SolarWinds: The Backdoor Was Compiled In
Impossible d'ajouter des articles
Désolé, nous ne sommes pas en mesure d'ajouter l'article car votre panier est déjà plein.
Veuillez réessayer plus tard
Veuillez réessayer plus tard
Échec de l’élimination de la liste d'envies.
Veuillez réessayer plus tard
Impossible de suivre le podcast
Impossible de ne plus suivre le podcast
-
Lu par :
-
De :
Between March and June of 2020, a signed update to SolarWinds Orion carried a hidden backdoor. The attacker had not tampered with the software after it shipped. It had reached the build environment where Orion is compiled and planted an implant, later named SUNSPOT, that waited for a build to run and swapped in a modified source file, so the backdoor was compiled into the product and then sealed with the vendor's own signature. Roughly eighteen thousand organizations downloaded that update. For almost all of them the backdoor stayed dormant. A hand-picked few were broken into, among them nine U.S. federal agencies. From Zero Day Logs.
adbl_web_anon_alc_button_suppression_t1
Aucun commentaire pour le moment