’: Applying Gen. Brown’s action orders to cyberspace education and training
  1066. Microsoft weighs revamping flaw disclosures after suspected leak (Pittsburgh Post-Gazette)
  1067. NYDFS Issues Report on SolarWinds Response and Recommends Critical Cybersecurity Measures (Practical Law)
  1068. Biden Order Will Require New Cybersecurity Standards In Response To SolarWinds Attack (88.5 WFDD)
  1069. Warner says Senate committee working on bill to require mandatory reporting for cyber threats (FRN)
  1070. NYDFS Issues Report on the SolarWinds Attack and Covered Entities’ Responses (Alston & Bird Privacy, Cyber & Data Strategy Blog)
  1071. Supply Chain Security Hinges on Zero Trust, Partnerships: A MeriTV Discussion (MeriTalk)
  1072. US Cuts Visa Services in Moscow Embassy as Russia Squeezes Embassy (Bloomberg)
  1073. Stop Malicious Cyber Activity Against Connected Operational Technology
  1074. The Ticking Time Bomb in Every Company's Code
  1075. Biden Order To Require New Cybersecurity Standards In Response To SolarWinds Attack Morning Edition podcast
  1076. NYDFS Issues Report on SolarWinds (Robinson+Cole Data Privacy + Security Insider - JDSupra)
  1077. Biden Order To Require New Cybersecurity Standards In Response To SolarWinds Attack (Georgia Public Broadcasting)
  1078. Survey Finds Broad Concern Over Third (Party App ...)
  1079. CISA: 5 Agencies Using Pulse Secure VPNs Possibly Breached
  1080. NYDFS Issues Report on the SolarWinds Attack and Covered Entities’ Responses (Alston & Bird - JDSupra)
  1081. Sidechannel Interview with Alex Stamos and Chris Krebs by Kim Zetter - Zero Day (Free Listening on SoundCloud)
  1082. A Tale of Two Hacks: From SolarWinds to Microsoft Exchange (tpost)
  1083. Date 2021-04-30

  1084. SolarWinds : Biden Administration Issues New Sanctions On Russia In Connection With SolarWinds And Election Interference Efforts (MarketScreener)
  1085. Biden Order To Require New Cybersecurity Standards In Response To SolarWinds Attack (WFSU News)
  1086. CISA & NIST Publish Recommendations for IT Admins to Defend Against the Next ‘SolarWinds’ Event (HOTforSecurity)
  1087. Biden Order To Require New Cybersecurity Standards In Response To SolarWinds Attack (Flipboard)
  1088. Biden Order Will Require New Cybersecurity Standards In Response To SolarWinds Attack (VPM)
  1089. Biden Order Will Require New Cybersecurity Standards In Response To SolarWinds Attack (Public Radio Tulsa)
  1090. NIST, CISA Share Software Supply Chain Attack Defense Guidance
  1091. Date 2021-04-29

  1092. An APT Group Exploits VPN to Deploy Supernova on SolarWinds Orion (Cyware Alerts - Hacker News)
  1093. Anatomy of the SolarWinds Hack: Who What Where When How
  1094. Another top VPN is reportedly being used to spread the SolarWinds hack
  1095. Senate Intelligence panel working on legislation around mandatory cyber breach notification (hill)
  1096. Another SolarWinds lesson: Hackers are targeting Microsoft authentication servers (All Tech News)
  1097. Report: As result of SolarWinds breach, U.S. military concerned about updating software platforms (Israel Defense)
  1098. APT actors increasingly turn to exploits to launch attacks (ITProPortal)
  1099. The Cybersecurity 202: Lawmakers want to create a reserve corps of cybersecurity experts to respond to the next SolarWinds (wapo)
  1100. New York Warns of Supply Chain Attack Dangers in Recent SolarWinds Report
  1101. Dark Reading | Security (Protect The Business)
  1102. Another SolarWinds lesson: Hackers are targeting Microsoft authentication servers (The Open Security)
  1103. What Is Steganography? (Built In)
  1104. SolarWinds, Microsoft Hacks Prompt Focus on Zero-Trust Security | News (CACM)
  1105. The Cybersecurity 202: Lawmakers want to create a reserve corps of cybersecurity experts to respond to the next SolarWinds (R Street)
  1106. GCHQ calls for more UK investment in cybersecurity. US Senate considering information (sharing bill. CISA and NIST offer supply chain security guidance.)
  1107. In Wake of Recent Breaches, FAA Wants to Up Cybersecurity of National Airspace System (Nextgov)
  1108. US poised to impose anti-Russian sanctions over cyberattacks, election meddling — media - World (TASS)
  1109. With sanctions, let’s offer Russia incentives, too (The Seattle Times)
  1110. SolarWinds Supply Chain Attack: How to Protect Your Business
  1111. Lawmakers introduce legislation to create civilian reserve program to fight hackers (hill)
  1112. New York: NYDFS issues report on investigation of SolarWinds cyberattack | News post (DataGuidance)
  1113. Date 2021-04-28

  1114. SolarWinds hack analysis reveals 56% boost in command server footprint (ZDNet)
  1115. SolarWinds, Microsoft Hack Quick Focus on Zero Trust Security (India News Republic)
  1116. SolarWinds, Microsoft hacks prompt focus on zero (trust security)
  1117. Well (known VPN used to steal credentials on SolarWinds servers)
  1118. Supply Chain Compromise (CISA)
  1119. A Contrarian View on SolarWinds (SANS Institute)
  1120. The FireEye/SolarWinds cyber attack | Ivanti Insights | Podcasts on Audible (Audible.com)
  1121. SolarWinds, Microsoft hacks prompt focus on zero-trust security (Samachar Central)
  1122. New York State Department of Financial Services Issues Report On The Solarwinds Supply Chain Attack - Report Finds That DFS-regulated Companies Responded Quickly to the Attack (Report Identifies Key Cybersecurity Measures to Reduce Supply Chain Risk)
  1123. Lawmakers Seek to Expand CISA's Role (GovInfoSecurity)
  1124. Hackers are targeting Microsoft authentication servers
  1125. Abusing Replication: Stealing AD FS Secrets Over the Network (fireeye)
  1126. ‘Mandatory’ Cyber Info Sharing Bill Coming, Says Senate Intel Chair Warner « Breaking Defense (Defense industry news, analysis and commentary)
  1127. House Solarium Commission Members Press for More CISA Funding (Nextgov)
  1128. Cybersecurity roundup: U.S. agencies warn of Russian hacks, Australian hospitals struggle to get back online (Healthcare IT News)
  1129. Russia accelerates its de-dollarization policy, chooses to settle exports in euro over dollar (Kitco News)
  1130. Date 2021-04-27

  1131. Report: Russia 'likely' kept access to US networks after SolarWinds hack (Çukute)
  1132. CISA warns of credential theft via SolarWinds and PulseSecure VPN (Public News)
  1133. CISA warns of theft of credentials via SolarWinds and PulseSecure VPN
  1134. http.title:solarwinds http.favicon.hash:-1776962843 (Shodan Search)
  1135. SolarWinds hack and security - What is a software bill of materials? (JAXenter)
  1136. SolarWinds, Microsoft Hacks Prompt Focus on Zero-Trust Security (WSJ)
  1137. 'Cock.li' Admin Says He's Not Surprised Russian Intelligence Uses His Site
  1138. Russian Foreign Intelligence Service (SVR) Cyber Operations: Trends and Best Practices for Network Defenders (CISA)
  1139. Major US breaches, SolarWinds, prompts focus on zero trust model
  1140. Another top VPN is reportedly being used to spread SolarWinds hack (TechRadar)
  1141. New bill would task CISA with infrastructure risk assessments - (FCW)
  1142. Lawmakers call for increasing the budget of key federal cybersecurity agency (hill)
  1143. Before SolarWinds, US officials say SVR began stealthily targeting cloud services in 2018
  1144. Date 2021-04-26

  1145. Top White House cyber official says action taken so far not enough to deter further Russia cyberattacks (CNNPolitics)
  1146. SolarWinds executive explains their ‘security by design’ concept (TahawulTech.com)
  1147. Researchers Find Additional Infrastructure Used By SolarWinds Hackers
  1148. New analysis uncovers extensive SolarWinds attack infrastructure (TechRadar)
  1149. SolarWinds hacking campaign puts Microsoft in the hot seat (Columbia Basin Herald)
  1150. The SolarWinds Sunburst Attack: How to Protect Yourself from 5th Generation Cyberattacks (Secure Ops)
  1151. Microsoft in the hot seat due to SolarWinds hacking campaign (Compsmag)
  1152. Two sources close to the SolarWinds breach investigation say Russian intelligence agency SVR hackers are likely still maintaining access to U.S. networks (CNN) (Inverse Zone)
  1153. Exclusive: Sources familiar with the investigation of SolarWinds breach say hackers from Russia's SVR intelligence agency likely still maintain access to US networks (CNN) (Last Bulletin)
  1154. CISA warns of credential theft via SolarWinds and PulseSecure VPN (VentureBeat)
  1155. Report: Russia 'likely' kept access to US networks after SolarWinds hack
  1156. Report: Russia 'likely' kept access to US networks after SolarWinds hack
  1157. Report: Russia 'likely' kept access to US networks after SolarWinds hack (Engadget)
  1158. Report: Russia likely retained access to US network after SolarWinds hack (News Chant USA)
  1159. Report: Russia 'likely' kept access to US networks after SolarWinds hack (My Droll)
  1160. Date 2021-04-25

  1161. Senators introduce legislation to protect critical infrastructure against attack (hill)
  1162. SOLARWINDS INVESTIGATION INITIATED by Former Louisiana Attorney General: Kahn Swick & Foti, LLC Investigates the Officers and Directors of SolarWinds Corporation (SWI)
  1163. SOLARWINDS INVESTIGATION INITIATED by Former Louisiana Attorney General: Kahn Swick & Foti, LLC Investigates the Officers and Directors of SolarWinds Corporation - SWI (bizwire)
  1164. SUPERNOVA malware discovered on SolarWinds Orion server (Malware Devil)
  1165. Federal CISO DeRusha Cites SolarWinds Response as Promising ‘Use Case’ (MeriTalk)
  1166. Top White House cyber official says action taken so far not enou (WENY News)
  1167. Date 2021-04-24

  1168. cyber.dhs.gov - Emergency Directive 21 (03: pulse secure)
  1169. Russian Cyber Threat Defense – Now and Looking Forward (secblvd)
  1170. USA: Would CMMC have prevented SolarWinds? | Insights (DataGuidance)
  1171. SolarWinds Hack Imparted Lessons to Work Across Silos and Not ‘Victim Blame,’ Says Federal CISO (Homeland Security Today)
  1172. HAFNIUM Exploits Live On (secblvd)
  1173. More SolarWinds command and control hacking servers found - Security (iTnews)
  1174. The SolarWinds Attack: The Story Behind The Hack » RJR Empires
  1175. Hackers Exploit VPN to Deploy SUPERNOVA malware on SolarWinds Orion (Times News Express)
  1176. Hackers Exploit VPN to Deploy SUPERNOVA malware on SolarWinds Orion
  1177. When a Ripple Becomes a Wave: Cyberattack Fallout (secblvd)
  1178. U.S. Announces Sweeping New Sanctions Targeting Russia (Cozen O'Connor - JDSupra)
  1179. Researchers shed more light on APT29 activity during SolarWinds attacks (Fuentitech)
  1180. The Cybersecurity 202: Biden's pick for White House cyber director wants to see better relationship building with the private sector (wapo)
  1181. New analysis uncovers extensive SolarWinds attack infrastructure (TechRadar)
  1182. APT abused Pulse Secure, SolarWinds appliances to plant Supernova webshell on enterprise network
  1183. Hackers Exploit VPN to Deploy SUPERNOVA malware on SolarWinds Orion (IT Security News)
  1184. Supernova Attack Leveraged SolarWinds, Pulse Secure
  1185. CISA Discovers Advanced Malware In VPN Device (Potomac Officers Club)
  1186. CISA Finds New Attacker Using Supernova Malware on SolarWinds Orion (Decipher)
  1187. Analysts Uncover More Servers Used in SolarWinds Attack
  1188. Hackers exploit SolarWinds, Pulse Secure for credential theft: Feds - Security (CRN Australia)
  1189. SolarWinds hacking campaign puts Microsoft in the hot seat
  1190. SolarWinds hacking campaign puts Microsoft in the hot seat (WFTV)
  1191. Supernova Attack Leveraged SolarWinds, Pulse Secure
  1192. Researchers Find New Chunk of SolarWinds Attackers' Infrastructure (Decipher)
  1193. Supernova Malware Actors Masqueraded as Remote ...
  1194. New analysis uncovers extensive SolarWinds attack infrastructure (TechRadar)
  1195. Date 2021-04-23

  1196. SolarWinds: Illuminating the Hidden Patterns That Advance the Story (RiskIQ)
  1197. SolarWinds: Advancing the Story (RiskIQ Community Edition)
  1198. Research Uncovers New Command Servers Used in SolarWinds Campaign (Zero Day)
  1199. House Passes State Department Cybersecurity Legislation (KMJ-AF1)
  1200. Democracy in The Daily: Russia against the West (The Tufts Daily)
  1201. New cyber (hardening mandates may be coming for defense firms)
  1202. Biden Administration Announces Expansion Of Sanctions Against Russia And Signals Potential Additional Restrictions Following SolarWinds Cyber-Attack - International Law (United States)
  1203. Ex-Sen. Saxby Chambliss lobbying for SolarWinds (LegiStorm)
  1204. U.S. takes steps to protect electric system from cyberattacks (Chattanooga Times Free Press)
  1205. CISA Identifies SUPERNOVA Malware During Incident Response (CISA)
  1206. Sanctioned Firm Accused of Helping Russian Intelligence Was Part of Microsoft’s Early Vuln Access Program — MAPP (Zero Day)
  1207. Researchers shed more light on APT29 activity during SolarWinds attack
  1208. Ex-NSA top lawyer: Here's how to block next SolarWinds mega hack (The Jerusalem Post)
  1209. SolarWinds juggles stakeholders involved in response, recovery to level out business (Cybersecurity Dive)
  1210. Cybersecurity expert: If you use SolarWinds, they got you (POWERGRID International)
  1211. CISA Ties SUPERNOVA Malware to Pulse Secure, SolarWinds Exploits
  1212. Analysts Estimate SolarWinds (SWI) to Report a Decline in Earnings: What to Look Out for
  1213. Hackers Exploit SolarWinds, Pulse Secure For Credential Theft: Feds
  1214. Why indict foreign cyber operators? IoT security regulation in the UK. Anti (ransomware measures and surveillance limitations in the US.)
  1215. US agencies assess Pulse Secure VPN exploitation. New Sunburst infestation found. Facebook shuts down Paletinian spy groups.
  1216. Cisco CEO Chuck Robbins: Moving To The Cloud Alone Isn’t A Security Cure (All)
  1217. Date 2021-04-22

  1218. White House 'Stands Down' SolarWinds, Exchange Response Groups
  1219. Biden Administration Ratchets Up Russia Sanctions (Michael Volkov - JDSupra)
  1220. White House Scales Back Response to SolarWinds & ...
  1221. White House Winds Down SolarWinds, Exchange Cyber Teams « Breaking Defense (Defense industry news, analysis and commentary)
  1222. DISA and JFHQ-DODIN's Orchestrated Response to SolarWinds (SIGNAL Magazine)
  1223. The SolarWinds Attack: The Story Behind The Hack (Delaware First Media)
  1224. UK and US call out Russia for SolarWinds compromise
  1225. Russia’s Positive Technologies responds to US Treasury sanctions. US Government stands down its SolarWinds and Microsoft Exchange task forces. FCC security priorities charted.
  1226. House passes legislation to elevate cybersecurity at the State Department (hill)
  1227. The Danger of Treating SolarWinds as a Russia Cyber Attack
  1228. SolarWinds : New US Sanctions Targeting Russia's "Harmful Foreign Activities," Including Restrictions On Dealings In Russian Sovereign Debt (MarketScreener)
  1229. Biden administration sanctions Russia over 2020 election interference, SolarWinds hack (FoxBiz)
  1230. Nakasone deflects senators' invitations to seek domestic spying powers - (Defense Systems)
  1231. United States sanctions six Russian companies for aiding Russia's cyber (attacks against the US)
  1232. Russia Sanctioned For Role In SolarWinds Supply Chain Attack (Alston & Bird - JDSupra)
  1233. New cyber (hardening mandates may be coming for defense firms)
  1234. SUNBURST: Reflections to Secure By (secblvd)
  1235. In Tit-For (Tat Move, Russia Expels 10 U.S. Embassy Workers In Moscow)
  1236. Former SolarWinds CEO Kevin Thompson to be the new CEO of Tricentis, a Mountain View software test company (Silicon Valley Business Journal)
  1237. Russia Sanctioned For Role In SolarWinds Supply Chain Attack (Alston & Bird Privacy, Cyber & Data Strategy Blog)
  1238. SolarWinds security chief: ‘We ran a pretty good shop’ (The Record by Recorded Future)
  1239. Date 2021-04-21

  1240. White House stands down groups tackling SolarWinds, Microsoft Exchange - (FCW)
  1241. Russia sanctioned over SolarWinds, election interference -- even as cyber espionage continues - (GCN)
  1242. SolarWinds: A Catalyst for Change & a Cry for ...
  1243. What Hack? Top SolarWinds Executives Made $65 Million Last Year
  1244. Positive Technologies denies involvement in SolarWinds attack (TechRadar)
  1245. SolarWinds affair. Russia expels US, Polish diplomats in counterretaliation. Codecov compromise. Big data gangs.
  1246. Great Power Cyber Party (War on the Rocks)
  1247. Malware Wants to Phone Home. Trinity Cyber Doesn’t Try to Block It
  1248. President Biden Signs New Executive Order Escalating US Sanctions Against Russia (WilmerHale - JDSupra)
  1249. US Senator Mark Warner calls for urgent transatlantic cooperation on cybersecurity (POLITICO)
  1250. Investigation announced for Long (Term Investors in shares)
  1251. Cyberattacks and Security Breach Disclosures: U.S. Federal Law Coming? (MSSP Alert)
  1252. Statement by Deputy National Security Advisor for Cyber and Emerging Technology Anne Neuberger on SolarWinds and Microsoft Exchange Incidents (The White House)
  1253. Supply chain risk: Addressing a multitude of single points of failure - (FCW)
  1254. UK, US say Russian hackers carried out SolarWinds attack
  1255. The SolarWinds Breach and CMMC - What’s the Impact? (Pivot Point Security)
  1256. The Biden Administration has officially responded to the SolarWinds attack! by Nick Espinosa | Security Fanatics (Free Listening on SoundCloud)
  1257. SolarWinds hacking campaign puts Microsoft in the hot seat
  1258. solarwinds stock price chart (Unese.campusquotient.org)
  1259. Utility Regulator Says SolarWinds Backdoor Was Downloaded by 1/4 of Electric Utilities on the North American Power Grid (CPO Magazine)
  1260. Russia Will Expel 10 Diplomats In Response To US Sanctions (Law360)
  1261. The SolarWinds Attack: The Story Behind The Hack : NPR
  1262. Exploring three more serious flaws in SolarWinds Orion products (TechNative)
  1263. SolarWinds (NYSE:SWI) Upgraded at Zacks Investment Research (MarketBeat)
  1264. A new direction in response to cyberespionage? Co (opting criminal gangs as instruments of state policy.)
  1265. Sun starts to set on SolarWinds attack as White House scales back efforts (Windows Central)
  1266. SolarWinds cyberattack: How SolarWinds cyberattack forced US to sanction Russia, Telecom News, ET Telecom
  1267. From the attack on Alexei Navalny to SolarWinds hack, every Russian move under scrutiny as NATO Allies support US action plan on Russia's 'destabilising activities' (IBTimes India)
  1268. Feds Find More Malware Tied to SolarWinds Supply Chain Compromise
  1269. Biden Administration Imposes Sanctions on Russia for SolarWinds (Schneier)
  1270. White House stands down SolarWinds, Microsoft Exchange cyber response groups - (GCN)
  1271. 5 signs a trucking company has been hacked (Commercial Carrier Journal)
  1272. Date 2021-04-20

  1273. United States imposes sanctions on Russia for SolarWinds Cyber Attack
  1274. U.S. sanctions Russian government, security company for SolarWinds violations, election interference (Eminetra New Zealand)
  1275. Company officials, victims, experts, and intel officials discuss the SolarWinds hack, which successfully compromised ~100 companies and a dozen govt. agencies (Dina Temple-Raston/NPR) (The Global Valley)
  1276. Samir on Twitter: "if you see an instance of dwDrvInst.exe (unsigned by Solarwinds) running with cmdline like "smartcard -install" that could be a sign of successful RCE exploitation of CVE-2019 (3980 https://t.co/FyZvQ2IYVj https://t.co/8OIarbbqeQ" / Twit)
  1277. Increasing Demand of Database Monitoring Software Market 2027 (Datadog,Solarwinds,PRTG Network Monitor – The Courier)
  1278. Poland supports allies' response to aggressive politics of Russia (The First News)
  1279. Date 2021-04-19

  1280. OODA Loop (Cyber Retaliation Needs to Be Decisive, Swift, and Meaningful)
  1281. Swinburne University confirms over 5,000 individuals affected in data breach (Bestgamingpro)
  1282. SolarWinds : Russia Russia Russia! The Biden Administration Imposes Tough Sanctions On Russia (MarketScreener)
  1283. In Punishing Russia for SolarWinds, Biden Upends U.S. Convention on Cyber Espionage
  1284. Some White House Officials Reportedly Asked Biden Not to Tie New Sanctions to SolarWinds Hack (Sputnik)
  1285. Biden agencies could find key lawmakers in accord on hack-attack alerts (Newsday)
  1286. US imposes sanctions on Russia over cyber (attacks)
  1287. SolarWinds hacking campaign puts Microsoft in hot seat (News, Sports, Jobs - Tribune Chronicle)
  1288. Australia: Cyber insurance adoption rates see steady increases
  1289. SolarWinds execs earned US$65M in 2020 despite hack - Security (CRN Australia)
  1290. Date 2021-04-18

  1291. U.S. Fingers Putin’s Cozy Bear for SolarWinds Attacks (secblvd)
  1292. Days after sanctions, House to vote again on Cyber Diplomacy Act - (FCW)
  1293. US expels Russian diplomats, imposes sanctions for hacking
  1294. SolarWinds cyber strike: Russia did it, say US and UK (Attivo Networks)
  1295. SolarWinds hacking campaign puts Microsoft in the hot seat
  1296. Sanctioned Russian IT firm was partner with Microsoft, IBM
  1297. SolarWinds compromise attributed to Russian state actor (Beehive.govt.nz)
  1298. White House blames Russian spy agency SVR for SolarWinds hack: statement (95 KQDS)
  1299. CISA and CNMF Analysis of SolarWinds (related Malware)
  1300. VirusTotal Community profile for CYBERCOM_Malware_Alert (VirusTotal)
  1301. Russia blocks key Biden Cabinet officials from entering in retaliation for sanctions (hill)
  1302. Holding Russia To Account (U.S. Embassy in Georgia)
  1303. Australian Government Blames Russia For SolarWinds Cyber Attack
  1304. US Pulls Back Curtain on Russian Cyber Operations
  1305. Ep 31 - SolarWinds Hack | Modern Day Apocrypha | Podcasts on Audible (Audible.com)
  1306. Russia objects to US sanctions; US gets UK, EU support. Vaccine cold chain remains a target. Iran says Natanz back in business.
  1307. Russia sanctions eight US officials and expels diplomats in reta - Erie News Now (WICU and WSEE in Erie, PA)
  1308. Russian SVR Behind the SolarWinds Hack, According to U.S. Government
  1309. 6 out of 11 EU agencies running Solarwinds Orion software were hackedSecurity Affairs
  1310. Russia to expel 10 US diplomats in 'tit-for-tat response' to Biden sanctions | National (pdclarion.com)
  1311. Russia: UK exposes Russian involvement in SolarWinds cyber compromise (UK Government) (CompanyNewsHQ)
  1312. US attributes SolarWinds campaign to Russia's SVR and calls out Russian disinformation shops. New APT34 activity.
  1313. It was Russia wot did it: SolarWinds hack was done by Kremlin’s APT29 crew, say UK and US (Cyber Security Review)
  1314. It was Russia wot did it: SolarWinds hack was done by Kremlin's APT29 crew, say UK and US (Register)
  1315. Kaspersky Lab autopsies evidence on SolarWinds hack (Register)
  1316. Russia Retaliates Against Biden's New Sanctions, Expelling 10 U.S. Diplomats (KENW)
  1317. Biden's CISA Cybersecurity Budget Proposal: $2.1B (MSSP Alert)
  1318. Russian SVR blamed for SolarWinds supply chain compromise, cyber espionage action (Industrial Cyber)
  1319. In Punishing Russia for SolarWinds, Biden Upends U.S. Convention on Cyber Espionage (ADVFN)
  1320. SolarWinds hacking campaign puts Microsoft in the hot seat (StarTribune)
  1321. US Institutes Sanctions Against Russia Over SolarWinds Hack
  1322. In Punishing Russia for SolarWinds, Biden Upends U.S. Convention on Cyber Espionage (WSJ)
  1323. SolarWinds : Russia Russia Russia! The Biden Administration Imposes Tough Sanctions On Russia (MarketScreener)
  1324. NSA: 5 Security Bugs Under Active Nation-State Cyberattack (tpost)
  1325. Biden Administration Issues Russian Sanctions in Response to SolarWinds
  1326. SolarWinds hacking campaign puts Microsoft in the hot seat (ABC News)
  1327. Solarwinds, Inc. (NYSE:SWI) - White House Holds Russia's SVR Responsible For SolarWinds Cyber Hack: Reuters (Benzinga)
  1328. Russia announces expulsion of 10 U.S. diplomats and ban some U.S. officials (Sandhills Express)
  1329. The Story of the SolarWinds Hack (Hacker News)
  1330. Macron says international community must draw “clear red lines” with Russia (Sandhills Express)
  1331. Russia expels 10 US diplomats as part of retaliation for sanctions
  1332. Date 2021-04-17

  1333. Russia Solarwinds hack sanctions announced (wtsp.com)
  1334. Biden: U.S. 'could have gone further' in sanctions on Russia
  1335. U.S. set to slap new sanctions on Russian officials as soon as Thursday -sources (The Star Phoenix)
  1336. Biden to sanction Russian authorities for massive SolarWinds hack (Biden administration - Eminetra)
  1337. Official: Biden administration set to announce new sanctions against Russia for SolarWinds hack, election interference | National News (newsadvance.com)
  1338. Biden announces sweeping new sanctions against Russia (CBS News)
  1339. US is expected to sanction Russia and expel Russian officials in response to hacks and election interference | (kctv5.com)
  1340. Biden's sanctions against Russia demands diplomats leave tomorrow - Raw Story (Celebrating 17 Years of Independent Journalism)
  1341. White House sanctions Russia over SolarWinds campaign, election interference - (FCW)
  1342. NERC finding 25% of utilities exposed to SolarWinds hack indicates growing ICS vulnerabilities, analysts say (Utility Dive)
  1343. Pentagon believes it escaped unscathed from SolarWinds, Microsoft hacks (FRN)
  1344. Lesson From SolarWinds: Cyberattacks Have a Lingering Impact (IndustryWeek)
  1345. EU's Borrell voices solidarity with US in SolarWinds hack
  1346. U.S. Agencies: Russian SolarWinds Hackers Leveraging Five Older Vulnerabilities (My TechDecisions)
  1347. Biden administration imposes new sanctions against Russia, expels 10 diplomats
  1348. US hits Russia with sanctions following SolarWinds cyberattack (TechRadar)
  1349. Sanctioning Russia for SolarWinds: What Normative Line Did Russia Cross? (Lawfare)
  1350. US expels Russian diplomats, imposes new sanctions over SolarWinds hack, election interference
  1351. Biden imposes new sanctions on Russia over SolarWinds hack, election interference (trib)
  1352. SOLARWINDS INVESTIGATION INITIATED BY FORMER LOUISIANA ATTORNEY GENERAL: Kahn Swick & Foti, LLC Investigates the Officers and Directors of SolarWinds Corporation (SWI)
  1353. White House blames Russian spy agency SVR for SolarWinds hack: statement (Reuters)
  1354. U.S. set to sanction Russia over SolarWinds hack, election interference: reports (MarketWatch)
  1355. Cybercriminals get bolder as impact from SolarWinds and ransomware grows (SiliconANGLE)
  1356. US expels Russian diplomats and issues sanctions over SolarWinds hacking attack | News | DW (15.04.2021)
  1357. US government strikes back at Kremlin for SolarWinds hack campaign (ars)
  1358. Biden Boots 10 Russian Diplomats After SolarWinds Mega (Hack)
  1359. Risch Addresses SolarWinds Sanctions, Underscores Cyberthreats from State Actors at Intelligence Hearing - Press Releases (James E Risch, U.S. Senator for Idaho)
  1360. Official: Biden administration set to announce new sanctions against Russia for SolarWinds hack, election interference | Govt. & Politics (swvatoday.com)
  1361. U.S. Sanctions Russia Over SolarWinds Cyberattack, Election Interference (MSSP Alert)
  1362. Russian Foreign Intelligence Service Exploiting Five Publicly Known Vulnerabilities to Compromise U.S. and Allied Networks > National Security Agency Central Security Service > Article View
  1363. If 25% of US utilities downloaded the malicious SolarWinds software, could the grid go down Ukraine-style? (Power Engineering)
  1364. US Formally Attributes SolarWinds Attack to Russian ...
  1365. SolarWinds Fallout: Are the Feds to Blame? (EE Times)
  1366. US Cyber Command, DHS (CISA release Russian malware samples tied to SolarWinds compromise > U.S. Cyber Command > News)
  1367. MAR-10327841-1.v1 – SUNSHUTTLE (CISA)
  1368. Australia blames Russia for SolarWinds attack (InnovationAus)
  1369. iTWire (US alleges Russia behind SolarWinds compromise, imposes curbs on six firms)
  1370. SolarWinds compromise attributed to Russian state actor (Mirage News)
  1371. Deutsche Welle: US expels Russian diplomats and issues sanctions over SolarWinds hacking attack (KyivPost - Ukraine's Global Voice)
  1372. US expels 10 Russian diplomats, sanctions others for hack with Triangle connection (WRAL TechWire)
  1373. Biden Sanctions Dozens Of Russians Over Hacking, Elections (Law360)
  1374. Biden Sanctions Russia, Restricts Buying New Debt After Hacking
  1375. US expels 10 Russian diplomats, imposes new sanctions in response to election interference and cyber hacks : The Tribune India
  1376. Russia 'most acute threat' to national security, UK gov’t says
  1377. West Virginia Sen. Joe Manchin stresses importance of improving cybersecurity practices | WDVM25 & DCW50 (Washington, DC)
  1378. US institutes new Russia sanctions in response to SolarWinds hack (Sports Grind Entertainment)
  1379. FACT SHEET: Imposing Costs for Harmful Foreign Activities by the Russian Government (The White House)
  1380. US White House blames Russia’s foreign intelligence for cyberattack on SolarWinds software - World (TASS)
  1381. Rubio: Biden Order on Russia a 'Legality' to Allow Action on SolarWinds (Newsmax.com)
  1382. Russian Foreign Intelligence Service Exploiting Five Publicly Known Vulnerabilities to Compromise U.S. and Allied Networks (Homeland Security Today)
  1383. Russian SVR Targets U.S. and Allied Networks
  1384. Biden imposes new sanctions on Russia | National and World (dailylocal.com)
  1385. Russia's SVR Spy Agency Calls U.S. Hack Allegations 'Nonsense': Ifax | Top News (US News)
  1386. NATO to improve cyber defense in bid to boost alliance resilience
  1387. US Gov sanctions Russia and expels 10 diplomats over SolarWinds hackSecurity Affairs
  1388. US pins SolarWinds cyberattack on Russian intelligence agency (Washington Examiner)
  1389. White House blames Russia's SVR agency for SolarWinds breachl (Seeking Alpha)
  1390. US Sanctions on Russia Rewrite Cyberespionage's Rules (WIRED)
  1391. Background Press Call by Senior Administration Officials on Russia (The White House)
  1392. US imposes sanctions on Moscow, expels Russian diplomats (News24)
  1393. EU’s Borrell voices solidarity with US in SolarWinds hack (wapo)
  1394. SolarWinds: Russian intelligence behind major cyber attack, Raab reveals as US expels diplomats (The Independent)
  1395. US Sanctions Russia and Expels 10 Diplomats Over SolarWinds Cyberattack
  1396. SolarWinds Sanctions Far From Last Word On Russian Hacks (Law360)
  1397. Figuring out SolarWinds hack as US sanctions Russia (Macau Business)
  1398. How SolarWinds cyber (attack forced US to sanction Russia)
  1399. Britain, United States accuse Russia of ‘Solar Winds’ cyber attack (Evening Standard)
  1400. White House Names, Blames, Sanctions Russian Govt for Cyber, Election Assaults (MeriTalk)
  1401. US names 6 Russian tech firms aiding govt hackers - Security (CRN Australia)
  1402. Poland Expels Three Russian Diplomats In 'Solidarity' With U.S.
  1403. Statement on Solar Winds Orion cyberattacks - Ministry of Foreign Affairs Republic of Poland (Gov.pl website)
  1404. Furious Dominic Raab & US slam 'malicious' Russian 'CosyBear' hack attack which 'undermines democracy'
  1405. UK and US call out Russia for SolarWinds compromise | National Cyber Security Centre (Official Press Release)
  1406. White House formally blames Russian intelligence service SVR for SolarWinds hack (The Record by Recorded Future)
  1407. US sanctions six tech firms for supporting Russian intelligence services
  1408. US expels Russian diplomats, imposes sanctions for hacking
  1409. Opinion (Biden is finally pivoting foreign policy to bigger threats - The Washington Post)
  1410. Britain and United States accuse Russia of ‘Solar Winds’ cyber attack
  1411. White House: Russians Behind SolarWinds and 5 More Technology Attacks
  1412. More Countries Officially Blame Russia for SolarWinds Attack (SecurityWeek.Com)
  1413. Biden blames and sanctions Russia for the massive SolarWinds hack (Vox)
  1414. Did Someone at the Commerce Dept. Find a SolarWinds Backdoor in Aug. 2020? (Krebs on Security)
  1415. US blames Russia spies for SolarWinds hack | The Canberra Times (Canberra, ACT)
  1416. Biden says sanctions against Russia are proportionate response: 'Now is the time to de-escalate' | US & World News (azfamily.com)
  1417. The Biden Administration Just Accused A $1 Billion Russian Cybersecurity Company Of Recruiting Spies
  1418. Biden’s Russia Strike Marks Shift in U.S. Cybersecurity Strategy
  1419. White House Hints at ‘Hallmark’ of Expected Cybersecurity Order (MeriTalk)
  1420. Biden imposes new sanctions on Russia | Tn Exchange (newspressnow.com)
  1421. SolarWinds cyber strike: Russia did it, say US and UK
  1422. Biden says he warned Putin he could have gone further on sweeping Russia sanctions (ABC7 San Francisco)
  1423. SolarWinds: Accountability, Attribution, and Advancing the Ball
  1424. SolarWinds Execs Earned $65M In 2020 Despite Huge Hack
  1425. How Russia Used SolarWinds To Hack Microsoft, Intel, Pentagon, Other Networks : NPR
  1426. Russia to expel 10 US diplomats in 'tit-for-tat response' to Biden sanctions | National (keysnews.com)
  1427. H-ISAC Supply (Chain Insights Aim to Prevent Next SolarWinds Cyberattack)
  1428. Russia Expels 10 U.S. Diplomats in Limited Sanctions Response (Bloomberg)
  1429. US Issues Russian SVR Warning (Infosecurity Magazine)
  1430. Himes: Biden didn’t show Putin “strong hand,” says cyber offensive is needed (CTInsider.com)
  1431. US imposes new sanctions on Russia, expels 10 diplomats : The Tribune India
  1432. SolarWinds hack affected six EU agencies (The Record by Recorded Future)
  1433. Foreign Intelligence Service of the Russian Federation
  1434. NATO - News: North Atlantic Council Statement following the announcement by the United States of actions with regard to Russia, 15-Apr. (2021)
  1435. Snort Blog: Snort rule update for April 15, 2021
  1436. US government strikes back at Kremlin for SolarWinds hack campaign (ars)
  1437. US Sanctions Russia Over SolarWinds Attack, Election Meddling
  1438. Attribution of cyber incident to Russia (Australian Minister for Foreign Affairs, Minister for Women)
  1439. White House Blames Russian Foreign Intelligence for SolarWinds, Imposes Sanctions on Rival Nation (HOTforSecurity)
  1440. Experts On Russia Being Held Accountable For SolarWinds (Information Security Buzz)
  1441. US sanctions Russian government, security firms for SolarWinds breach, election interference (CSO Online)
  1442. Did Someone at the Commerce Dept. Find a SolarWinds Backdoor in Aug. 2020? (secblvd)
  1443. Biden team’s tall task: Building cyber defenses against Russia, China (CSMonitor.com)
  1444. GOP lawmakers say something important missing from Biden’s Russia sanctions (Washington Examiner)
  1445. How SolarWinds’ Approach to Cybersecurity Made It Vulnerable to an Attack (TTI)
  1446. Date 2021-04-16

  1447. Biden’s decision: How hard to punch back at Putin's hackers (POLITICO)
  1448. Date 2021-04-15

  1449. U.S. intelligence community details destructive cyber capabilities, growing influence threats
  1450. SolarWinds says dealing with hack fallout cost at least $18 million | 1450 AM 99.7 FM WHTC (Holland)
  1451. Experts see 'unprecedented' increase in hackers targeting electric grid (hill)
  1452. IC warns that U.S. adversaries are ramping up cyber attacks - (FCW)
  1453. SolarWinds says dealing with hack fallout cost at least $18 million | Y100 WNCY | Your Home For Country & Fun (Green Bay, WI)
  1454. STRATEGIC THREAT INTELLIGENCE: PREPARING FOR THE NEXT “SOLARWINDS” EVENT
  1455. Biden Warns Putin Over Hacking But Proposes Summit in a Call (2)
  1456. Hundreds of electric utilities downloaded SolarWinds backdoor, regulator says (CyberScoop)
  1457. SolarWinds says hack fallout cost at least $23.5 million - Security (iTnews)
  1458. SolarWinds says dealing with hack fallout cost at least US$18m, Technology (THE BUSINESS TIMES)
  1459. SolarWinds spends $18 mn in 3 months after cyber attack (InfotechLead)
  1460. NERC Says 375 Electricity Providers Installed the Laced SolarWinds Update (TechNadu)
  1461. ‎Digital Detectives: Occam’s Razor — A SolarWinds Perspective for Law Firms on Apple Podcasts
  1462. Sunburst Hack Costs SolarWinds At Least $18M (CFO)
  1463. SolarWinds says dealing with hack fallout cost at least US$18 million - Security (CRN Australia)
  1464. Protecting The Integrity Of The Software Factory
  1465. Cyber Cartels Are Committing Modern Bank Heists (Barron's)
  1466. White House Names National Cyber Director, CISA Chief (FedTech Magazine)
  1467. Where VCs Are Putting Their Money As Cybersecurity Funding Hits Record High (Crunchbase News)
  1468. Senators Push for Changes in Wake of SolarWinds Attack
  1469. U.S. spy chiefs warn of ‘unparalleled’ China threat in return to Congress | The Mighty 790 KFGO (KFGO)
  1470. Biden to Name Morgan Stanley’s Easterly as CISA Head
  1471. Misuse of X.509 Certificates & Keys Involved in SolarWinds Attack
  1472. SolarWinds says dealing with hack fallout cost at least $18 million (The Hindu)
  1473. U.S. Poised to Impose Russia Sanctions Over Election, SolarWinds (Bloomberg)
  1474. Hillicon Valley: Intel leaders push for breach notification law | Coinbase goes public (hill)
  1475. US spy chiefs to warn of threats from SolarWinds to North Korea (Maju Saham)
  1476. Date 2021-04-14

  1477. Former DHS Secretary Details SolarWinds Hackers’ Access to His Email (Nextgov)
  1478. Biden names 2 ex (NSA officials for senior cyber positions)
  1479. The Anatomy of the SolarWinds Attack: A CyberArk Labs Perspective
  1480. SolarWinds and Microsoft Exchange: Hacks Wrapped in a Cybersecurity Dilemma Inside a Cyberspace Crisis (Georgetown Journal of International Affairs)
  1481. SolarWinds and Cozy Bears: How Russian Hackers Compromised the U.S. Government and How We Can Reduce the Chances of It Happening Again (Ricochet)
  1482. Ex-DHS chief confirms suspected Russian hackers targeted his email account (CyberScoop)
  1483. Spy Chiefs to Warn of Threats From SolarWinds to North Korea (Bloomberg)
  1484. ‘They knew I was running late to meetings’: Former DHS chief on reports that SolarWinds hackers targeted his emails (The Record by Recorded Future)
  1485. Biden names 2 ex (NSA officials for senior cyber positions)
  1486. What You Need to Know about the Cyber (Espionage Attack Linked to Russia)
  1487. Biden Warns Putin Over Hacking But Proposes Summit in a Call (Bloomberg)
  1488. Former DHS Leader Shares Details on SolarWinds Attack
  1489. White House announces CISA, national cyber directors (Utility Dive)
  1490. TIA, CTIA, NAB press Biden to let industry lead on telecom security (FierceTelecom)
  1491. Satya Nadella: SolarWinds Hack Underscores Need For ‘Moving To The Cloud’
  1492. Date 2021-04-13

  1493. City of Tampa among 18,000 targets of SolarWinds hack; exposing government data, personal info - Tampa, Florida (Eminetra)
  1494. Biden Needs To Respond To Russia Hacking (Technology Times)
  1495. Satya Nadella: SolarWinds Hack Underscores Need For ‘Moving To The Cloud’
  1496. Biden's cybersecurity dream team takes shape
  1497. Biden will name cybersecurity agency head after Russian hackers accessed government accounts (Daily Mail Online)
  1498. Date 2021-04-12

  1499. Biden Seeks to Boost CISA's Budget by $110 Million
  1500. SolarWinds Hack — New Evidence Suggests Potential Links to Chinese Hackers (The Cyber Post)
  1501. FireEye, Microsoft create kill switch for SolarWinds backdoor
  1502. After high profile hacks hit federal agencies, CISA demands drastic SolarWinds mitigation (scmedia)
  1503. Massive hack of US government launches search for answers as Russia named top suspect
  1504. Russian hack into Treasury, Commerce, DHS raises federal alarms (Axios)
  1505. Mitigating Cloud Supply-chain Risk: Office 365 and Azure Exploited in Massive U.S. Government Hack (CipherCloud)
  1506. In wake of giant software hacks, defenders & dev teams must fix AppSec
  1507. Fed Chairman Jerome Powell: The 2021 60 Minutes Interview (CBS News)
  1508. SOLARWINDS INVESTIGATION INITIATED BY FORMER LOUISIANA ATTORNEY GENERAL: Kahn Swick & Foti, LLC Investigates the Officers and Directors of SolarWinds Corporation - SWI (NY Press News)
  1509. Date 2021-04-11

  1510. Audit of DoD Actions Taken to Protect DoD Information Network Resulting From the SolarWinds Orion Compromise
  1511. Understanding the Results of the Audit of the DoD FY 2020 Financial Statements > Department of Defense Office of Inspector General > DoD OIG Reports
  1512. Biden Needs to Respond to Russian Hacking
  1513. SolarWinds Pingdom vs. Rigor Monitoring & Optimization vs. germainAPM Comparison
  1514. Biden Looks To Up Cybersecurity Spending With Budget Plan (Law360)
  1515. SolarWinds Cyberattack: Lessons Learned
  1516. The long tail of the SolarWinds breach (Axios)
  1517. The U.S. Government Needs to Overhaul Cybersecurity. Here’s How. (secblvd)
  1518. Date 2021-04-10

  1519. Top Biden cyber official: SolarWinds breach could turn from spying to destruction 'in a moment'
  1520. Russia prepares US sanctions due to Alexei Navalny jailing, Solarwinds hack and election meddling (Daily Mail Online)
  1521. Lavrov says US policy towards Russia is 'dumb,' ineffective (StarTribune)
  1522. Why the U.S. Shouldn’t Play Games With Cyberwarfare as Its Power Declines
  1523. Biden administration sets the stage for retaliation against Russia over SolarWinds, election interference: report (Business Insider India)
  1524. US May Expel Russian Diplomats, Impose New Sanctions: Media - Other Media news (Tasnim News Agency)
  1525. SolarWinds bolsters cybersecurity in wake of hack (Business Insurance)
  1526. Top Biden cyber official: SolarWinds breach could turn from spying to destruction 'in a moment' (Democratic Underground)
  1527. Biden weighs retaliation against Russia for SolarWinds, election interference (KOMO)
  1528. AP sources: SolarWinds hack got emails of top DHS officials
  1529. Russia's top diplomat: US policy toward Moscow is 'dumb' (hill)
  1530. Long (Term SolarWinds Investors Who Have Held Their Stock Continuously Since September 2019 Encouraged To Contact Kehoe Law Firm, P.C.)
  1531. Russia prepares US sanctions due to Alexei Navalny jailing, Solarwinds hack and election meddling (Internewscast)
  1532. Federal watchdog investigating State Department cybersecurity pr (WENY News)
  1533. Biden administration sets the stage for retaliation against Russia over SolarWinds, election interference: report
  1534. The SolarWinds hack timeline: Who knew what, and when?
  1535. Biden weighs retaliation against Russia for SolarWinds, election interference (WKRC)
  1536. Biden Eyes Russia Retaliation After Meddling, Hacking Review (Bloomberg)
  1537. Viewpoint: Preventing the next SolarWinds breach calls for rapid training and education (Baltimore Business Journal)
  1538. DHS CISA Shares SolarWinds Post (Threat Compromise Activity Tool)
  1539. Releases · cisagov/Sparrow (GitHub)
  1540. Investors Could Be Concerned With SolarWinds' (NYSE:SWI) Returns On Capital (Simply Wall St News)
  1541. The U.S. Government Needs to Overhaul Cybersecurity. Here’s How. (Lawfare)
  1542. Biden budget request calls for major investments in cybersecurity, emerging technologies (hill)
  1543. Renewed Concerns Raised on Agency Cybersecurity
  1544. Cyber Cases May Offer Clues to SEC ESG Enforcement
  1545. Biden FY22 Budget Request Seeks $500M for TMF, $750M ‘Reserve’ for IT Fixes (MeriTalk)
  1546. CISA Launches New Threat Detection Dashboard
  1547. Using Aviary to Analyze Post-Compromise Threat Activity in M365 Environments (CISA)
  1548. Biden Needs to Get Serious About Russian Hacking (Bloomberg)
  1549. White House preps new requirements for industrial control system security - (GCN)
  1550. What the Titans of Industry Reveal about SolarWinds Attack (secblvd)
  1551. White House asks for additional $110 million in CISA funding to address cyber threats (CyberScoop)
  1552. Date 2021-04-09

  1553. Senators press for more on SolarWinds hack after AP report
  1554. Senators Press for Details on SolarWinds Hack (Manufacturing Business Technology)
  1555. Biden Eyes Russia Retaliation for SolarWinds, Election Meddling: Report
  1556. Supply‑chain attacks: When trust goes wrong, try hope? (WeLiveSecurity)
  1557. Should cyberwar be met with physical force? Moral philosophy can help us decide
  1558. After A Major Hack, U.S. Looks To Fix A Cyber 'Blind Spot' (Georgia Public Broadcasting)
  1559. SolarWinds TechPod: Secure by Design (Securing the Supply Chain)
  1560. The Need for Zero Trust Workload Protection (secblvd)
  1561. Experts fear that Biden’s cybersecurity executive order will repeat mistakes of the past (CSO Online)
  1562. 4 things you can do to minimize cyberattacks on supply and value chains (Help Net Security)
  1563. SolarWinds Pingdom vs. RapidSpike vs. SpyCloud Comparison
  1564. Long (Term SolarWinds Investors Who Have Held Their Stock Continuously Since September 2019 Encouraged To Contact Kehoe Law Firm, P.C.)
  1565. Nation-state cyber attacks could lead to cyber conflict (TechRepublic)
  1566. SolarWinds just keeps getting worse: New strain of backdoor malware found in probe (Register)
  1567. Date 2021-04-08

  1568. Senators press for more details on scope of SolarWinds hack (MarketWatch)
  1569. Senators seek details on Einstein's performance and limitations - (FCW)
  1570. Former CISA chief cautions on push for national cyber director - (Defense Systems)
  1571. Debate: How Should the US Respond to the SolarWinds Breach? (Russia Matters)
  1572. Why Didn't Government Detect SolarWinds Attack?
  1573. Long (Term SolarWinds Investors Who Have Held Their Stock Continuously Since September 2019 Encouraged To Contact Kehoe Law Firm, P.C.)
  1574. Date 2021-04-07

  1575. Russia Suspected of Stealing Thousands of State Department Emails (Homeland Security Today)
  1576. Examining the SolarWinds/Holiday Bear Hack (Columbia SIPA)
  1577. European Institutions Were Targeted in a Cyber-Attack Last Week (BNN Bloomberg)
  1578. Minority Media | Homeland Security & Governmental Affairs Committee (Homeland Security & Governmental Affairs Committee)
  1579. Senators want federal government to take accountability for SolarWinds hack (Washington Times)
  1580. The SolarWinds hack timeline: Who knew what, and when? (CSO Online)
  1581. Top Homeland Security Senators Want Details on Agencies Hit in SolarWinds, Microsoft Intrusions (Nextgov)
  1582. IG: Cybersecurity Weaknesses Persist in US Energy Dept.
  1583. The SolarWinds hack timeline: Who knew what, and when? (Reseller News)
  1584. Senators press for more on SolarWinds hack after AP report
  1585. Senators press for more on SolarWinds hack after AP report | Govt-and-politics (tulsaworld.com)
  1586. Date 2021-04-06

  1587. Veterans Affairs Officials Blow Off Briefing on SolarWinds Hack
  1588. Microsoft exec Brad Smith praises FireEye in SolarWinds hack testimony
  1589. Security Council Reveals Russia behind SolarWinds hack not China (WaZoBia9ja)
  1590. Carriers growing increasingly skittish after major cyber incidents (Insurance Business)
  1591. Supply chain attacks: what we know about the SolarWinds ‘Sunburst’ exploit, and why it still matters (Check Point Software)
  1592. President Biden’s new executive order could oblige software vendors to tell Uncle Sam about security breaches (The Daily Swig)
  1593. Supply Chain Hackers Strike Hard at Government Entities
  1594. US government to respond to SolarWinds hackers in weeks - Security (iTnews)
  1595. Infamous Solarwinds attack started with just two simple mistakes (ABC News)
  1596. An update on the SolarWinds hack and data bre... (CBS News)
  1597. An update on the SolarWinds hack and data breach (CBS News)
  1598. Biden administration prepares to impose sanctions on Russia over Navalny poisoning and SolarWinds hack (CNNPolitics)
  1599. White House Weighs New Cybersecurity Approach After Failure to Detect Hacks (nyt)
  1600. Date 2021-04-05

  1601. Russian hackers stole thousands of emails from US State Department: Report
  1602. Date 2021-04-04

  1603. DOE Watchdog Detailed Its Cybersecurity State Amid SolarWinds Hack (Nextgov)
  1604. Russian SolarWinds hackers were so ‘sophisticated’ that they even targeted DHS cybersecurity experts (Alternet.org)
  1605. Hunting the hunters: How Russian hackers targeted US cyber first responders in SolarWinds breach
  1606. US looks to keep critical sectors safe from cyberattacks | Election Hq (fox5vegas.com)
  1607. After hack, officials draw attention to supply chain threats
  1608. SolarWinds supply chain breach threatens government agencies and enterprises worldwide (ScienceDirect)
  1609. Date 2021-04-03

  1610. Senators Ready to Give NSA More Domestic Power Over SolarWinds Hack (News From Antiwar.com)
  1611. SolarWinds Hack Obtained Emails of Top U.S. Department of Homeland Security Officials (FISM TV)
  1612. Homeland Security Orders Cyber ‘Sprints’ as Part of U.S. Plan Against Hacks
  1613. DHS Secretary Previews Six ‘Sprints’ to Improve Federal Cybersecurity (MeriTalk)
  1614. SolarWinds Hackers Accessed US Department of Homeland Security (DHS) officials
  1615. Hunting the hunters: How Russian hackers targeted US cyber first (KAKE)
  1616. DHS Secretary Outlines 60 (Day Cybersecurity Recovery Plan)
  1617. As SolarWinds Announces More Patches, Analysts Offer Advice
  1618. The Cybersecurity 202: DHS head seeks to quickly solve some major cybersecurity problems (wapo)
  1619. DHS Secretary Outlines Biden Administration’s Cybersecurity Vision (Infosecurity Magazine)
  1620. Hunting the hunters: How Russian hackers targeted US cyber first responders in SolarWinds breach (CNNPolitics)
  1621. After hack, officials draw attention to supply chain threats - U.S. (Stripes)
  1622. More Surveillance Isn’t the Answer to the SolarWinds Hack (EIN Presswire)
  1623. Broken trust: Lessons from Sunburst (Atlantic Council)
  1624. Date 2021-04-02

  1625. SolarWinds surprise: Department of Homeland Security emails leaked?
  1626. SolarWinds hacker sneaks into Trump's top executive email (Texas News Today)
  1627. Cybersecurity, browser security, SolarWinds (Homeland Security Newswire)
  1628. SolarWinds Hackers Obtained Emails of Top US Department of Homeland Security Officials (Cyberintel Magazine)
  1629. SolarWinds Attack Has Growing, Worsening Impact on Cybersecurity Pros
  1630. Revelations About Securing Hybrid Cloud Environments Post-SolarWinds (secblvd)
  1631. U.S. Launches Cyber ‘Sprints’ in the Wake of Nation-State Hacks (Bloomberg)
  1632. When do cyber ops constitute "threats to use force?" Continuity in US cyber response. Questions about disclosure rules.
  1633. The Emails of the Department of Homeland Security exposed 
  1634. SolarWinds cyberhack gained access to then (acting DHS chief’s emails: Sources – Illinois News Now)
  1635. Top DHS Officials’ E-Mails Compromised in SolarWinds Hack, (Saudi Press)
  1636. SolarWinds breach severity perception increasing over time (Help Net Security)
  1637. USA to publish detailed analysis of SolarWinds hacking tools
  1638. After SolarWinds, Lawmakers Want Companies to Come Clean About Cyberattacks
  1639. Mayorkas pledges to modernize US cyber-defenses after their failure to detect alleged Russian spies (CyberScoop)
  1640. Blackberry Jarvis
  1641. The Fortune 500 Companies That Want To Be Hacked (The Tennessee Tribune)
  1642. Russian hackers have once again been accused of carrying out cyber (attacks on the United States)
  1643. Hearing | Hearings (United States Commitee on Armed Services)
  1644. Mind the Gap: How the NSA might use SolarWinds campaign to do warrantless spying (Zero Day)
  1645. SolarWinds Hack Shows Why We Need a National Cyber Director
  1646. SolarWinds Hack Demonstrates Need for Cloud Security
  1647. Cyber Daily: After SolarWinds, Lawmakers Want Companies to Come Clean About Hacks (State Department Emails Stolen)
  1648. CISA Orders More Microsoft Exchange Checks in Hunt for Undetected Compromises (MeriTalk)
  1649. cyber.dhs.gov - Emergency Directive 21 (02)
  1650. Microsoft Safety Scanner Download - Windows security (Microsoft Docs)
  1651. Russian FM says relations with West have 'hit the bottom' :: WRAL.com
  1652. NSA Director Says More Domestic Surveillance Might Stop Foreign Hacking; Fails To Explain Why NSA Isn't Stopping Much Foreign Hacking (Techdirt)
  1653. Analysts expect the worst if Biden doesn't turn his focus toward protecting the grid (WCTI)
  1654. Biden's cyber executive order to include new rules for federal agencies, contractors
  1655. SolarWinds breach severity perception increasing over time (IT Security News)
  1656. Date 2021-04-01

  1657. Lessons of the SolarWinds hack
  1658. SolarWinds cyberhack gained access to then-acting DHS chief's emails: Sources (ABC News)
  1659. Atlantic Council: SolarWinds, Microsoft Hacks Reveal ‘Strategic Failure’ (MeriTalk)
  1660. How SolarWinds Is Recovering and Sharing What It Has Learned Over The Last Three Months (My TechDecisions)
  1661. SolarWinds attack makes us distrust the software we buy (TechRepublic)
  1662. What Would Happen If States Started Looking at Cyber Operations as a “Threat” to Use Force? (Lawfare)
  1663. News Briefs | (bedfordgazette.com)
  1664. Expected breach disclosure mandates will test government-industry cooperation - (FCW)
  1665. Zero Trust Security Is Essential for Neutralizing Supply Chain Attacks (TechBullion)
  1666. SolarWinds Attack Makes Us Distrust The Software We Buy (NewsOpener)
  1667. Oklahoma CISO says pandemic accelerated zero (trust implementation)
  1668. Hillicon Valley: Officials say cyber executive order with 'a dozen' actions forthcoming | Epic Games submits Apple complaint to UK watchdog | Facebook's chief revenue officer to leave company (hill)
  1669. Officials say executive order with 'a dozen' actions forthcoming after SolarWinds, Microsoft breaches (hill)
  1670. Russia suspected of stealing thousands of State Department emails
  1671. Head of Homeland Security had his email hacked in SolarWinds attack (IT PRO)
  1672. SolarWinds Hackers Said to Have Accessed Emails of Top US Security Officials (NewsDeal)
  1673. SolarWinds hacker accessed Homeland Security email (Texas News Today)
  1674. Solarwinds, Inc. (NYSE:SWI), (CRWD) - SolarWinds Hackers Breached Homeland Security Officials Emails: Report (Benzinga)
  1675. SolarWinds hack obtained emails of top U.S. Department of Homeland Security officials: AP (Reuters)
  1676. AP report: SolarWinds hack obtained emails of top DHS officials (Techzine Europe)
  1677. Email accounts of DHS members were compromised in the SolarWinds hackSecurity Affairs
  1678. SolarWinds highlights "alarming" cyberattack trend (Insurance Business)
  1679. Punitive Response to SolarWinds Would Be Misplaced, But Cyber Deterrence Still Matters (Russia Matters)
  1680. US to publish details on suspected Russian hacking tools used in SolarWinds espionage
  1681. SolarWinds Hack Affected Emails Of Homeland Security Leaders (Potomac Officers Club)
  1682. Department of Homeland Security email accounts exposed in SolarWinds hack (Cyber Security Review)
  1683. Russians suspected of 'stealing thousands of State Department emails' in latest hack targeting US (Daily Mail Online)
  1684. ZDI-21-373 (Zero Day Initiative)
  1685. Companies Must Report Hacks to U.S. Within Days in Draft Order (Bloomberg)
  1686. Russian hackers stole thousands of State Department emails, reports claim (The Independent)
  1687. Date 2021-03-31

  1688. SolarWinds Hackers Breached Homeland Security Officials Emails: Report
  1689. NSA Opens Door to Domestic Internet Spying, Privacy Advocates Say
  1690. Unencrypted | What is SolarWinds? Are updates still safe? (THE DEVIL STRIP)
  1691. Cybersecurity Needs a New Alert System (WSJ)
  1692. NIST Seeks Small Business to Help Develop Cybersecurity Standards (Nextgov)
  1693. Putin calls on nations across world to create new ‘legally binding’ global cyberspace treaty, as hack attack row with US escalates — RT Russia & Former Soviet Union
  1694. SolarWinds Breach Exposed 'Climate Change' Level of Threat to U.S. Cybersecurity: Experts (The Crime Report)
  1695. Head of Homeland Security had his email hacked in SolarWinds attack (IT PRO)
  1696. SolarWinds Attackers Accessed DHS Emails, Report (tpost)
  1697. What We Know (and Don't Know) So Far About the ...
  1698. Date 2021-03-30

  1699. AP sources: SolarWinds hack got emails of top DHS officials (StarTribune)
  1700. AP Sources: SolarWinds Hack Got Emails of Top DHS Officials (NBC10 Philadelphia)
  1701. US Vows Consequences for Russian Actions
  1702. AP sources: SolarWinds hack got emails of top DHS officials (WTMJ)
  1703. AP sources: SolarWinds hack got emails of top DHS officials (ConchoValleyHomepage.com)
  1704. NIST SP 800 (172 release couldn’t come at a better time)
  1705. SolarWinds hack obtained emails of top US Department of Homeland Security officials (AP)
  1706. (ISC)2 Survey Finds Cybersecurity Professionals Have Increasing Level of Concern About SolarWinds Incident
  1707. The Lawfare Podcast: The Generals vs. the Armed Services Committee with No Bull (Lawfare)
  1708. Lawmakers Press Biden to Nominate Federal Cybersecurity Leader Now (MSSP Alert)
  1709. SolarWinds Patches Four New Vulnerabilities in Their Orion Platform
  1710. SolarWinds: Who’s to Blame? Going Beyond the Cloud (Credit Union Times)
  1711. Biden faces few great options for SolarWinds, Exchange retaliation (POLITICO)
  1712. CISA Builds Out Defensive Tools for Security Teams
  1713. 'Small number' of DHS email accounts accessed during SolarWinds breach (FedScoop)
  1714. Associated Press: SolarWinds hack got emails of top DHS officials (KyivPost - Ukraine's Global Voice)
  1715. In wake of giant software hacks, defenders & dev teams must fix AppSec
  1716. AP sources: SolarWinds hack got emails of top DHS officials | Govt-and-politics (tulsaworld.com)
  1717. White House Weighs ‘Seen and Unseen’ Responses to Major Hack (Bloomberg)
  1718. SolarWinds hack: US weighs ‘seen and unseen’ responses to major cyber attack (Hindustan Times)
  1719. NSA Opens Door to Domestic Internet Spying, Privacy Advocates Say
  1720. Date 2021-03-29

  1721. Raindrop Loader delivers Cobalt Strike; SolarWinds - AlienVault (Open Threat Exchange)
  1722. Boards still aren’t taking cybersecurity seriously, warns new NCSC boss. That means everyone is at risk (Bestgamingpro)
  1723. Cybersecurity Board Reform Blows Into Place For SolarWinds
  1724. Opinion (The United States has a major hole in its cyberdefense. Here’s how to fix it. - The Washington Post)
  1725. Biden's National Cyber Director Nominee Delayed Amid Turf Battle (Newsmax.com)
  1726. Software vendors would have to disclose breaches to US - Security (CRN Australia)
  1727. Biden Cyber Director Nominee Delayed Amid Turf Battle (News Talk WBAP-AM)
  1728. iTWire (SolarWinds speaks out, and software dev can never be the same again)
  1729. The cybersecurity problem we should really worry about (hill)
  1730. Date 2021-03-28

  1731. Trend data on the SolarWinds Orion compromise
  1732. SolarWinds CEO: Here’s What We’re Doing to Prevent Another Attack (SDxCentral)
  1733. Shareholder Alert: Robbins LLP Reminds Shareholders it is Investigating SolarWinds Corporation (SWI)
  1734. Time for cyber teams, not stovepipes: Telos' CEO tells Wall Street - (Washington Technology)
  1735. SolarWinds, cyberattacks (Homeland Security Newswire)
  1736. New, critical vulnerability discovered that could let attackers gain entry to SolarWinds systems (The Cyber Security News)
  1737. New, critical vulnerability could give attackers access SolarWinds systems
  1738. Solarwinds Orion Platform Has New Code Execution Flaws
  1739. Shareholder Alert: Robbins LLP Reminds Shareholders it is Investigating SolarWinds Corporation (SWI) (bizwire)
  1740. SolarWinds-Linked Attackers Target Microsoft 365 ... (PG-Intel)
  1741. SolarWinds Experimenting With New Software Build ... (Go Decrypt)
  1742. SolarWinds hack: the mystery of one of the biggest cyberattacks ever (CyberNews)
  1743. SolarWinds Orion Platform < 2020.2.5 Multiple Vulnerabilities (Tenable®)
  1744. New, critical vulnerability could give attackers access SolarWinds systems (PG-Intel)
  1745. SolarWinds Experimenting With New Software Build ...
  1746. SOLARWINDS INVESTIGATION INITIATED by Former Louisiana Attorney General: Kahn Swick & Foti, LLC Investigates the Officers and Directors of SolarWinds Corporation - SWI (bizwire)
  1747. White House to Require Software Firms to Disclose Breaches to Government Customers
  1748. New, critical vulnerability discovered that could let attackers gain entry to SolarWinds systems (TerabitWeb Blog)
  1749. SOLARWINDS INVESTIGATION INITIATED by Former Louisiana Attorney General: Kahn Swick & Foti, LLC Investigates the Officers and Directors of SolarWinds Corporation (SWI)
  1750. SolarWinds experimenting with new software builds … (Jioforme)
  1751. SolarWinds Orion Update Fixes New Holes (ISSSource)
  1752. Cybersecurity Board Reform Blows Into Place For SolarWinds
  1753. Date 2021-03-27

  1754. The Cybersecurity 202: NSA director says intelligence has a big blind spot: domestic Internet activity (wapo)
  1755. How an advanced architecture can dramatically mitigate massive data breaches - (GCN)
  1756. Cyber Defense Triad For Where Security Matters | November 2016 (CACM)
  1757. Exclusive: Software vendors would have to disclose breaches to U.S. government users under new order: draft (Reuters)
  1758. New “CISO View” Survey on Zero Trust Highlights Credential Theft Trends for New Types of Identities (Odessa American: Business)
  1759. NSA director says U.S. has a ‘blind spot’ for detecting attacks like SolarWinds, Microsoft Exchange (The Record by Recorded Future)
  1760. Why the modern CISO should plan for greater Cybersecurity Regulations in the Biden Era (scmedia)
  1761. EXCLUSIVE (Software vendors would have to disclose breaches ...)
  1762. How the heck did US Intelligence miss SolarWinds AND Microsoft Exchange!? by Nick Espinosa (Security Fanatics)
  1763. Fed Breach Disclosure Rule Planned After SolarWinds Hack: Report
  1764. Biden executive order would force software vendors to disclose breaches (Seeking Alpha)
  1765. SolarWinds Attack Illustrates Evolving Russian Cyber Tactics
  1766. Bragar Eagel & Squire is Investigating Certain Officers and Directors of Zoom and SolarWinds Corporation on Behalf of Long (Term Stockholders and Encourages Investors to Contact the Firm)
  1767. General says attacks by foreign hackers are 'clarion call' (StarTribune)
  1768. Senators urge Energy chief to prioritize cybersecurity amid growing threats (hill)
  1769. Why 2021 Is the Year for Zero Trust Security
  1770. Biden Urged To Name National Cyber Czar Amid Breaches (Law360)
  1771. Another Critical RCE Flaw Discovered in SolarWinds Orion Platform
  1772. Another Critical RCE Flaw Discovered in SolarWinds Orion Platform (Times News Express)
  1773. Another serious RCE flaw found on the SolarWinds Orion platform (Jioforme)
  1774. What was so striking to Microsoft’s president about SolarWinds and Exchange Server attacks? (CyberNews)
  1775. What Lessons Should We Learn From The Suspected Russian Hack Of SolarWinds And Other U.S. Agencies And Companies?
  1776. Software vendors would have to disclose breaches to U.S. government users under new order (The Hindu)
  1777. Exclusive: Software vendors would have to disclose breaches to U.S. government users under new order: draft (Reuters)
  1778. Biden reportedly planning an executive order on cybersecurity breach notifications (SiliconANGLE)
  1779. SolarWinds patches critical code execution bug in Orion Platform
  1780. Solarwinds Orion Platform updates fix two remote code execution issuesSecurity Affairs
  1781. Exec Order Could Force Software Vendors to Disclose ...
  1782. Mimecast’s Forensic Investigation Found That SolarWinds Hackers Copied Limited Number of Source Code Repositories (CPO Magazine)
  1783. Senators Offer to Let NSA Hunt Cyber Actors Inside the US (Defense One)
  1784. Nakasone Warns Adversaries Hack Unseen In US « Breaking Defense (Defense industry news, analysis and commentary)
  1785. U.S. military launched over 2 dozen cyber operations before 2020 election (Axios)
  1786. NSA Chief Says Recent Hacks Expose Limits of U.S. Cyber Protections (WSJ)
  1787. Agency Dealing With US Nuclear Reserves Hacked In SolarWinds Hack
  1788. Exclusive: Software vendors would have to disclose breaches to U.S. government users under new order: draft (Reuters)
  1789. Date 2021-03-26

  1790. Where's the accountability for Solarwinds? - (Defense Systems)
  1791. ‘Accelerate change or lose’: Applying Gen. Brown’s action orders to cyberspace education and training
  1792. King: Mandatory breach disclosure bill coming soon - (Defense Systems)
  1793. The SolarWinds Senate hearing: 5 key takeaways for security admins (CSO Online)
  1794. Swiss Firm Says It Accessed SolarWinds Attackers' Servers
  1795. New Code Execution Flaws In Solarwinds Orion Platform (SecurityWeek.Com)
  1796. US Response to SolarWinds Cyber Penetrations: A Good Defense Is the Best Offense (Russia Matters)
  1797. Robert W. Baird Stick to Their Hold Rating for SolarWinds Corporation By Investing.com
  1798. 'Trust no one' becomes cyber mantra after massive hacking attacks (The Japan Times)
  1799. Impatient lawmakers press Biden for cyber director nominee - (FCW)
  1800. Date 2021-03-25

  1801. Swiss Cyber Security Firm Says It Accessed Servers of a SolarWinds Hacking Group
  1802. SolarWinds Attackers Manipulated OAuth App Certificates
  1803. SolarWinds compromise leaves Senate questioning agency cyber defenses (Utility Dive)
  1804. Biden ‘Will Cyberattack Putin’ (Because SolarWinds) (secblvd)
  1805. Exchange Server updates. SolarWinds victim list "solidified." AFCEA and Shell disclose third (party breaches. MangaDex down.)
  1806. NYSE: SWI Investors should contact the Shareholders Foundation in connection with the Lawsuit against SolarWinds Corporation
  1807. Discussions About Mandated Cyber Incident Reporting Resurface After Nation-State Hacks (My TechDecisions)
  1808. Swiss Cybersecurity Firm says it Accessed Servers of a SolarWinds Hacker
  1809. CHIRP Tool to Detect SolarWinds Malicious Activity
  1810. Swiss cybersecurity firm says it accessed servers of SolarWinds hacking group (The Bharat Express News)
  1811. Acting CISA Director Considers List Of SolarWinds Victims To Be Complete (Potomac Officers Club)
  1812. Date 2021-03-24

  1813. Three Vulnerabilities Exposed During SolarWinds Attack & How It Could Have Been Prevented (CPO Magazine)
  1814. Does Microsoft share blame for the SolarWinds hack? (Computerworld)
  1815. CISA head: Group of SolarWinds victims is 'solidified' - (FCW)
  1816. US government calls for better information sharing in wake of SolarWinds, Exchange attacks (CSO Online)
  1817. SilverFish: Swiss researchers identify threat actor with links to SolarWinds hack
  1818. US plans 'aggressive' cyber offensive against Russia in retaliation for SolarWinds attack
  1819. Swiss firm says it has accessed servers of a SolarWinds hacker that attacked 4,700 targets, Tech News News & Top Stories (The Straits Times)
  1820. Researchers discover threat actors with links to SolarWinds hack (IT PRO)
  1821. Swiss firm accesses servers of hacking group linked to SolarWinds breach, Tech News News & Top Stories (The Straits Times)
  1822. The cybersecurity problem we should really worry about (hill)
  1823. The ‘Frankencloud’ model is our biggest security risk (TechCrunch)
  1824. Recent attacks may drive government’s zero trust adoption - (GCN)
  1825. House Lawmakers Ask Agencies to Provide More Details on SolarWinds Hack
  1826. Mimecast: SolarWinds Attackers Stole Source Code - Micro Focus Community (2864117)
  1827. Date 2021-03-23

  1828. CISA releases CHIRP, a tool to detect SolarWinds malicious activitySecurity Affairs
  1829. New malware uncovered by experts examining SolarWinds strike Blog (Galaxkey)
  1830. CISA releases CHIRP, a tool to detect SolarWinds malicious activity (TerabitWeb Blog)
  1831. SolarWinds remains 'rare story in software,' says Jefferies SWI (The Fly)
  1832. Government Monitoring Won't Stop the Next SolarWinds Campaign, Experts Say (Zero Day)
  1833. Date 2021-03-22

  1834. SolarWinds explainer
  1835. Swiss Firm Says It Has Accessed Servers of a SolarWinds Hacker
  1836. Using CHIRP to Detect Post-Compromise Threat Activity in On-Premises Environments (CISA)
  1837. Biden under growing pressure to nominate cyber czar (hill)
  1838. Date 2021-03-21

  1839. SolarWinds compromise leaves Senate questioning agency cyber defenses (Cybersecurity Dive)
  1840. SolarWinds (Linked Attackers Target Microsoft 365 ...)
  1841. Congress gives four agencies 10 days to report on SolarWinds damage (FRN)
  1842. Burnt by SolarWinds attack? US releases tool for post-compromise detection (ZDNet)
  1843. GitHub (cisagov/CHIRP: A forensic collection tool written in Python.)
  1844. Interview: Sai Venkataraman, Co-Founder and CEO, SecurityAdvisor (Infosecurity Magazine)
  1845. White House reviewing National Cyber Director role as Congress presses for governmentwide leadership (FRN)
  1846. Agency hacks could accelerate push to zero trust security model - (FCW)
  1847. CISA Releases New Tool To Scan For SolarWinds Compromise Activity (My TechDecisions)
  1848. Detecting Post-Compromise Threat Activity Using the CHIRP IOC Detection Tool (CISA)
  1849. Here's what Chinese and Russian hackers are doing in Americans' emails
  1850. Solarwinds Orion Attack
  1851. SolarWinds-linked hacking group SilverFish abuses enterprise victims for sandbox tests (Cyber Security Review)
  1852. Swiss Firm Says It Has Accessed Servers of a SolarWinds Hacker (Bloomberg)
  1853. U.S. cyber agency releases tool to help SolarWinds Orion defenders (IT World Canada News)
  1854. DHS CISA Shares Incident Response Tool for On (Prem Threat Activity)
  1855. The Cybersecurity 202: Wyden calls for 'time out' in government cybersecurity contracting (wapo)
  1856. [Security Weekly] Mimecast Source Code Stolen by Hackers Exploiting SolarWinds Sunburst Backdoor (Penta Security Systems Inc.)
  1857. Did you get burned by the SolarWinds attack?US Releases Tools for Post-Infringement Detection (Texas News Today)
  1858. Swiss Cybersecurity Firm Reveals Vital Details of Solarwinds Hackers (KoDDoS Blog)
  1859. What SolarWinds Taught Us About Third Party Risk Management (SANS Institute)
  1860. Date 2021-03-20

  1861. iTWire (Ohio senator lashes govt over accountability for SolarWinds attack)
  1862. Why the SolarWinds Attack Easily Slipped by All EDR/EPP Solutions (secblvd)
  1863. SilverFish Group Threat Actor Report
  1864. Senate Security Leaders Eye FISMA Revamp, SolarWinds Accountability
  1865. ‎The Lawfare Podcast: Dmitri Alperovitch on SolarWinds and Microsoft Exchange on Apple Podcasts
  1866. Senator Hassan Presses Top Administration Officials on Strengthening Cybersecurity Across All Levels of Government Following SolarWinds & Microsoft Exchange Breaches (U.S. Senator Maggie Hassan of New Hampshire)
  1867. Solarwinds stock forecast
  1868. Date 2021-03-19

  1869. Officials urge Biden to appoint cyber leaders after SolarWinds, Microsoft hacks (hill)
  1870. Why America will never be safe from cyberattacks
  1871. Bipartisan Group of Lawmakers Request Information on SolarWinds Cyber Attack (Democrats, Energy and Commerce Committee)
  1872. Suspected Chinese hackers used SolarWinds bug to spy on US payroll agency (sources)
  1873. Hearings to examine the SolarWinds supply chain attack, focusing on the Federal perspective. | Congress.gov (Library of Congress)
  1874. Lawmakers press federal agencies on scope of SolarWinds attack (hill)
  1875. Russia's Efforts At Information Warfare Against The West Continue : NPR
  1876. SolarWinds hackers stole some of Mimecast source code (RedPacket Security)
  1877. Mimecast Finds SolarWinds Hackers Stole Some of Its Source Code
  1878. Mimecast Ax SolarWinds Orion for Cisco NetFlow After Hack - CRN (OLTNEWS)
  1879. Mimecast Update: SolarWinds Hackers Stole Source Code
  1880. Mimecast: SolarWinds Attackers Stole Source Code (tpost)
  1881. Mimecast confirms hackers behind SolarWinds supply chain attack accessed limited amount of customer information (The Daily Swig)
  1882. SolarWinds Attackers Accessed Mimecast Source Code (Decipher)
  1883. Mimecast Says SolarWinds Attackers Accessed its ...
  1884. SolarWinds hackers gain access to Mimecast production grid environment
  1885. Mimecast Finds SolarWinds Hackers Stole Some of Its Source Code
  1886. Mimecast dumps SolarWinds after hackers breached its network (IT PRO)
  1887. Mimecast Discovers That Solarwinds Hackers Stole Some of Their Source Code (TheDigitalHacker)
  1888. Patch Management in the Post-SolarWinds Era (secblvd)
  1889. Mimecast reveals source code theft in SolarWinds hack (ZDNet)
  1890. The Cybersecurity 202: Senate panel delves into SolarWinds hack (wapo)
  1891. "The SolarWinds Hack - What we know & what to look for next" -- An MTUG Webinar - Mar 18, 2021 - LA Metropolitan Chamber of Commerce | Lewiston, ME - LA Metropolitan Chamber of Commerce (Lewiston, ME)
  1892. Mimecast dumps SolarWinds after hackers breached its network (The Cyber Security News)
  1893. SecurityScorecard snags $180M Series E to measure a company’s security risk (TechCrunch)
  1894. Mimecast Says SolarWinds Hackers Stole Source Code (SecurityWeek.Com)
  1895. SolarWinds attackers stole Mimecast source code (IT Security Guru)
  1896. Source code for Mimecast stolen for SolarWinds breach (Texas News Today)
  1897. SolarWinds hackers stole Mimecast source code
  1898. HAGENS BERMAN, NATIONAL TRIAL ATTORNEYS, Invites SolarWinds (SWI) Investors with Significant Losses to Contact Firm Before March 5, 2021 Deadline, SEC Investigating Company
  1899. NSA, Homeland Security Push Service to Mitigate Cyber-Attacks (Bloomberg)
  1900. US advised not to criticize Russian & Chinese cyberattacks given its history of doing the same
  1901. Mimecast releases report on SolarWinds security incident investigation | 2021-03-18 (Security Magazine)
  1902. Mimecast's source code stolen in SolarWinds breach
  1903. Bipartisan lawmakers push Biden's Cabinet for answers on fallout from SolarWinds hack (Washington Times)
  1904. Has Your Organization Been Breached By Solar Winds Malware?
  1905. SolarWinds hackers stole source code from email security firm Mimecast
  1906. SolarWinds hackers gain access to Mimecast production grid environment (PG-Intel)
  1907. SolarWinds-linked hacking group SilverFish abuses enterprise victims for sandbox tests (ZDNet)
  1908. Can the Biden Administration Get Russia Policy Right? (Russia Matters)
  1909. Senators press for federal agency accountability over SolarWinds - (FCW)
  1910. Fed CISO DeRusha Calls New Funding ‘Down Payment’ on Security Improvements (MeriTalk)
  1911. The Case for 'Zero Trust' Approach After SolarWinds Attack
  1912. Feds aren't well prepared to spot SolarWinds-style hacks at agencies, CISA official says (CyberScoop)
  1913. TTP Table for Detecting APT Activity Related to SolarWinds and Active Directory/M365 Compromise (Homeland Security Today)
  1914. House Energy Committee Requests SolarWinds Update from Agencies
  1915. Date 2021-03-18

  1916. Mimecast Axes SolarWinds Orion For Cisco NetFlow After Hack
  1917. House lawmakers seek answers on SolarWinds from agency chiefs - (FCW)
  1918. Mimecast dumps SolarWinds Orion for Cisco NetFlow after hack - Software (CRN Australia)
  1919. Mayorkas Addresses Cyber Hacks at House Hearing (MeriTalk)
  1920. Russia's Efforts At Information Warfare Against The West Continue : NPR
  1921. What 2020 taught us about the need for deception technology (scmedia)
  1922. New York Regulator Issues Cyber Insurance Guidelines (Newmeyer Dillion - JDSupra)
  1923. For US cyber defense, helpful hackers are only half the battle (hill)
  1924. Date 2021-03-17

  1925. White House considers cybersecurity ratings to boost visibility - (GCN)
  1926. Microsoft could be set for a US government windfall (TechRadar)
  1927. 3 ways agencies can restore cybersecurity trust - (GCN)
  1928. SolarWinds Attacks Recovery Effort Could Take U.S. Government 18 Months
  1929. Security Vendors Understate Risks in Senate Hearing on SolarWinds
  1930. Date 2021-03-16

  1931. Google, Microsoft Feud Over Antitrust, Hacking Issues (Silicon UK)
  1932. US government to respond to SolarWinds hackers in weeks
  1933. Capitol Hill angry over Microsoft’s security upcharge (POLITICO)
  1934. The US must adopt Software Bill of Materials to thwart cyberattacks (hill)
  1935. Microsoft Pitches Cybersecurity To U.S., (Campaigns & Elections)
  1936. SolarWinds Attacks Recovery Effort Could Take U.S. Government 18 Months (secblvd)
  1937. Cybersecurity Officials Call for Network Visibility, Software Assurance After Russian Hack (FedTech Magazine)
  1938. Michael Dell: Public Cloud Isn’t More Secure Than On (Premise)
  1939. Biden Administration to Respond to SolarWinds Hackers in Weeks, Not Months
  1940. The Obama administration had a plan to stop cyberattacks like SolarWinds—and blew it.
  1941. Top SolarWinds Alternatives (eSecurityPlanet)
  1942. US Should Create New 3-Pronged Approach To Cybersecurity (Law360)
  1943. Exchange Hacks: How Will the Biden Administration Respond?
  1944. Date 2021-03-15

  1945. U.S. government to respond to SolarWinds hackers in weeks: senior official | Article [AMP] (Reuters)
  1946. U.S. government to respond to SolarWinds hackers in weeks: senior official — Agenparl
  1947. US moves closer to retaliation over hacking as cyber woes grow | World (Malay Mail)
  1948. Why ‘blaming the intern’ won’t save startups from cybersecurity liability – TechCrunch (Bestgamingpro)
  1949. SolarWinds and Microsoft hacks spark debate over western retaliation (World News Curatory)
  1950. SolarWinds, SUNBURST, and supply chain security.
  1951. "In Weeks, Not Months," Will the US Government Respond to Solarwinds Hackers Said a Senior Official (TheDigitalHacker)
  1952. U.S. government to respond to SolarWinds hackers in weeks: Senior Official (.:: CHASLES CORP. ::.)
  1953. Date 2021-03-14

  1954. Cisco Talos Intelligence Group (Comprehensive Threat Intelligence: Talos Takes Ep. #44: A roundtable discussion on SolarWinds)
  1955. SolarWinds Case 1:21-cv-00002-RP -- Motion to Consolidate Class Actions (DocumentCloud)
  1956. Despite hacks, US not seeking widened domestic surveillance (FRN)
  1957. SolarWinds Case 1:21-cv-00138-RP Order to consolidate class actions (DocumentCloud)
  1958. (190) Roundtable: What we've learned (and what we still don't know) about SolarWinds (YouTube)
  1959. US moves closer to retaliation over hacking as cyber woes grow
  1960. SolarWinds NYC Carpenters Complaint (DocumentCloud)
  1961. US government to respond to SolarWinds hackers in weeks: Senior official (CNA)
  1962. Despite hacks, Biden admin not planning to step up government surveillance (Hindustan Times)
  1963. Why ‘blaming the intern’ won’t save startups from cybersecurity liability (TechCrunch)
  1964. Date 2021-03-13

  1965. After SolarWinds, Companies Turn to Insurers, Not Feds, for Protection
  1966. Hacked Firms Face ‘Frankenstein’ of State (Based Cyber Notification Laws)
  1967. Relief Package Includes Less for Cybersecurity
  1968. Opinion: A 'Cyber Pearl Harbor' Looms for America Amid Widespread Digital Complacency (Times of San Diego)
  1969. SolarWinds attack and Executive Order on America's Supply Chain illuminate gaps in supply chain risk management, spur innovative solutions by Fortress Information Security
  1970. Why embedded devices are the dangerous blind spot in the SolarWinds attack  (hill)
  1971. There is Still More to SolarWinds Attack (Cyware Alerts - Hacker News)
  1972. Windows Exchange, Senate SolarWinds Hack Hearing & NSA’s Zero Trust Recommendations by TFIR: Open Source & Emerging Technologies (Free Listening on SoundCloud)
  1973. The Impact of the SolarWinds Breach on Cybersecurity
  1974. SolarWinds data breach was warning sign to FINRA, cybersecurity chief says | Secondary Sources | National (Westlaw Today)
  1975. Windows Exchange, Senate's SolarWinds Hack Hearing & NSA’s Zero Trust Recommendations (TFiR: Interviews, News & Analysis by Swapnil Bhartiya)
  1976. Marco to Hold Webinar on SolarWinds Orion Attack
  1977. SolarWinds Co. (NYSE:SWI) Receives Consensus Rating of "Hold" from Brokerages (MarketBeat)
  1978. Evolving Cybersecurity Takes More Than Money
  1979. SolarWinds CEO blames intern for cyber attack (Lexology)
  1980. Why 'Layered Security' Should Be Your New Mantra
  1981. Amundi expects no U.S. sanctions on Russia sovereign debt (Reuters)
  1982. SolarWinds (NYSE:SWI) Takes On Some Risk With Its Use Of Debt (Simply Wall St News)
  1983. Microsoft Probing Whether Leak Played Role in Suspected Chinese Hack (WSJ)
  1984. There’s a vexing mystery surrounding the 0-day attacks on Exchange servers (ars)
  1985. SolarWinds and Microsoft hacks spark debate over western retaliation
  1986. Here's What To Make Of SolarWinds' (NYSE:SWI) Returns On Capital
  1987. Google accuses Microsoft of using 'naked corporate opportunism' to distract from SolarWinds hack (Windows Central)
  1988. Our ongoing commitment to supporting journalism
  1989. The Cybersecurity 202: Democrats' new infrastructure bill highlights cybersecurity concerns (wapo)
  1990. Biden administration to respond in weeks to SolarWinds hackers-senior official | The Mighty 790 KFGO (KFGO)
  1991. Retaliation Options: US Cyber Responses To SolarWinds, Exchange Hacks « Breaking Defense (Defense industry news, analysis and commentary)
  1992. U.S. government to respond to SolarWinds hackers in weeks: senior official
  1993. How Should the U.S. Respond to the SolarWinds and Microsoft Exchange Hacks?  (Lawfare)
  1994. Biden administration to respond in weeks to SolarWinds hackers-senior official (The Star Phoenix)
  1995. SolarWinds Investors Get Lead Plaintiff in Server Hack Risk Case
  1996. Post-SolarWinds, IT departments increase vendor scrutiny (CIO Dive)
  1997. Biden administration mulls software security grades after SolarWinds
  1998. Microsoft: SolarWinds hack was 'largest and most sophisticated attack' ever: Microsoft president Brad Smith, Telecom News, ET Telecom
  1999. SolarWinds stockholders begin documenting financial losses
  2000. US to Respond to SolarWinds Hackers in Weeks: Senior Official (KMJ-AF1)
  2001. U.S. government to respond to SolarWinds hackers in weeks: senior official (Reuters)
  2002. SolarWinds lawsuits merge as stockholders begin documenting financial losses (TerabitWeb Blog)
  2003. Date 2021-03-12

  2004. Nevada CIO says state’s IT is 8 years behind others’ (StateScoop)
  2005. PodcastOne: In the wake of the SolarWinds breach, lawmakers turned to industry for recommendations
  2006. FireEye CEO: Reckless Microsoft hack odd for China
  2007. Russian hack targeting US government places SolarWinds financial model in the cross hairs (KPIC)
  2008. FireEye CEO: Reckless Microsoft hack unusual for China | (leadertelegram.com)
  2009. The SolarWinds Cyber-Attack – The Devastation and Wreckage (Michael Volkov - JDSupra)
  2010. Microsoft: SolarWinds hackers studied Microsoft source code for authentication and email, Telecom News, ET Telecom
  2011. White House Cyber Group Discusses How to Stop Another SolarWinds
  2012. Gary Davis on Twitter: "Lawmakers blame #SolarWinds hack on ‘collective failure’ to prioritize #cybersecurity https://t.co/IIXbsitaBr" / Twitter
  2013. Lawmakers blame SolarWinds hack on 'collective failure' to prioritize cybersecurity
  2014. Patching, with special attention to Hafnium and the rest. Responding to the SolarWinds incident. Hactivists don’t like cameras. Dragnet in the Low Countries.
  2015. Be on the Lookout: Impact of SolarWinds Orion Compromise on
  2016. SolarWinds And Microsoft Exchange Attacks: Lay Down The Cyber Law
  2017. What the Quad Must Learn From the SolarWinds Hack (The National Interest)
  2018. Date 2021-03-11

  2019. Air Force Only Service to Develop Cybersecurity Requirements for Weapon Systems Contracts, GAO Says (Nextgov)
  2020. FireEye and Microsoft Uncover More Malware Strains Used in SolarWinds Hack (Toolbox Security)
  2021. Why the SolarWinds Hack Is a Wake-Up Call (CoFR)
  2022. SolarWinds: 9 federal agencies and about 100 companies hit by SolarWinds hack: The White House, Telecom News, ET Telecom
  2023. Microsoft: SolarWinds, Microsoft, FireEye, CrowdStrike defend actions in major hack: U.S. Senate hearing, Telecom News, ET Telecom
  2024. NCP (National Checklist Program Repository)
  2025. CISA: ‘Identity is everything’ for cyber defense post-SolarWinds (FRN)
  2026. Chinese suspected of two attacks on internet (facing SolarWinds server)
  2027. SolarWinds Unlikely to Be an Isolated Event as Attackers Become More Sophisticated (Infosecurity Magazine)
  2028. The SolarWinds Hack Hits Home (DevPro Journal)
  2029. Kremlin and other Russian official websites down; experts doubt US involvement, World News (wionews.com)
  2030. US 'planning all (out cyberwar on Russia in retaliation for SolarWinds hack' and may take action in next three weeks)
  2031. DHS CISA Shares Remediation, Risk Guidance for SolarWinds Compromise
  2032. Remediating Networks Affected by the SolarWinds and Active Directory/M365 Compromise (CISA)
  2033. Chinese threat actor exploited SolarWinds vulnerability. Second (stage backdoor possibly linked to SolarWinds compromise. Dependency confusion updates.)
  2034. Bill Would Eliminate Immunity for Foreign Hackers (Nextgov)
  2035. Congress's latest hacking investigation should model its most recent (hill)
  2036. Security researchers discover Supernova web shell activity linked to Chinese hackers | 2021-03-10 (Security Magazine)
  2037. Chinese hackers presumably behind SolarWinds hack new evidence revealed (Secure Blink)
  2038. Cyber Command: ‘No evidence’ that SolarWinds attackers compromised DoD networks (The Record by Recorded Future)
  2039. Date 2021-03-10

  2040. ‘Retaliation’ for Russia's SolarWinds Spying Isn't the Answer (WIRED)
  2041. Preparing for Retaliation Against Russia, U.S. Confronts Hacking by China (nyt)
  2042. Will the US Government Recognize SolarWinds as a Cyber Inflection Point? (Data Core Systems)
  2043. U.S. cyberattacks against Russia may be underway in reprisal for SolarWinds hack, experts say (Just The News)
  2044. Biden Plans Cyber Attacks Against Russia For SolarWinds Hack, Ignores Chinese Involvement (National File)
  2045. Understanding Third (Party Hacks, Learning from SolarWinds Hack)
  2046. Latest target for hackers: A popular file-transfer program (WRAL TechWire)
  2047. Is it time to adopt an ‘assumed breach’ cyber policy? (BIC Magazine)
  2048. SolarWinds Hack (CEPA)
  2049. SolarWinds Sunburst backdoor supply chain attack: Why it still matters | Security (ITP.net)
  2050. What to Do About Cybersecurity (Law, Policy -- and IT?)
  2051. The SolarWinds attack and best practices for code (signing)
  2052. CISA demands US govt agencies to update SolarWinds Orion softwareSecurity Affairs
  2053. China (linked hackers exploited SolarWinds software in 2020 breach, researchers say)
  2054. Microsoft: Microsoft failed to shore up defenses that could have limited SolarWinds hack (U.S. senator, Telecom News, ET Telecom)
  2055. US plans mix of 'seen and unseen' actions against Russia over SolarWinds attacks
  2056. Beazley on the implications of the Solar Winds hacking incident (Insurance Business)
  2057. Kremlin calls NYT report on planned U.S. cyberstrikes on Russia 'alarming' (Reuters)
  2058. How the SolarWinds attack may affect your organization's cybersecurity (TechRepublic)
  2059. Kremlin: Report On Planned U.S. Cyberstrikes On Russia 'Alarming'
  2060. Biden challenged by early cyber threats (hill)
  2061. Episode 124: Solarwinds recap (Cyber24)
  2062. New survey examines the impact of SolarWinds breach on cybersecurity | 2021-03-08 (Security Magazine)
  2063. NYSE: SWI Shareholder Notice: Lawsuit against SolarWinds Corporation Announced by Shareholders Foundation | 2021-03-09 | Press Releases (Stockhouse)
  2064. Registration
  2065. More clues appear to link Supernova web shell activity to Chinese hackers (TechRadar)
  2066. Chinese hackers targeted SolarWinds customers in parallel with Russian op (ars)
  2067. Russia Warns Against U.S. Retaliation for SolarWinds Amid Fears of Cyberwar | World Report (US News)
  2068. SolarWinds Attack Could Have Been Much Worse, Former NSA Chief Says | National News (US News)
  2069. Hackers hiding Supernova malware in SolarWinds Orion linked to China
  2070. More clues appear to link Supernova web shell activity to Chinese hackers (TechRadar)
  2071. [Update] SolarWinds Hack Finds Possible Link to China, Say Researchers-- Supernova Malware Detected (Tech Times)
  2072. SolarWinds attack and Executive Order on America's Supply Chain illuminate gaps in supply chain risk management, spur innovative solutions by Fortress Information Security
  2073. Was SolarWinds a Different Type of Cyber Espionage? (Lawfare)
  2074. The SolarWinds Hack Gets Worse, But Offers A Tiny Bit Of Amusement (PC Perspective)
  2075. Security Policies Do Matter, but Really Only So Much
  2076. Bill Would Allow Americans to Sue Foreign Hackers
  2077. Researchers Describe a Second, Separate SolarWinds Attack
  2078. Guidance on Remediating Networks Affected by the SolarWinds and Active Directory/M365 Compromise (CISA)
  2079. Remediation and Hardening Strategies for Microsoft 365 to Defend Against UNC2452
  2080. SolarWinds, cyberattacks (Homeland Security Newswire)
  2081. ‎World Wide Technology (TEC37: 26. Security – Would Zero Trust Have Prevented the SolarWinds Breach? on Apple Podcasts)
  2082. SolarWinds Aftermath Threat Hunting Survey Yields Mixed News
  2083. Date 2021-03-09

  2084. Security report: Lessons learned investigating the SUNBURST software supply chain attack (ITWeb)
  2085. Server Management Software Market Segmentation 2021, by Key Players: Datadog, SolarWinds MSP, ManageEngine, Microsoft, BMC Software, Central Solutions etc. (Breakout Live)
  2086. Researchers Identify More Malware Used By SolarWinds Hack Group
  2087. Cybersecurity in 2021: Stopping the madness (CSO Online)
  2088. Security report: Lessons learned investigating the SUNBURST software supply chain attack (ITWeb)
  2089. Supernova malware clues link Chinese threat group Spiral to SolarWinds server hacks (ZDNet)
  2090. Microsoft adopted ‘aggressive’ strategy for sharing SolarWinds Attack intel (Urgent Comms)
  2091. Hearings On The SolarWinds Hack And Possible Policy Responses - Technology (United States)
  2092. White House juggling response to Microsoft, SolarWinds hacks
  2093. Casting a wide intrusion net: Dozens burned with single hack | (leadertelegram.com)
  2094. Hearings On The SolarWinds Hack And Possible Policy Responses (MarketScreener)
  2095. EXCLUSIVE: I am Groot - POLITICO: one-on (wine with lead house cyber chair)
  2096. New Cyber Insurance Risk Framework Provides Best Practices for the Insurance Industry (Bradley Arant Boult Cummings LLP - JDSupra)
  2097. Gen. Paul Nakasone on CYBERCOM’s Response to SolarWinds Breach, ‘Defend Forward’ Concept
  2098. Proposal Would Let Foreign Gov'ts Be Sued For Cyberattacks (Law360)
  2099. Hacked Companies Caught in Maze of Notification Requirements
  2100. US plans 'a mix of actions' against Russia over SolarWinds cyberattack (Engadget - News WWC)
  2101. Date 2021-03-08

  2102. China’s and Russia’s spying sprees will take years to unpack (ars)
  2103. Microsoft Adopted an 'Aggressive' Strategy for Sharing SolarWinds Attack Intel (News AKMI)
  2104. Microsoft: We've found three more pieces of malware used by the SolarWinds attackers (ZDNet - PressboltNews)
  2105. DIB Take Note: SolarWinds Hack and DHS CISA Emergency Directive on Cyber Vulnerabilities Point to the Need to be Prepared for APTs (Stinson - Government Contracting Matters - JDSupra)
  2106. Did you acquire SolarWinds (SWI) before October 18, 2018? Should management be held responsible for investor losses? Contact Johnson Fistel (OLTNEWS)
  2107. Did You Acquire SolarWinds (SWI) Before October 18, 2018? Should Management Be Held Accountable For Investors Losses? Contact Johnson Fistel SWI
  2108. SolarWinds : Did You Acquire SolarWinds (SWI) Before October 18, 2018? Should Management be Held Accountable for Investors Losses? Contact Johnson Fistel (MarketScreener)
  2109. Casting a wide intrusion net: Dozens burned with single hack
  2110. Casting a wide intrusion net: Dozens burned with single hack (StarTribune)
  2111. Microsoft: We’ve found three more pieces of malware used by the SolarWinds attackers (Bestgamingpro)
  2112. Did You Acquire SolarWinds (SWI) Before October 18, 2018? Should Management be Held Accountable for Investors Losses? Contact Johnson Fistel (NeighborWebSJ)
  2113. SolarWinds Password Fail, Chinese Hacking Exchange, Google to stop Tracking Cookies
  2114. Shareholder Alert: Pawar Law Group Announces A Securities Class Action Lawsuit Against Solarwinds Corporation (SWI)
  2115. GoldMax, GoldFinder, and Sibot, are the 3 new Malwares Used by SolarWinds Hackers (IT Security News)
  2116. Date 2021-03-07

  2117. Protect, Detect, and Respond to Supply Chain Cyber Attacks (e.g. Solarwinds) Using Splunk Enterprise Managed Security Services - (Redmondmag.com)
  2118. Who Broke SolarWind with Mat and Mike - S3E8 | The Cyber Tap | Podcasts on Audible (Audible.com)
  2119. CMMC Project Update: Rule Comments and the Impending Split (ClearanceJobs)
  2120. Researchers Find 3 New Malware Strains Used by SolarWinds Hackers (WP Guy News)
  2121. Microsoft shares details on three new malware strains used in SolarWinds hack
  2122. SolarWinds Orion Security Breach: Cyberattack Timeline and Hacking Incident Details (ChannelE2E)
  2123. SWI DEADLINE ALERT: ROSEN, TOP RANKED IVNESTOR COUNSEL, Encourages SolarWinds Corporation Investors with Large Losses to Secure Counsel Before Important Deadline Today in Securities Class Action (SWI)
  2124. Second (stage backdoor in SolarWinds compromise victim. Exchange Server exploitation. RedEcho as staging. Leaky clouds.)
  2125. U.S. Weapons Programs Lack 'Key' Cybersecurity Measures (tpost)
  2126. Did You Acquire SolarWinds (SWI) Before October 18, 2018? Should Management be Held Accountable for Investors Losses? Contact Johnson Fistel
  2127. SolarWinds SUNBURST Backdoor DGA and Infected Domain Analysis (Cybersecurity Insiders)
  2128. Second (stage backdoor possibly linked to Solorigate campaign. Hafnium exploits Exchange Server vulnerabilities.)
  2129. This Week In SolarWinds, with a key unexpected lesson (The Business of Tech)
  2130. GoldMax, GoldFinder, and Sibot, 3 new malware used by SolarWinds attackers (IT Security News)
  2131. Microsoft Reveals 3 New Malware Variants Relating to SolarWinds Cyberattack
  2132. Date 2021-03-06

  2133. The danger in calling the SolarWinds breach an ‘act of war’
  2134. Congressional Hearings on SolarWinds Hack
  2135. Microsoft, FireEye Unmask More Malware Linked to SolarWinds Attackers (tpost)
  2136. SolarWinds Hack Potentially Linked to Turla APT (tpost)
  2137. SolarWinds blames at least some of its poor cybersecurity on an intern and a bad password.
  2138. Lesson From SolarWinds Attack: It's Time to Beef Up IAM
  2139. SolarWinds hack a wake-up call to the tech sector (GZERO Media)
  2140. Researchers Disclose More Malware Used in SolarWinds Attack
  2141. The March IronNet Threat Intelligence Brief (secblvd)
  2142. China’s and Russia’s Spying Sprees Will Take Years to Unpack (WIRED)
  2143. Citigroup Begins Coverage on SolarWinds (NYSE:SWI) (MarketBeat)
  2144. SolarWinds : Announcing ‘Cyber Insurance Risk Framework,' NY DFS Joins OFAC In Discouraging Carriers From Making Ransomware Payments (MarketScreener)
  2145. Biden makes cybersecurity ‘top priority’ in national security guidance (FRN)
  2146. Lessons from the SolarWinds Breach (BeyondTrust)
  2147. What’s the message about Cloud Contracts since AWS declined to testify to the Senate about SolarWinds? | Blogs | Internet, IT & e-Discovery Blog (Foley & Lardner LLP)
  2148. Microsoft, FireEye Uncover More Malware Used in the ...
  2149. SolarWinds Deadline Alert
  2150. Microsoft: We've found three more pieces of malware used by the SolarWinds attackers (ZDNet)
  2151. SWI Deadline: Bronstein, Gewirtz & Grossman, LLC Reminds SolarWinds Corporation Shareholders of Class Action and Lead Plaintiff Deadline: March 5, 2021
  2152. DIB Take Note: SolarWinds Hack and DHS CISA Emergency Directive on Cyber Vulnerabilities Point to the Need to be Prepared for APTs (Lexology)
  2153. After SolarWinds breach, White House preps executive order on software security (CyberScoop)
  2154. SWI FILING DEADLINE TOMORROW: Bernstein Liebhard LLP Reminds Investors of the Deadline to File a Lead Plaintiff Motion in a Securities Class Action Lawsuit Against SolarWinds Corporation
  2155. CYBERCOM Plays ‘Key Role’ As SolarWinds Unfolds: Gen. Nakasone « Breaking Defense (Defense industry news, analysis and commentary)
  2156. SWI ALERT: The Klein Law Firm Announces a Lead Plaintiff Deadline of March 5, 2021 in the Class Action Filed on Behalf of SolarWinds Corporation Limited Shareholders
  2157. Microsoft Corporation (NASDAQ:MSFT), Solarwinds, Inc. (NYSE:SWI) - Microsoft's Emergency Security Patch After Cyber Attack Attracts White House Monitoring: Reuters (Benzinga)
  2158. It’s Time for a Cybersecurity Quid Pro Quo (Nextgov)
  2159. Risky business: 3 timeless approaches to reduce security risk in 2021 (Help Net Security)
  2160. The Cybersecurity 202: Companies are doing a terrible job of reporting cybersecurity risks to investors, a new study says (wapo)
  2161. SolarWinds Hackers Hit Qualys, Other Cybersecurity Vendors (SDxCentral)
  2162. Lawsuits Filed Against SWI, XOM and ATNX (Jakubowitz Law Pursues Shareholders Claims)
  2163. Cyber Attacks: Tech’s natural disasters (Gadget)
  2164. Atense Says Its Computer Vaccine Will Prevent Future &#8220;SolarWinds&#8221; Hacking Events - Press Release (Digital Journal)
  2165. Microsoft Drops 'Solorigate' for 'Nobelium' in Ongoing SolarWinds Attack Investigations - (Redmondmag.com)
  2166. Microsoft discovers more malware used by SolarWinds attacker while FireEye finds new backdoor (IT World Canada News)
  2167. Microsoft Adopted an 'Aggressive' Strategy for ...
  2168. Researchers Find 3 New Malware Strains Used by SolarWinds Hackers
  2169. SolarWinds: "IT's Pearl Harbor." (InsiderPro)
  2170. FINAL DEADLINE TOMORROW: The Schall Law Firm Announces the Filing of a Class Action Lawsuit Against SolarWinds Corporation and Encourages Investors with Losses to Contact the Firm
  2171. Microsoft reveals GoldMax, Sibot and GoldFinder new malware strains used by SolarWinds hackers (Cyber Security Review)
  2172. Three New Malware Strains Linked to SolarWinds Hackers (TerabitWeb Blog)
  2173. The Klein Law Firm Reminds Investors of Class Actions on Behalf of Shareholders of SWI, VLDR and REGI
  2174. Date 2021-03-05

  2175. SolarWinds Incident May Bring Data Breach Notification Rules
  2176. DEADLINE ALERT for SWI, QS, TCDA: Law Offices of Howard G. Smith Reminds Investors of Class Actions on Behalf of Shareholders
  2177. Is Solarwinds safe? - General Software Forum (Spiceworks)
  2178. New SUNSHUTTLE Second-Stage Backdoor Uncovered Targeting U.S.-Based Entity; Possible Connection to UNC2452 (fireeye)
  2179. Date 2021-03-04

  2180. SolarWinds blaming intern is symptom of "security failures"
  2181. Vinoth Kumar on Twitter: "https://t.co/H18DCF44El is an intern service according to the Solarwinds ceo so an intern who worked for only for 3 months(2017) had an access to the FTP server and credential was not rotated after he left. So so
  2182. U.S. Matches EU, U.K. Sanctions on Russia for Navalny Attack (Bloomberg)
  2183. SolarWinds Says It’s Cooperating with Probes by SEC, Justice
  2184. How to prevent data leaks
  2185. Recovering from the SolarWinds hack could take 18 months (Worldwide Tweets)
  2186. SolarWinds Attack Prompts Calls for Companies to Disclose Hacks (Bloomberg)
  2187. SolarWinds Says It’s Cooperating with Probes by SEC, Justice (Bloomberg)
  2188. Will the SolarWinds hack make us tighten security in the tech industry?
  2189. FBI Director Suggests Multi-Pronged Response to SolarWinds Hack (News Talk WBAP-AM)
  2190. SolarWinds executives blame intern for leaked password (Cloud7 News)
  2191. SolarWinds Hacking Damage Could Take up to 18 Months to Recover (Tech Times)
  2192. Cloud Vs On (premise Debate Flares Up In The Wake Of Solarwinds Attack)
  2193. CLASS ACTION UPDATE for SWI, JFU and CLOV: Levi & Korsinsky, LLP Reminds Investors of Class Actions on Behalf of Shareholders
  2194. Okta CEO: After SolarWinds hack, leaders must think about 4 points
  2195. Microsoft: SolarWinds Attack Highlights Growing Sophistication of Nation-State Actors (Infosecurity Magazine)
  2196. SolarWinds CEO Blames Intern for GitHub Password Fiasco (Toolbox Security)
  2197. Cybersecurity and IT top GAO’s High Risk List, yet again
  2198. SolarWinds attack – What is Known and How to Stay Protected (Check Point Software)
  2199. Cybersecurity Journalist says SolarWinds Hack is a “Harbinger” of Threats to Come — Fraud Conference News
  2200. A Briefing on the SolarWinds Threat (ACT-IAC)
  2201. How SolarWinds Busted Up Our Assumptions About Code ...
  2202. SolarWinds Senate Hearing: Moving Forward It’s All About Zero Trust (secblvd)
  2203. SolarWinds Says SEC, DOJ, State AGs Probing Cyberhack (Law360)
  2204. CISA Official Calls for Update of Identity Management Guidance in Wake of SolarWinds Compromise (Nextgov)
  2205. Microsoft opens CodeQL queries to public after SolarWinds hack
  2206. Blinken vows renewed focus on emerging tech after hack (hill)
  2207. Best practices for Securing Office 365 against pervasive cloud collaboration risks (secblvd)
  2208. Still more questions than answers on SolarWinds attack - (Defense Systems)
  2209. SolarWinds Senate Hearing: Moving Forward It’s All About Zero Trust
  2210. What happened at SolarWinds? - sunburst in action! (Stinet)
  2211. Date 2021-03-03

  2212. SolarWinds faces an SEC inquiry following insider stock sales that took place before Russian hack (wapo)
  2213. SolarWinds security fiasco may have started with simple password blunders (ZDNet)
  2214. Incident Response to SolarWinds Orion Software Compromise for SMEs
  2215. After SolarWinds debacle, the U.S. needs to keep software makers from being hurt by cost (cutting owners)
  2216. Massive SolarWinds Hack Prompts Up to $25 Million in New Expenses
  2217. Equifax CISO Jamil Farshchi on SolarWinds and Supply Chains
  2218. SolarWinds: Undervalued Despite The ORION Hack (NYSE:SWI) (Seeking Alpha)
  2219. What the SolarWinds Attacks Mean for Cloud Data Protection - (Redmondmag.com)
  2220. SolarWinds: Look Beyond The Hack (NYSE:SWI) (Seeking Alpha)
  2221. If the Walls Fall: Federal Agencies Must Layer Cyber Defenses to Ensure Data Protection (MeriTalk)
  2222. National Security Risks of Late-Stage Capitalism (secblvd)
  2223. The SolarWinds Body Count Now Includes NASA and the FAA (WIRED)
  2224. SHAREHOLDER ALERT: Pawar Law Group Announces a Securities Class Action Lawsuit Against SolarWinds Corporation (SWI)
  2225. Cyber risks loom over Covid-prompted corporate IT shifts (POLITICO)
  2226. NTIA Software Component Transparency (National Telecommunications and Information Administration)
  2227. Sai Huda’s best-selling book Next Level Cybersecurity reveals signals missed in world’s largest hacks such as SolarWinds (EIN Presswire)
  2228. SolarWinds Orion Web Performance Monitor (WPM) Remote Detection (Tenable®)
  2229. How SolarWinds is turning the Orion breach into competitive advantage (Weirdware)
  2230. SolarWinds Cyberattack Prompts Calls for Aggressive Countermeasures | The Well News (Pragmatic, Governance, Fiscally Responsible, News & Analysis)
  2231. SolarWinds Blames Intern for Weak Password That Led to Biggest Attack in 2020 (TI Forense)
  2232. Cloud (based dev teams must shift security left to avoid fate of SolarWinds)
  2233. SolarWinds (Morgan Stanley Technology, Media and Telecom Conference)
  2234. Comment: Mystery — and fear — mounts over SolarWinds hack (HeraldNet.com)
  2235. NYSE:SWI Shareholder Notice: Deadline on March 5, 2021 in Lawsuit Against SolarWinds Corporation - Press Release (Digital Journal)
  2236. Secure by Design: Our Plan for a Safer SolarWinds and Customer Community (Orange Matter)
  2237. SolarWinds is being investigated by the Securities and Exchange Commission, filing shows (MarketWatch)
  2238. HAGENS BERMAN, NATIONAL TRIAL ATTORNEYS, Invites SolarWinds (SWI) Investors with Significant Losses to Contact Firm Before March 5, 2021 Deadline, SEC Investigating Company
  2239. SolarWinds, Cyber ‘Regression,’ CDM Loom Large in GAO High (Risk Update – MeriTalk)
  2240. Wray hints at federal response to SolarWinds hack (hill)
  2241. SolarWinds: Intern leaked passwords on GitHub (secblvd)
  2242. SolarWinds executives blame intern for 'solarwinds123' password lapse
  2243. SolarWinds Corporation Investors: Last Days to Participate Actively in the Class Action Lawsuit; Portnoy Law Firm
  2244. AWS Used By Bad Guys: SolarWinds Hackers Used Elastic Compute Cloud (CTOvision.com)
  2245. SolarWinds reports $3.5 million in expenses from supply (chain attack)
  2246. Expert Reaction On Solarwinds Blames Intern For Weak Passwords (Information Security Buzz)
  2247. The Law Offices of Frank R. Cruz Reminds Investors of Looming Deadline in the Class Action Lawsuit Against SolarWinds Corporation (SWI)
  2248. Extreme : SolarWinds – A Supply Chain Compromise (MarketScreener)
  2249. Hacking group targets organizations via Microsoft server software -researcher | WKZO | Everything Kalamazoo (590 AM · 106.9 FM)
  2250. Biden Administration Sanctions Russia Over Kremlin Critic Alexei Navalny’s Poisoning (WSJ)
  2251. SolarWinds (A Supply Chain Compromise)
  2252. Document
  2253. Solarwinds Form 10-K filing 2020-12 (31)
  2254. Breached software firm SolarWinds faces SEC inquiry after insider stock sales (Flipboard)
  2255. Recovering from the SolarWinds hack could take 18 months (MIT Technology Review)
  2256. The Law Offices of Frank R. Cruz Reminds Investors of Looming Deadline in the Class Action Lawsuit Against SolarWinds Corporation (SWI) (bizwire)
  2257. cybersecurity: Tech executives face round two of Congressional grilling over SolarWinds breach, Telecom News, ET Telecom
  2258. The Gross Law Firm Announces Class Actions on Behalf of Shareholders of SWI, FUBO and MPLN
  2259. Date 2021-03-01

  2260. Jeff Elder on Twitter: "SolarWinds leaders told Congress today the password "solarwinds123" was a mistake by an intern. An email from the company in 2019 links the issue to "publicly accessible" data and "exposed credentials." https://t.co/UTfYWYNTFP" / T
  2261. At House SolarWinds hearing, bipartisan lawmakers announce breach disclosure bill (TerabitWeb Blog)
  2262. Former SolarWinds CEO blames intern for ‘solarwinds123’ password leak (WKSM-FM)
  2263. Jeff Elder on Twitter: "SolarWinds leaders told Congress the password "solarwinds123" was a quickly fixed intern's error. Records show it was a publicly accessible software (update server with password visible for two years. A company email from 2019 notes)
  2264. Solarwinds blamed intern for weak password – experts have doubts (FR24 News English)
  2265. SolarWinds Officers Blame Intern for ‘solarwinds123’ Password (The Times Hub)
  2266. Congress has new appetite for breach law following SolarWinds hack: lawmaker | Business Information & News | FE (Westlaw Today)
  2267. Solarwinds blamed intern for weak password ( experts have doubts)
  2268. Experts Call for Increased Cyber Info Sharing in Wake of SolarWinds Breach (MeriTalk)
  2269. Accusation: Microsoft failed with security in the SolarWinds hack (Born's Tech and Windows World)
  2270. SolarWinds Officials Blame Intern for ‘solarwinds123’ Password
  2271. The SolarWinds Body Count Now Includes NASA and the FAA (Tech Exec)
  2272. RABET (V Pilot Update and SolarWinds Mitigations)
  2273. Former SolarWinds CEO blames the intern for the “solarwinds123” password leak (Security – 6Park News En)
  2274. SHAREHOLDER ALERT: SWI QS CLOV: The Law Offices of Vincent Wong Reminds Investors of Important Class Action Deadlines
  2275. SolarWinds hack pits Microsoft against Dell, IBM over how companies store data
  2276. Solarwinds Class Action Reminder
  2277. Congress has new appetite for breach law following SolarWinds hack - Security (iTnews)
  2278. Former SolarWinds CEO Blames Intern for Password Security Breach
  2279. Hearing on Hack Prompts Call for Review of Government’s Cloud Procurement (Nextgov)
  2280. Hackers seized on the pandemic. Some states are fighting back | National (bakersfield.com)
  2281. Buy Palo Alto Networks (PANW) On Weakness; Unlocking Value Of Cloud Business (Seeking Alpha)
  2282. iTWire (Microsoft chief's claims on cloud security result in sharp rejoinder)
  2283. ‘The Marriage Pact’ and the risks we take with data (Charlotte Observer)
  2284. iTWire (John Capobianco)
  2285. Former SolarWinds CEO blames intern for "solarwinds123" password leak (CNNPolitics)
  2286. Microsoft slams Amazon's AWS over Solarwinds silence (MSPoweruser)
  2287. SolarWinds to spend up to US$25M on security following attack - Software (CRN Australia)
  2288. FireEye cyber CEO: American internet users will be targeted in next war
  2289. Jake Williams on Twitter: "I've been thinking a LOT about Brad Smith's testimony this week about #SolariGate. He repeatedly implies that if organizations "just" adopt a cloud first model, they won't experience these sorts of attacks. I called that reckles
  2290. CyberSec Chey on Twitter: "Former SolarWinds CEO ("We had no password rules, didn't audit accounts, and were basically crap at security but, hey, that's why I got the big bucks!"" / Twitter)
  2291. Senate Intelligence Hearing on SolarWinds Hacking (C-SPAN.org)
  2292. Date 2021-02-28

  2293. Microsoft could've prevented some SolarWinds damage (IT Security Guru)
  2294. Katko Opening Statement at Hearing on SolarWinds Cyber Campaign - Committee on Homeland Security (Republicans)
  2295. The SolarWinds Hack and Its Hidden Impacts on Small & Medium Size Enterprises (Fairfax County EDA)
  2296. SolarWinds hack calls for data breach laws, cyber funding, lawmaker told | Secondary Sources | National (Westlaw Today)
  2297. Miller-Meeks says ‘SolarWinds’ hack a wake up call for all (Sioux County Radio)
  2298. WEBINAR: How to avoid being the next SolarWinds security incident Tickets, Thu, Mar 4, 2021 at 10:00 AM (Eventbrite)
  2299. Risk & Repeat: Inside the SolarWinds Senate hearing
  2300. Basic cybersecurity standards must start with procurements, experts say
  2301. File Integrity Monitoring Market Current and Future Demand 2027 (Solarwinds, Alienvault, Logrhythm, Trustwave, Manageengine, Trend Micro, and more – NY Market Reports)
  2302. Microsoft: We've open-sourced this tool we used to hunt for code by SolarWinds hackers (ZDNet)
  2303. U.S. Government Cybersecurity Vulnerabilities Flow Down to Private Companies and Federal Court Litigants (New York Law Journal)
  2304. US may announce new sanctions on Russia within weeks - White House press secretary - World (TASS)
  2305. Former NSA and Cyber Command Chief Keith Alexander on SolarWinds, Cyberwar, and China (The Record by Recorded Future)
  2306. SolarWinds Executives Blame Intern for Leaking Password 'solarwinds123', Leading to Largest Security Breach in The US (Tech Times)
  2307. Over 18,000 companies attacked - Microsoft slams Google & Amazon for hiding information (Gizchina.com)
  2308. Microsoft releases open (source CodeQL queries to assess Solorigate compromiseSecurity Affairs)
  2309. Cyber Week in Review: February 26, 2021 (CoFR)
  2310. Here's Why I Continue to Be on the Zscaler Bandwagon (RealMoney)
  2311. Microsoft Conclusion on SolarWinds Hack 'Conflicts' with Other Messages
  2312. The SolarWinds Body Count Now Includes NASA and the FAA (WIRED)
  2313. SolarWinds’ security practices questioned by lawmakers following cyber attack
  2314. Tech executives testify in Solorigate hearing. Accellion breach updates. Silver Sparrow targets Macs.
  2315. Critical VMware vSphere Vulnerability Is a Must (Patch)
  2316. Former SolarWinds CEO Blames Intern for “solarwinds123” Password Leak (FR24 News English)
  2317. Microsoft’s Brad Smith Drags AWS, Google Over SolarWinds Response
  2318. Microsoft makes CodeQL queries public post SolarWinds attack
  2319. Kamala Harris To Prioritize Cybersecurity And Global Health In Foreign Policy Platform (MITechNews)
  2320. SolarWinds Hack Pits Microsoft Against Dell, IBM Over How Companies Store Data (WSJ)
  2321. Microsoft president criticizes Amazon and Google's public response to SolarWinds hack (Washington Times)
  2322. RABET-V Pilot Update and SolarWinds Mitigations (NASS)
  2323. Former SolarWinds CEO blames intern for 'solarwinds123' password leak | (foxcarolina.com)
  2324. MSFT Stock - Microsoft makes CodeQL queries public post SolarWinds attack (Fintech Zoom - World Finance)
  2325. SolarWinds' Former CEO Blames Intern for 'solarwinds123' Password Leak (Slashdot)
  2326. Oversight and Homeland Security Committees Discussed Next Steps for Government and Private Tech Following SolarWinds Breach (House Committee on Homeland Security)
  2327. Date 2021-02-27

  2328. Haeggquist & Eck, LLP Is Investigating Claims Against SolarWinds Corporation’s Directors and Officers for Breach of Fiduciary Duty (bizwire)
  2329. Assessing Fallout from the SolarWinds Breach (eWEEK)
  2330. Lawmakers angered over Amazon’s lack of public disclosure on SolarWinds hack (MarketWatch)
  2331. SOLARWINDS SHAREHOLDER ALERT BY FORMER LOUISIANA ATTORNEY GENERAL: Kahn Swick & Foti, LLC Reminds Investors with Losses in Excess of $100,000 of Lead Plaintiff Deadline in Class Action Lawsuits Against SolarWinds Corporation (SWI)
  2332. AWS: SolarWinds hackers used our elastic compute cloud - Security (CRN Australia)
  2333. Here's the Big Problem With Too Much Trust
  2334. SolarWinds Update: Russian Threat-Actor Re (Used Components from Other)
  2335. Former SolarWinds CEO blames intern for "solarwinds123" password leak (CNNPolitics)
  2336. Microsoft Releases Queries for SolarWinds Attack Detection
  2337. Solarwinds Corporation (SWI) Q4 2020 Earnings Call Transcript (The Motley Fool)
  2338. Microsoft shares tool to hunt for compromise in SolarWinds breach (CyberScoop)
  2339. It’s Not Such a Breeze: Assessing Your Service Providers After SolarWinds (New York Law Journal)
  2340. Watch live: Congressional hearing on SolarWinds breach (hill)
  2341. SolarWinds Plans Cybersecurity Investment After Supply Chain Compromise (ExecutiveBiz)
  2342. Fallout From the SolarWinds Hack (Bloomberg)
  2343. Miller-Meeks says 'SolarWinds' hack a wake up call for all (Radio Iowa)
  2344. Hillicon Valley: Second SolarWinds hack hearing | TikTok to settle privacy lawsuit | Facebook apologizes for removing lawmaker post (hill)
  2345. Congress has new appetite for breach law following SolarWinds hack -lawmaker (The Star Phoenix)
  2346. The anatomy of the SolarWinds attack chain (ITWeb)
  2347. SHAREHOLDER ALERT: Levi & Korsinsky, LLP Notifies Shareholders of SolarWinds Corporation of a Class Action Lawsuit and a Lead Plaintiff Deadline of March 5, 2021 (SWI)
  2348. CrowdStrike Exec Points to Active Directory 'Structural Problems' in Senate Solorigate Hearing - (Redmondmag.com)
  2349. Date 2021-02-26

  2350. SolarWinds Hackers Targeted Cloud Services as a Key Objective  (AI Trends)
  2351. SolarWinds, SUNBURST, and the Latest in Supply Chain Security, Compromises, & Breach Litigation | Events  ( Crowell & Moring LLP)
  2352. ‎16 Minutes News by a16z on Apple Podcasts
  2353. SolarWinds hackers targeted NASA, Federal Aviation Administration networks
  2354. First Blackbaud, then SolarWinds. Supply chain cyber (attacks are proliferating – how secure is your business?)
  2355. Netenrich and Industry Leaders Discuss the Rise in Third Party Attacks Post (SolarWinds and Techniques to Maximize Security Effectiveness)
  2356. Tech Talk: SolarWinds, Microsoft, FireEye, CrowdStrike defend actions in major hack: US Senate hearing
  2357. DEADLINE ALERT: Bragar Eagel & Squire, P.C. Reminds Investors That a Class Action Lawsuit Has Been Filed Against SolarWinds Corporation and Encourages Investors to Contact the Firm (Benzinga)
  2358. SolarWinds hack was work of 'at least 1,000 engineers', tech executives tell Senate
  2359. White House plans executive action in response to massive breach - (Defense Systems)
  2360. SolarWinds Corporation Investors: Last Days to Participate Activ (The Cowboy Channel)
  2361. AWS linked to SolarWinds hack - Security (CRN Australia)
  2362. Microsoft: No Evidence SolarWinds Was Hacked Via Office 365
  2363. Tech firms say there's little doubt Russia behind major hack (LV Sun)
  2364. IPAM Software Market to See Huge Growth by 2025 (Infoblox, SolarWinds Worldwide, Cisco Systems – NY Market Reports)
  2365. Infosec expert says mandatory cyber incident reporting is worth considering in Canada (IT World Canada News)
  2366. Hillicon Valley: Biden signs order on chips | Hearing on media misinformation | Facebook's deal with Australia | CIA nominee on SolarWinds (hill)
  2367. SolarWinds Orion Network Performance Monitor Installed (Windows) (Tenable®)
  2368. Guest post: Kurt Sanger on “The ‘SolarWinds’ Hack and the Need to Reframe U.S. Cybersecurity Information Sharing” (Lawfire)
  2369. At least 1,000 engineers worked on supply chain hack, tech exec says - (GCN)
  2370. Biden administration prepares to impose sanctions on Russia over Navalny poisoning, SolarWinds hack (english.lokmat.com)
  2371. Cloud Monitoring Market 2025 Global Industry Trends and Forecast: CA Technologies, Solarwinds, Dynatrace, Idera, Sevone, Cloudyn, Zenoss, Datadog, Kaseya, Logicmonitor, Opsview (NY Market Reports)
  2372. Katko Calls on Administration to Fully Leverage CISA Capabilities in SolarWinds Response - Committee on Homeland Security (Republicans)
  2373. Committee on Homeland Security (Letter from John Katko)
  2374. DEADLINE ALERT: Bragar Eagel & Squire, P.C. Reminds Investors That a Class Action Lawsuit Has Been Filed Against SolarWinds Corporation and Encourages Investors to Contact the Firm (bizwire)
  2375. Microsoft president asks Congress to force private (sector orgs to publicly admit when they've been hacked • The Register)
  2376. More Money Won’t Prevent the Next SolarWinds - But Better Detection Strategies Will (secblvd)
  2377. DOJ could start looking closer at cybersecurity fraud on government technology providers (FRN)
  2378. Data Archiving Software Market 2025 Global Industry Trends and Forecast: SolarWinds MSP, TitanHQ, CloudBerry Lab, DocuXplorer Software, Jatheon Technologies, GFI Software, ShareArchiver, Relay Communications, Professional Advantage, MessageSolution (NY)
  2379. SolarWinds (SolarWinds Announces Fourth Quarter 2020 Results)
  2380. SolarWinds Corp. to Host Earnings Call
  2381. King: SolarWinds Hack Highlights Need for Increased Deterrence of Cyberattacks
  2382. SolarWinds: 4Q Earnings Snapshot
  2383. The massive Solarwinds attack is still shrouded in mystery
  2384. SolarWinds stock rallies after profit, revenue rise above expectations (MarketWatch)
  2385. SolarWinds Announces Fourth Quarter 2020 Results
  2386. Amazon’s Lack of Public Disclosure on SolarWinds Hack Angers Lawmakers (WSJ)
  2387. CrowdStrike: After The SolarWinds Breach, This Is Your Best Cybersecurity Stock (CRWD) (Seeking Alpha)
  2388. SolarWinds Corp. to Host Earnings Call
  2389. Amazon com : Lack of Public Disclosure on SolarWinds Hack Angers Lawmakers (MarketScreener)
  2390. More Money Won’t Prevent the Next SolarWinds (But Better Detection Strategies Will)
  2391. Senator Collins Questions Technology Leaders on SolarWinds Hack That Compromised Data Across Multiple Federal Agencies (Senator Susan Collins)
  2392. How to Avoid Falling Victim to a SolarWinds (Style ...)
  2393. SolarWinds Profit Forecast Trails Estimates After Hack (Bloomberg)
  2394. SolarWinds: 4Q Earnings Snapshot (Lexington Herald Leader)
  2395. SolarWinds Announces Fourth Quarter 2020 Results (bizwire)
  2396. SolarWinds (SWI) Q4 Earnings and Revenues Beat Estimates (Nasdaq)
  2397. The Law Offices of Frank R. Cruz Announces the Filing of a Securities Class Action on Behalf of SolarWinds Corporation (SWI) Investors | State (montereycountyweekly.com)
  2398. Open Text : After SolarWinds, worldwide governments can trust no one (MarketScreener)
  2399. [PDF] Global Data Archiving Software Market 2021 (SolarWinds MSP, TitanHQ, CloudBerry Lab – The Courier)
  2400. File Integrity Monitoring Market to Watch: Solarwinds, Alienvault, Logrhythm, Trustwave, Manageengine, Trend Micro (NY Market Reports)
  2401. Website Monitoring Software Market 2021 Precise Outlook – SolarWinds, AlertBot (InfoGenius), Zoho, LogicMonitor, New Relic, SmartBear, Nagios, Freshworks, Monitis (FLA News)
  2402. The Klein Law Firm Reminds Investors of Class Actions on Behalf of Shareholders of SWI, FUBO and EBIX
  2403. SolarWinds: 4Q Earnings Snapshot | Business News (scnow.com)
  2404. Detecting and Responding to SolarWinds Infrastructure Attack with Cisco Secure Analytics (Cisco Blogs)
  2405. CrowdStrike Slams Microsoft Over SolarWinds Hack (Unified Networking)
  2406. SolarWinds To Spend Up To $25M On Security Following Attack
  2407. Microsoft shares CodeQL queries to scan code for SolarWinds (like implants)
  2408. U.S. and EU prepare new rounds of sanctions against Russia (MarketWatch)
  2409. AWS: SolarWinds Hackers Used Our Elastic Compute Cloud
  2410. Krebs Lays Out CISA Bite-Back at Health (Sector Hackers – MeriTalk)
  2411. Cyber (pandemic: The most notable cyber attacks of 2020)
  2412. Cyber Diplomacy Act aims to elevate America's global cybersecurity standing (CSO Online)
  2413. SolarWinds Revenue, Earnings After Security Breach (MSSP Alert)
  2414. CIA nominee: Cyber threats are 'ever greater risk' for U.S. society - (FCW)
  2415. 10 Security Quotes: Microsoft, CrowdStrike, SolarWinds, and FireEye Talk to Congress
  2416. US Senators, tech execs recommend hack reporting requirement, Technology (THE BUSINESS TIMES)
  2417. Tech exec to Congress: Supply chain hack took 1,000 engineers - (Defense Systems)
  2418. Microsoft Releases Free Tool for Hunting SolarWinds ...
  2419. Ex-NSA chief: No idea how badly SolarWinds hack harmed security (The Jerusalem Post)
  2420. SWI SHAREHOLDER FILING DEADLINE: Bernstein Liebhard LLP Reminds Investors of the Deadline to File a Lead Plaintiff Motion in a Securities Class Action Lawsuit Against SolarWinds Corporation (GuruFocus.com)
  2421. Bloomberg
  2422. Cloud Email Security Software Market to Witness Astonishing Growth With Vital Key Players | Proofpoint, SpamTitan, Barracuda, SolarWinds – KSU (Sentinel)
  2423. Haeggquist & Eck, LLP Is Investigating Claims Against SolarWinds Corporation’s Directors and Officers for Breach of Fiduciary Duty
  2424. White House Releases Executive Order on America's Software Supply Chains (secblvd)
  2425. IDX Introduces Cybersecurity Healthcheck to Identify Security...
  2426. Our Dire Need for a National Cybersecurity Agency
  2427. Huawei backs supply chain security standards in wake of SolarWinds breach (hill)
  2428. Executive Order Focuses on Supply Chain Risk Management
  2429. The Top Free Tools for Sysadmins in 2021
  2430. Watch: Risk Advisory Services: SolarWinds Cyber Attack and its Impact on your Cybersecurity Insurance
  2431. Microsoft Releases Free Tool for Hunting SolarWinds ...
  2432. The SolarWinds of Change are Blowing in the Need for Tech Collaboration (Law.com)
  2433. US senator claims Microsoft failed to fix cloud holes before SolarWinds hack - Security (iTnews)
  2434. Microsoft failed to shore up defenses that could have limited SolarWinds hack: U.S. senator | Y100 WNCY | Your Home For Country & Fun (Green Bay, WI)
  2435. Date 2021-02-25

  2436. SolarWinds attack could have happened to anyone, CEO says - (GCN)
  2437. Rear door in SolarWinds Orion - update as soon as possible (updated 2020-12-29) (www.cert.se)
  2438. The US Senate is grilling Microsoft and SolarWinds over last year's historic cyberattack (Markets Insider)
  2439. STAR Webcast: Making sense of SolarWinds through the lens of MITRE ATT&CK(R) (SANS Institute)
  2440. SolarWinds, Microsoft, FireEye, CrowdStrike defend actions in major hack (U.S. Senate hearing)
  2441. Google trying to put Microsoft on the spot at SolarWinds hearing
  2442. SolarWinds hack worse than thought (Senate panel)
  2443. After Russian Cyberattack, Looking for Answers and Debating Retaliation (nyt)
  2444. A digital strategy to defend the nation (Microsoft On the Issues)
  2445. Capitol Hill’s busy day: Confirmation hearings, updates on the Russian hacking attack and more. (nyt)
  2446. Tech firms say there's little doubt Russia behind major hack
  2447. SolarWinds, Microsoft, FireEye, CrowdStrike executives face U.S. Senate grilling | Y100 WNCY | Your Home For Country & Fun (Green Bay, WI)
  2448. SolarWinds, Microsoft, FireEye, CrowdStrike defend actions in major hack - U.S. Senate hearing (Reuters)
  2449. SolarWinds hack worse than thought -Senate panel (Reuters)
  2450. Tech firms say there's little doubt Russia behind major hack (StarTribune)
  2451. US Senate Intelligence Committee To Hold Hearing On SolarWinds Hack February 23 - Notice (UrduPoint)
  2452. Hearings (Intelligence Committee)
  2453. SolarWinds Shareholder Alert
  2454. SolarWinds cybersecurity breach: How it happened and Biden’s response (The Anchor)
  2455. The US Senate just grilled Microsoft and SolarWinds over last year's historic cyberattack. Here's what happened.
  2456. Network Monitoring Software Market Global Outlook 2021-2026: CA Technologies, GFI Software, IBM, Solarwinds, Auvik Networks, Manage Engine – KSU (Sentinel)
  2457. Global Deep Packet Inspection And Processing Market Analysis, Size, Share, Growth, Trends And Forecast 2027 (IBM Corporation; Cisco; Juniper Networks, Inc.; Broadcom.; SolarWinds Worldwide, LLC.; VIAVI Solutions Inc.; NETSCOUT; LogRhythm, Inc.; Qosmos Te)
  2458. Sensitive Data Discovery Market 2020:Global Industry Size, Analysis, Growth Factors, Key Companies, Regional Outlook, Future Insights Till 2026 | IBM, Microsoft, Oracle, AWS, Proofpoint, Google, SolarWinds, – KSU (Sentinel)
  2459. Network Optimization Services Market 2021 to Global Forecast 2026 By Major Players – Solarwinds, Cisco Systems, Huawei, Nokia, ZTE, Infovista, Citrix, Fatpipe Networks, Netscout Systems, Silver Peak, Array Networks (The Bisouv Network)
  2460. List of 1213 SolarWinds Employees - Find Emails & Phones - SignalHire (Page 6)
  2461. SolarWinds to Showcase Database Management Solutions at Microsoft Ignite 2021
  2462. Senate Intelligence Committee Examines SolarWinds Hack (UPI)
  2463. 'Russian' hackers targeted NASA as part of SolarWinds attack (MENAFN.COM)
  2464. Cyber Risk Management in the Wake of SolarWinds (USC Event Calendar)
  2465. ‎Malicious Life: Special: The SolarWinds Hack on Apple Podcasts
  2466. Ryuk Ransomware Gang, Cryptocurrency Fortunes & SolarWinds - InfoSec Round-Up Jan 17th | InfoSec Round-Up by Hut Six Security | Podcasts on Audible (Audible.com)
  2467. SolarWinds Attackers Lurked for 'Several Months' in ...
  2468. SolarWinds not the only company used to hack targets, tech execs say at hearing (CNET)
  2469. More SolarWinds Hack Victims Yet to Be Publicly Identified, Tech Executives Say (WSJ)
  2470. Massive SolarWinds Hack Prompts Calls for U.S. Law Requiring Cyber Breach Reporting
  2471. CrowdStrike Slams Microsoft Over SolarWinds Hack (Infosecurity Magazine)
  2472. SolarWinds hack was work of 'at least 1,000 engineers', tech executives tell Senate | Technology (Guardian)
  2473. 10 Boldest Statements From The SolarWinds Senate Hearing
  2474. Lawmakers urge notification law in wake of Russia SolarWinds hack
  2475. Solarwinds hearing stresses breach disclosure mandates (scmedia)
  2476. Senate hearing on SolarWinds hack lays bare US shortcomings, remaining mysteries
  2477. Senate SolarWinds Hearing: 4 Key Issues Raised
  2478. SolarWinds Hack Bigger, More Dangerous than Previously Thought, Tech Execs Warn (VOA)
  2479. Microsoft, FireEye push for breach reporting rules after SolarWinds hack (hill)
  2480. Partners: AWS Must Come Clean On Role In SolarWinds Hack
  2481. FireEye CEO on how the SolarWinds hack was discovered (CNN Video)
  2482. Tech Executives Call for Improved Public (Private Coordination After SolarWinds Hack)
  2483. SWI Shareholder Alert: Bronstein, Gewirtz & Grossman, LLC Reminds SolarWinds Corporation Shareholders of Class Action and Encourages Shareholders to Contact the Firm
  2484. SolarWinds hack was work of more than 1,000 engineers: Microsoft, World News (wionews.com)
  2485. The big takeaway from the Senate's SolarWinds hearing (Axios)
  2486. SolarWinds fallout sparks calls for mandatory incident reporting, repercussions after cyber attacks (FRN)
  2487. SolarWinds attackers lurked for ‘several months’ in FireEye’s network (Urgent Comms)
  2488. Sens. Mull Cyberattack Reporting Law At SolarWinds Hearing (Law360)
  2489. Google’s been lobbying for more scrutiny into Microsoft’s liability for SolarWinds hack » OnMSFT.com
  2490. DDoS in hybrid war. Accellion compromise attributed. Initial access brokers. Agile C2 for botnets. US Senate’s SolarWinds hearing. US DHS cyber strategy. Shiny new phishbait.
  2491. US to impose sanctions on Russia over Navalny poisoning, SolarWinds hack (Business Standard News)
  2492. Marco Rubio on SolarWinds Hack: ‘Many Concerning Aspects to This Operation That Raise Significant Questions’ (Florida Daily)
  2493. Senators, Tech Execs Recommend Hack Reporting Requirement (DCN)
  2494. The SolarWinds Breach Is Shaking Up Incident Response
  2495. Microsoft, FireEye, CrowdStrike, and SolarWinds Speak at US Senate Hearing Into Massive Cyberattack
  2496. Amazon Defends Itself After Skipping SolarWinds Hearing
  2497. SolarWinds & Solorigate: What Happened, Why it Matters & What Happens Next (The Devolutions Blog)
  2498. Essays: Why Was SolarWinds So Vulnerable to a Hack? (Schneier)
  2499. Tech Among Top Priorities for Biden’s CIA Director Pick (Nextgov)
  2500. Senate grills tech executives on SolarWinds hack (One America News Network)
  2501. Biden signs executive order demanding supply chain security review (CyberScoop)
  2502. CISA looks inward to stop future supply chain attacks - (Defense Systems)
  2503. SolarWinds, Microsoft, and executives of more firms face Senate grilling (TechStory)
  2504. Early Edition: February 24, 2021 (Just Security)
  2505. SolarWinds Hack Leaves Entire Industry In Panic (Research Snipers)
  2506. Date 2021-02-24

  2507. Mayorkas Announces Initial Plans To Bolster U.S. Cyber Security; SolarWinds CEO Has Ideas Too
  2508. VMware Marketplace: SolarWinds Content Pack
  2509. SolarWinds Deadline Alert
  2510. Implications of SolarWinds Hack on Your Cyber Practices
  2511. SolarWinds Cyberattack Cleanup Costs: SWI Earnings, Senate & House Hearings May Provide Clues (MSSP Alert)
  2512. SolarWinds CEO: This could have happened to anyone - (FCW)
  2513. US House Committees to Hold Hearing on SolarWinds Hack on 26 February (Sputnik)
  2514. SHAREHOLDER ALERT: SWI PEN OTGLY: The Law Offices of Vincent Wong Reminds Investors of Important Class Action Deadlines
  2515. Investigation of SolarWinds Corporation (Robbins LLP)
  2516. SolarWinds N-central vs EuVantage (2021 Feature and Pricing Comparison)
  2517. Orion SDK - The Orion Platform (THWACK)
  2518. Cisco Application Policy Infrastructure Controller vs SolarWinds - Overview, H2H, and More (Slintel)
  2519. US House committees to hold Feb 26 hearing on 'SolarWinds' hack (CNA)
  2520. Data Archiving Software Market to 2027 – SolarWinds MSP, TitanHQ, CloudBerry Lab and Others (NY Market Reports)
  2521. Website Monitoring Software Market 2020-2026 (SolarWinds, Zoho, SmartBear, LogicMonitor, New Relic, Freshworks, Datadog, Nagios – The Courier)
  2522. What's Scarier Than the SolarWinds Breach? (secblvd)
  2523. State (sponsored cyber attacks have corporates worried)
  2524. Patch Management Market Opportunities (Industry Report by SolarWinds, ConnectWise, Oracle, Chef Software, GFI Software, Automox, SysAid Technologies and ManageEngine – NY Market Reports)
  2525. Opinion (Why Was SolarWinds So Vulnerable to a Hack? - The New York Times)
  2526. SolarWinds to Showcase Database Management Solutions at Microsoft Ignite 2021
  2527. Network Optimization Services Market Evolving Technology and Growth Outlook 2020 to 2026 | Solarwinds, Cisco Systems, Huawei, Nokia, ZTE, Infovista, Citrix, Fatpipe Networks – KSU (Sentinel)
  2528. Health care bore brunt of cyberattacks in 2020, study says (Roll Call)
  2529. New York issues cyber insurance framework as ransomware, SolarWinds costs mount (TechCentral.ie)
  2530. Best Practices for Strengthening Your Organization’s Overall Security Posture (Manufacturing Business Technology)
  2531. Newscan: SolarWinds CEO recommends liability protections for sharing information about incidents (Urgent Comms)
  2532. Have Insiders Been Selling SolarWinds Corporation (NYSE:SWI) Shares? (Simply Wall St News)
  2533. Biden administration planning to sanction Russia for SolarWinds hacks (wapo)
  2534. The Anatomy of the SolarWinds Attack Chain (secblvd)
  2535. MSP Software Provider Atera Raises $25M From K1 (ChannelE2E)
  2536. After SolarWinds hack, the U.S. must prioritize cybersecurity (Idaho Business Review)
  2537. SolarWinds, Microsoft, FireEye, CrowdStrike defend actions in major hack - U.S. Senate hearing (Reuters)
  2538. House committees to hold February 26 hearing on 'SolarWinds' hack (Gadgets Now)
  2539. IBM CEO Says He Feels ‘Sorry’ For SolarWinds, Cybersecurity ‘Biggest Issue’ For Tech Industry
  2540. Network security relies on careful scrutiny
  2541. The Anatomy of the SolarWinds Attack Chain
  2542. Lawmakers grill SolarWinds CEO on devastating hack (WSM-FM1)
  2543. WTH is Russia doing cyberattacking the United States? David Sanger on the SolarWinds hack and the future of American cyber security | What the Hell Is Going On | Podcasts on Audible (Audible.com)
  2544. Mayorkas Announces Initial Plans To Bolster U.S. Cyber Security; SolarWinds CEO Has Ideas Too (IIOT Connection)
  2545. SolarWinds Hack Grabs Senate Spotlight With CEO in the Hot Seat (Bloomberg)
  2546. SolarWinds hackers targeted NASA, Federal Aviation Administration networks (TechCrunch)
  2547. Microsoft says it notified 60 customers of SolarWinds breach (U.S. Senate panel hearing)
  2548. SolarWinds, Microsoft, FireEye, CrowdStrike executives face Senate grilling (Reuters)
  2549. Biden administration plans to sanction Russia for SolarWinds hacks, poisoning of opposition leader (The Boston Globe)
  2550. SolarWinds, Microsoft, FireEye, CrowdStrike executives face U.S. Senate grilling (Nasdaq)
  2551. US to sanction Russia for mass hack, Navalny poisoning
  2552. SolarWinds, Microsoft, FireEye, CrowdStrike Executives Face Senate Grilling
  2553. Paramount Defenses Opens Online Store to Empower Organizations Worldwide
  2554. U.S. Senators: AWS Infrastructure Used In SolarWinds Attack
  2555. CISA, DHS Bolster State and Local Cybersecurity Programs (Nextgov)
  2556. FireEye (NASDAQ:FEYE), (CRWD) - SolarWinds, Microsoft, FireEye, CrowdStrike To Testify In Senate In Russian Cyber Hack Case (Benzinga)
  2557. SolarWinds Hack: Vital Lessons for Integrators SoloarWinds Hack
  2558. WATCH LIVE: Senate committee hears testimony on SolarWinds hack | WPBS (Serving Northern New York and Eastern Ontario)
  2559. Broadband Breakfast: SolarWinds CEO Says Hack Shows Need for Information (Sharing Between Industry and Government)
  2560. Hillicon Valley: Companies urge action at SolarWinds hearing | Facebook lifts Australian news ban | Biden to take action against Russia in 'weeks' (hill)
  2561. Palo Alto Networks Posts First $1 Billion Sales Quarter (DCN)
  2562. Executives testify SolarWinds hack was of unprecedented scale, scope (UPI)
  2563. The Scale of the SolarWinds Breach Is Still Unclear, Executives Say (nyt)
  2564. SolarWinds hack worse than thought (Senate panel)
  2565. Today’s Headlines and Commentary (Lawfare)
  2566. The SolarWinds Attack: Why Israeli Companies Should Pay Attention (Lexology)
  2567. The Compromise of SolarWinds Orion
  2568. SolarWinds Orion Data Security Update
  2569. Date 2021-02-23

  2570. New York issues cyber insurance framework as ransomware, SolarWinds costs mount (CSO Online)
  2571. Biden official: SolarWinds attack response may come within weeks
  2572. U.S. House committees to hold Feb 26 hearing on ‘SolarWinds’ hack | The Mighty 790 KFGO (KFGO)
  2573. Hiding in plain sight: What the SolarWinds attack revealed about efficacy (Urgent Comms)
  2574. SolarWinds Hacked From Inside U.S., 100+ Orgs Compromised
  2575. SolarWinds Announces Earnings Call Time Change: Fourth Quarter and Full Year 2020 Earnings Call to Occur on Thursday, February 25 at 7:30 AM CT
  2576. Top Biden Adviser Suggests Russia Could See U.S. Response To SolarWinds Hack Within 'Weeks'
  2577. In the SolarWinds Hack Microsoft Lost The Source Code For 3 Products
  2578. CyberArk Labs: The Anatomy of the SolarWinds Attack (Techwire)
  2579. Neuberger: Private (Sector Partnership ‘Core’ in Fixing Huge Hack, Building Better Defenses – Homeland Security Today)
  2580. White House security adviser says response to SolarWinds hack will come in weeks | WKZO | Everything Kalamazoo (590 AM · 106.9 FM)
  2581. BREAKING ALERT: ROSEN, A LEADING AND LONGSTANDING LAW FIRM, Encourages SolarWinds Corporation Investors with Large Losses to Secure Counsel Before Important March 5 Deadline (SWI)
  2582. SolarWinds cyberhack is a blow. The US must prioritize cybersecurity now | Columns (idahostatejournal.com)
  2583. SolarWinds hearings will test cybersecurity cooperation, experts say
  2584. Microsoft wraps SolarWinds probe, nudges companies toward zero trust
  2585. Microsoft Concludes Its SolarWinds Investigation (Thurrott.com)
  2586. Microsoft suggest companies “adopt a zero trust mindset” as it closes SolarWinds internal investigation » OnMSFT.com
  2587. Turning the page on Solorigate and opening the next chapter for the security community (MS Security)
  2588. U.S. House committees to hold Feb 26 hearing on 'SolarWinds' hack (Reuters)
  2589. SolarWinds hearing announced by House committees (CNET)
  2590. Microsoft: SolarWinds Attackers Downloaded Azure, Exchange Code (tpost)
  2591. U.S. House committees to hold Feb 26 hearing on 'SolarWinds' hack (Reuters)
  2592. Microsoft posts final update on Solarwinds attack, reveals which Microsoft product source code hackers were targeting (MSPoweruser)
  2593. Microsoft: SolarWinds Hackers Viewed, Downloaded Source Code for Azure, Intune, Exchange Components (My TechDecisions)
  2594. N-able: The Path Forward for the Former SolarWinds MSP (ChannelE2E)
  2595. SolarWinds CEO Recommends Liability Protections for Sharing Information about Incidents  (Nextgov)
  2596. Experts Tell Lawmakers to Give CISA 'Operational' Federal Information Security Role (Nextgov)
  2597. SolarWinds CEO talks hack, remaining questions before Capitol Hill hearings
  2598. Chinese Hackers Hijacked NSA-Linked Hacking Tool: Report (tpost)
  2599. Cyber Attacks on U.S. Need to Be Handled Differently, Says Sen. Warner (Bloomberg)
  2600. Senate Committee to Hear Testimony Surrounding Major SolarWinds Cybersecurity Breach on Cheddar
  2601. Palo Alto Networks CEO: XDR Protected Us From SolarWinds Attack (SDxCentral)
  2602. Biden Wants International “Rules” to Combat Alleged Russian, Chinese Cyberattacks (MSSP Alert)
  2603. Lessons Learned from a Cyberattack: A Conversation with SolarWinds (Part 1 of 2) (Center for Strategic and International Studies)
  2604. SolarWinds CEO to Testify at Second Hearing Friday; He Offers Details Now
  2605. Shareholder Alert: Robbins LLP is Investigating SolarWinds Corporation (SWI) on Behalf of Shareholders (bizwire)
  2606. Biden speech pledges international cooperation on cyber - (Washington Technology)
  2607. Anatomy of the SolarWinds Attack: Five Types of Malware (Blumira)
  2608. SolarWinds Cyber Attack: February 24 Webinar Will Address Lessons Learned
  2609. The SolarWinds Breach Is a Wakeup Call to CISOs (InfoSystems)
  2610. Spared Direct Hit, Law Firms Could Still Face SolarWinds Cyber Fallout (Legaltech News)
  2611. Three Steps to Ensure Your Supply Chain Isn’t Your Weak Link (Legaltech News)
  2612. Date 2021-02-22

  2613. Apiiro Releases Industry’s First Solution That Detects and Prevents the Attack Used Against Solarwinds
  2614. Suspected Russian hack fuels new US action on cybersecurity (ABC News)
  2615. Date 2021-02-20

  2616. SolarWinds attack hit 100 companies and took months of planning, says White House (ZDNet)
  2617. SolarWinds: Microsoft Reveals New Details About Sophisticated Mega (Breach)
  2618. Trump ‘Nobody Gets Hacked’ Video Goes Viral
  2619. SolarWinds fallout has enterprise CISOs on edge
  2620. Massive breach fuels calls for US action on cybersecurity (WAVY.com)
  2621. U.S. Senate panel to hold Feb 23 hearing on 'SolarWinds' hack (Reuters)
  2622. Hillicon Valley: Congress prepares to hold hearing on SolarWinds breach, Big Tech content moderation | Tensions rise between Capitol Hill and Facebook, Google over news distribution (hill)
  2623. SHAREHOLDER ALERT: Levi & Korsinsky, LLP Notifies Shareholders of SolarWinds Corporation of a Class Action Lawsuit and a Lead Plaintiff Deadline of March 5, 2021 (SWI)
  2624. U.S. Cyber Command Expands Operations to Hunt Hackers From Russia, Iran and China (nyt)
  2625. U.S. Cyber Command Bolsters Allied Defenses to Impose Cost on Moscow (nyt)
  2626. U.S. Begins First Cyberoperation Against Russia Aimed at Protecting Elections (nyt)
  2627. SHAREHOLDER ALERT: Pomerantz Law Firm Reminds Shareholders with Losses on their Investment in SolarWinds Corporation of Class Action Lawsuit and Up Coming Deadline (SWI)
  2628. SolarWinds Hack and the Case of DNS Security (secblvd)
  2629. The Solarwinds Hack Is A One Of A Kind And Not The Norm (Information Security Buzz)
  2630. Network Traffic Analyzer Industry- Exclusive Market Research Report (SolarWinds, Netscout and more. – NeighborWebSJ)
  2631. SolarWinds (SWI) Earnings Expected to Grow: What to Know Ahead of Next Week's Release (Nasdaq)
  2632. Microsoft says SolarWinds hackers stole source code for 3 products (ars)
  2633. 5 minutes with Michael Bahar - The aftermath of the SolarWinds Orion breach | 2021-02-19 (Security Magazine)
  2634. White House Announces Senior Official Is Leading Inquiry Into SolarWinds Hacking (nyt)
  2635. White House says it will hold those responsible for SolarWinds hack accountable within weeks (CNNPolitics)
  2636. SolarWinds hackers studied Microsoft source code for authentication and email (Reuters)
  2637. SolarWinds Hackers Stole Some Source Code for Microsoft Azure, Exchange, Intune
  2638. The Art of Finding Cyber-Dinosaur Skeletons (Securelist)
  2639. Hiding in Plain Sight: What the SolarWinds Attack ...
  2640. U.S. Senate panel to hold Feb 23 hearing on 'SolarWinds' hack (Reuters)
  2641. Senate Intelligence panel to hold hearing on SolarWinds breach next week (hill)
  2642. Biden to take 'executive action' to address SolarWinds breach (hill)
  2643. Targeting Process for the SolarWinds Backdoor (NETRESEC Blog)
  2644. Massive breach fuels calls for US action on cybersecurity - U.S. (Stripes)
  2645. White House Prepping Multi-Part Executive Order on SolarWinds Hack (Defense One)
  2646. The Hack Roundup: White House Says Neuberger Leading Federal Response (Nextgov)
  2647. The SolarWinds Hack Doesn’t Demand a Violent Response (Defense One)
  2648. What financial services should learn from the SolarWinds cyber attack
  2649. SOLARWINDS INVESTOR ALERT: Shareholder Lawsuit Filed
  2650. SolarWinds hack is the perfect foreword to new book on biggest breaches
  2651. Thread by @NatashaBertrand on Thread Reader App (Thread Reader App)
  2652. Date 2021-02-19

  2653. Norway’s 11179 billion NOK wealth fund affected by the SolarWinds hack (DN)
  2654. White House now says 100 companies hit by SolarWinds hack, but more may be impacted (Verge)
  2655. Press Briefing by Press Secretary Jen Psaki and Deputy National Security Advisor for Cyber and Emerging Technology Anne Neuberger, February 17, 2021 (The White House)
  2656. SolarWinds hack may be much worse than originally feared (Verge)
  2657. Microsoft president sounds alarm on ‘ongoing’ SolarWinds hack, identifies 40 more precise targets (Verge)
  2658. SolarWinds hides list of high-profile customers after devastating hack (Verge)
  2659. Big tech companies including Intel, Nvidia, and Cisco were all infected during the SolarWinds hack (Verge)
  2660. SolarWinds: Microsoft Reveals New Details About Sophisticated Mega (Breach)
  2661. Defense nominee favors proactive cyber posture
  2662. Operationalizing Defend Forward: How the Concept Works to Change Adversary Behavior (Lawfare)
  2663. The SolarWinds hackers could be in US government computers for a long time. Here’s our next move (Bulletin of the Atomic Scientists)
  2664. Occam’s Razor — A SolarWinds Perspective for Law Firms (Legal Talk Network)
  2665. SolarWinds Investor Relations: Berger Montague Announces Expanded Class Period for Investigation of Alleged Securities Fraud Against SolarWinds Corporation (NYSE: SWI); Encourages Investors with Losses in Excess of $100,000 to Secure Counsel; Lead Plainti
  2666. SolarWinds Shareholder Alert
  2667. Risk & Repeat: SolarWinds and the hacking back debate
  2668. Exclusive: Suspected Chinese hackers used SolarWinds bug to spy on U.S. payroll agency – sources (Reuters)
  2669. Cybersecurity experts say U.S. needs to strike back after SolarWinds hack (CBS News)
  2670. Pompeo Says Russia 'Pretty Clearly' Behind SolarWinds Cyberattack. : NPR
  2671. SolarWinds hackers accessed Microsoft source code, the company says (Reuters)
  2672. Suspected Russian Hackers Used U.S. Networks, Official Says (Bloomberg)
  2673. SolarWinds patches three newly discovered software vulnerabilities (ZDNet)
  2674. France Just Suffered A Very 'Solar Winds' (Like Cyberattack)
  2675. The U.S. Needs a Cyber State of Distress to Withstand the Next SolarWinds (Lawfare)
  2676. Presidential Policy Directive -- United States Cyber Incident Coordination (whitehouse.gov)
  2677. Digital Offense Capabilities Are Currently Net Negative for the Security Ecosystem
  2678. ‘William M. (Mac) Thornberry National Defense Authorization Act for Fiscal Year 2021’
  2679. ADP 3 (28 Defense Support of Civil Authories)
  2680. Experts laud SolarWinds post-attack efforts, but why’d it take a massive cyber incident to make changes? (FRN)
  2681. SWI BREAKING ALERT: ROSEN, A TRUSTED AND LEADING LAW FIRM, Encourages SolarWinds Corporation Investors with Large Losses to Secure Counsel Before Important Deadline – SWI | Business (valdostadailytimes.com)
  2682. SolarWinds (style email compromise attacks go mainstream)
  2683. SolarWinds hack was 'largest and most sophisticated attack' ever (Microsoft president)
  2684. The "largest and most sophisticated hack ever" - The Backstory with Matt Bevan - RN Breakfast (ABC Radio National)
  2685. Former top cybersecurity official on why U.S. intelligence missed Russia's SolarWinds hack
  2686. Microsoft says SolarWinds hackers downloaded some Azure, Exchange, and Intune source code (ZDNet)
  2687. SolarWinds hackers accessed Microsoft source code (ZDNet)
  2688. Microsoft Internal Solorigate Investigation – Final Update (Microsoft Security Response Center)
  2689. Date 2021-02-17

  2690. Many SolarWinds Customers Failed to Secure Systems Following Hack (SecurityWeek.Com)
  2691. Date 2021-02-16

  2692. SolarWinds hack was 'largest and most sophisticated attack' ever: Microsoft president (Reuters)
  2693. SolarWinds: How Russian spies hacked the Justice, State, Treasury, Energy and Commerce Departments (CBS News)
  2694. SolarWinds Hack Was 'Largest and Most Sophisticated Attack' Ever, Microsoft President Brad Smith Says (Technology News)
  2695. Cybersecurity experts say U.S. needs to strike back after SolarWinds hack
  2696. Microsoft says it found 1,000 (plus developers' fingerprints on the SolarWinds attack • The Register)
  2697. On SolarWinds, Supply Chains and Enterprise Networks
  2698. Arctic Security (SolarWinds: Going beyond attribution - all in a day’s work for a Bicycle Repair Man)
  2699. VirusTotal
  2700. US Court system demands massive changes to court documents after SolarWinds hack (TechRepublic)
  2701. Essential Threat Intelligence: Importance of Fundamentals in Identifying IOCs (Webroot)
  2702. Does SolarWinds change the rules in offensive cyber? Experts say no, but offer alternatives (scmedia)
  2703. France Ties Russia's Sandworm to a Multiyear Hacking Spree (WIRED)
  2704. Sealed U.S. court records possibly accessed by SolarWinds attackers (Help Net Security)
  2705. Microsoft: SolarWinds attack took more than 1,000 engineers to create (ZDNet)
  2706. 7 Things We Know So Far About the SolarWinds Attacks
  2707. Date 2021-02-12

  2708. Manufacturing particularly at risk of Solorigate (linked breaches)
  2709. SolarWinds Shines Spotlight on Supply Chain Risks (CSO Online)
  2710. Our systems weren’t the entry point for SolarWinds attackers, says Microsoft (Channel Daily News)
  2711. US Coast Guard orders maritime facilities to report SolarWinds breaches
  2712. CISA releases Azure, Microsoft 365 malicious activity detection tool
  2713. Chinese threat actor may have exploited SolarWinds. New SolarWinds vulnerabilities reported. Spyware in South Sudan. BEC gift card scams rise.
  2714. FireEye's Mandia: 'Severity (Zero Alert' Led to ...)
  2715. US think tank breached three times in a row by SolarWinds hackers
  2716. White House Names Cybersecurity Expert to Lead Response to SolarWinds Hack (WSJ)
  2717. Zero Day Initiative — Three More Bugs in Orion’s Belt
  2718. SolarWinds Orion vulnerability being actively exploited - updated advisory (CERT NZ)
  2719. NCSC statement on FireEye incident (NCSC.GOV.UK)
  2720. Software supply chain attacks – everything you need to know (The Daily Swig)
  2721. Emergency directive: Global governments issue alert after FireEye hack is linked to SolarWinds supply chain attack (The Daily Swig)
  2722. New cyber panel chair zeros in on election security, SolarWinds hack (hill)
  2723. MAR-10318845-1.v1 - SUNBURST (CISA)
  2724. SolarWinds Orion Bug Allows Easy Remote-Code Execution and Takeover (tpost)
  2725. Senators: U.S. response to huge SolarWinds hack has been 'disjointed and disorganized'
  2726. Tips to harden Active Directory against SolarWinds-type attacks (CSO Online)
  2727. Securing Active Directory: Performing an Active Directory Security Review
  2728. CyberArk Virtual Event - (The Anatomy of the SolarWinds Attack)
  2729. White House Names SolarWinds Response Leader Amid Criticism (SecurityWeek.Com)
  2730. The Next Cyberattack Is Already Under Way (The New Yorker)
  2731. This is How They Tell Me the World Ends
  2732. Microsoft: Office 365 Was Not SolarWinds Initial Attack Vector
  2733. Symantec Enterprise Podcasts
  2734. Hackers had access to SolarWinds email system for months: report (hill)
  2735. ‘Severe’ SolarWinds Vulnerabilities Allow Hackers To Take Over Servers
  2736. Nearly One (Third of Attack Targets Weren’t Running SolarWinds)
  2737. SolarWinds attack is not an outlier, but a moment of reckoning for security industry, says Microsoft exec (ZDNet)
  2738. US payroll agency targeted by Chinese hackers: report (hill)
  2739. SolarWinds CEO: “SolarWinds Orion Development Program was Exploited by the Hackers” - E Hacking News (Latest Hacker News and IT Security News)
  2740. Takeaways for Microsoft cloud customers and partners after the SolarWinds breach (MSCloudNews)
  2741. We're not saying this is how SolarWinds was backdoored, but its FTP password 'leaked on GitHub in plaintext' (Register)
  2742. SolarWinds Corporation 8 (K SEC Filing)
  2743. Cybersecurity giant FireEye says it was hacked by govt-backed spies who stole its crown (jewels hacking tools • The Register)
  2744. Here's How SolarWinds Hackers Stayed Undetected for Long Enough
  2745. CISA, SolarWinds up interest in security scoring (scmedia)
  2746. Microsoft warns of increasing OAuth Office 365 phishing attacks
  2747. CISA Warns of New Malware Threat to Vulnerable SolarWinds Orion Tech
  2748. VirusTotal
  2749. Tech Tent - Hackers breach US government (BBC Sounds)
  2750. Microsoft downplays threat after admitting SolarWinds attackers accessed source code (The Daily Swig)
  2751. Multiple new flaws uncovered in SolarWinds software just weeks after high-profile supply chain attack (The Daily Swig)
  2752. Microsoft falls prey to SolarWinds supply chain cyber-attacks (The Daily Swig)
  2753. Incoming Biden administration looks to shake up US cybersecurity policy (The Daily Swig)
  2754. SANS Institute (Newsletters - NewsBites)
  2755. Who is behind APT29? What we know about this nation-state cybercrime group (The Daily Swig)
  2756. Swap SolarWinds Orion for Intact Scorpio NOW
  2757. SolarWinds Alternative (OpManager VS SolarWinds NPM - ManageEngine)
  2758. SolarWinds Alternative - Get Modern Monitoring (Zenoss)
  2759. Top SolarWinds Competitors and Alternatives - Gartner 2021 (IT Infrastructure Monitoring Tools)
  2760. SolarWinds Network Performance Monitor Alternatives & Competitors (G2)
  2761. List of Best SolarWinds NPM Alternatives & Competitors 2021
  2762. SolarWinds Alternatives (MetricFire Blog)
  2763. Best SolarWinds Orion Platform Alternatives & Competitors
  2764. SolarWinds Alternative (OpManager VS SolarWinds NPM - ManageEngine)
  2765. SolarWinds NPM Competitors and Alternatives (IT Central Station)
  2766. SolarWinds Alternative (Compare Site24x7 vs SolarWinds)
  2767. SolarWinds Server & Application Monitor Alternatives and Similar Software (AlternativeTo)
  2768. Top 15 SolarWinds Alternatives & Similar Tools (eBool)
  2769. Nagios XI (Your Solarwinds Alternative Network Monitoring Solution)
  2770. A Better Monitoring Alternative (LogicMonitor)
  2771. Network Monitoring | NMIS (Opmantek)
  2772. RMM Software - Atera - RMM software (PSA & Remote Access for MSPs)
  2773. SolarWinds Network Performance Monitor Alternatives, Competitors & Similar Software (GetApp®)
  2774. Fed up with Solarwinds, open source options? : sysadmin
  2775. Nagios Alternatives - Nagios Replacement for Monitoring (SolarWinds)
  2776. SolarWinds Alternatives (Guide Top 9 SolarWinds Alternatives)
  2777. Open Source SolarWinds Server & Application Monitor Alternatives (AlternativeTo)
  2778. Solarwinds alternative: a comparison in depth between Solarwinds and Pandora FMS
  2779. SolarWinds Alternative (Alternatives to SolarWinds for Network and Server)
  2780. SolarWinds Alternative - Get Modern Monitoring (Zenoss)
  2781. 50 Best SolarWinds Alternatives & Competitors in 2021
  2782. What are some alternatives to Solarwinds? (StackShare)
  2783. Unryo (Performance Monitoring & Observability)
  2784. Top SolarWinds Competitors and Alternatives (Craft.co)
  2785. 20 best alternatives to SolarWinds Log & Event Manager as of 2021 (Slant)
  2786. 50 Best SolarWinds Alternatives & Competitors in 2021
  2787. Nagios Alternatives: Best Commercial & Open Source of 2021
  2788. Best SolarWinds RMM Alternatives 2021 (Capterra)
  2789. Date 2021-02-11

  2790. SolarWinds chases multiple leads in breach investigation
  2791. Supply chain security is actually worse than we think (ZDNet)
  2792. Date 2021-02-10

  2793. FireEye stock falls as analysts debate effects of massive SolarWinds hack (MarketWatch)
  2794. More SolarWinds News (secblvd)
  2795. After SolarWinds Attack, Courts Revert to Paper for Secrets
  2796. Senate Select Committee on Intelligence letter to DNI
  2797. Increasing resilience against Solorigate and other sophisticated attacks with Microsoft Defender (MS Security)
  2798. Protecting Microsoft 365 from on-premises attacks (Microsoft Tech Community)
  2799. cyber.dhs.gov - Emergency Directive 21 (01)
  2800. Fourth malware strain discovered in SolarWinds incident (ZDNet)
  2801. Alex Stamos Attributes SolarWinds Hack To Russian Intel Service
  2802. Feds: SolarWinds Breach Is Likely Russian Intel Gathering Effort
  2803. Most Tools Failed to Detect the SolarWinds Malware. Those That Did Failed Too (CoFR)
  2804. SolarWinds Hackers Cast a Wide Net (BankInfoSecurity)
  2805. Microsoft Releases New Info on SolarWinds Attack Chain
  2806. SolarWinds Attack Underscores 'New Dimension' in ...
  2807. Deep dive into the Solorigate second-stage activation: From SUNBURST to TEARDROP and Raindrop (MS Security)
  2808. Google Cloud: We do use some SolarWinds, but we weren't affected by mega hack (ZDNet)
  2809. After SolarWinds, the U.S. can trust no one (Fortune)
  2810. President Biden Orders SolarWinds Intelligence Assessment
  2811. SolarWinds Hack: Is NSA Doing the Same to Russia?
  2812. Mimecast breach investigators probe possible SolarWinds connection (CyberScoop)
  2813. Date 2021-02-09

  2814. Hacking victim SolarWinds hires ex-Homeland Security official Krebs as consultant (Reuters)
  2815. Hackers Lurked in SolarWinds Email System for at Least 9 Months, CEO Says (WSJ)
  2816. SolarWinds Hack Breached Justice Department System (WSJ)
  2817. Microsoft Hacked in Russia-Linked SolarWinds Cyberattack (WSJ)
  2818. Azure-Sentinel/ADFSDomainTrustMods.yaml at master · Azure/Azure (Sentinel · GitHub)
  2819. DOJ says it was hit by SolarWinds hackers - (FCW)
  2820. Using Microsoft 365 Defender to protect against Solorigate (MS Security)
  2821. Detecting Post-Compromise Threat Activity in Microsoft Cloud Environments (CISA)
  2822. SolarWinds CEO Confirms Office 365 Email ‘Compromise’ Played Role In Broad (Based Attack)
  2823. Findings From Our Ongoing Investigations (Orange Matter)
  2824. Continuing Our Journey to Becoming Secure by Design (Orange Matter)
  2825. SolarWinds security to-do list post hack (Utility Dive)
  2826. SolarWinds fallout could last for years, as power industry secures vulnerable equipment: Dragos CEO (Utility Dive)
  2827. A Key Step in Preventing a Future SolarWinds (Just Security)
  2828. CISA discovers token abuse around SolarWinds hack, calls for full rebuild of affected networks (scmedia)
  2829. Cloud Security: A Primer for Policymakers (Carnegie Endowment for International Peace)
  2830. SolarWinds Fallout: Practices to strengthen data protection - (GCN)
  2831. The Right Response to SolarWinds (CoFR)
  2832. More exploitable flaws found in SolarWinds software, says cybersecurity firm
  2833. SolarWinds Recovery May Require Extreme Actions
  2834. SOLARWINDS UPDATE
  2835. Second SolarWinds Attack Group Breaks into USDA Payroll — Report (tpost)
  2836. SolarWinds Malware Arsenal Widens with Raindrop (tpost)
  2837. Microsoft: This is how the sneaky SolarWinds hackers hid their onward attacks for so long (ZDNet)
  2838. Third malware strain discovered in SolarWinds supply chain attack (ZDNet)
  2839. SolarWinds: How a Rare DGA Helped Attacker Communications Fly Under the Radar (Symantec Blogs)
  2840. Multiple new SolarWinds vulnerabilities have been uncovered (TechRadar)
  2841. Microsoft: Office 365 Was Not SolarWinds Initial Attack Vector
  2842. Date 2021-02-07

  2843. Kevin Mandia: Discovering SolarWinds Hack ‘Validates Our Intelligence and Expertise’
  2844. Mimecast To Lay Off 80 Workers Weeks After Disclosing Hack
  2845. Mimecast Breach Linked To SolarWinds Hack, Allowed Cloud Services Access
  2846. Hackers Compromise Mimecast Certificate For Microsoft Authentication
  2847. Chinese Hackers Exploit SolarWinds To Steal Federal Payroll Info: Report
  2848. Mimecast Certificate Hacked in Supply-Chain Attack (tpost)
  2849. Feds: SolarWinds Attack ‘Poses a Grave Risk’ To Government, Business
  2850. SolarWinds Hack ‘One Of The Worst In The Last Decade’: Analyst
  2851. Fidelis Targeted By SolarWinds Hackers After Installing Orion
  2852. 5 Security Vendors That Have Reported Cyberattacks Since December
  2853. 5 Things To Know About The Mimecast Hack And Stock Drop
  2854. Email Security Firm Mimecast Says Hackers Hijacked Its Products to Spy on Customers | Technology News (US News)
  2855. SolarWinds Hackers Access Malwarebytes’ Office 365 Emails
  2856. Date 2021-02-05

  2857. 3 New Severe Security Vulnerabilities Found In SolarWinds Software
  2858. Full System Control with New SolarWinds Orion-based and Serv-U FTP Vulnerabilities (Trustwave)
  2859. Suspected Russian Hack Extends Far Beyond SolarWinds Software, Investigators Say (WSJ)
  2860. SolarWinds hackers accessed Microsoft source code, the company says
  2861. Hacking ‘Likely’ Came From Russia, US Says (nyt)
  2862. More SolarWinds News (Schneier)
  2863. Another SolarWinds Orion Hack (Schneier)
  2864. How to Get Rich Sabotaging Nuclear Weapons Facilities (BIG by Matt Stoller)
  2865. More on the SolarWinds Breach (Schneier)
  2866. Russia’s SolarWinds Attack (Schneier)
  2867. The U.S. government spent billions on a system for detecting hacks. The Russians outsmarted it. (wapo)
  2868. Agencies Need to Improve Implementation of Federal Approach to Securing Systems and Protecting against Intrusions
  2869. Russia’s SolarWinds Attack and Software Security (Schneier)
  2870. How the SolarWinds Hackers Bypassed Duo’s Multi-Factor Authentication (Schneier)
  2871. Injecting a Backdoor into SolarWinds Orion (Schneier)
  2872. NSA on Authentication Hacks (Related to SolarWinds Breach) (Schneier)
  2873. Quick Thoughts on the Russia Hack (Lawfare)
  2874. Essays: The Solarwinds Hack Is Stunning. Here’s What Should Be Done (Schneier)
  2875. Cyberattack Hit Key US Treasury Systems: Senator (SecurityWeek.Com)
  2876. Hacked Networks Will Need to be Burned 'Down to the Ground' (SecurityWeek.Com)
  2877. Continuous Updates: Everything You Need to Know About the SolarWinds Attack (SecurityWeek.Com)
  2878. Supply Chain Attack: CISA Warns of New Initial Attack Vectors Posing 'Grave Risk' (SecurityWeek.Com)
  2879. Sunburst: Supply Chain Attack Targets SolarWinds Users (Symantec Blogs)
  2880. SolarWinds Removes Customer List From Site as It Releases Second Hotfix (SecurityWeek.Com)
  2881. CISA Says Many Victims of SolarWinds Hackers Had No Direct Link to SolarWinds (SecurityWeek.Com)
  2882. Cisco Event Response: SolarWinds Orion Platform Software Attack
  2883. Cisco Talos Intelligence Group (Comprehensive Threat Intelligence: Threat Advisory: SolarWinds supply chain attack)
  2884. Cisco Talos Intelligence Group (Comprehensive Threat Intelligence: FireEye Breach Detection Guidance)
  2885. VMware Issues Statement on SolarWinds Supply Chain Compromise and CVE 2020 (4006)
  2886. VMware Issues Updated Statement on SolarWinds Supply Chain Compromise and CVE 2020 (4006)
  2887. An Update on SolarWinds (JetBrains Blog)
  2888. January 8th Update on SolarWinds (JetBrains Blog)
  2889. Opinion: The SolarWinds hack is stunning. Here's what should be done (CNN)
  2890. Date 2021-02-04

  2891. President Biden Announces American Rescue Plan (The White House)
  2892. in-toto: Providing farm-to (table guarantees for bits and bytes)
  2893. Commit Virtual 2020: How to Build a Compromise Resilient CI/CD (YouTube)
  2894. Secure Publication of Datadog Agent Integrations With TUF and In-Toto (Datadog)
  2895. Q:CYBER spots lateral movement as used in the SolarWinds (Sunburst) calamity | State (insidenova.com)
  2896. US govt, FireEye breached after SolarWinds supply (chain attack)
  2897. SEC filings: SolarWinds says 18,000 customers were impacted by recent hack (ZDNet)
  2898. What We Know (And Don’t) About The SolarWinds Orion Hack So Far
  2899. SolarWinds/SUNBURST Backdoor, Third-Party and Supply Chain Security (YouTube)
  2900. Federal Agencies, Think Tank Targeted in Russian Hacking Spree
  2901. Suspected Russia SolarWinds Hack Exposed After FireEye Cybersecurity Firm Found 'Backdoor'
  2902. Unauthorized Access of FireEye Red Team Tools (fireeye)
  2903. Text - S.592 - 116th Congress (2019-2020): Cybersecurity Disclosure Act of 2019 | Congress.gov (Library of Congress)
  2904. SolarWinds Exposed GitHub Repository Publicly since 2018
  2905. CJ03 Solar Flare Pulling apart SolarWinds ORION Rob Fuller (YouTube)
  2906. SolarWinds, GitHub Leaks and Securing the Software Supply Chain (BluBracket)
  2907. red_team_tool_countermeasures/CVEs_red_team_tools.md at master · fireeye/red_team_tool_countermeasures (GitHub)
  2908. SolarWinds releases updated advisory for new SUPERNOVA malware
  2909. Suspected Russian hackers used Microsoft vendors to breach customers (Reuters)
  2910. FireEye and SolarWinds Cyber Attack Information for Exabeam Customers and Partners
  2911. Date 2021-02-03

  2912. The U.S. Spent $2.2 Million on a Cybersecurity System That Wasn’t Implemented — and Might Have Stopped a Major Hack — ProPublica
  2913. Federal Acquisition Supply Chain Security Act
  2914. New, free tool adds layer of security for the software supply chain
  2915. Trump Contradicts Pompeo Over Russia’s Role in Hack (nyt)
  2916. DHS, DOJ And DOD Are All Customers Of SolarWinds Orion, The Source Of The Huge US Government Hack
  2917. Date 2021-02-02

  2918. Russian hack brings changes, uncertainty to US court system
  2919. SolarWinds Hack Prompts Congress to Put NSA in Encryption Hot Seat (tpost)
  2920. Date 2021-01-30

  2921. U.S. Cyber Firm FireEye Says It Was Breached by Nation-State Hackers (WSJ)
  2922. Suspected Russian Hack Said to Have Gone Undetected for Months (WSJ)
  2923. Hack of Federal Agencies Shows Cyber Dangers to Supply Chains (WSJ)
  2924. U.S. Agencies Hacked in Foreign Cyber Espionage Campaign Linked to Russia (WSJ)
  2925. Suspected Russian Cyberattack Began With Ubiquitous Software Company (WSJ)
  2926. SolarWinds Hackers’ Attack on Email Security Company Raises New Red Flags (WSJ)
  2927. SolarWinds Hack Hit Office Home to Top Treasury Department Officials (WSJ)
  2928. Pompeo Blames Russia for Hack as Trump Casts Doubt on Widespread Conclusion (WSJ)
  2929. White House National Security Adviser O’Brien Cuts Trip Short to Address SolarWinds Hack (WSJ)
  2930. SolarWinds Discloses Earlier Evidence of Hack (WSJ)
  2931. I'm in your cloud, reading everyone's emails (hacking Azure AD via Active Directory)
  2932. Date 2021-01-28

  2933. Four security vendors disclose SolarWinds-related incidents (ZDNet)
  2934. Important Security Update (Mimecast Blog)
  2935. SolarWinds Hacks: Virginia Regulator And $5 Billion Cybersecurity Firm Confirmed As Targets
  2936. Ongoing Analysis of SolarWinds Impacts (Fidelis Cybersecurity)
  2937. Twenty-three SUNBURST Targets Identified (NETRESEC Blog)
  2938. Partial lists of organizations infected with Sunburst malware released online (ZDNet)
  2939. Adam Orton on Twitter: "@mikko @netresec @craiu Does "this was a lab machine" not pass anyone elses sniff test? Or just me?" / Twitter
  2940. Date 2021-01-26

  2941. Hackers exploit U.S. Agency Supply Chain (IT Security Guru)
  2942. Date 2021-01-24

  2943. Russian Hacking Targeted Treasury Department’s Senior Leaders (nyt)
  2944. Global Intrusion Campaign Leverages Software Supply Chain Compromise (fireeye)
  2945. Date 2021-01-23

  2946. Biden Orders Sweeping Assessment of Russian Hacking, Even While Renewing Nuclear Treaty (nyt)
  2947. Date 2021-01-22

  2948. OODA Loop - If SolarWinds Is a Wake (Up Call, Who’s Really Listening?)
  2949. Biden administration to seek five-year extension on key nuclear arms treaty in first foray with Russia (wapo)
  2950. 99 Problems but Two-Factor Ain’t One (fireeye)
  2951. U.S. Treasury, Commerce Depts. Hacked Through SolarWinds Compromise — Krebs on Security
  2952. Microsoft says it found malicious software in its systems (CNA)
  2953. Date 2021-01-21

  2954. Malwarebytes targeted by Nation State Actor implicated in SolarWinds breach. Evidence suggests abuse of privileged access to Microsoft Office 365 and Azure environments - Malwarebytes Labs (Malwarebytes Labs)
  2955. Malwarebytes says SolarWinds hackers accessed its internal emails
  2956. Russian hack’s sophistication impresses even the experts (wapo)
  2957. Microsoft warns UK companies were targeted by SolarWinds hackers
  2958. Group Behind SolarWinds Hack Bypassed MFA to Access Emails at US Think Tank (SecurityWeek.Com)
  2959. Russian hackers compromised Microsoft cloud customers through third party, putting emails and other data at risk
  2960. Russians Are Believed to Have Used Microsoft Resellers in Cyberattacks (nyt)
  2961. Microsoft, FireEye confirm SolarWinds supply chain attack (ZDNet)
  2962. Sunburst Trojan (What You Need to Know)
  2963. VMware Falls on Report Its Software Led to SolarWinds Breach (Bloomberg)
  2964. CISA orders agencies to quickly patch critical Netlogon bug (CyberScoop)
  2965. REFILE-EXCLUSIVE-U.S. Treasury breached by hackers backed by foreign government - sources (Reuters)
  2966. How Russia’s ‘Info Warrior’ Hackers Let Kremlin Play Geopolitics on the Cheap (WSJ)
  2967. Opinion (I Was the Homeland Security Adviser to Trump. We’re Being Hacked. - The New York Times)
  2968. U.S. Agencies Exposed in Attack by Suspected Russian Hackers (Bloomberg)
  2969. Cyber attack may be ‘worst in the history of America’ (LV Jrnl)
  2970. US under major active cyberattack from Russia, Trump’s former security adviser warns (The Independent)
  2971. What we know – and still don’t – about the worst-ever US government cyber-attack | Hacking (Guardian)
  2972. SolarWinds Hack: U.K. Government, NATO Join U.S. in Monitoring Risk (Bloomberg)
  2973. At Least 200 Victims Identified in Suspected Russian Hacking (Bloomberg)
  2974. Cyberattack on U.S. Treasury by foreign government
  2975. Russian government (backed hackers breached the U.S. Treasury)
  2976. Treasury, Commerce, Others Hacked by Russian Government Spies, Report (Rolling Stone)
  2977. SolarWinds Hackers Also Breached Malwarebytes Cybersecurity Firm
  2978. Date 2021-01-20

  2979. Scope of Russian Hacking Becomes Clear: Multiple U.S. Agencies Were Hit (nyt)
  2980. U.S. Homeland Security, thousands of businesses scramble after suspected Russian hack (Reuters)
  2981. SolarWinds Likely Hacked at Least One Year Before Breach Discovery (SecurityWeek.Com)
  2982. Suspected Russian hackers spied on U.S. Treasury emails - sources (Reuters)
  2983. How bad is the hack that targeted US agencies
  2984. Raindrop: New Malware Discovered in SolarWinds Investigation (Symantec Blogs)
  2985. Malwarebytes said it was hacked by the same group who breached SolarWinds (ZDNet)
  2986. Finding Targeted SUNBURST Victims with pDNS (NETRESEC Blog)
  2987. Extracting Security Products from SUNBURST DNS Beacons (NETRESEC Blog)
  2988. Reassembling Victim Domain Fragments from SUNBURST DNS (NETRESEC Blog)
  2989. The aftermath of the SolarWinds breach: Organizations need to be more vigilant (TechRepublic)
  2990. A New SolarWinds Malware Strain Is Discovered
  2991. Researchers Discover Raindrop — 4th Malware Linked to the SolarWinds Attack
  2992. Remediation and Hardening Strategies for Microsoft 365 to Defend Against UNC2452 (fireeye)
  2993. Remediation and Hardening Strategies for Microsoft 365 to Defend Against UNC2452
  2994. GitHub - fireeye/Mandiant-Azure-AD (Investigator)
  2995. How to create a backdoor to Azure AD (part 1: Identity federation)
  2996. SUNBURST Additional Technical Details (fireeye)
  2997. UNC2452: What We Know So Far
  2998. From the Solarwinds supply chain attack (Golden Chain Bear) to see the covert operations in APT operations
  2999. Responding to the SolarWinds Breach: Detect, Prevent, and Remediate the Dark Halo Supply Chain Attack (Volexity)
  3000. SolarWinds (Understanding & Detecting the SUPERNOVA Webshell Trojan - SentinelLabs)
  3001. SolarWinds SUNBURST Backdoor: Inside the APT Campaign (SentinelLabs)
  3002. Date 2021-01-19

  3003. SolarWinds hack: US officials scramble to deal with suspected Russian hack of government agencies (CNNPolitics)
  3004. SolarWinds malware was sneaked out of the firm's Orion build environment 6 months before anyone realised it was there (report • The Register)
  3005. Hackers Tied to Russia Hit Nuclear Agency; Microsoft Is Exposed (Bloomberg)
  3006. SolarWinds attack explained: And why it was so hard to detect (CSO Online)
  3007. Cyber ‘Deterrence’: A Brexit Analogy (Lawfare)
  3008. Date 2021-01-18

  3009. Cybersecurity Stocks that Lagged in 2020 Could Get Boost from SolarWinds Hack (RealMoney)
  3010. SolarWinds CEO: Attack Was ‘One Of The Most Complex And Sophisticated’ In History
  3011. SolarWinds Fights Back With Chris Krebs, Alex Stamos Hires
  3012. SolarWinds Hackers Compromise Confidential Court Filings
  3013. SolarWinds Deadline Alert
  3014. SolarWinds Update
  3015. Some UW Campuses That Contract With SolarWinds IT Provider Exploited In National Cyberattack (Wisconsin Public Radio)
  3016. Understanding third-party hacks in the aftermath of the SolarWinds breach (Help Net Security)
  3017. American Public Reticent to Retaliate Against SolarWinds Hack (The National Interest)
  3018. SolarWinds Close to Figuring Out How Cyberattack Occurred
  3019. Cyber Threat Intel Analysis and Expansion of SolarWinds Identified IoCs
  3020. SolarWinds Cyber-Attack Has Significant Implications for Developers and Contractors (Robinson+Cole Data Privacy + Security Insider - JDSupra)
  3021. SolarWinds Says It’s Closer to Finding Source of Cyberattack
  3022. SolarWinds hack: Who’s to blame? It’s complicated. (TechBeacon)
  3023. Austin's SolarWinds closer to understanding source of massive breach
  3024. SolarWinds Hack Lessons Learned: Finding the Next ...
  3025. SolarWinds CEO: Company Might Not Be the Only Compromise (My TechDecisions)
  3026. SWI INVESTOR FRAUD LAWSUIT: Hagens Berman Alerts SolarWinds (SWI) Investors to Securities Fraud Lawsuit and Encourages Investors with Losses to Contact Firm Now
  3027. SolarWinds fallout makes secure communications a critical first line of defense - (FCW)
  3028. What the SolarWinds hack really tells us (TechBeacon)
  3029. SOLARWINDS INVESTORS: March 5, 2021 Filing Deadline in Shareholder Class Action – Contact Lieff Cabraser (bizwire)
  3030. SolarWinds Supply Chain Hack: Investigation Update
  3031. The Cybersecurity 202: Sen. Mark Warner plans breach-notification debate in wake of SolarWinds hack (wapo)
  3032. From the Bronze Soldier to Solarwinds, tracking unfettered Kremlin disruption across 15 years  (Great Power)
  3033. Autocracy ascends the cracks of democracy  (Great Power)
  3034. Hackers last year conducted a 'dry run' of SolarWinds breach
  3035. SolarWinds Hack Lessons Learned: Finding the Next ...
  3036. SolarWinds hackers linked to known Russian spying tools, investigators say (Reuters)
  3037. The Devil’s in the Details: SUNBURST Attribution
  3038. Exclusive: FBI probes Russian-linked postcard sent to FireEye CEO after cybersecurity firm uncovered hack - sources (Reuters)
  3039. Meet The Super Rich Czech Tech Company — And Its Russian CEO —Denying Links To The Huge SolarWinds Hack
  3040. SolarWinds Hack: Cisco And Equifax Amongst Corporate Giants Finding Malware... But No Sign Of Russian Spies
  3041. Email security firm Mimecast says hackers hijacked its products to spy on customers (Reuters)
  3042. Disturbing trend: Recent nation state attacks (Cybersecurity Tech Accord)
  3043. SolarWinds Hack Forces Reckoning With Supply-Chain Security (WSJ)
  3044. SolarWinds hackers linked to known Russian spying tools, investigators say (Reuters)
  3045. SolarWinds Breach Used to Infiltrate Customer Networks (Solarigate)
  3046. GitHub (fireeye/sunburst_countermeasures)
  3047. Sunburst Malware Optics Rules
  3048. FireEye Malware Optics Rules
  3049. Password Guessing Used as a Weapon by SolarWinds Hackers to Breach Targets - E Hacking News (Latest Hacker News and IT Security News)
  3050. Critical Microsoft Defender Bug Actively Exploited; Patch Tuesday Offers 83 Fixes (tpost)
  3051. The Cybersecurity 202: NSA cyber chief Anne Neuberger is heading to the Biden White House (wapo)
  3052. Third malware strain discovered in SolarWinds supply chain attack (ZDNet)
  3053. Kaspersky experts connect SolarWinds attack with Kazuar backdoor
  3054. SolarWinds Take Control Alternative (Splashtop SOS)
  3055. New SolarWinds CEO sets out rescue plan
  3056. Russia's SolarWinds Hack Is the Big One (BoonWorks)
  3057. A closer look at the SolarWinds hack (Cyprus Mail)
  3058. Published (Zero Day Initiative)
  3059. Unveiled: SUNSPOT Malware Was Used to Inject SolarWinds Backdoor
  3060. More federal victims of SolarWinds hacking likely to come forward, CISA chief says
  3061. Lessons from the SolarWinds Hack: Robust Cybersecurity Requires Leadership (Toka)
  3062. Researchers Find Links Between Sunburst and Russian Kazuar Malware
  3063. Golden SAML Revisited: The Solorigate Connection (secblvd)
  3064. IOTW: As The SolarWinds Hack Investigation Continues, New Insights Reveal A New Suspect (Cyber Security Hub)
  3065. All about the suspected Russian cyberattack that Microsoft has called ‘moment of reckoning’
  3066. Date 2021-01-16

  3067. Increasing resilience against Solorigate and other sophisticated attacks with Microsoft Defender (MS Security)
  3068. Google’s approach to secure software development and supply chain risk management (Google Cloud Blog)
  3069. Date 2021-01-15

  3070. Robust Indicators of Compromise for SUNBURST (NETRESEC Blog)
  3071. SolarWinds Says It Has Found Source of Massive Cyberattack (TheStreet)
  3072. Sunspot malware scoured servers for SolarWinds builds to trojanize them
  3073. Top SolarWinds risk assessment resources for Microsoft 365 and Azure (CSO Online)
  3074. Create a Log Analytics workspace in the Azure portal - Azure Monitor (Microsoft Docs)
  3075. SolarLeaks site claims to sell data stolen in SolarWinds attacks
  3076. FireEye reveals that it was hacked by a nation state APT group
  3077. Hackers Didn’t Only Use SolarWinds to Break In, Says CISA (secblvd)
  3078. CISA: Hackers access to federal networks without SolarWinds - (FCW)
  3079. CISA: SolarWinds hackers also used password guessing to breach targets (ZDNet)
  3080. On the SolarWinds Hack or When Total Information Awareness is the Chainsaw Which Gently Buggers You Sidewise (An F... Again...)
  3081. The SolarWinds Investigation Ramps Up (WIRED)
  3082. Industry urges agencies to accelerate zero trust adoption after SolarWinds hack (FedScoop)
  3083. The Hack Roundup: SolarWinds Shares Details on How Attackers Inserted Backdoor (Nextgov)
  3084. Sunburst backdoor – code overlaps with Kazuar (Securelist)
  3085. Sunburst: connecting the dots in the DNS requests (Securelist)
  3086. How we protect our users against the Sunburst backdoor (Securelist)
  3087. Cybersecurity firm identifies third SolarWinds hack malware strain (FoxBiz)
  3088. The SolarWinds Hack Was Huge. JPMorgan Is Defending the Stock. (Barron's)
  3089. SolarWinds Hack Followed Years of Warnings of Weak Cybersecurity (Bloomberg)
  3090. DoJ confirms email accounts breached by SolarWinds hackers | Hacking (Guardian)
  3091. Mimecast compromised by a threat actor | 2021-01-13 (Security Magazine)
  3092. Mimecast: Hackers Compromised A Digital Certificate (My TechDecisions)
  3093. SolarWinds Attackers May Have Hit Mimecast, Driving ...
  3094. Miscreants Manipulate Mimecast Certificate -> Microsoft 365 Exchange Web Services: Welcome To The Pew Pew (secblvd)
  3095. Email security firm Mimecast says hackers hijacked its products to spy on customers (Reuters)
  3096. Mimecast shares tumble as company reports cyberthreat to some customers (Boston Business Journal)
  3097. Mimecast Says Hackers Compromised Digital Certificate
  3098. Mimecast Says Attackers Stole Certificate, Targeted Customers' Email (Decipher)
  3099. Important Update from Mimecast (Mimecast Blog)
  3100. Hackers hijacked email security firm Mimecast to spy on customers (VentureBeat)
  3101. SolarWinds' dominance became a liability in sprawling spy campaign (VentureBeat)
  3102. Hackers abusing Mimecast certs to target Microsoft 365 users
  3103. Mimecast Cert Compromised to Target Inboxes in “Sophisticated” Attack (Infosecurity Magazine)
  3104. Mimecast hit by “sophisticated threat actor”
  3105. SolarWinds Hackers' Attack on Email Security Company Raises New Red Flags (MarketScreener)
  3106. SolarWinds defense: How to stop similar attacks (ZDNet)
  3107. SolarWinds Hack Could Cost Cyber Insurance Firms $90 Million
  3108. The SolarWinds Breach: Why Your Work Computers Are Down Today (Lawfare)
  3109. CORRECTING and REPLACING Intact Technology, Inc. Develops an Alternative Solution to SolarWinds Orion (bizwire)
  3110. SolarWinds Cyber (Attack Affects Developers and Contractors)
  3111. Microsoft’s Smith Talks ‘WarGames,’ SolarWinds Hack at CES (SDxCentral)
  3112. FireEye not ready to ascribe SolarWinds hack to Russia - (FCW)
  3113. Sunburst Malware Information (FireEye)
  3114. SolarWinds aftermath continues with SolarLeaks (secblvd)
  3115. SolarWinds aftermath continues with SolarLeaks (Blueliv)
  3116. SolarWinds: Between The Clouds (secblvd)
  3117. Microsoft President Brad Smith: SolarWinds Attack Violated ‘Norms And Rules’ Of Government Activities
  3118. SolarWinds roundup: Fixes, new bad actors, and what the company knew (Network World)
  3119. The Colorado Division of Securities alerts securities firms to be aware of any impact of SolarWinds hack (WesternSlopeNow.com)
  3120. Advanced Persistent Threat Actors Leverage SolarWinds Vulnerabilities
  3121. Evanina: Number of known SolarWinds victims 'will continue to grow' - (FCW)
  3122. Cybersecurity Pioneer Cyemptive Technologies Cautions Entities About the Depth and Breadth of the Recent SolarWinds Cyber Incident; Provides First Reliable Solution to Address Such Invasive Attacks (bizwire)
  3123. SWI INVESTORS ACT FAST: Hagens Berman Alerts SolarWinds (SWI) Investors to Securities Fraud Lawsuit and Encourages Investors with Losses to Contact Firm Now
  3124. Expect more SolarWinds victims, national security official says - (GCN)
  3125. SOLARWINDS INVESTOR ALERT: Class Action Lawsuit Filed
  3126. ROSEN, RESPECTED INVESTOR COUNSEL, Reminds SolarWinds Corporation Investors of Important March 5 Deadline in First Filed Securities Class Action Commenced by the Firm; Encourages Investors with Losses in Excess of $100K to Contact the Firm (SWI)
  3127. SHAREHOLDER ALERT: WeissLaw LLP Investigates SolarWinds Corporation
  3128. Cyberespionage campaign hits Colombia. New malware found in the SolarWinds incident. Mimecast certificates compromised. Ubiquiti tells users to reset passwords. Two wins for the good guys.
  3129. Brazen SolarWinds Hackers Offer Alleged Windows 10 Source Code For $600,000 (HotHardware)
  3130. Date 2021-01-13

  3131. solarleaks
  3132. SolarWinds: What Hit Us Could Hit Others — Krebs on Security
  3133. Date 2021-01-12

  3134. SUNSPOT Malware: A Technical Analysis (CrowdStrike)
  3135. New Findings From Our Investigation of SUNBURST (Orange Matter)
  3136. Our Plan for a Safer SolarWinds and Customer Community (Orange Matter)
  3137. Suspected Russian hackers used Microsoft vendors to breach customers (Reuters)
  3138. Why Solarwinds Hack didn't succeed for Comodo Customers? Post
  3139. SolarWinds Hit With Class (Action Lawsuit Following ...)
  3140. Bucking Trump, NSA and FBI say Russia was “likely” behind SolarWinds hack (ars)
  3141. Date 2021-01-11

  3142. CEO Refutes Reports of Involvement in SolarWinds Campaign (Infosecurity Magazine)
  3143. How to Understand and Defend Against SolarWinds (Type Attacks)
  3144. Date 2021-01-10

  3145. A Golden SAML Journey: SolarWinds Continued (Splunk)
  3146. Date 2021-01-09

  3147. Krebs Stamos Group
  3148. SolarWinds Hires Chris Krebs and Alex Stamos for ...
  3149. Date 2021-01-08

  3150. GitHub (cisagov/Sparrow: Sparrow.ps1 was created by CISA's Cloud Forensics team to help detect possible compromised accounts and applications in the Azure/m365 environment.)
  3151. Implications of Russian Hacking of SolarWinds
  3152. CISA: SolarWinds Hackers Got Into Networks by Guessing Passwords (Nextgov)
  3153. Agencies Need to Improve Implementation of Federal Approach to Securing Systems and Protecting against Intrusions
  3154. NSA Warns That Russian Hackers Are Targeting Virtual Workspaces (Nextgov)
  3155. SolarWinds Government Data Breach Leads to Securities Action (Lexology)
  3156. Hackers used SolarWinds' dominance against it in sprawling spy campaign (Reuters)
  3157. Faulty enterprise software, like SolarWinds, $2 trillion problem (BI)
  3158. SolarWinds to pay former CEO US$312K to assist with investigations - Software (CRN Australia)
  3159. The SolarWinds Hack
  3160. Life After the SolarWinds Supply Chain Attack
  3161. Protect Against Supply Chain Cyber Attacks (SecureLink eBook)
  3162. Advisory for SolarWinds Orion Vulnerabilities (secblvd)
  3163. Third-Party Risk Management (TPRM) Best Practices (View Webinar)
  3164. How to prepare for and respond to a SolarWinds-type attack (CSO Online)
  3165. SolarWinds Sued Over Russian Hack (SDxCentral)
  3166. Microsoft unleashes ‘Death Star’ on SolarWinds hackers in extraordinary response to breach (GeekWire)
  3167. SWI INVESTOR FRAUD LAWSUIT FILED: Hagens Berman Encourages SolarWinds (SWI) Investors with Losses to Contact Firm Now
  3168. SolarWinds Orion: Fixes Aim to Block Sunburst and Supernova
  3169. SolarWinds breach could reshape cybersecurity practices
  3170. Microsoft: A 2nd Group May Have Also Breached SolarWinds
  3171. Canada Pension Plan Investment Board’s purchase of SolarWinds stock likely to fall under scrutiny (wapo)
  3172. SHAREHOLDER ALERT: Block & Leviton LLP Investigating SolarWinds Corp. and Pluralsight, Inc. for Possible Breaches of Fiduciary Duty; Shareholders Should Contact the Firm
  3173. SolarWinds Hack, Ransomware, Regulations Figure Prominently as Virtual Cybersecurity Summits Resume in 2021
  3174. HAGENS BERMAN, NATIONAL TRIAL ATTORNEYS, Encourages SolarWinds (SWI) Investors with Losses to Contact Firm Now, Securities Fraud Lawsuit Filed
  3175. SHAREHOLDER ALERT: SolarWinds Corp. Investigated for Possible Breaches of Fiduciary Duty After Insiders Sold $285 Million Worth of Company Stock; Investors Should Contact Block & Leviton LLP
  3176. We Should Have Known SolarWinds Would Be a Target (CoFR)
  3177. SolarWinds Breach is the Rule, Not an Exception (secblvd)
  3178. Gossamer tool aims to defend open source projects against SolarWinds-style supply chain attacks (The Daily Swig)
  3179. Gossamer: Supply Chain Security for Open (Source Software)
  3180. CrowdStrike Fends Off Attack Attempted By SolarWinds Hackers
  3181. EQUITY ALERT: Rosen Law Firm Files Securities Class Action Lawsuit Against SolarWinds Corporation – SWI (bizwire)
  3182. Scott+Scott Attorneys at Law LLP Continues Investigating SolarWinds Corporation’s Directors and Officers for Breach of Fiduciary Duties (SWI)
  3183. National cyber director role in the spotlight after SolarWinds hack
  3184. Sealed U.S. Court Records Exposed in SolarWinds Breach — Krebs on Security
  3185. Judiciary Addresses Cybersecurity Breach: Extra Safeguards to Protect Sensitive Court Records (US Courts)
  3186. Joint Statement by the Federal Bureau of Investigation (FBI), the Cybersecurity and Infrastructure Security Agency (CISA), the Office of the Director of National Intelligence (ODNI), and the National Security Agency (NSA) (CISA)
  3187. DoJ says SolarWinds hackers breached its Office 365 system and read email (ars)
  3188. SOLARWINDS INVESTORS: ALERT BY FORMER LOUISIANA ATTORNEY GENERAL - Kahn Swick & Foti, LLC Reminds Investors of Lead Plaintiff Deadline in Class Action Lawsuit Against SolarWinds Corporation (SWI)
  3189. SolarWinds Corporation (NYSE: SWI)
  3190. After SolarWinds breach, where do we go from here? (FRN)
  3191. The Trends At SolarWinds (NYSE:SWI) That You Should Know About (Simply Wall St News)
  3192. The Cybersecurity 202: Riot in the Capitol is a nightmare scenario for cybersecurity professionals (wapo)
  3193. SolarWinds hires former Trump cyber security chief Chris Krebs
  3194. SolarWinds hires Chris Krebs, Alex Stamos to boost security in wake of suspected Russian hack
  3195. Date 2021-01-07

  3196. Justice Department also hit by Russian hackers (wapo)
  3197. Widely Used Software Company May Be Entry Point for Huge U.S. Hacking (nyt)
  3198. FBI probe of major hack includes project-management software from JetBrains: sources (Reuters)
  3199. Statement on the story from The New York Times regarding JetBrains and SolarWinds (JetBrains Blog)
  3200. Biden Assails Trump Over Handling of Russia Hacking (nyt)
  3201. SolarWinds hack officially blamed on Russia: What you need to know (CNET)
  3202. Department of Justice Statement on Solarwinds Update | OPA (DOJ)
  3203. SolarWinds Hit With Class (Action Lawsuit Alleging Securities Violations)
  3204. CISA updates on SolarWinds compromise - (GCN)
  3205. SolarWinds hack may be bigger than previously believed (SiliconANGLE)
  3206. Date 2021-01-06

  3207. Bill That Trump Is Vowing to Veto Strengthens Hacking Defenses, Lawmakers Say (nyt)
  3208. SolarWinds: The more we learn, the worse it looks (ZDNet)
  3209. SolarWinds Breach ‘Much Worse’ Than Feared (SDxCentral)
  3210. White House Removes Spokeswoman at Agency Responding to SolarWinds Hack (WSJ)
  3211. Senators Press IRS for SolarWinds Hack Briefing (WSJ)
  3212. Severe SolarWinds Hacking: 250 Organizations Affected?
  3213. SolarWinds shareholder files class-action lawsuit alleging leadership 'misrepresented and failed to disclose' information about hack (FoxBiz)
  3214. SolarWinds hack poses risk to cloud services' API keys and IAM identities
  3215. The Grim Lessons of the SolarWinds Breach (reason)
  3216. Latest on the SVR’s SolarWinds Hack (Schneier)
  3217. Here's a simple explanation of the SolarWinds hack (BI)
  3218. SolarWinds hack endangering cloud services’ API keys (DevOps Online)
  3219. The threats arising from the massive SolarWinds hack (CBS News)
  3220. Solar Winds Blow Hard (secblvd)
  3221. SolarWinds hack may have been a global attack (TechRadar)
  3222. As Understanding of Russian Hacking Grows, So Does Alarm (nyt)
  3223. Researchers say cloud deployments of SolarWinds Orion could put API keys at risk (IT World Canada)
  3224. Cloud infrastructure is not immune from the SolarWinds Orion breach (Ermetic)
  3225. Fun with SolarWinds Orion Cryptography — Atredis Partners
  3226. GitHub (mubix/solarflare: SolarWinds Orion Account Audit / Password Dumping Utility)
  3227. SolarFlare Release: Password Dumper for SolarWinds Orion :: malicious.link — welcome
  3228. Find cloud account credentials
  3229. Infosec pros warned of second SolarWinds Orion vulnerability (IT World Canada News)
  3230. After the FireEye and SolarWinds breaches, what’s your failsafe? (TechCrunch)
  3231. The Cyberlaw Podcast: The Grim Lessons of the SolarWinds Breach (Lawfare)
  3232. Dissecting The SolarWinds Hack For Greater Insights With A Cybersecurity Evangelist
  3233. Class Action Complaint for Violation of the Federal Securities Laws
  3234. SolarWinds, top executives hit with class action lawsuit over Orion software breach (scmedia)
  3235. US issues advisory for agencies to update SolarWinds software (Express Computer)
  3236. Reshaping Cyberspace: Beyond the Emerging Online Mercenaries and the Aftermath of SolarWinds
  3237. Agencies scrambling to get a grip after SolarWinds hack (FRN)
  3238. SolarWinds attack: CrowdStrike says no impact
  3239. Learning from SolarWinds: Five steps to fortify your cloud supply chain | Article (Compliance Week)
  3240. 'No evidence' IRS taxpayer information exposed by SolarWinds hack (FedScoop)
  3241. HAGENS BERMAN, NATIONAL TRIAL ATTORNEYS, Investigating SolarWinds (SWI) Knowledge of Hack in Orion Products, Encourages SWI Investors with Losses to Contact Firm Now
  3242. ALERT FOR SWI INVESTORS WITH LOSSES: Bernstein Liebhard is Investigating SolarWinds Corporation For Violations of the Securities Laws
  3243. Cloud infrastructure is not immune from the SolarWinds Orion breach (secblvd)
  3244. In wake of SolarWinds and Vietnam, more supply chain attacks expected 2021 (scmedia)
  3245. Trump's reluctance to name Russia in SolarWinds hack will hamper recovery (Axios)
  3246. Treasury Finds no Evidence of Tax Data Breach in SolarWinds Hack (MeriTalk)
  3247. SolarWinds hack: Cybersecurity company calls for more transparency with what happened (KXAN Austin)
  3248. VU#843464 (SolarWinds Orion API authentication bypass allows remote command execution)
  3249. Federal Reserve Board (Agencies propose requirement for computer security incident notification)
  3250. Date 2021-01-05

  3251. Bremer v. SolarWinds Corporation Et Al - Complaint | Sec Rule 10b 5 (Class Action)
  3252. SolarWinds MSP Rebranding As N-able Amid Spin-Out Plan (ChannelE2E)
  3253. This Week In Security: Deeper Dive Into SolarWinds, Bouncy Castle, And Docker Images (Hackaday)
  3254. Date 2021-01-01

  3255. The Real Culprit Behind SolarWinds: Remote Code Execution
  3256. Microsoft Internal Solorigate Investigation Update (Microsoft Security Response Center)
  3257. Solorigate Resource Center – updated December 31st, 2020 (Microsoft Security Response Center)
  3258. Date 2020-12-31

  3259. CISA updates SolarWinds guidance, tells US govt agencies to update right away (ZDNet)
  3260. A second hacking group has targeted SolarWinds systems (ZDNet)
  3261. CrowdStrike Launches Free Tool to Identify & Mitigate Risks in Azure Active Directory (CrowdStrike)
  3262. Op (ed: What nobody else will say about the new cybersecurity crisis)
  3263. How did SolarWinds' massive data breach go undetected for months? (YouTube)
  3264. How hacked is hacked? Here’s a ‘hack scale’ to better understand the SolarWinds cyberattacks (GeekWire)
  3265. SolarWinds SUNBRUST backdoor investigation using ShiftLeft’s Code Property Graph (secblvd)
  3266. A New SolarWinds Flaw Likely Had Let Hackers Install SUPERNOVA Malware
  3267. A Second Hacker Group May Have Also Breached SolarWinds, Microsoft Says
  3268. US Agencies and FireEye Were Hacked Using SolarWinds Software Backdoor
  3269. New Evidence Suggests SolarWinds' Codebase Was Hacked to Inject Backdoor
  3270. Grid regulator warns utilities of risk of SolarWinds backdoor, asks how exposed they are (CyberScoop)
  3271. Five Solution Providers Breached By SolarWinds Hackers: Researchers
  3272. SolarWinds Hack Infected Critical Infrastructure
  3273. Analysis: The Impact of SolarWinds Hack (BankInfoSecurity)
  3274. SHAREHOLDER ALERT: Kaskela Law LLC Announces Investigation of SolarWinds Corp. (SWI) and Encourages SWI Stockholders to Contact the Firm
  3275. Loptr CEO Discusses Solarwinds Breach and How to Stay Safe
  3276. Coast Guard releases bulletin on SolarWinds hack (WorkBoat)
  3277. The Law Offices of Frank R. Cruz Continues Its Investigation of SolarWinds Corporation (SWI) on Behalf of Investors (bizwire)
  3278. Date 2020-12-28

  3279. Suspected Russian hackers used Microsoft vendors to breach customers (Reuters)
  3280. Date 2020-12-25

  3281. Massive data breach may have been discovered due to 'unforced error' by suspected Russian hackers (CNNPolitics)
  3282. Opinion (With Hacking, the United States Needs to Stop Playing the Victim - The New York Times)
  3283. 40 Of Microsoft's Customers Impacted By SolarWinds Hack : NPR
  3284. Alleged Russian Malware Hack Hit Local Governments In U.S., Officials Say : NPR
  3285. Prevasio: Sunburst Backdoor, Part II: DGA & The List of Victims
  3286. Prevasio: Sunburst Backdoor: A Deeper Look Into The SolarWinds' Supply Chain Malware
  3287. Prevasio: Sunburst Backdoor, Part III: DGA & Security Software
  3288. research/uniq (hostnames.txt at main · bambenek/research · GitHub)
  3289. subdomain & #DGA domain names , #SolarWinds, attacked by #UNC2452 @0xrb (Pastebin.com)
  3290. List of Known SolarWinds Breach Victims Grows, as Do Attack Vectors
  3291. Russian State (Sponsored Actors Exploiting Vulnerability in VMware® Workspace ONE Access Using Compromised Credentials)
  3292. VMware Workspace One Access, Access Connector, Identity Manager, and Identity Manager Connector address command injection vulnerability
  3293. How the SolarWinds hackers are targeting cloud services in unprecedented cyberattack (GeekWire)
  3294. SolarWinds Post-Compromise Hunting with Azure Sentinel (Microsoft Tech Community)
  3295. Azure-Sentinel/SolarWindsPostCompromiseHunting.json at master · Azure/Azure (Sentinel · GitHub)
  3296. Advice for incident responders on recovery from systemic identity compromises (MS Security)
  3297. Azure AD workbook to help you assess Solorigate risk (Microsoft Tech Community)
  3298. GitHub - Azure/Azure-Sentinel: Cloud (native SIEM for intelligent security analytics for your entire enterprise.)
  3299. Azure-Sentinel/ProcessEntropy.yaml at master · Azure/Azure (Sentinel · GitHub)
  3300. Azure-Sentinel/RareProcbyServiceAccount.yaml at master · Azure/Azure (Sentinel · GitHub)
  3301. Azure-Sentinel/uncommon_processes.yaml at master · Azure/Azure (Sentinel · GitHub)
  3302. Azure-Sentinel/FirstAppOrServicePrincipalCredential.yaml at master · Azure/Azure (Sentinel · GitHub)
  3303. Azure-Sentinel/MailPermissionsAddedToApplication.yaml at master · Azure/Azure (Sentinel · GitHub)
  3304. Date 2020-12-24

  3305. SolarWinds victims revealed after cracking the Sunburst malware DGA
  3306. Embassy of Russia in the USA / Посольство России в США - Posts (Facebook)
  3307. DHS, State and NIH join list of federal agencies — now five — hacked in major Russian cyberespionage campaign (wapo)
  3308. SolarWinds hackers breach US nuclear weapons agency
  3309. SolarWinds roundup: Fixes, new bad actors, and the company knew (Network World)
  3310. How SolarWinds could’ve been prevented (FRN)
  3311. Microsoft identifies more than 40 organizations targeted in massive cyber breach (CNNPolitics)
  3312. Massive SolarWinds hack has big businesses on high alert (CNN)
  3313. US cyber-attack: Cybersecurity agency warns suspected Russian hacking campaign broader than previously believed (CNNPolitics)
  3314. SolarWinds hackers broke into U.S. cable firm and Arizona county, web records show (Reuters)
  3315. US cyber-attack: Russia 'clearly' behind SolarWinds operation, says Pompeo (BBC News)
  3316. Tech Tent: Hacking the heart of the US government (BBC News)
  3317. SolarWinds Orion: More US government agencies hacked (BBC News)
  3318. SolarWinds: UK assessing impact of hacking campaign (BBC News)
  3319. Five Russian hacks that transformed US cyber-security (BBC News)
  3320. US cyber-attack: US energy department confirms it was hit by Sunburst hack (BBC News)
  3321. US Treasury and commerce department targeted in cyber-attack (BBC News)
  3322. SolarWinds Campaign Focuses Attention on 'Golden ...
  3323. Sygnia Advisory: Detection of Golden SAML attacks
  3324. SolarWinds Compromise May Have Begun 5 Months Earlier Than Suspected
  3325. CISA: SolarWinds Not the Only Initial Attack Vector ...
  3326. Golden SAML: Newly Discovered Attack Technique Forges Authentication to Cloud Apps
  3327. GitHub (cyberark/shimit: A tool that implements the Golden SAML attack)
  3328. Industry Letter - December 18, 2020: Supply Chain Compromise Alert (Department of Financial Services)
  3329. HPE: ‘No Evidence’ It Has Been ‘Impacted’ By SolarWinds (Based Attack)
  3330. SolarWinds Deploys CrowdStrike To Secure Systems After Hack
  3331. 10 Things To Know About The SolarWinds Breach And Its U.S. Government Impact
  3332. Suspected Russian hackers spied on U.S. Treasury emails - sources (Reuters)
  3333. Validating the SolarWinds N-central “Dumpster Diver” Vulnerability | by Kyle Hanslovan (Huntress)
  3334. ConnectWise Control MSP Security Vulnerabilities Are ‘Severe:’ Bishop Fox
  3335. US Calls On Federal Agencies To Power Down SolarWinds Orion Due To Security Breach
  3336. Chairman Schiff Statement on FireEye Hack (Permanent Select Committee on Intelligence)
  3337. Cisco Hacked Through SolarWinds As Tech Casualties Mount
  3338. VMware Flaw Used To Hit Choice Targets In SolarWinds Hack: Report
  3339. Microsoft’s Role In SolarWinds Breach Comes Under Scrutiny
  3340. VMware Flaw a Vector in SolarWinds Breach? — Krebs on Security
  3341. Anexinet Exec: Lack Of Monitoring In SolarWinds Hack Is ‘Scary’
  3342. SolarWinds Orion hack: Why cybersecurity experts are worried (CNN)
  3343. Lessons on Identity Security From Recent High (Profile Breaches)
  3344. Catching Bloodhound Before it Bites (CrowdStrike)
  3345. Bloodhound walkthrough. A Tool for Many Tradecrafts (Pen Test Partners)
  3346. CNN.com (Transcripts)
  3347. SolarWinds: What It Means & What’s Next
  3348. Top Expert Backgrounder: Russia’s SolarWinds Operation and International Law
  3349. SolarWinds incident should be a catalyst to rethink federal cybersecurity (FRN)
  3350. SolarWinds said no other products were compromised in recent hack (ZDNet)
  3351. Behavior:Win32/Solorigate.C!dha threat description (Microsoft Security Intelligence)
  3352. Security Advisory (SolarWinds)
  3353. Microsoft and industry partners seize key domain used in SolarWinds hack (ZDNet)
  3354. Microsoft to quarantine SolarWinds apps linked to recent hack (ZDNet)
  3355. solorigate_sample_source/OrionImprovementBusinessLayer.cs at main · Shadow0ps/solorigate_sample_source (GitHub)
  3356. Kyle Hanslovan on Twitter: "Although their string obfuscation techniques were anything but special, their codebase and domains successfully evaded security scrutiny for nearly a year ¯_(ツ)_/¯. Here are screenshots of some CryptoHelper and ZipHelper cl
  3357. Ensuring customers are protected from Solorigate (MS Security)
  3358. The SolarWinds and US government breach is not a marketing opportunity (ZDNet)
  3359. Everything we know about the Solarwinds Hack! (Updated!) (YouTube)
  3360. Syxsense Confirms There is Zero SolarWinds® Orion® in its Environment and is Not a SolarWinds Customer
  3361. SolarWinds Orion/SUNBURST – Armis Can See Impacted Devices & Attacks (secblvd)
  3362. Kevin Mandia: 50 Firms ‘Genuinely Impacted’ By SolarWinds Attack
  3363. Security Advisory FAQ (SolarWinds)
  3364. 10 Things To Know About The SolarWinds Breach And Its U.S. Government Impact
  3365. SolarWinds hack exploited weaknesses we continue to tolerate (FT)
  3366. CISA updates emergency directive for SolarWinds Orion compromise | 2020-12-22 (Security Magazine)
  3367. SolarWinds hack continues to spread: What you need to know (CNET)
  3368. Joint Statement by the Federal Bureau of Investigation (FBI), the Cybersecurity and Infrastructure Security Agency (CISA), and the Office of the Director of National Intelligence (ODNI) (CISA)
  3369. Alex Stamos on Twitter: "@VickerySec So far, all of the activity that has been publicly discussed has fallen into the boundaries of what the US does regularly and what we explicitly excluded from the Obama (Xi deal. If we are going to set new red lines, th)
  3370. Alex Stamos on Twitter: "There is a long history of "trickle down" effects in cyber, where a technique honed by a major player becomes commonplace. China's 2000s APTs -&gt; Iran/DPRK/teenagers in the 2010s. Stuxnet -&gt;smart ransomware. If supply (chain a)
  3371. Hack Suggests New Scope, Sophistication for Cyberattacks (WSJ)
  3372. Joe Biden Blames Russia For Huge SolarWinds Hack (HuffPost)
  3373. Experts say SolarWinds hack could impact Kern County businesses
  3374. DOE confirms its systems were compromised by SolarWinds hack (Utility Dive)
  3375. SolarWinds/SUNBURST Backdoor, Third-Party and Supply Chain Security (secblvd)
  3376. The SolarWinds Compromise and the Strategic Challenge of the Information and Communications Technology Supply Chain (CoFR)
  3377. SolarWinds MSP To Revoke Digital Certificates For Tools, Issue New Ones As Breach Fallout Continues
  3378. Orion Platform - Scalable IT Monitoring (SolarWinds)
  3379. The Strategic Implications of SolarWinds (Lawfare)
  3380. CYBER CONFLICT DATASET
  3381. More Hacking Attacks Found, Officials Warn of Risk to U.S. Government (nyt)
  3382. SolarWinds Hack Throws Wrench In Private Equity’s Most Profitable Market
  3383. CISA warns that SolarWinds software may not be only entry point in latest breaches - (GCN)
  3384. The Solarwinds breach — What do CIOs need to do now?
  3385. Datto Offers All MSPs Free Scanner To Find Signs Of FireEye, SolarWinds Hack
  3386. Continue Clean (up of Compromised SolarWinds Software)
  3387. The Facts and Mysteries About Russia’s Hack of the U.S.
  3388. Qualys Researchers Identify 7+ Million Vulnerabilities Associated with SolarWinds/FireEye Breach by Analyzing Anonymized Vulnerabilities across Worldwide Customer Base (secblvd)
  3389. The SolarWinds hack, and the danger of arrogance (scmedia)
  3390. Was my workplace hit by SolarWinds hack? FAQ answers. (trib)
  3391. DATA443 RELEASES STATEMENT ON FIREEYE AND SOLARWINDS HACK AND BREACH OTC Markets:ATDS
  3392. SolarWinds Should Have Been More ‘Vigilant’: Palo Alto Networks CEO
  3393. SolarWinds Scandal Calls Attention to Supply Chain Security
  3394. FireEye, SolarWinds Breaches: Implications and Protections (eSecurityPlanet)
  3395. SolarWinds Breach: An RSAC Interview with Dmitri Alperovitch About Who, How and Why (RSA)
  3396. Senators Ask IRS Whether Taxpayer Data Hit in SolarWinds Hack (Bloomberg)
  3397. SolarWinds hack shows we need a 'whole of society' national cyber strategy (hill)
  3398. Expert warned 'solarwinds123' password could expose firm: Report (BI)
  3399. DOD has a leg up in mitigating potential SolarWinds breach, former officials say (FedScoop)
  3400. Florida Investigating Server Hacking Through SolarWinds Software
  3401. DOE Update on Cyber Incident Related to Solar Winds Compromise (DOE)
  3402. FireEye, Crowdstrike enjoy record days as SolarWinds hack leads to soaring security stocks (MarketWatch)
  3403. Top Democrat: 'Critical' that Pompeo brief senators on SolarWinds hack at State Dept. (hill)
  3404. Little (known SolarWinds gets scrutiny over hack, stock sales)
  3405. "Strategic Silence" and State (Sponsored Hacking: The US Gov't and SolarWinds)
  3406. All SentinelOne Customers Protected from SolarWinds SUNBURST Attack (bizwire)
  3407. It’s A Twister! Will SolarWinds Blow Cybersecurity Governance Reform Into The Boardroom?
  3408. SolarWinds, GitHub Leaks and Securing the Software Supply Chain (secblvd)
  3409. SolarFlare Release: Password Dumper for SolarWinds Orion (secblvd)
  3410. Erlang Authenticated Remote Code Execution :: malicious.link — welcome
  3411. SolarWinds breach raises stakes for NDAA Trump still threatens to veto (FRN)
  3412. SolarWinds CyberAttack and FireEye Red Team Tools Coverage
  3413. NSA Cybersecurity Advisory: Malicious Actors Abuse Authentication Mechanisms to Access Cloud Resources > National Security Agency Central Security Service > Article View
  3414. 'Very, very large' telecom organization and Fortune 500 company breached in SolarWinds hack (scmedia)
  3415. CISA Warns Agencies of SolarWinds Orion Compromise via Emergency Directive (gcwire)
  3416. Sunburst's C2 Secrets Reveal Second-Stage SolarWinds Victims (tpost)
  3417. SunBurst_DGA_Decode/decode.py at main · RedDrip7/SunBurst_DGA_Decode (GitHub)
  3418. Date 2020-12-23

  3419. SolarWinds Adviser Warned of Lax Security Years Before Hack (Bloomberg)
  3420. Russian hackers hit US government using widespread supply chain attack (ars)
  3421. Staring at the Sun: Thoughts on UNC2452, SUNBURST, SolarWinds and Road Ahead (Prevailion)
  3422. SolarWinds Claims Execs Unaware of Breach When They Sold Stock (SecurityWeek.Com)
  3423. NATO Checking Systems After US Cyberattack (SecurityWeek.Com)
  3424. Date 2020-12-22

  3425. How U.S. agencies' trust in untested software opened the door to hackers (POLITICO)
  3426. Solorigate AzureAd IOCs
  3427. SolarWinds Hack Victims: From Tech Companies to a Hospital and University (WSJ)
  3428. SUPERNOVA: A Novel .NET Webshell, an Analysis
  3429. Microsoft identifies second hacking group affecting SolarWinds software
  3430. A moment of reckoning: the need for a strong and global cybersecurity response (Microsoft On the Issues)
  3431. Microsoft president calls SolarWinds hack an “act of recklessness” (ars)
  3432. SolarWinds Achieves SOC 2 Type II Certification (Orange Matter)
  3433. Hackers last year conducted a 'dry run' of SolarWinds breach
  3434. Date 2020-12-21

  3435. OODA Loop (Microsoft says it found malicious software in its systems)
  3436. Hack May Have Exposed Deep US Secrets; Damage Yet Unknown (SecurityWeek.Com)
  3437. DHS Among Those Hit in Sophisticated Cyberattack by Foreign Adversaries – Report (tpost)
  3438. Suspected Russian hackers spied on U.S. Treasury emails - sources (Reuters)
  3439. Billions Spent on U.S. Defenses Failed to Detect Giant Russian Hack (nyt)
  3440. Richard Blumenthal on Twitter: "Stunning. Today’s classified briefing on Russia’s cyberattack left me deeply alarmed, in fact downright scared. Americans deserve to know what's going on. Declassify what’s known &amp; unknown." / Twitter
  3441. Second hacking team was targeting SolarWinds at time of big breach (Reuters)
  3442. Second hacking team was targeting SolarWinds at time of big breach (Reuters)
  3443. FireEye CEO: Hack was "totally unique," "utte... (CBS News)
  3444. DebUNCing Attribution: How Mandiant Tracks Uncategorized Threat Actors (fireeye)
  3445. Former US cybersecurity chief Chris Krebs says officials are still tracking 'scope' of the SolarWinds hack
  3446. Biden team and lawmakers raise alarms over Russian cybersecurity breach (wapo)
  3447. Giant U.S. Computer Security Breach Exploited Very Common Software (Scientific American)
  3448. Date 2020-12-20

  3449. Analyzing Solorigate, the compromised DLL file that started a sophisticated cyberattack, and how Microsoft Defender helps protect customers (MS Security)
  3450. SolarWinds' Orion monitoring platform may have been tampered with by attackers - Security - Software (iTnews)
  3451. Date 2020-12-19

  3452. The SolarWinds Orion SUNBURST supply-chain Attack (TRUESEC Blog)
  3453. Date 2020-12-18

  3454. SUNBURST – SolarWinds® Orion® IT Management Platform Security Advisory (ServerCentral Turing Group)
  3455. CISA Issues Emergency Directive to Mitigate the Compromise of Solarwinds Orion Network Management Products (CISA)
  3456. SolarWinds’ Customers (Pastebin)
  3457. solarwinds customers
  3458. Russian Hackers Broke Into Federal Agencies, U.S. Officials Suspect (nyt)
  3459. Advanced Persistent Threat Compromise of Government Agencies, Critical Infrastructure, and Private Sector Organizations (CISA)
  3460. Federal investigators find evidence of previously unknown tactics used to penetrate government networks (wapo)
  3461. Important steps for customers to protect themselves from recent nation-state cyberattacks (Microsoft On the Issues)
  3462. Customer Guidance on Recent Nation (State Cyber Attacks – Microsoft Security Response Center)
  3463. Exclusive-Suspected Russian hacking spree reached into Microsoft -sources (Reuters)
  3464. Nuclear weapons agency breached amid massive cyber onslaught (POLITICO)
  3465. Microsoft says it was hit in SolarWinds attack, but customer data safe (BI)
  3466. Microsoft identifies more than 40 organizations targeted in massive cyber breach (CNNPolitics)
  3467. Russian Hackers Have Been Inside Austin Network for Months
  3468. Date 2020-12-17

  3469. SolarWinds' Update Server Could Be Accessed in 2019 Using Password 'solarwinds123': Report
  3470. How suspected Russian hackers outed their massive cyberattack (POLITICO)
  3471. 'Massively disruptive' cyber crisis engulfs multiple agencies (POLITICO)
  3472. Inline XBRL Viewer
  3473. Malicious Domain in SolarWinds Hack Turned into ‘Killswitch’ — Krebs on Security
  3474. SolarWinds Hack Could Affect 18K Customers — Krebs on Security
  3475. GitHub (RedDrip7/SunBurst_DGA_Decode: SunBurst DGA Decode Script)
  3476. (1) Itay Cohen on Twitter: "The attackers behind the #SUNBURST malware put a lot of effort into trying to avoid detection by analysts and security vendors. Not only this, but they also tried to make sure to stay under the radar of #SolarWinds develope
  3477. SunBurst: the next level of stealth
  3478. Thread by @megabeets_ on Thread Reader App (Thread Reader App)
  3479. cyber.dhs.gov - Emergency Directive 21 (01)
  3480. SolarWinds’ shares drop 22 per cent. But what’s this? $286m in stock sales just before hack announced? (Register)
  3481. SolarWinds: Why the Sunburst hack is so serious (BBC News)
  3482. InfoSec Handlers Diary Blog
  3483. Date 2020-12-16

  3484. SolarWinds hackers have a clever way to bypass multi-factor authentication (ars)
  3485. Dark Halo Leverages SolarWinds Compromise to Breach Organizations (Volexity)
  3486. ~18,000 organizations downloaded backdoor planted by Cozy Bear hackers (ars)
  3487. GitHub (fireeye/sunburst_countermeasures)
  3488. Active Exploitation of SolarWinds Software (CISA)
  3489. SolarWinds Exposed FTP Credentials Publicly in a Github Repo
  3490. Hackers at center of sprawling spy campaign turned SolarWinds' dominance against it (Reuters)
  3491. Date 2020-12-15

  3492. Highly Evasive Attacker Leverages SolarWinds Supply Chain to Compromise Multiple Global Victims With SUNBURST Backdoor (fireeye)
  3493. Russian hacker group 'Cozy Bear' behind Treasury and Commerce breaches (wapo)