• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
Cyber Security News

SolarWinds Hackers “Impacting” State and Local Governments

You are here: Home / General Cyber Security News / SolarWinds Hackers “Impacting” State and Local Governments
December 24, 2020

America’s Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning in excess of the popular impression of a modern hacking attack that compromised the SolarWinds Orion computer software provide chain.

The assault on SolarWinds hit the headlines before this month just after it was discovered and disclosed by scientists at FireEye. The sophisticated persistent menace (APT) team powering the attack was in a position to compromise govt organizations, critical infrastructure, and private-sector organizations.

✔ Approved From Our Partners
AOMEI Backupper Lifetime

Protect and backup your data using AOMEI Backupper. AOMEI Backupper takes secure and encrypted backups from your Windows, hard drives or partitions. With AOMEI Backupper you will never be worried about loosing your data anymore.

Get AOMEI Backupper with 72% discount from an authorized distrinutor of AOMEI: SerialCart® (Limited Offer).

➤ Activate Your Coupon Code


Recognizing the significant nature of the attack, CISA place out an emergency directive on December 13 calling “on all federal civilian companies to evaluation their networks for indicators of compromise and disconnect or energy down SolarWinds Orion products and solutions instantly.”

On Wednesday, the company explained the pervasive marketing campaign as a “significant cyber incident” and claimed that it is affecting US government at all levels. 

In a statement posted to its site, the company mentioned that it “is monitoring a major cyber incident impacting organization networks throughout federal, point out, and neighborhood governments, as effectively as critical infrastructure entities and other private sector corporations.”

CISA mentioned that the APT actor responsible for compromising the SolarWinds Orion computer software source chain has also carried out common abuse of usually utilised authentication mechanisms and is nicely resourced. 

The company then went on to alert organizations to focus on dealing with the menace posed by this distinct campaign in advance of tackling any other cybersecurity issues.   

“This danger actor has the means, patience, and know-how to acquire accessibility to and privileges above very sensitive details if remaining unchecked,” warned the company. 

“CISA urges corporations to prioritize measures to recognize and deal with this menace.”

The company has teamed up with the Federal Bureau of Investigation (FBI) and the Office of the Director of Countrywide Intelligence (ODNI) to sort a Cyber Unified Coordination Group (UCG) that will coordinate a entire-of-government reaction to the SolarWinds attack.

CISA claimed that it remains offered to enable companies victimized by the incident.

The company mentioned that it “continues to be in normal make contact with with general public and private sector stakeholders and international partners, supplying complex support on request, and generating info and resources readily available to assist all those influenced to get better speedily from incidents related to this marketing campaign.”


Some elements of this write-up are sourced from:
www.infosecurity-magazine.com

Previous Post: «Windows Zero Day Still Circulating After Faulty Fix Windows Zero-Day Still Circulating After Faulty Fix
Next Post: DDoS attacks hit Citrix Application Delivery Controllers, hindering customer performance Ddos Attacks Hit Citrix Application Delivery Controllers, Hindering Customer Performance»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.