Couverture de SolarWinds: The Backdoor Was Compiled In

SolarWinds: The Backdoor Was Compiled In

SolarWinds: The Backdoor Was Compiled In

Écouter gratuitement

Voir les détails

Between March and June of 2020, a signed update to SolarWinds Orion carried a hidden backdoor. The attacker had not tampered with the software after it shipped. It had reached the build environment where Orion is compiled and planted an implant, later named SUNSPOT, that waited for a build to run and swapped in a modified source file, so the backdoor was compiled into the product and then sealed with the vendor's own signature. Roughly eighteen thousand organizations downloaded that update. For almost all of them the backdoor stayed dormant. A hand-picked few were broken into, among them nine U.S. federal agencies. From Zero Day Logs.

adbl_web_anon_alc_button_suppression_t1
Aucun commentaire pour le moment