Skip to main content

A massive cyber attack in the US, using a novel set of tools

The ‘SolarWinds hack’, a cyberattack discovered in the United States, has emerged as one of the biggest ever targeted against the US government. It is likely a global cyber attack.
Current Affairs It was first discovered by US cybersecurity company FireEye.

The US Treasury, Department of Homeland Security, Department of Commerce, parts of the Pentagon are all believed to have been impacted.

Security Adviser for President Donald Trump has named Russia for the attack.

On December 13 FireEye said a cyberattack, which it named Campaign UNC2452, was not limited to the company but had targeted various “public and private organizations around the world”.

The extent of data stolen or compromised is still unknown, given the scale of the attack is still being discovered.

According to FireEye, the hackers gained “access to victims via trojanized updates to SolarWinds’ Orion IT monitoring and management software”.

Basically, a software update was exploited to install the ‘Sunburst’ malware into Orion, which was then installed by more than 17,000 customers.

FireEye says the attackers relied on “multiple techniques” to avoid being detected and “obscure their activity”.

The malware was capable of accessing the system files.
Published date : 22 Dec 2020 03:24PM

Photo Stories