Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News Editorials & Other Articles General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

General Discussion

Showing Original Post only (View all)

Yo_Mama_Been_Loggin

(135,793 posts)
Mon Dec 21, 2020, 06:42 PM Dec 2020

SolarWinds hack hits major tech companies and hospital system: What you need to know [View all]

A Russian intelligence agency is carrying out a sophisticated malware campaign, striking several US federal agencies and private companies including Microsoft, according to the State Department, news reports and analysis from security firms. It all started earlier this year, when hackers compromised software made by cybersecurity SolarWinds.

The hacked company sells software that lets an organization see what's happening on its computer networks. Hackers inserted malicious code into an updated version of the software, called Orion. Around 18,000 SolarWinds customers installed the tainted updates onto their systems, the company said. The compromised update process has had a sweeping effect, the scale of which keeps growing as new information emerges.

On Saturday, President Donald Trump floated on Twitter the idea that China might be behind the attack. Trump, who didn't provide evidence to support the suggestion of Chinese involvement, tagged Secretary of State Mike Pompeo, who had earlier said in a radio interview that "we can say pretty clearly that it was the Russians that engaged in this activity."

US national security agencies issued a joint statement Wednesday calling it a "significant and ongoing hacking campaign" that's affecting the federal government. It's still unclear how many agencies are affected or what information hackers might have stolen so far, but by all accounts the malware is extremely powerful. According to analysis by Microsoft and security firm FireEye, both of which were also infected with the malware, it gives hackers broad reach into impacted systems.

On Thursday, Microsoft said it had identified more than 40 customers that were targeted in the hack. More information is likely to emerge about the hack and its aftermath. Here's what you need to know about the SolarWinds hack:

-more-

https://www.cnet.com/news/solarwinds-hack-hits-major-tech-companies-and-hospital-system-what-you-need-to-know/?ftag=CAD-04-10abf6e&bhid=24447454298893839703959737945916&mid=13207131&cid=534320049

8 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Latest Discussions»General Discussion»SolarWinds hack hits majo...